Automatic Client Upgrade from the Security Gateway
You can configure your Security Gateway to automatically upgrade Remote Access VPN clients the next time that they connect. When this occurs, the Security Gateway downloads the applicable package to the client. Endpoint users must have administrator permissions to install an upgrade.
You can have packages for different versions of the VPN client for Windows and Mac OS X on your Security Gateway at the same time. For example, you can have E80.60 for Mac and E80.62 for Windows at the same time.
To set up a Security Gateway to automatically install client upgrades:
-
Download Endpoint Security VPN for Mac E86.30 Signature for Automatic Upgrade.
-
Rename these files:
Original Name New Name Endpoint_Security_VPN.pkg
TRAC.pkg
Endpoint_Security_VPN.pkg.signature
TRAC.pkg.signature
ver.ini
trac_ver_osx.txt
-
Upload these files to this directory on the Security Gateway:
$FWDIR/conf/extender/CSHELL/
-
On a the Security Gateway, run these commands in the Expert mode:
-
chmod 750 TRAC.pkg
-
chmod 750 TRAC.pkg.signature
-
chmod 750 trac_ver_osx.txt
-
-
In SmartConsole, go to > Global properties > Remote Access > Endpoint Connect.
-
Select one of these Client upgrade mode options:
-
Do not upgrade - This option disables automatic upgrades from the Security Gateway. Automatic upgrades are not available for endpoint users.
-
Ask user - The user receives a prompt and can install immediately or at a later time.
If the user does not install the upgrade immediately, the prompt will show again in one week.
-
Always upgrade - The new package installs silently without user intervention. The user receives a notification once the upgrade completes successfully.
-
-
Install the Access Control policy on the Security Gateway.