AnyConnect ASA laptop and iPad AnyConnect

Hello

I was wondering if there is a way to have the iPad AnyConnect SSl VPN Client and standard AnyConnect Client to connect to the same IP address on the external interface of the ASA and have the ASA determine if the system is and iPad or a normal laptop.  So, for example if I had SSL VPN configured on the SAA with an IP address of https://5.5.5.5 both users of the iPad and laptop users would connect ASA outside interface using this unique ip address.  Once authenticated, the ASA would be able to determine that the user is using an iPad and limit them or live in an area of the network and if the user is on your laptop by using the normal AnyConnect client pass through sales we have on our network and normal NAC security controls.

So basically I want to use the iPad and using a laptop an IP only, ASA, but according to the device direct them to various areas of the network that we are unable to install anti-virus software and what not on the iPad and want to direct them to an area where they can't do as much damage if they have been compromised.

Thank you

Hi you can use DAP in this case to scan on the client that you are coming from and apply different policies depending on the client that connects.

For example. You can apply a policy to all s BONES (mostly laptops) and if they enter the notebook computer category you can give them a different policy.

Also the presence of anti-virus software can also be detected strategies with ssl vpn.

http://www.Cisco.com/en/us/products/ps6120/products_white_paper09186a00809fcf38.shtml#T2

Let me know if it helps.

Tags: Cisco Security

Similar Questions

  • the photos on my iphone are not synchronized with my laptop and ipad

    recently, I noticed that the pictures that are on my iphone (6 last updated) are not in sync with my macbook (10.10.5) or my ipad. My ipad and macbook are synchronized. I just returned from a trip and want to get pictures from my phone to my laptop (and ipad). I have check all settings in icloud and they seem correct. any suggestions? Thank you.

    Welcome to the Apple community.

    Please start by telling us your 'My Photo Stream' and "iCloud library" settings on all of your devices. (Settings > Photos & camera on your device iOS and Photos > preferences > iCloud on your Mac)

    Please also indicate if there is no activity current synchronization on any of your devices (includes download, update, download, or preparation).

    If you have the business in one of these places, how many time does like that.

  • Can I use creative cloud on Mac, Windows based computer laptop and iPad?

    is - can anyone confirm that I can edit and save raw files on a Mac, IPad, laptop computer windows-based? I use the Mac mini at home but travel a lot for work and would like to so edit and save photos on computer based Windows Mobile, the iPad isn't for serious editing, but I use it sometimes

    Cloud license allows 2 activations http://www.adobe.com/legal/licenses-terms.html

    -Install on a 2nd computer http://forums.adobe.com/thread/1452292?tstart=0

    -Windows or Mac has no importance... 2 on the same operating system or 1 on each

    -Two activations on one account CAN NOT be used at the same time (to be noted in the link above of the license)

    -Special photography Plan includes Photoshop & Lightroom and Bridge & Mobile Lightroom

  • My laptop and my iPad give me the access code and no other options

    I had already downloaded firefox home on my laptop and my iPad. After some problems with the app on my iPad, I decided to remove the app on my iPad and reinstall it. I did not remove the app on my phone.
    I downloaded the app on my iPad now and try to add as a new device.

    After you select 'I already have a sync account', on my laptop and iPad, both devices are give me an access code and tell me to come in on the other device. I don't give me no other options.

    I'm obviously something wrong, can you please tell me what.

    Thank you

    Hi nzluke,

    Then you previously installed sync successfully on your laptop? You may need to redefine your account and for this you will need your recovery key and the following steps

    If you do not have the recovery key, your only option is to reset the recovery key. To do this, follow these simple instructions:

    1. Click on «Set up Firefox Sync»
    2. Click on 'Connect' as I already have an account.
    3. In this window, forget the code and click on 'I don't have the camera with me' right underneath the 3 boxes.
    4. In this window, under the 'Sync key' field, there is a paragraph with a link to the end. "I lost my other device."
    5. Click on it and follow the instructions. In the end, you'll be ready to go. Just reset your Firefox Home app and that's all.

