cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
535
Views
0
Helpful
1
Replies

ASA/VPN/DHCP

guru
Level 1
Level 1

Hello:

I am in the process of configuring the IPSec remote access vpn on the ASA (ver 7.2). I would like the VPN clients to obtaing the IP address from our internal DHCP server (Microsoft AD environment). Is this possible and if it is can someone direct me to a config sample page (link).

Thanks in advance.

1 Reply 1

JORGE RODRIGUEZ
Level 10
Level 10

It is possible, I have not tested this as I use VPN IP pool instead, but based on this documentyou can assign up to 10 dhcp servers for the VPN clients to be assigned IP addresses by windows AD DHCP or any other DHCP server.

In remote access connection profile

Tunnel-group VPN_Group_TEST type remote-access

tunnel-group VPN_Group_TEST general-attributes

dhcp-server

tunnel-group VPN_Group_TEST ipsec-attributes

pre-shared-key **********

See dhcp-server

http://www.cisco.com/en/US/docs/security/asa/asa80/command/reference/d2.html#wp1859817

HTH

Rgds

Jorge

Jorge Rodriguez