cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
303
Views
0
Helpful
1
Replies

AnyConnect client can't get DHCP address

Reece Boucher
Level 1
Level 1

Greetings,

I have an ASA5510 acting as a VPN gateway (terminating VPN clients only) with all ACL's being applied on my f/w (ASA5520).

I am trying to setup my AnyConnect clients to get DHCP addresses from my internal DHCP server (so I only have a single point of address management).

From my understanding I should have the following configured on my F/W...

Global DHCP Relay server (10.122.2.9 - inside)

DHCP IPv4 Relay enabled on DMZ interface

At the VPN g/w I get IPAA:Session=0x000380000, Address assignment failed

I see nothing in the FW log regarding attempts to get to/from 10.122.2.9

I know I'm missing something, just can't see what...

1 Reply 1

Philip D'Ath
VIP Alumni
VIP Alumni

I've never had much luck with the approach.  I always create a separate pool of IP addresses, not used anywhere else, and give that out to VPN users.