Does anyone have any details about this? Apparently Juniper is working on a unified client which will work with the SSLVPN independant of switch code.
I'm curious if this will also work as a replacement to NS-Remote.
If anyone has any details please share..
Thanks,
Justin
Solved! Go to Solution.
Here's the final answer:
"NC can not be independent of IVEÕs base software release. Once IVE code is updated, all connecting NC clients will be updated to match IVEÕs code base."
Looks like it will be this way forever. JustinJust to add my 2c's worth; Having a client that requires administration privilege to install and is
directly linked to the version on the server is a design flaw I feel. They need to be able to have
backward's compatibility so we can upgrade our user base independant of when the server is
updated.
@drf:
If you can go to other sites and the host checker works it could be a conection missing from User Realm --> Authentication Policy -- Host Checker.
Hi drf
As you already know, there is no option to turn off the auto upgrade of NC. The reason is that we can not provide backwards compatibility for older NC clients working with newer SA-OS versions because of changes in the code and features supported.
Regards
T.
yet Cisco and every other SSLVPN Provider have seemed to make this work very nicely. tkolb, is that Juniper can't do it or that Juniper does not want to invest the time in it. This is a major flaw in the design of the Network Connect.
As someone stated earlier in the thread, to upgade the switch code, Network Connect Client Code and Host checker for 3000 users all on the same day is simply too much change. Fine for small operations but our Help-Desk cant handle that kind of call volume when things go wrong. (And things do go wrong during the upgrade.)