Dual Monitors functionality with SSL connections?

Unanswered Question
Aug 27th, 2008
User Badges:

Hi, I'm configuring a new ASA5510 w/ SSL licensing and a coworker asked me some questions on functionality of remote access. I'm new to the ASA device and have never configured one before.


Both of these questions are assuming the user is at home and using their personal computer (not a laptop or work computer). If a user successfully creates a SSL connection, I understand it's basically like a remote desktop session to that particular user's desktop.

Q1: If the work computer is running dual LCD screens, are there any remote desktop options that will allow the home user to do the same or even to switch? Can those settings be saved as if it was a profile?

Q2: Same situation only the home user would like to print to his personal printer at home.


Thanks


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Loading.
Farrukh Haroon Wed, 08/27/2008 - 11:38
User Badges:
  • Red, 2250 points or more

1) If the remote desktop application supports it so will the VPN, if I got your question correctly.


2) if you want the VPN user to keep using his local printer you can enable 'Local Lan Access' for the VPN.


Regards


Farrukh

mcbernie11 Wed, 08/27/2008 - 11:59
User Badges:

1) I figured we had to use Cisco's version of remote desktop. I didn't know that we have a choice of which remote desktop app we can use.


2) Can the end user change this 'Local LAN Access' setting during the VPN session?



mcbernie11 Wed, 08/27/2008 - 17:54
User Badges:

Thanks for the responses Farrukh. I'm reading the config example now.


I'm trying to visualize the step by step process the end user would go through in order to remotely connect.


With my previous employer, I've used and I'm most familiar with using the ipsec VPN Client. Now, with my new employer I'm tasked with setting up a remote access solution using SSL.


The new company uses a Sonicwall solution that works like this:

1. https://vpngateway

2. user authentication with AD login

3. CompanyName Virtual Office

4. there is a pre-configured bookmark (remote access) for only that particular end user's desktop (forces static ip address)

5. WinXP login prompt

6. connection completed to end user's desktop with the normal group policies applied


I've never seen/used a remote access solution like this and was wondering if Cisco's clientless SSL works the same.


mcbernie11 Wed, 08/27/2008 - 18:01
User Badges:

This brings me to a new question on setting up a remote access solution.


anyconnect client vs. SSL


Is there a remote access decision guide?

Farrukh Haroon Wed, 08/27/2008 - 23:51
User Badges:
  • Red, 2250 points or more

I don't know any Cisco document, but it should be covered in this book.


http://safari.ciscopress.com/9780768681956/ch03


But to be honest, there is no choice here. SSL will age out, forget it! Anyconnect is the one targetted for most/all of the new cool features and future developement.


Also have a look at this link:


http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6586/ps6635/ps7180/prod_brochure09186a00801f0a72_ns710_Networking_Solutions_Brochure.html


Regards


Farrukh

Farrukh Haroon Wed, 08/27/2008 - 23:52
User Badges:
  • Red, 2250 points or more

Also your original question, most of this can be done with the Cisco SSL VPN Solution also. Specially on the ASA. The router SSL VPN solution is still not so complete.


Regards


Farrukh

mcbernie11 Thu, 08/28/2008 - 01:21
User Badges:

another great reference

http://forum.cisco.com/eforum/servlet/NetProf;jsessionid=5F65D08D4BADADCABD18C73CF5C9E53B.SJ3A?page=netprof&forum=Virtual%20Private%20Networks&topic=Security&topicID=.ee6b2b8&fromOutline=&CommCmd=MB%3Fcmd%3Ddisplay_location%26location%3D.2cc18a4d



I've learned a great deal on remote access in the past couple of hours. Thank you for taking the time to help me understand more and point me in the right direction.


Best Regards

Farrukh Haroon Thu, 08/28/2008 - 01:55
User Badges:
  • Red, 2250 points or more

No problem at all, and let me know if you need any further assitance.


Thanks for the link :) and please rate if you find any posts helpful.


Regards


Farrukh

Actions

This Discussion