?
Solved

ASA SSL VPN essentials

Posted on 2011-09-20
4
Medium Priority
?
519 Views
Last Modified: 2012-05-12
i am looking for a easy to follow, how to setup SSL VPN essentials. i am buying the license. we are currently using the vpn client, can these co exist? i will remove old vpn cleint after ssl is installed and tested.
0
Comment
Question by:Hubman
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
4 Comments
 
LVL 18

Accepted Solution

by:
jmeggers earned 2000 total points
ID: 36569488
If you're talking about the IPsec VPN client, it can coexist with the AnyConnect client.  If you're talking about the AnyConnect client itself, it's the same client for premium and Essentials licenses.  If you're talking about the old SVC client, get rid of it.

If you're setting up the VPN, my advice is to use the wizard in ASDM.  Pretty easy to follow, the big stumbling block everyone seems to hit is NAT, but if you're currently using the IPSec client you should have already addressed that.  If you're converting from IPSec over to SSL, my suggestion would be to use the existing address pool, since you've probably already addressed the no-NAT issue for that address block.
0
 
LVL 1

Author Comment

by:Hubman
ID: 36569812
Cisco AnyConnect Essentials is the one I want to install. currently using the IPSec.
0
 
LVL 1

Author Comment

by:Hubman
ID: 36570799
How many hours should it take to configure if someone knows what they are doing?
0
 
LVL 18

Expert Comment

by:jmeggers
ID: 36926748
Sorry I didn't see your follow-up question.  A basic configuration on the ASA shouldn't take long for someone who knows what they're doing. Once you know the topology and how to handle NAT, etc. There's also an XML file to set up, there are typically files that have to be loaded onto the ASA (the client itself), so total configuration on the ASA, maybe 30 minutes.  Someone who already has everything worked out, files loaded, etc. can probably do it faster than that, it's generally not more than 10 commands or so on the ASA.  Usually when I'm working with a customer the slowdowns are they don't already have a TFTP server set up, they haven't pulled the client down from CCO, etc.  Those are the things that add time to the job.

AnyConnect Essentials doesn't allow for a lot of extras such as posture assessment, etc.  Those features require premium licenses and those features do require additional time to configure in ASDM.
0

Featured Post

When ransomware hits your clients, what do you do?

MSPs: Endpoint security isn’t enough to prevent ransomware.
As the impact and severity of crypto ransomware attacks has grown, Webroot has fought back, not just by building a next-gen endpoint solution capable of preventing ransomware attacks but also by being a thought leader.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
A 2007 NCSA Cyber Security survey revealed that a mere 4% of the population has a full understanding of firewalls. As business owner, you should be part of that 4% that has a full understanding.
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…
Suggested Courses
Course of the Month8 days, 10 hours left to enroll

764 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question