Is it possible to configure an ASA to be used for VPN only in one arm mode? We use to have a VPN 3000 concentrator that worked in one-arm mode. It basically just provided VPN connectivity for users and NATed all their connections prior to be routed ...