Guidelines for Configuring Secure Client Modules
-
All Secure Client modules are supported from AnyConnect 4.8 and later, and Secure Client 5.0.
-
Different modules support profiles with different file extensions. The following table lists the modules and the supported file extensions of their profiles:
Supported File Extensions of Profiles Module
File Extension
AMP Enabler
*.xml, *.asp
Feedback
*.xml
ISE Posture
*.xml, *.isp
Network Access Manager
*.xml, *.nsp
Network Visibility
*.xml, *.nvmsp
Umbrella Roaming Security
*.xml, *.json
Web Security
*.xml, *.wsp, *.wso
-
You can add only one entry per client module. You can edit or delete an entry for a module.
-
If you plan to use ISE posture and Network Access Manager modules on a Windows OS, you must install Network Access Manager before you use the ISE Posture module.
-
If you enable the Umbrella Roaming Security module, ensure that you disable the Always send DNS requests over tunnel option under split tunnelling in the VPN group policy.
-
If you want to use SBL, then you must enable SBL in the Secure Client VPN profile.