Guidelines for Secure Client customizations

Review these guidelines before you configure the Secure Client customizations.

General guidelines

  • By default, the DfltCustomization customization object is available in a Firewall Threat Defense device. You can get this file when you run the show run all tunnel-groups command.

    FTD# sh run all
    tunnel-group tunnelgroup webvpn-attributes
     customization DfltCustomization

    Ensure that you import the Secure Client profile XML file to the DfltCustomization object. When you import the customization object, the Cloud-Delivered Firewall Management Center checks the XML code for validity.

    For example:

    hostname# import webvpn customization DfltCustomization disk0:/csm/defaultcustomizationwebvpn.xml
  • Add the Windows Secure Client headend deployment package to the remote access VPN policy before deploying customization commands. You must include this package to support Windows, MacOS, or Linux clients.

Guidelines for icon and image customizations

  • Ensure customization object names match the Secure Client GUI filenames. File names are different for each operating system and are case-sensitive. For more information about the filenames, extensions, and sizes for each OS, see the Cisco Secure Client Administrator Guide.

  • Verify that image sizes are correct before deployment. Images are not displayed properly if the size is incorrect, and neither the Cloud-Delivered Firewall Management Center nor the Firewall Threat Defense validates image size.