Guidelines for Configuring Secure Client Modules

  • All Secure Client modules are supported from AnyConnect 4.8 and later, and Secure Client 5.0.

  • Different modules support profiles with different file extensions. The following table lists the modules and the supported file extensions of their profiles:

    Supported File Extensions of Profiles

    Module

    File Extension

    AMP Enabler

    *.xml, *.asp

    Feedback

    *.xml

    ISE Posture

    *.xml, *.isp

    Network Access Manager

    *.xml, *.nsp

    Network Visibility

    *.xml, *.nvmsp

    Umbrella Roaming Security

    *.xml, *.json

    Web Security

    *.xml, *.wsp, *.wso

  • You can add only one entry per client module. You can edit or delete an entry for a module.

  • If you plan to use ISE posture and Network Access Manager modules on a Windows OS, you must install Network Access Manager before you use the ISE Posture module.

  • If you enable the Umbrella Roaming Security module, ensure that you disable the Always send DNS requests over tunnel option under split tunnelling in the VPN group policy.

  • If you want to use SBL, then you must enable SBL in the Secure Client VPN profile.