    Hope this helps!

  • ASA 5545 and Anyconnect Licenses

    Currently, we use several devices to Cisco ASA 5545.  Initially, we learned that we were automatically allowed using the Anyconnect Secure Mobility client with our ASA devices.   With recent security issues, we are trying to move to a solution that supports TLS 1.2, and it seems that anyconnect Mobility Client 4.0 will do exactly that.   My question is, the automatic authorization supplied with the unit of 5545 ASA include Client Anyconnect 4.0?   After an exhaustive search, I am still unable to find this information.   Also, is there an official document detailing exactly what licenses is part of 5545 device, with respect to other Cisco Software Solutions?

    Thank you

    David

    All * ASAs include two licenses AnyConnect Premium "free." Which is designed primarily for the evaluation, as most businesses need more two simultaneous remote access users. However, if that's all you need is free and fully functional. It was designed around the Client AnyConnect Secure Mobility 3.x and earlier offer.

    From 4.0, there is a new model of licence for AnyConnect. It is explained in the Guide of command AnyConnect. While it is not currently applied by technical means, use of AnyConnect 4.0 requires having a license to do so.

    For some additional supporting documents as you initially requested, see also "Feature Licenses" of the Configuration Guide of the SAA.

    * Some models do not support remote access VPN and either do not have the feature available or cannot use the license - for example ASA 1000v and an ASA working in multiple context mode.

  • TimeCapsule wifi does not work for iphone and ipad, but doesn't work for laptops

    I just got a new 3 TB timecapsule to replace my old 1 TB timecapsule.  Everything seems in place and I transferred all my data to the new.  Our computers two apple laptops gets wifi nine immediately, but our two iphones and an ipad receive no wifi.  They show that they are connected to a new network, but not WiFi.  Can someone tell me what should I do?  Thank you!

    On the iphones and ipad clear on all networks known. Restart the device and make a new configuration of the network.

    If they are later version idevices... test in the same room as the TC. Still have problems reset the TC and give it a new configuration... Use very short names, without spaces and pure alphanumeric characters. Test first without password... It should work fine... Then add a password... Make sure that it is as pure of 8 to 20 alphanumeric characters.

  • My new Apple TV v4 does not smoothly on Airplay with my MacbookPro and Air laptops but with the iPhone and iPad Airlay gets so juddery and then goes off - laptop computer WiFi connections all that happens on clues?

    Devastated to find that the new AppleTV works great on Airplay / mirroring with the iPhone and iPad devices but completely useless on the NEW laptops.

    Trying to show any video for example utube creates immediately hop on the TV screen when you use the Macbook and in no time the WiFi connection is stunned.

    What is going on?

    I use ElCapitan, and the last 15 "16GB i7 Macbook MacbookPro and not expect a problem with streaming media.

    Absolutely well on Airplay with bith an iPhone 6 Plus and also an Air iPad

    This will be due to a network problem. There is a difference between mirroring of a phone/Tablet and grow to a full desktop in real-time

    Mmake that there is no other activity (other streaming, web browsing, backup network etc.)

    Try to connect the Apple TV via ethernet

    To see a current state of the network to obtain a report of istumbler or similar. Look for the strength of the signal, noise, networks nearby

    Test on another network

  • My iPad is not able to connect to my wi - fi network. I made an update to my router on my first laptop and I can't get an internet connecction on my iPad.

    My iPad is not able to connect to my wi - fi network.  I made an update to my router on my first laptop and I can't get an internet connecction on my iPad.  I'm invited to a password, but don't know what it is.  I'm looking for the password?

    Assuming that you have a wireless router at home that you need to know the wireless network SSID, encryption type (IE. WPA2 or WPA for example) and the encryption key and password / password.

    Many routers appear encryption key wireless to plain text. Copy in the iPad. Check the router site users manual or support to help manufacturers to enter the config pages.

