09-13-2023 05:38 AM
Hi Cisco community,
As we configured VPN manually from ASA to FDM, we notice there is some function from ASA that the local vpn user can assigned dedicated IP as per below. I find it at FDM local user setting only can put username and password. Is it possible to do it on FDM or this is a features that need to be with FMC?
09-13-2023 06:08 AM
@zufayri FDM is rather featureless and does not have many advanced options to assign a static IP address and even there is no native in-built functionality in FMC to assign a static IP address per user either afaik.
However you can use a RADIUS server and push down a static IP address to the client using "Framed-IP-Address" attribute.
09-13-2023 06:16 AM
Hi Rob,
Thanks for the answer. but from our customer side they only use radius server for their Staff and other than that need to configure in local FTD and assign the IP for them to access different internal segment. so from our perspective, they dont agree to do it as current ASA manage to configured it. Is there any other workaround or solution for this?
09-13-2023 06:38 AM
@zufayri reimage the device to use latest ASA image instead of FDM.
09-13-2023 11:34 PM
reimage need to buy another license for ASA license right? Seem like there will be no license conversion from FTD to ASA
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide