Cisco Cisco AnyConnect Secure Mobility Client v2.x Technical Manual

Page of 8
AnyConnect SSL over IPv4+IPv6 to ASA
Configuration
Document ID: 115735
Contributed by Herbert Baerten and Marcin Latosiewicz, Cisco TAC
Engineers.
Jan 18, 2013
Contents
Introduction
 Prerequisites
      Requirements
      Components Used
      Conventions
 Configuration
 Verify
 Related Information
Introduction
This document provides a sample configuration for the Cisco Adaptive Security Appliance (ASA) to allow the
Cisco AnyConnect Secure Mobility Client (referred to as "AnyConnect" in the remainder of this document) to
establish an SSL VPN tunnel over an IPv4 or IPv6 network.
In addition, this configuration allows the client to pass IPv4 and IPv6 traffic over the tunnel.
Prerequisites
Requirements
In order to successfully establish an SSLVPN tunnel over IPv6, meet these requirements:
End−to−end IPv6 connectivity is required
• 
The AnyConnect version needs to be 3.1 or later
• 
The ASA software version needs to be 9.0 or later
• 
However, if any of these requirements are not met, the configuration discussed in this document will still
allow the client to connect over IPv4.
Components Used
The information in this document is based on these software and hardware versions:
ASA−5505 with software version 9.0(1)
• 
AnyConnect Secure Mobility Client 3.1.00495 on Microsoft Windows XP Professional (without IPv6
support)
• 
AnyConnect Secure Mobility Client 3.1.00495 on Microsoft Windows 7 Enterprise 32−bit
•