    If the router does not have the key, you can also see in the properties Win 7 Wireless for your home network. Open network and sharing Center and click on Manage wireless networks left. Right click on your wireless network and select Properties. Click theSecurity tab and checkShow characters . Provide the administrator password to see the key.

    http://sdrv.Ms/Spor94

    More help from Apple...

    http://www.Apple.com/support/iPad/Assistant/WiFi/

    Apple iPad WiFi support forums...

    https://discussions.Apple.com/community/iPad/using_ipad?view=discussions#/?tagSet=1188

  • How to accompany the IDS in ASA 5505 and 5520?

    Dear All;

    We have the following configuration of HW for the ASA 5505 and ASA 5520, we add the functionality of system of detection of Intrusion (IDS) to the two ASA. My question is: what are the modules required to support this function, and what is the deference between IPS and IDS, fact the same Module both the feature?

    Part number: Description QTY.

    ASA5505-BUN-K9

    ASA 5505 appliance with SW 10 users, 8 ports, 3DES/AES

    1

    CON-SNT-AS5BUNK9

    SMARTNET 8X5XNBD ASA5505-BUN-K9

    1

    SF-ASA5505 - 8.2 - K8

    ASA 5505 Series Software v8.2

    1

    CAB-AC-C5

    Power supply cord Type C5 U.S.

    1

    ASA5500-BA-K9

    ASA 5500 license (3DES/AES) encryption

    1

    ASA5505-PWR-AC

    ASA 5505 power adapter

    1

    ASA5505-SW-10

    ASA 5505 10 user software license

    1

    SSC-WHITE

    ASA 5505 hood SSC of the location empty

    1

    ASA-ANYCONN-CSD-K9

    ASA 5500 AnyConnect Client + Cisco Security Office software

    1

    Part number: Description QTY.

    ASA5520-BUN-K9

    ASA 5520 appliance with SW HA, 4GE + 1FE, 3DES/AES

    2

    CON-SNT-AS2BUNK9

    SMARTNET 8X5XNBD ASA5520 w/300 VPN Prs 4GE + 1FE3DES/AES

    2

    ASA5520-VPN-PL

    ASA 5520 VPN over 750 IPsec User License (7.0 only)

    2

    ASA-VPN-CLNT-K9

    Cisco VPN Client (Windows Solaris Linux Mac) software

    2

    SF - ASA - 8.2 - K8

    ASA 5500 Series Software v8.2

    2

    CAB - ACU

    Power supply cord (UK) C13 BS 1363 2.5 m

    2

    ASA-180W-PWR-AC

    Power supply ASA 180W

    2

    ASA5500-BA-K9

    ASA 5500 license (3DES/AES) encryption

    2

    ASA-ANYCONN-CSD-K9

    ASA 5500 AnyConnect Client + Cisco Security Office software

    2

    SSM-WHITE

    ASA/IPS SSM hood of the location

    2

    Thanks in advance.

    Rashed Ward.

    Okay, I was not quite correct in my first post.

    These modules - modules only available for corresponding models of ASA.

    They all can act as IPS (inline mode) or IDS ("Promiscuous" mode), depending on how you configure your policies.

    When acting as IPS, ASA redirects all traffic through the module, then all the traffic is inspected and can be dropped inline if a signature is triggered.

    When she acts as an ID, ASA a few exemplary traffic is the module for inspection, but the actual traffic is not affected by the module, as it's not inline in this case.

    In addition, these modules can be both comdination. That is part of the traffic can be inspected "inline", when some other (more sensitive) traffic can be inspected in promiscuous mode.

