<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Exactly, you simply use the in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780668#M160065</link>
    <description>&lt;P&gt;Exactly, you simply use the ASA as a web proxy as you would with any other intranet website that you proxy through the ASA. Except for the mentioned bug, the proxying in principle seems to work ok. Maybe one would need to check on performance, since guac has fallback mechanisms built in (switches from websockets to http tunnel automatically). Maybe using a http tunnel has more performance impact on the ASA I don't know.&lt;/P&gt;</description>
    <pubDate>Fri, 02 Sep 2016 20:31:58 GMT</pubDate>
    <dc:creator>jer0nim0x</dc:creator>
    <dc:date>2016-09-02T20:31:58Z</dc:date>
    <item>
      <title>ASA WebVPN: when will Java and ActiveX be gone and HTML5 be used?</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780659#M160056</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;
&lt;P&gt;I am posting this in the Firewalling forum since it is related to ASA.&lt;/P&gt;
&lt;P&gt;After reading this (&lt;A href="http://www.engadget.com/2016/01/27/oracle-java-plug-in-death/" class="external-link" rel="nofollow" style="color: #3b73af; text-decoration: none;" target="_blank"&gt;http://www.engadget.com/2016/01/27/oracle-java-plug-in-death/&lt;/A&gt;) I was wondering when the ASA will go away from using "exotic" plugins/technologies to perform the WebVPN and use more modern technologies like HTML5 instead.&lt;/P&gt;
&lt;P&gt;There are nice open-source products like Guacamole (&lt;A href="http://guac-dev.org/" target="_blank"&gt;http://guac-dev.org/&lt;/A&gt;) to name only one that show how easy it can be. When will Cisco adopt such a solution and modernize the ASA?&lt;/P&gt;
&lt;P&gt;Anyone got a roadmap where WebVPN is headed?&lt;/P&gt;
&lt;P&gt;Bye,&lt;/P&gt;
&lt;P&gt;Marki&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 07:14:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780659#M160056</guid>
      <dc:creator>jer0nim0x</dc:creator>
      <dc:date>2019-03-12T07:14:10Z</dc:date>
    </item>
    <item>
      <title>I agree!!!</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780660#M160057</link>
      <description>&lt;P&gt;I agree!!!&lt;/P&gt;</description>
      <pubDate>Wed, 03 Feb 2016 10:17:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780660#M160057</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2016-02-03T10:17:18Z</dc:date>
    </item>
    <item>
      <title>You should be able to deploy</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780661#M160058</link>
      <description>&lt;P&gt;You should be able to deploy Guacamole directly behind the ASA. In this manner you would just use the ASA for clientless&amp;nbsp; web authentication and then have a URL link to the Guacamole server.&lt;/P&gt;
&lt;P&gt;The ASA now supports WebSocket so it can proxy HTML5 just fine. I have tested it with Ericom HTML5 and it works nicely and only took about 15 minutes to set up completely. I will run a test with Guacamole as soon as I have some time and let you know how it works.'&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Hope this helps.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Mark&lt;/P&gt;</description>
      <pubDate>Tue, 29 Mar 2016 22:54:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780661#M160058</guid>
      <dc:creator>mabernar</dc:creator>
      <dc:date>2016-03-29T22:54:45Z</dc:date>
    </item>
    <item>
      <title>I thought about it. However</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780662#M160059</link>
      <description>&lt;P&gt;I thought about it. However that would be another software stack which would be somewhat exposed and needed to be taken care of separately.&lt;/P&gt;
&lt;P&gt;Also I'm not sure what "now" means. Currently we are stuck with ASA software 9.1 and can't go any further than that.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Mar 2016 06:47:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780662#M160059</guid>
      <dc:creator>jer0nim0x</dc:creator>
      <dc:date>2016-03-30T06:47:51Z</dc:date>
    </item>
    <item>
      <title>Hi Mark,</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780663#M160060</link>
      <description>&lt;P&gt;Hi Mark,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Were you able to test Guacamole? A few weeks ago our team went looking for a robust clientless access method (for customers who couldn't install the Anyconnect client), and also came across Apache Guacamole as a possible solution. Initial testing is showing disconnects and poor performance (or inability to even load the Guac page). We've tried the normal bookmark, proxy bypass and just tried smart tunnel, without success. While googling, I found this page today. We are still working it, but I'm very interested in if you were able to use Guacamole behind webvpn - and if you could share your relevant ASA webvpn configuration. Thank you.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jun 2016 20:36:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780663#M160060</guid>
      <dc:creator>strattner</dc:creator>
      <dc:date>2016-06-24T20:36:07Z</dc:date>
    </item>
    <item>
      <title>I have the same (non-working)</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780664#M160061</link>
