User Guide
Table Of Contents

Cisco AnyConnect Secure Mobility Solution Guide
Configuring AnyConnect Secure Mobility
18
Cisco AnyConnect Secure Mobility Solution Guide
–
No authentication required. Configure the Identity to not use
authentication. Users are identified by IP address.
–
Authentication required. Configure the Identity to apply to remote
users only and to transparently identify users by integrating with the
Cisco adaptive security appliance. Users are identified by the user name
using the IP address to user name mapping from the adaptive security
appliance.
3. Create other policies that use an Identity configured for remote users.
Configure all settings as business needs dictate. No particular policy
configurations are necessary for AnyConnect Secure Mobility.
For more information on enabling AnyConnect Secure Mobility and working with
remote users, see the “Achieving Secure Mobility” chapter in the IronPort
AsyncOS for Web User Guide for version 7.0 and later. You can access the
IronPort AsyncOS for Web User Guide in the online help from the Web Security
appliance web interface. You can also access the IronPort AsyncOS for Web User
Guide on cisco.com. For more information on accessing Cisco documentation, see
Additional Documentation, page 22.
Once AnyConnect Secure Mobility is enabled and policies are created for remote
users, you can view reports on the Web Security appliance for remote traffic.
Configuring ASA Support for AnyConnect Secure Mobility
To enable AnyConnect Secure Mobility on the adaptive security appliance, you
need information for accessing the Web Security appliance. Once the adaptive
security appliance and the Web Security appliance are configured to communicate
with each other, the adaptive security appliance can send traffic from AnyConnect
secure mobility clients to the Web Security appliance for scanning. The client
periodically checks to ensure that Web Security appliance protection is enabled.
Enable and configure AnyConnect Secure Mobility by using the Mobile User
Security (MUS) dialog box at Configuration > Remote Access VPN > Network
(Client) Access > Mobile User Security.
To configure the adaptive security appliance to support AnyConnect Secure
Mobility:
1. Upgrade the adaptive security appliance to Release 8.3.1.6 or later.
2. Upgrade ASDM to Release 6.3 or later.