File objects

File objects are configuration element that

  • represent files used in configurations, typically for remote access VPN policies

  • can contain Secure Client Profile and Secure Client Image files, and

  • are created, edited, and managed through the Add and Edit File Object dialog boxes.

File object management and usage

File objects are used to manage files for remote access VPN policies and are associated with profiles and images for deployment to endpoints.

File objects can be created and edited using the Add and Edit File Object dialog boxes. They are used in configurations for remote access VPN policies and can contain Secure Client Profile and Secure Client Image files.

Create profiles for each AnyConnect module and Secure Client Management VPN using independent profile editors. Deploy these profiles to meet administrator-defined end user requirements and authentication policies on endpoints Secure Client only. This makes preconfigured network profiles available to end users

When you create a file object, the Cloud-Delivered Firewall Management Center makes a copy of the file in its repository. When you back up the database, these files are included. If you restore the database, the files are restored as well. To use a file in a file object, upload it through the interface, not directly to the file repository.

When you deploy configurations that specify a file object, the associated file is downloaded to the device in the appropriate directory.

You can take these actions for each file object:

  • Download: Download the Secure Client file.

  • Edit: Modify the file object details.

  • Delete: Delete the Secure Client file object. When you delete a file object, the associated file is not deleted from the file repository, only the object is deleted.

Navigation path

Objects > VPN > Secure Client File.

Fields

  • Name: Enter the name of the file to identify the file object; you can add up to 128 characters.

  • File Name: Click Browse to select the file. The file name and full path of the file are added when you select the file.

  • File Type: Choose the file type corresponding to the file you have selected. These file types are available:

    File Types

    Details

    Secure Client Image

    Select when you add the Secure Client image you have downloaded from the Cisco Software Download Center.

    You can associate any new or additional Secure Client images to the remote access VPN policy. You can also remove unsupported or end-of-life client packages that are no longer required.

    Secure Client VPN Profile

    Choose for the Secure Client VPN profile file.

    The profile file is created using the GUI-based Secure Client Profile Editor, an independent configuration tool. See the Secure Client Profile Editor chapter in the appropriate release of the Cisco Secure Client (including AnyConnect) User Guide for details.

    Secure Client Management VPN Profile

    Select when you add a profile file for the Secure Client management VPN tunnel.

    Download the Secure Client VPN Management Tunnel Standalone Profile Editor from Cisco Software Download Center if you have not done already and create a profile with required settings for the Secure Client management VPN tunnel.

    AMP Enabler Service Profile

    The profile is used for the Secure Client The AMP Enabler and this profile are deployed to endpoints from Firewall Threat Defense when a user connects to the VPN using remote access.

    Feedback Profile

    You can add a Customer Experience Feedback profile and select this type to receive information about the features and modules customers have enabled and use.

    ISE Posture Profile

    Choose if you are adding a profile file for the Secure Client ISE Posture module.

    NAM Service Profile

    Configure and add the NAM profile file using the Network Access Manager profile editor.

    Network Visibility Service Profile

    Profile file for Secure Client Network Visibility module. You can create the profile using the NVM profile editor.

    Umbrella Roaming Security Profile

    You must select this file type if you are deploying the Umbrella Roaming Security module using the .json file created using the profile editor.

    Web Security Service Profile

    Select this option when you add a profile file for the Web security module.

    HostScan Posture Package

    Select when you add a Secure Firewall Posture Package file. This file is used while configuring a Dynamic Access Policy (DAP) to collect information about the operating system, anti-virus, anti-spyware, and firewall software installed on the endpoints.

    Secure Client External Browser Package

    For selecting an external browser package file for SAML single sign-on web authentication.

    You can add the package file when a new version of the external package file is available.

    For more information, see Configure AAA Settings for Remote Access VPN.

    Description

    Add an optional description.