<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Adding a new IP address pool  in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/adding-a-new-ip-address-pool/m-p/957534#M1011841</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for your reply.&lt;/P&gt;&lt;P&gt;However, I have successfully added the IP address pool as for the configuration described in my first post.&lt;/P&gt;&lt;P&gt;I was afraid that it would not have worked as the new address pool was in a different subnet from the subnet of the physical interface of the VPN concentrator and that of the VPN Tunnel default gateway. &lt;/P&gt;&lt;P&gt;We have added the IP static route on core switches and firewalls to route the traffic to the new IP address pool, the default gateway being the VPN concentrator's (internal)IP address and it has worked!&lt;/P&gt;&lt;P&gt;  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 07 Apr 2008 12:45:08 GMT</pubDate>
    <dc:creator>pumpkin06</dc:creator>
    <dc:date>2008-04-07T12:45:08Z</dc:date>
    <item>
      <title>Adding a new IP address pool</title>
      <link>https://community.cisco.com/t5/network-security/adding-a-new-ip-address-pool/m-p/957532#M1011834</link>
      <description>&lt;P&gt;I need to add a new ip address pool to the VPN concentrator 3015 since we are running out of ip addresses defined in the existent ip address pool.&lt;/P&gt;&lt;P&gt;its configuration is as follows:  &lt;/P&gt;&lt;P&gt;[ipaddrpool 1]&lt;/P&gt;&lt;P&gt;rowstatus=1&lt;/P&gt;&lt;P&gt;rangename=&lt;/P&gt;&lt;P&gt;startaddr=172.16.3.6&lt;/P&gt;&lt;P&gt;endaddr=172.16.3.101&lt;/P&gt;&lt;P&gt;mask=255.255.255.128 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;here is the private ip address of the VPN concentrator:&lt;/P&gt;&lt;P&gt;[ip 1]&lt;/P&gt;&lt;P&gt;enable=1&lt;/P&gt;&lt;P&gt;address=172.16.3.2&lt;/P&gt;&lt;P&gt;mask=255.255.255.128&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;here is the Tunnel Default Gateway configuration:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[ipglobals]&lt;/P&gt;&lt;P&gt;deftunnelgateway=172.16.3.1&lt;/P&gt;&lt;P&gt;rtrDiscEnable=2&lt;/P&gt;&lt;P&gt;natEnable=2&lt;/P&gt;&lt;P&gt;natTunnelEnable=2&lt;/P&gt;&lt;P&gt;syncall=1&lt;/P&gt;&lt;P&gt;locDefGwPref=1&lt;/P&gt;&lt;P&gt;redistClients=2&lt;/P&gt;&lt;P&gt;redistNetExt=2&lt;/P&gt;&lt;P&gt;synCookies=1  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;VPN 3015 is configured to assign ip addresses through IP address pools only!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I add the following address pool &lt;/P&gt;&lt;P&gt;start address: 17.16.3.225&lt;/P&gt;&lt;P&gt;end address: 17.6.3.254&lt;/P&gt;&lt;P&gt;subnet mask: 255.255.255.224 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Will it work given that the new ip address pool is not on the same vlan (different subnet) as the private interface of the VPN concentrator? If yes, what additional configuration changes are necessary to make this work?&lt;/P&gt;&lt;P&gt;I do not how to set up the default gateway for the new address pool? Please advise.&lt;/P&gt;&lt;P&gt;Many thanks in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 09:57:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/adding-a-new-ip-address-pool/m-p/957532#M1011834</guid>
      <dc:creator>pumpkin06</dc:creator>
      <dc:date>2020-02-21T09:57:31Z</dc:date>
    </item>
    <item>
      <title>Re: Adding a new IP address pool</title>
      <link>https://community.cisco.com/t5/network-security/adding-a-new-ip-address-pool/m-p/957533#M1011836</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If the address pool is for the remote vpn client users then make sure that they get the IP's in the same range as the internal network they want to access. Following links may help you&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/security/asa/asa80/getting_started/asa5505/quick/guide/rem_acc.html" target="_blank"&gt;http://www.cisco.com/en/US/docs/security/asa/asa80/getting_started/asa5505/quick/guide/rem_acc.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00807e0aca.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00807e0aca.shtml&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 Apr 2008 16:34:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/adding-a-new-ip-address-pool/m-p/957533#M1011836</guid>
      <dc:creator>tstanik</dc:creator>
      <dc:date>2008-04-04T16:34:54Z</dc:date>
    </item>
    <item>
      <title>Re: Adding a new IP address pool</title>
      <link>https://community.cisco.com/t5/network-security/adding-a-new-ip-address-pool/m-p/957534#M1011841</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for your reply.&lt;/P&gt;&lt;P&gt;However, I have successfully added the IP address pool as for the configuration described in my first post.&lt;/P&gt;&lt;P&gt;I was afraid that it would not have worked as the new address pool was in a different subnet from the subnet of the physical interface of the VPN concentrator and that of the VPN Tunnel default gateway. &lt;/P&gt;&lt;P&gt;We have added the IP static route on core switches and firewalls to route the traffic to the new IP address pool, the default gateway being the VPN concentrator's (internal)IP address and it has worked!&lt;/P&gt;&lt;P&gt;  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 07 Apr 2008 12:45:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/adding-a-new-ip-address-pool/m-p/957534#M1011841</guid>
      <dc:creator>pumpkin06</dc:creator>
      <dc:date>2008-04-07T12:45:08Z</dc:date>
    </item>
  </channel>
</rss>

