05-09-2021 01:38 AM
Please advise about the differences between between anyconnect plus and apex subscription on NGFW 2100. Can both support SSL browser based remote vpn access?
When is apex recommended?
05-09-2021 01:46 AM - edited 05-09-2021 01:48 AM
@adeebtaqui SSL browser basesd Clientless WebVPN is not supported when using FTD software, it is still supported if using ASA software...but this maybe depreciated in future versions.
Refer to this conversation with Cisco
If you want SSL browser based access VPN access, Cisco recommends Duo Network Gateway instead.
Cisco AnyConnect licensing link with breakdown of comparisons.
https://www.cisco.com/c/dam/en/us/products/security/anyconnect-og.pdf
Apex is not recommended as such, but rather you choose it if you need the features listed above.
05-09-2021 01:57 AM
As ssl not supported, which type of vpn would anyconnect establish for remote access? Will it be easy for remote users to se vpn without ssl?
05-09-2021 02:05 AM
SSL/TLS and IPSec are both supported when using AnyConnect VPN client.
It is just when connecting to a web browser (Clientless VPN/WebVPN) using https that is not supported.
Hope that clears things up for you.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide