1-21
Cisco ASA Series CLI Configuration Guide
Chapter 1 Introduction to the Cisco ASA
New Features
Clientless SSL VPN:
Server Certificate Validation
This feature enhances clientless SSL VPN support to enable SSL server
certificate verification for remote HTTPS sites against a list of trusted CA
certificates.
We modified the following commands: ssl-server-check, crypto, crypto ca
trustpool, crl, certificate, revocation-check.
We modified the following screen: Configuration > Remote Access VPN >
Certificate Management > Trusted Certificate Pool.
AnyConnect Performance Improvements This feature improves throughput performance for AnyConnect TLS/DTLS
traffic in multi-core platforms. It accelerates the SSL VPN datapath and
provides customer-visible performance gains in AnyConnect, smart tunnels,
and port forwarding.
We modified the following commands: crypto engine accelerator-bias and
show crypto accelerator.
We modified the following screen: Configuration > Remote Access VPN >
Advanced > Crypto Engine.
Custom Attributes Custom attributes define and configure AnyConnect features that have not yet
been added to ASDM. You add custom attributes to a group policy, and define
values for those attributes.
For AnyConnect 3.1, custom attributes are available to support AnyConnect
Deferred Upgrade.
Custom attributes can benefit AnyConnect clients configured for either
IKEv2/IPsec or SSL protocols.
We added the following command: anyconnect-custom-attr.
A new screen was added: Configuration > Remote Access VPN > Network
(Client) Access > Advanced > AnyConnect Custom Attributes.
Table 1-5 New Features for ASA Version 9.0(1)/ASDM Version 7.0(1) (continued)
Feature Description