ASA IP Address Assigned

Unanswered Question
Aug 29th, 2010

We have a remote client that connects to our ASA via a VPN connection.  They receive an IP address via a DHCP pool from the ASA.  I need to NAT one of the devices to another network.  What is the easist way to tell what IP address they  are receiving from the DHCP pool when they attached to the ASA?



I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Jennifer Halim Mon, 08/30/2010 - 01:02

If you are using a pool of ip address from ASA (using the "ip local pool' command to assign ip address to the vpn client), then it will be dynamically assigned.

One way you can ensure that the user gets the same ip address is to configure a different group and vpn pool for that particular user, and in that case, the user will always get the same ip address from the newly created pool and group.

Hope that helps.

brentz Mon, 08/30/2010 - 06:14

Thanks for the reply.  What I am really needing to see is what address a user is getting from the pool when he logs on.


Jennifer Halim Mon, 08/30/2010 - 06:19

You can check via the following command after the user logs on:

For IPSec VPN: show vpn-sessiondb detail remote filter name

For AnyConnect/SSL VPN: show vpn-sessiondb detail svc filter name

Hope that helps.


This Discussion