I find it very annoying that csd is being launched when I connect via webvpn, but I do need csd when I connect with anyconnect. does anyone know how to get this working?
asa version 8.4
You can configure the CSD to be launched based on the tunnel-group but only if using Group-alias.
That is the only solution that I currently know.
Hope this helps.
I know this is a very old post, but I found the solution. I hope someone that stumbles upon this page will find this info useful.
As we all know, when navigating to the IP/FQDN of the ASA, as long as the URL is not matched against another connection profile, the DefaultWEBVPNGroup connection profile will be matched. The solution is to edit the connection profile DefaultWEBVPNGroup > Advanced > Clientless SSL VPN > Group URLs > Add > and here create the url of the ASAs IP (https://22.214.171.124) or FQDN (https://abc.net). Then, under "Group URLs" check to "Do not run Cisco Secure Desktop (CSD) on client machine when using group URLs ............
This will allow you to go to the main portal page and bypass CSD!!
Unfortunately, with this solution, you lose the ability to select an alias from the drop-down list.
With this solution.... users can technically connect to the Group URL via the anyconnect client directly right? Thus, bypassing CSD?
It would be nice if there was a way to bypass CSD ONLY for clientless... and always run it when using anyconnect...