      <description>&lt;P&gt;I have the same (non-working) behavior on an ASA 5520 with software 9.1.7(6). I will try 9.1.7(7) tomorrow as I see some WebVPN bugs were fixed. One should note that there are specific instructions when proxying Guacamole here: &lt;A href="https://guacamole.incubator.apache.org/doc/gug/proxying-guacamole.html" target="_blank"&gt;https://guacamole.incubator.apache.org/doc/gug/proxying-guacamole.html&lt;/A&gt; Of course, there is no mention of a Cisco ASA &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt; They mainly write about turning proxy buffering off and setting some headers explicitely. For my part, I see my browser accessing 'ping.html' on the ASA when clicking on a connection. Then it hangs.&lt;/P&gt;
&lt;P&gt;Actually, IF the guacamole home page loads correctly, then I can click on a connection and if I reload the current page in the browser then the RDP session actually starts. That's a bit tricky.......&lt;/P&gt;</description>
      <pubDate>Thu, 21 Jul 2016 21:00:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780664#M160061</guid>
      <dc:creator>jer0nim0x</dc:creator>
      <dc:date>2016-07-21T21:00:30Z</dc:date>
    </item>
    <item>
      <title>Hey Jer0nim0x;</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780665#M160062</link>
      <description>&lt;P&gt;Hey Jer0nim0x;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Sorry, I just now saw this. I haven't been able to test Guacamole but plan to soon. I will post my results if I get anywhere. I found Ericom very easy to configure so I was trying to recommend that a customer.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Mark&lt;/P&gt;</description>
      <pubDate>Wed, 31 Aug 2016 21:24:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780665#M160062</guid>
      <dc:creator>mabernar</dc:creator>
      <dc:date>2016-08-31T21:24:58Z</dc:date>
    </item>
    <item>
      <title>I tried it and it works</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780666#M160063</link>
      <description>&lt;P&gt;I tried it and it works pretty well. You have to be aware of bug&lt;/P&gt;
&lt;H1 class="bugTitle"&gt;Cisco Bug: CSCva86626 - HTML5: Guacamole server requires page refresh&lt;/H1&gt;
&lt;P&gt;though.&lt;/P&gt;</description>
      <pubDate>Thu, 01 Sep 2016 07:12:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780666#M160063</guid>
      <dc:creator>jer0nim0x</dc:creator>
      <dc:date>2016-09-01T07:12:58Z</dc:date>
    </item>
    <item>
      <title>Thanks for the reply</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780667#M160064</link>
      <description>&lt;P&gt;Thanks for the reply Jer0nim0x;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Did you find any type of config guide for how to set it up with the ASA? I am interested in configuring it but there is not much documentation. Ericom sits on the server and really brokers the HTML5 connection, so I only needed a bookmark on my webvpn server. is that the case with Guac?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks in advance&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Mark&lt;/P&gt;</description>
      <pubDate>Fri, 02 Sep 2016 20:24:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780667#M160064</guid>
      <dc:creator>mabernar</dc:creator>
      <dc:date>2016-09-02T20:24:10Z</dc:date>
    </item>
    <item>
      <title>Exactly, you simply use the</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780668#M160065</link>
      <description>&lt;P&gt;Exactly, you simply use the ASA as a web proxy as you would with any other intranet website that you proxy through the ASA. Except for the mentioned bug, the proxying in principle seems to work ok. Maybe one would need to check on performance, since guac has fallback mechanisms built in (switches from websockets to http tunnel automatically). Maybe using a http tunnel has more performance impact on the ASA I don't know.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Sep 2016 20:31:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780668#M160065</guid>
      <dc:creator>jer0nim0x</dc:creator>
      <dc:date>2016-09-02T20:31:58Z</dc:date>
    </item>
    <item>
      <title>Hi Mark, jer0nim0x - I've</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780669#M160066</link>
      <description>&lt;P&gt;Hi Mark, jer0nim0x - I've just set-up webvpn with a test Guacamole server for some testing. I found that once the refresh bug has been worked around, the connection drops&amp;nbsp;frequently on the RDP session. Also, the mouse and keyboard didn't work. Did you have to add any additional plug-ins? I assume you have got further in your testing than this? Failing that I might check the MTU in path to ensure nothing is being dropped or blocked. Any pointers or ideas would be gratefully received.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 12:19:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780669#M160066</guid>
      <dc:creator>Mathew Wallace</dc:creator>
      <dc:date>2016-09-08T12:19:24Z</dc:date>
    </item>
    <item>
      <title>I assume that your Guacamole</title>
      <link>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780670#M160067</link>
      <description>&lt;P&gt;I assume that your Guacamole setup works fine when not going through WebVPN? In my case I have problems with the keyboard layout, but that is independent of WebVPN.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2016 12:37:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-webvpn-when-will-java-and-activex-be-gone-and-html5-be-used/m-p/2780670#M160067</guid>
      <dc:creator>jer0nim0x</dc:creator>
      <dc:date>2016-09-08T12:37:00Z</dc:date>
    </item>
  </channel>
</rss>

