1-106
Cisco ASA Series CLI Configuration Guide
Chapter 1 Configuring Clientless SSL VPN
Communicating Security Tips
Requiring Usernames and Passwords
Depending on your network, during a remote session users might have to log in to any or all of the
following: the computer itself, an Internet service provider, clientless SSL VPN, mail or file servers, or
corporate applications. Users might have to authenticate in many different contexts, requiring different
information, such as a unique username, password, or PIN.
Table 1-10 lists the type of usernames and passwords that clientless SSL VPN users might need to know.
Communicating Security Tips
Advise users to always click the logout icon on the toolbar to close the clientless SSL VPN session.
(Closing the browser window does not close the session.)
Clientless SSL VPN ensures the security of data transmission between the remote PC or workstation and
the ASA on the corporate network. Advise users that using clientless SSL VPN does not ensure that
communication with every site is secure. If a user then accesses a non-HTTPS web resource (located on
the Internet or on the internal network), the communication from the corporate ASA to the destination
web server is not private because it is not encrypted.
"Observing Clientless SSL VPN Security Precautions" on page 5 addresses an additional tip to
communicate with users, depending on the steps you follow within that section.
Configuring Remote Systems to Use Clientless SSL VPN
Features
This section describes how to set up remote systems to use clientless SSL VPN and includes the
following topics:
• Starting Clientless SSL VPN, page 1-107
• Using the Clientless SSL VPN Floating Toolbar, page 1-107
Table 1-10 Usernames and Passwords to Give to Users of Clientless SSL VPN Sessions
Login Username/
Password Type Purpose Entered When
Computer Access the computer Starting the computer
Internet Service Provider Access the Internet Connecting to an Internet service
provider
Clientless SSL VPN Access remote network Starting clientless SSL VPN
File Server Access remote file server Using the clientless SSL VPN file
browsing feature to access a
remote file server
Corporate Application Login Access firewall-protected internal
server
Using the clientless SSL VPN web
browsing feature to access an
internal protected website
Mail Server Access remote mail server via
clientless SSL VPN
Sending or receiving e-mail
messages