Cisco Cisco AMP 7150 Technical Manual

Page of 9
Contents
Introduction
Prerequisites
Requirements
Components Used
AnyConnect deployment for AMP Enabler through ASA
Step 1: Configuring Anyconnect AMP Enabler Client profile
Step 2: Edit the Group-Policy to Download the AnyConnect AMP Enabler
Step 3: Download the FireAMP Policy
Step 4: Download Web Security Client Profile
Step 5: Connect with AnyConnect and Verify the Installation of the Module
Step 6: Verify the VPN Connection and the AMP Enabler
Step 7: Check AnyConnect and Verify If Everything is Installed
Step 8: Test with an Eicar String Contained in a zip File in a Computer
Step 9: Deployment Summary
Step 10: Thread Detection Verification
Additional Information
Related Document
Related Cisco Support Community Discussions
Introduction
This document describes the method to install and configure the Advanced Malware Protection
(AMP) module on an enduser system using AnyConnect.
The AnyConnect AMP Enabler is used as a medium for deploying the AMP for Endpoints. It
pushes the AMP for Endpoints software to a subset of endpoints from a server hosted locally
within the enterprise and installs AMP services to its existing user base. This approach provides
AnyConnect user base administrators with an additional security agent that detects potential
malware threats happening in the network, removes those threats, and protects the enterprise
from compromise. It saves bandwidth and time taken to download, requires no changes on the
portal side, and can be done without authentication credentials being sent to the endpoints.
Prerequisites
Requirements
Anyconnect Secure Mobility Client version 4.x
FireAMP / AMP for Endpoints
AnyConnect Plus / Apex Licenses
ASDM version 7.3.2 or higher
Components Used