Re: Web VPN URL-List on ASA (8.0)

From: Stuart Hare <stuart.hare_at_googlemail.com>
Date: Wed, 13 May 2009 19:50:36 +0100

Sadiq,

Port forwarding should work fine. URL Lists on the other hand are now
deprecated from the CLI configuration so not supported.
I beleive there may be some URL support when doing the SSL VPN via the ASDM
as there is extra functionality there apparently, but I havent tried it (
not being a fan of gui's and all ).
Stu
On Wed, May 13, 2009 at 12:43 PM, Sadiq Yakasai <sadiqtanko_at_gmail.com>wrote:

> I have been trying to get URL-Listing on 8.0 code and having a tough time
> doing this. Also. when portforwarding is envoked on the PC, the page just
> hangs and nothing appears in the dialog box that launches on the webbrowser
> (after the I successfully log into the WebVPN page), although ASA says the
> vpn-session is established and connected. See sample config for 8.0 below:
>
> username WEBUSER password oW41BWsG68c8N2FO encrypted
>
> webvpn
> enable Public
> port-forward PORTFORWARD 2023 191.1.118.10 telnet
> tunnel-group-list enable
>
> group-policy WEBVPN internal
> group-policy WEBVPN attributes
> vpn-tunnel-protocol webvpn
> webvpn
> port-forward name PORTFORWARD
> port-forward auto-start PORTFORWARD
> url-entry enable
>
> tunnel-group WEBVPN type remote-access
> tunnel-group WEBVPN general-attributes
> default-group-policy WEBVPN
> tunnel-group WEBVPN webvpn-attributes
> group-alias WEB enable
>
>
> Anyone knows if URL_List is even supported? They seem to be talking about
> some "Smart tunnels" feature. Is this like a replacement for the URL-List?
> I
> simply just dont see any information related to url-list on the config
> guide
> for 8.0
>
> Thanks as usual guys,
> Sadiq
>
> --
> CCIE #19963
>
>

-- 
Stuart Hare
stuart.hare_at_gmail.com
Blogs and organic groups at http://www.ccie.net
Received on Wed May 13 2009 - 19:50:36 ART

This archive was generated by hypermail 2.2.0 : Mon Jun 01 2009 - 07:04:42 ART