cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1447
Views
0
Helpful
1
Replies

IP Pool from the ACS server to a VPN Client

asarlo
Level 1
Level 1

Hello,

I configure a VPN Client to establish a VPN with a PIX506. I configure the he VPN Client authentication for through TACACS+ and I define a local IP address pool in the pix to assign dynamically to the VPN user. All this run ok.

Now I need to download the IP Pool from the ACS, so I disable vpngroup address-pool command in the PIX and configure the pool in the ACS server. This change didn't work. Do you know if it could run ?

Thanks a lot for your help.

Regards,

Anacelia

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

Not currently supported in the PIX, it will only assign IP addresses to VPN clients from a locally configured pool. You can define the pool on the ACS server but the PIX will ignore it.

I don't believe any work is being done on this feature either, so if you would really, really like it, contact your Cisco Account Manager and have them put in a feature request for it.