Manage Secure Client images

Secure Client establishes secure SSL or IPsec IKEv2 connections to the Firewall Threat Defense device for remote users, providing full VPN access to corporate resources.

Client deployment and upgrade processes

The deployment process varies based on client installation status:

  • First-time installation: Users without a pre-installed client can enter the IP address of a clientless VPN-enabled interface in their browser to automatically download and install the Secure Client. The Firewall Threat Defense device detects the remote computer's operating system and delivers the appropriate client package, which automatically installs and establishes a secure connection.

  • Existing client upgrades: For users with a previously installed client, the Firewall Threat Defense device checks the client version upon authentication and upgrades it automatically if a newer version is available.

You can associate new or additional Secure Client images with the VPN policy. You can also remove packages that are unsupported or have reached end of life. Cloud-Delivered Firewall Management Center determines the operating system from the client package filename. If the file has been renamed and lacks OS information, manually select the correct operating system from the available list.