    To better understand, familiarize themselves with this link:

    http://www.Cisco.com/en/us/docs/security/ASA/asa84/configuration/guide/modules_ips.html

  • ASA 1000V and ASA 5500

    I hope someone can help me to answer this question:

    Currently, we have redundant FWSM and consider a migration of standalone ASA 5500 series firewalls. However, we have a complete VMWare environment and look at the Nexus 1000V. I understand the Nexus 1000V and ESR architecture and implementation, and I don't understand that the ASA 1000V is designed for cloud environments. But I have a question about the ASA 1000V.

    Is it possible that a firewall series ASA 5500 be replaced by ASA 1000V? Basically, can an ASA 1000V to be a single firewall solution, or are that ASA 5500 is always necessary?

    Is there a datasheet anywhere that compares the ASA 1000V and ASA 5500 series?

    Thanks for your help.

    -Joe

    Depending on what you are using the ASA5500 series for now. If you use the ASA5500 for the remote access vpn and AnyConnect VPN, he will not rely on the first version of the ASA1000V yet.

    Here's the Q & A on ASA1000V which includes more information:

    http://www.Cisco.com/en/us/partner/prod/collateral/vpndevc/ps6032/ps6094/ps12233/qa_c67-688050.html

    Hope that answers your question.

  • How can I stop iMessages automatically appear on my laptop or iPad

    I want my iMessages to warn me about the message, but does not display the message on my iPad and laptop and desktop.  How can I change this?

    I also notice that I have received an iMessage on my iPhone 5, but does not display the entire message for anyone to see.

    Thanks for any help

    -You have a few options

    If you do not want to receive messages on the iPad and the Mac - disable continuity

    Continuity allows you to connect your iPhone, iPad, iPod touch and Mac - Apple Support

    If you want to disable notifications of

    On iPad

    Settings - Notifications - Messages - OFF toggle

    To stop the previews only

    Settings - Notifications - Messages - preview - switch on OFF (white)

    On Mac

     - System Prefs - Notifications - Messages - choose what you would like - you can stop or check show previews

  • E-mail account. Cannot send emails on iPhone and iPad after changing the password

    Due to my hotmail hacked on my laptop, I changed my password. I can now only receive emails on my iphone and iPad, but I cannot send emails. A notification comes up saying the user name or password is incorrect. Is there anything I can do to solve this problem. I remove the email account and put it in again with no luck.  Hoping someone can help...

    This means that the password is not accepted. It is typed wrong on the phone, or misspelled or you must reset the password again.

    Have you by any chance changed any server options when you were changing your e-mail iPhone settings?

  • E3000 and IPAD: no INTERNET

    Hello

    I recently purchase a LINKSYS E3000 and IPAD (Wifi only). The E3000 seeks to work well, it works with PC (Vista) Imac, (G-wireless laptop) as well as with the NAS server and also a Samsung TV.

    The E3000 is connected to the Internet by cable. All devices have a fixed IP address and two address DNS allows you to access the internet.

    No problem.

    But with the IPAD, I CAN get the connection of other devices, such as the NAS server, but when I go to INTERNET, I get the message no. INTERNET CONNECTION.

    I tried several thing, reboot E3000 and IPAD. Compensation IPAD network settings and entering again. No results.

    I tried several of the E3000 wireless setting, but without result, I have NO restriction to MAC address or IP restrictions.

    All the other device will connect to the internet, but the IPAD doesn't.

    When connect the IPAD to the E3000 and I with the Web interface of the router status are discovered something VERY STRANGE:

    The statespage (right) normally gives you the ip address and DNS of the internet by cable, but on the IPAD, it was EMPTY.

    When you open these pages on PC or Imac, it is full of information. On the IPAD, that this page is not completed.

    Help?

    PROBLEM SOLVED: IPAD could not manage IP address range 169.254.x.x

    I've tried for the last 10 days to fix the problem. I also installed the old G Linksys (WRT54G) router.

    But NO result. When I changed the IP address of the router and the IPAD on 192.168.x.x. address and I work. Good to know.

    Always very strange is that LINKSYS WRT54G and LINKSYS E3000 are not of any IP address in the status window.

    When I changed the range, he showed in both. Very strange!

