Hi,
Can anyone confirm whether or not it is possible for CSACS 3.2 (windows - Radius) to issue an IP address to a VPN client connecting to an IOS router, using dynamic-client profiles based on the logon username.
running debug radius on the NAS I can see that the ACS server is issuing the correct ip address that I have specified for the relevant user back to the NAS - but it doesn't get added to the ISAKMP Client profile.
Due to a complex network setup, I cannot use a pool of addresses on the NAS as would normally be the case.
Incidently, I will need to be able to do this on a PIX also..
I know that I should really be using a CVPN concentrator for this, but the hardware has already been purchased - by someone else...
Thanks in advance.