I was wondering if it was possible to set up an ASA to provide remote access VPN connections (either/both IPSEC or WebVPN/SSL) from the outside world if the outside IP address is dynamic (i.e. obtained through DHCP)? I understand how to use DynamicDNS to provide a hostname to VPN clients, I'm simply asking whether the ASA can be configured to allow VPN connections in from a DHCP addressed interface. I understand there are issues with site-to-site VPNs when both sides are dynamically addressed, but it seems like the remote access VPN should work. Just hoping to confirm this before I go and work on a config.
Thanks in advance....
The same configuration applies.
I believe the only difference is that the outside IP with be dynamic:
ip address dhcp setroute
The only difference is that the VPN clients (the PCF file) should have the VPN connection to a hostname (instead than to an IP) and that IP should be resolved to the IPs of the ASA.
I'll try to find you a configuration example if you don't find it.