    I used the 1.0.03 the E3000 and iPad 3.2.2 firmware.

  • Apple devices will not print not to 6700 Officejet, including the MacBook Pro and iPad

    I'm helping someone to implement their MacBook Pro and iPad to print wirelessly on their Officejet 6700. I have recently set them up with a new Apple Airport Extreme for their router. The printer connects to the wireless network. During the installation process of the printer is fine, that the MacBook can easily see the printer. The appropriate driver is installed. They also have a laptop Windows 7, which prints instanteously and has no problem whatsoever.

    When I try to print from the Mac, nothing prints. I open the print queue and it says 'Printing - a printer' and nothing ever comes of it. When you try to print from the iPad, you can see the printer and I select. However, after saying in print, said only dialog box: 'Connection to the printer' and he never - it just times out.

    Things I've tried:

    • Everything in this article which corresponds to Macs (10.8).
    • Reset the printing on Mac system.
    • Reset the printer to default settings.
    • The definition of the static IP address of the printer through the printer settings.
    • Setting the IP address of the printer via the Airport utility (after changing the automatic printer).
    • Restart the Mac after each attempt to remove the printer and adding again.
    • Using the official HP Officejet 6700 driver.
    • Use the Airprint driver.

    Other info:

    • Successfully, I can ping IP address of the printer from the MacBook Pro.
    • I can easily see the web page of configuration of the printer in the printer settings both by entering the IP address.
    • The printer is only about a month.
    • They bought this printer because the earlier had problems printing from all of their wireless devices. It is with a previous router in their ISP.

    At this point, I'm completely puzzled as to why the printer will print not these Apple devices. We have addressed all the issues that might be causing it: the network, the printer and the MacBook itself. I looked online and can't see any problem with people not being able to print to a wireless printer connected to an Airport Extreme. I saw some problems when the printer is connected via USB to an Airport Extreme, but this isn't our installation program.

    Any help would be greatly appreciated!

    Wow, I must admit, I had to do a lot of research to find something that you have not already tried! Thanks for your efforts so far @derick03 I accept the challenge of helping you get this to work.

    I have a vague feeling that the problem may have something to do with the router settings and to test my theory, I would like to try something for me.

    Please, open the preferences system, printing and scanning, click on the + symbol to add a printer, but this time, instead of the default tab, click the IP tab. Now let's add the printer using HP Jet Direct Protocol instead of the standard Hello.

    You can enter the IP address here, choose the HP Jet Direct and then select the printer driver, and then try to print. You will not be able to analyze this way, I just do this for diagnostic purposes. If you can print, it confirms the Hello Protocol is, and you will need to call Apple to make them turn on Hello, multicast and ensure that all the necessary ports are open.

    Not all wireless routers take load Hi or all features of Hello. Hello being the default method for the discovery of printers on a network, you must ensure that your wireless router supports Hello.
  • Calendar and contacts from blackBerry Smartphones don't synchronize with outlook 2013 (win8) - in collaboration with IPhone and Ipad air 5s

    Hi all

    I just moved to a new PC (ex: Sony Vaio with win 7 pro, outlook 10 pro > new: duo of vaio from sony with win 8, Outlook 13 home office 365). I used to sync outlook contacts and calendars with blackberry and iphone and ipad on my old laptop using the BlackBerry Desktop Manager.

    Now with my new PC, iphone and ipad are always works well and they synchronize with outlook: new entries on the outlook calendar and new contacts are added to my laptop and vice versa, but when I connect my Blackberry "BOLD" I n get the updates.

    I confirm that I use the latest version of the desktop manager 7.0.

    My organizing Office Manager is configured to sync both calendar and contacts

    Any idea please?

    Thanks in advance for your help

    MC

    Hello and welcome to the community!

    Unfortunately, you went beyond the platforms supported, see:

    Outlook 2013 is not supported at this time.

    I'm sorry.

Maybe you are looking for