Cisco Cisco ASA 5510 Adaptive Security Appliance Guide De Dépannage

Page de 9
Refer to Cisco Security Advisory Cisco ASA 5500 Series Adaptive Security Appliance
Clientless VPN ActiveX Control Remote Code Execution Vulnerability.
♦ 
Refer to Cisco Bug ID CSCtr00165. 
♦ 
Java Client
Note
: Cisco redistributes plug-ins without any changes. Due to GNU General Public License, Cisco does not
alter or extend the plug-in application. The properJavaRDP plug-in is an open-source application, and any
issues with the plug-in software must be addressed by the project owner.
Symptoms
: Processor-intensive applications are run on the remote computer when accessed via the
Java RDP Client, and a Java Applet crash is experienced.
This error message might display: FATAL net.propero.rdp  - javax.net.ssl.SSLException:
Connection has been shutdown: ....
.
♦ 
The behavior is triggerd when switching between two or more CPU-intensive applications
rapidly.
♦ 
This Issue is fixed in plug-in Versions rdp.2012.6.4.jar and later. 
♦ 
Workaround:
Connect with use of the ActiveX Client.
◊ 
Do not switch between applications rapidly.
◊ 
♦ 
• 
Symptoms
: The Java RDP Client generates this error message: net.propero.rdp.Rdp -
java.net.SocketException: Socket is closed java.net.SocketException: Socket is closed
, and
then closes.
The issue is caused by a tunnel-group that has a group-url configured with only the FQDN
(http://www.example.com, for example).
♦ 
Refer to Cisco bug ID CSCuh72888.
♦ 
Workaround:
Remove the group-URL entry without a "/" in the tunnel-group.
◊ 
Use the ActiveX Client.
◊ 
♦ 
• 
Symptoms
: Java RDP Client fails when it is connected to a Windows 8 computer.
The Java RDP Client does not currently have support for this.
♦ 
Refer to Cisco bug ID CSCuc79990
♦ 
Workaround:
Use the ActiveX RDP Client.
◊ 
Smart tunnel the Windows native RDP client (mstsc.exe).
◊ 
♦ 
• 
Symptoms
: The Java RDP Client fails with this error message: ARSigningException: Found
unsigned entry in resource:
https://10.105.130.91/+CSCO+3a75676763663A2F2F2E637968747661662E++/vnc/VncViewer.jar
.
This issue is caused by a bug in the ASA webVPN Java rewriter.
♦ 
Refer to Cisco bug ID CSCuj88114.
♦ 
Workaround: Downgrade to Java Version 7u40.
♦ 
• 
Updated: Nov 19, 2013
Document ID: 113600