cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
340
Views
0
Helpful
3
Replies

static ip for client VPN from ASA5510

k.ramalingam
Level 1
Level 1

Experts,

I have Cisco ASA5510 and am trying to configure static ip for client vpn user with username HarryM01Iphone. The client can authenticate correctly but he is always getting IP from the VPN pool as the rest of the users eventhough he suppose to get a static ip based on framed-ip configuration.

I have attached the configs and firewall version.

I followed example as per http://www-europe.cisco.com/application/pdf/paws/109639/asa-vpn-static-asdm-config.pdf

Hope someone can shed some light.

3 Replies 3

Herbert Baerten
Cisco Employee
Cisco Employee

Do you have "vpn-addr-assign aaa" configured?

I have this lines on the firewall:

no vpn-addr-assign aaa

no vpn-addr-assign dhcp

There seems to be an error in the doc you quoted. "vpn-addr-assign local" only refers to the local pool, if you want to use per-user attributes (even if they are defined locally) this is considered AAA (i.e. the attributes come from the local AAA server).

So please configure "vpn-addr-assign aaa", and you should be all set.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: