What's New

Please report issues to us at [email protected] We are unable to respond to your App Store feedback.

IMPORTANT: After upgrading AnyConnect you must manually Connect with AnyConnect prior to using Apple's Connect on Demand functions.

This release is a resubmission of our October (4.0.03015) update which due to an App Store processing error did not function properly. Apple has root caused this issue and believes it should now be resolved. We appreciate your patience as Apple worked diligently to investigate and resolve this issue. We know that removing AnyConnect temporarily from the App Store may have been a significant inconvenience for you, but unfortunately it was necessary to prevent additional users from receiving a non-functional update.

4.0.03016 fixes a compatible issue on iOS 9.x with Split Tunnel and Tunnel all DNS configurations for IPv4-only configurations (CSCuw11134) and resolves an issue resulting in incorrect device identifiers after a new device configuration was restored from an earlier device backup.

4.0.x is the first release which is compatible with Apple iOS Per App VPN. This capability must be used in conjunction with a MDM/EMM vendor and requires ASA 9.3(2) or later on an ASA 5500-X or ASAv licensed with AnyConnect Plus or Apex licenses. The iOS device must be running iOS 8.3 or later. The Cisco Enterprise Application Selector must be used to create a policy, whether used to enforce additional restrictions or a wildcard policy (controlled solely by EMM/MDM).

While this is an officially supported release, the Per App function is supported as a beta in this build. Please report any Per App VPN feedback to [email protected] and not by opening up a Cisco TAC case.

App Description


Trial AnyConnect Apex (ASA) licenses are available for administrators at www.cisco.com/go/license

AnyConnect for iOS requires Cisco Adaptive Security Appliance (ASA) Boot image 8.0(4) or later.

Per App VPN requires ASA 9.3(2) or later (5500-X/ASAv only) with Plus or Apex licensing and a minimum Apple iOS version of 8.3. In the current 4.0 release the Per App functions are supported as beta. Please send questions/report issues to [email protected]

For Non Per App functions, use of AnyConnect on iOS is permitted with legacy (Essentials/Premium + Mobile) licensing until April 30, 2016.

For additional licensing questions, please contact ac-mobile-license-request (AT) cisco.com and include a copy of "show version" from your Cisco ASA.

As of November 2014, new license options (Plus/Apex) are available for purchase. These licenses include Mobile support. http://www.cisco.com/c/dam/en/us/products/security/anyconnect-og.pdf

Cisco AnyConnect provides reliable and easy-to-deploy encrypted network connectivity from any Apple iOS 6 or later device by delivering persistent corporate access for users on the go. Whether providing access to business email, a virtual desktop session, or most other iOS applications, AnyConnect enables business-critical application connectivity. Through the use of Datagram Transport Layer Security (DTLS), TCP-based applications and latency-sensitive traffic (such as voice over IP [VoIP]) are provided an optimized communication path to corporate resources.
Additionally, AnyConnect support IPsec IKEv2 with Next Generation Encryption.


- Automatically adapts its tunneling to the most efficient method possible based on network constraints, using TLS and DTLS.
- DTLS provides an optimized connection for TCP-based application access and latency-sensitive traffic, such as VoIP traffic
- Network roaming capability allows connectivity to resume seamlessly after IP address change, loss of connectivity, or device standby
- Wide Range of Authentication Options: RADIUS, RSA SecurID, Active Directory/Kerberos, Digital Certificates, LDAP, multifactor authentication
- Supports certificate deployment using Apple iOS and AnyConnect integrated SCEP
- Compatible with Apple iOS Connect On Demand VPN capability for automatic VPN connections when required by an application
- Policies can be preconfigured or configured locally, and can be automatically updated from the VPN headend
- Access to internal IPv4 and IPv6 network resources
- Administrator-controlled split / full tunneling network access policy
- Per App VPN (New in AnyConnect 4.0)

If you are an end-user and have any issues or concerns, please contact your organization’s support department. If you are a System Administrator having difficulties configuring or utilizing the Application, please contact your designated support point of contact.

If you would like to give feedback, suggestions, or leave comments directly to the team, you can reach us on Twitter by using the #anyconnect hashtag.

Release Notes:

User Guide:

End user license:

iPhone Screenshots

(click to enlarge)

Cisco AnyConnect screenshot 1

iPad Screenshots

(click to enlarge)

Cisco AnyConnect screenshot 2

App Changes

  • September 17, 2011 New version 2.4.4019
  • October 25, 2011 New version 2.5.4038
  • December 20, 2011 New version 2.5.4049
  • March 17, 2012 New version 2.5.5112
  • May 19, 2012 New version 2.5.5130
  • December 11, 2012 New version 3.0.09097
  • February 13, 2013 New version 3.0.09115
  • September 10, 2013 New version 3.0.09179
  • October 16, 2013 New version 3.0.09231
  • February 07, 2014 New version 3.0.09266
  • April 11, 2014 New version 3.0.09353
  • June 23, 2014 New version 3.0.09440
  • September 03, 2014 New version 3.0.12119
  • November 03, 2014 New version 3.0.12169
  • February 19, 2015 New version 3.0.12240
  • March 19, 2015 New version 3.0.12249
  • May 02, 2015 New version 3.0.12257
  • June 16, 2015 New version 4.0.01324
  • July 07, 2015 New version 4.0.03004
  • October 22, 2015 New version 4.0.03015
  • October 24, 2015 New version 4.0.03016