Configure the Launch Application and Optimize Applications¶
Application Launch capability enables end-users to configure application to be launched at the beginning of Network Access Session. The Launch Application option allows administrators to define Rules and policies for routing traffic for specific applications when a user is connected through a VPN. This enables the users to deploy the access policies and launch the applications directly from the BIG-IP Next Central Manager.
An Optimized Application is a set of compression characteristics that are applied to traffic flowing from the network access client to a specific IP address, network, or host, on a specified port or range of ports.
Follow the steps to configure the Launch Application and Optimized Applications options:
Log in to the BIG-IP Next Central Manager. Navigate to the Go to Security Workspace > Security > Access > Policies.
Click the Start Creating button and select the required policy type. Available options are the Per-Session Policy and Per-Request Policy. For more information regarding the creation of the policies, refer to the How To: Create and manage policies using BIG-IP Central Manager.
On the selected policy type panel, navigate to the Policy Configurations > General Properties tab and add the name of the policy in the Policy Name textbox. Click Continue.
Retain the other policy configurations to the default values.
On the Resources tab, click Start Creating and select Network Access from the list. A network access panel appears.
Under the Resources configuration, click the Resource Properties and modify the given network access name if required. Click Continue.
Retain the other policy configurations to the default values.
On the Launch Application tab, under the Applications area, click Start Adding.
In the Path field, add the required application path.
In the Parameter field, add the required BIG-IP Next Central Manager address.
For the Operation Systems, select the required operating system from the list based on the provided browser application path. Available options are Mac, Unix, Windows, iOS, and Android. Click Continue.
On the Optimized Applications tab, under the Optimized Applications area, click Start Adding. An optimized application is a set of compression characteristics that are applied to traffic flowing from the network access client to a specific IP address, network, or host, on a specified port or range of ports.
A default optimized applications panel appears. Under the Properties, modify the given optimized application name if required.
Under the Destination, click the Network radio button and display additional options. Available destination options are Host, IP Address, and Network. Users can choose different destination types such as Host, IP Address, or Network.
After the Network is selected, add the BIG-IP Next Central Manager address and the relevant Mask address. When the Host is selected, the Host Name needs to be provided. When the IP Address is selected, provide the IP Address value.
Under the Ports, click the Port Range and provide the required value in the Start Port and End Port fields. When the Port is selected, provide the port number value.
Under the Compression settings, select Disabled from the compression drop-down list. Click Finish.
Again on the Resources tab, click Create and select Webtop from the list. A Webtop panel appears.
On the Webtop panel, under the Properties, modify the given webtop name if required. Retain the other options to the default values. Click Finish.
The Visual Policy Designer (VPD) canvas opens.
Add the Empty Flow to the policy. Add the Logging and Advanced Resource Assign Rules to the Flow.
Click the Advanced Resource Assign Rule edit icon in the canvas. Navigate to the Rule Configurations > Rule Properties > Resource Assignments, and click Start Adding. An Add Resource Assignment panel appears.
On the Expression tab, select the required expression from the list.
On the Resources tab, select the configured network access and webtop configurations. Click Finish.
From the BIG-IP Next Central Manager homepage, navigate to the Go to Application Workspace > Applications > My Application Services.
On the My Application Services page, click Start Adding Apps. Fill in the required fields along with the virtual address and deploy the configured access policy.
Post-deployment of the access policy, when the VPN connection is initiated, a security alert appears to launch the application. Click Yes to allow the operation.
The application start configuration is added to the Launch Applications list under the Applications area, and applications appropriate for the client’s operating system will start when a tunnel connection is established.