cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
6972
Views
5
Helpful
3
Replies

Anyconnect plus vs apex

adeebtaqui
Level 4
Level 4

Please advise about the differences between between anyconnect plus and apex subscription on NGFW 2100. Can both support SSL browser based remote vpn access?

 

When is apex recommended?

3 Replies 3

@adeebtaqui SSL browser basesd Clientless WebVPN is not supported when using FTD software, it is still supported if using ASA software...but this maybe depreciated in future versions.

 

Refer to this conversation with Cisco

https://community.cisco.com/t5/security-ccp-discussions/ask-me-anything-network-security-firewall/td-p/4151559/page/2

 

If you want SSL browser based access VPN access, Cisco recommends Duo Network Gateway instead.

https://duo.com/docs/dng

 

Cisco AnyConnect licensing link with breakdown of comparisons.

https://www.cisco.com/c/dam/en/us/products/security/anyconnect-og.pdf

 

1.PNG

Apex is not recommended as such, but rather you choose it if you need the features listed above.

 

As ssl not supported, which type of vpn would anyconnect establish for remote access? Will it be easy for remote users to se vpn without ssl?

@adeebtaqui 

SSL/TLS and IPSec are both supported when using AnyConnect VPN client.

It is just when connecting to a web browser (Clientless VPN/WebVPN) using https that is not supported.

 

Hope that clears things up for you.