jheary
Distinguished Systems Engineer

Cisco updates it SSLVPN solution with performance improvements and Windows Mobile support

Analysis
Jan 28, 20093 mins

Cisco recently released a new version of its Anyconnect SSLVPN client that adds support for Windows Mobile 6.1, 6.0 and 5.0 touch-screen devices. The new Anyconnect 2.3 Windows Mobile requires a special license and must have ASA Release 8.0.3 or higher running on the security appliance. Anyconnect 2.3 also includes new support for machine certificates and Head-end controlled client preferences templates as well as faster connect time for end-users. Pricing on the Anyconnect Mobile client is not yet formalized. For an evaluation license contact your Cisco account team. Cisco also released a new version of its Cisco Secure Desktop (CSD) SSLVPN application as well. The new CSD 3.4 version introduces significant performance enhancements for Host Scan. In fact Host Scan has been redesigned to include performance increases and an improved user experience during Host Scan. In case you are not familiar with CSD it is a multifunctional component of the Cisco SSLVPN Solution. Its main features are

  • Host Scan and System watermark checks – Host Scan works very much like a NAC function. It supports hundreds of versions of A/V, A/S and client FW clients.
  • Secure Desktop Session – Dynamically establishes an AES encrypted “hard drive” partition where all downloaded data and files from the SSLVPN session are stored. Upon disconnection, secure desktop will run a DOD spec erase to make sure all data is securely removed. This data includes cookies, browser history and temp files, all downloaded content, and more.
  • Cache Cleaner – This is an alternative to CSD which will erase traces left by the SSLVPN session from the browser used.
  • Keystroke Logger and Host Emulation Detection – Pretty self explanatory, detects the presence of a key logger or if the remote operating system is running over virtualization software.
  • For a complete list of supported mobile devices see here: http://www.cisco.com/en/US/docs/security/vpn_client/anyconnect/anyconnect23/release/notes/anyconnect23rn.html#wp878382 To read the CSD 3.4 release notes go here: http://www.cisco.com/en/US/docs/security/csd/csd34/release/notes/csdrn34.html To read the Anyconnect 2.3 release notes go here: http://www.cisco.com/en/US/docs/security/vpn_client/anyconnect/anyconnect23/release/notes/anyconnect23rn.html The opinions and information presented here are my personal views and not those of my employer.
    More from Jamey Heary: Credit Card Skimming: How thieves can steal your card info without you knowing it Cisco enters the crowded AV and DLP client marketCisco’s new ASA code allows you to securely take your Cisco IP Phone with you anywhereCisco targets Symantec, McAfee with its new antivirus client Google’s Chrome raises security concerns and tastes like chicken feet a>Go to Jamey’s Blog for more articles on security.

    *

    *

    *

    *

    *

jheary

Jamey Heary, CCIE #7680, is a Distinguished Systems Engineer at Cisco Systems. Jamey sits on the PCI Security Standards Council- Board of Advisors where he provides strategic and technical guidance for future PCI standards. Jamey has authored several security books, his latest is Cisco ISE for BYOD and Secure Unified Access. He also has a patent on a new DDoS mitigation and firewall IP reputation technique. Jamey leads numerous security advisory boards for Cisco Systems and is a founding member of the Colorado Healthcare InfoSec Users Group. He is also recognized as a Distinguished Speaker at Cisco Live. He has been working in the IT field for 19 years and in IT security for 15 years.

More from this author