cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
991
Views
0
Helpful
3
Replies

Disabling compression for WebVPN client (Portal users) using APCF?

Nikhil Thakur
Cisco Employee
Cisco Employee

Hi All,

We are trying to disable compression for WebVPN users by the following command:

no compression http-comp all

But we are still seeing gzip/deflate in the PCAP captures.

At this time, I do not have the information related to ASA code but the device is ASA 5540.

My main concern or question is if we can disable compression for WebVPN clients using APCF or not.

Any suggestion would be really appreciated.

Regards,

Nick.AP

3 Replies 3

Jennifer Halim
Cisco Employee
Cisco Employee

Hi Nikhil,

Where are you seeing the gzip in the packet capture? How are you actually seeing the gzip because it should be SSL encrypted?

The compression would be between your WebVPN towards the ASA firewall, and once it has been decrypted on the ASA towards the internal host, the traffic will be clear text as normal. The encryption is only between client on the outside towards the ASA external interface.

Hope that helps.

Hi Jennifer,

Thank you very much for the quick response.

Sorry...It was my bad!

Actually, we are seeing gzip/deflate in the HTTP watch captures and not in PCAP.

Please let me know if that makes more sense to you.

Warm Regards,

Nick

Hi All,

Do you guys have any idea about what I am talking?

Please suggest.

Regards,

Nikhil Thakur.