CHAPTER
 
1-1
Cisco AnyConnect VPN Client Administrator Guide
OL-12950-012
1
Introduction
This book describes a process for getting the Cisco AnyConnect VPN Client up and running on your 
central-site security appliance and on your remote users’ PCs. In this context, PC refers generically to 
Windows, Mac, and Linux devices, but the focus in this document is primarily on Windows PC users.
AnyConnect Client Features
The Cisco AnyConnect VPN Client is the next-generation VPN client, providing remote users with 
secure VPN connections to the Cisco 5500 Series Adaptive Security Appliance running ASA version 8.0 
and higher or ASDM 6.0 and higher. It does not connect with a PIX device nor with a VPN 3000 Series 
Concentrator. 
Note PIX does not support SSL VPN connections, either clientless or AnyConnect.
The AnyConnect client supports Windows Vista, Windows XP and Windows 2000, Mac OS X (Version 
10
.4 or later) on either Intel or PowerPC, and Red Hat Linux (Version 9 or later). See the Release Notes 
for the full set of platform requirements and supported versions.
As the network administrator, you configure the AnyConnect clie
nt features on the security appliance. 
Then, you can load the client on the security appliance and have it automatically download to remote 
users when they log in, or you can manually install the client as an application on PCs. The client allows 
user profiles that are displayed in the user interface and define the names and addresses of host 
computers.
The network administrator can assign particular features to individual users or groups. The AnyConnect 
clie
nt includes the following features:
  • Datagram Transport Layer Security (DTLS) with SSL connections—Avoids latency and bandwidth 
problems associated with some SSL-only connections and improves the performance of real-time 
applications that are sensitive to packet delays. DTLS is a standards-based SSL protocol that 
provides a low-latency data path using UDP. For detailed information about DTLS, see RFC 4347 
(h
ttp://www.ietf.org/rfc/rfc4347.txt).
  • Standalone Mode—Allows a Cisco AnyConnect VPN client to be established as a PC application 
without the need to use a web browser to establish a connection.
  • Command Line Interface (CLI)—Provides direct access to client commands at the command 
prompt.
  • Microsoft Installer (MSI)—Gives Windows users a pre-install package option that provides 
installation, maintenance, and removal of AnyConnect client software on Windows systems.