cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
13361
Views
5
Helpful
5
Replies

Allocating Static IP for anyconnect VPN users

vinayjaiswal
Level 3
Level 3

Hi, So I have Anyconnect VPN configured on my ASA and users are being authenticated via ACS.

 

My requirement is to provide static IP for all users . I have configured pool on ASA and after that I configured Framed IP on ACS. When connecting for first time, the user gets the same IP but after disconnection, the user gets a different pool IP.

 

Can anyone help ?

1 Accepted Solution

Accepted Solutions

Hello @vinayjaiswal

Do you have "vpn-addr-assign aaa" configured on ASA?

 

 

-If I helped you somehow, please, rate it as useful.-

 

View solution in original post

5 Replies 5

Hello @vinayjaiswal

Do you have "vpn-addr-assign aaa" configured on ASA?

 

 

-If I helped you somehow, please, rate it as useful.-

 

Hi Flavio,

 

I don't have  that configured. Can you provide any document for that ?

There's this discussion here on the forum.

https://supportforums.cisco.com/t5/vpn/framed-ip-address-not-working-for-remote-access-vpn/td-p/1763935

 

-If I helped you somehow, please, rate it as useful.-

Thanks a lot Flavio. This command did the trick.

I've been trying to figure out why my framed-ip-address attribute is not applying to my Anyconnect user until I hit this post. I didn't have "User authentication server" enabled under Address Assignment > Assignment Policy and was simply using the internal address pool.  Enabled this et voila!! 

Thanks for this!