05-26-2023 01:41 PM
I need to assign address pool for clientless vpn users so that each user get unique IP, not all passed on using the inside interface of the ASA
05-26-2023 01:52 PM
05-26-2023 04:02 PM
This configurations apply on client VPN, my inquiry is regarding clientless VPN
05-27-2023 12:06 AM
@Egytax users are not assigned an IP address when using clientless VPN, traffic is proxied by the ASA. If you want to assign an IP address to the VPN client they will need to use the AnyConnect client. Here are 2 examples for the ASA:
FYI, Clientless VPN has been depreciated on newer ASA versions.
05-27-2023 05:08 PM
the VPN clientless no assign IP for ASA (local pool or via DHCP)
so you have only public IP of clientless which I think is change from time to time.
I have idea for solution using group-lock
if the user is local save in ASA then we can lock it to specific tunnel, then we use vpn filter to permit or deny traffic to INside.
check this solution.
05-28-2023 12:50 AM
The users are saved on Active Directory and the authorization is done through ISE
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide