14.2 Configuring Client Security Levels

You can configure SSL VPN server to send traffic on the SSL VPN tunnel based on the level of security configured at the client machine. You can decide the categories of software that you want to be present for each level. You can configure the following security levels:

In some circumstances you cannot configure a custom security level of a client.

NOTE:If you want to impose the new policies for clients that are already connected, you must force the clients to reconnect by restarting the SSL VPN server.

To configure a client security level:

  1. In the Administration Console, click Devices > SSL VPNs > Edit.

  2. Select Client Security Levels from the Policies section. The Client Security Levels page is displayed.

    The following security levels can be configured:

    Least Secure: You can configure this level for a client that has met the minimal requirement for the client integrity check.

    Moderately Secure: You can configure this level for a client that has met the moderate requirements for the client integrity check.

    Secure: You can configure this level for a client that has met all the requirements for the client integrity check.

    None: You can configure this level to provide minimal access to resources for a client, who that has failed the client integrity check.

  3. Click a security level to configure. The Edit Security Level Definition page is displayed.

    Any category that is not enabled in the Client Integrity Check policy appears as dimmed.

  4. To assign a category for a level, select categories under each operation system, then click Assign.

  5. To remove a category for a level, select the category, then click Remove.

  6. To save your modifications, click OK, to save your modifications, then click Update on the Configuration page.