cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
837
Views
0
Helpful
1
Replies

Client VPN Static IP Assignement

Elie Bassil
Level 1
Level 1

Hello,

I have a scenario where I need to assign a specific user that connects (along many other users) to my ASA for Client VPN, need to assign him a static IP address and not let him take a random IP from a pool.

If the authentication was local, I would have used:

username cisco123 password ffIRPGpDSOJh9YLq encrypted

username cisco123 attributes

  vpn-framed-ip-address 192.168.5.1 255.255.255.0

Then the user "cisco123" will get the IP 192.168.5.1. But what if the authentication is set to Radius and not Local? I was thinking of creating another tunnel-group where the authentication is LOCAL, to be used by this specific user, but how can I limit that only "username X password XXX" can be used for this tunnel-group, assuming that many local user are configured on the ASA?

Thanks,

E.B.

1 Reply 1

rizwanr74
Level 7
Level 7

Please read this thread.

http://www.cisco.com/en/US/docs/security/asa/asa84/command/reference/d2.html#wp1975821

Answer is already given.

thanks

Rizwan Rafeek