Sorry I should clarify I already have LDAP setup for authentication but I have a need for a few vpn users who authenticate to get the same ip each time. This can be from the dhcp pool I've setup. I need to know if this possible to do and if so how to go about setting it up? Thanks!
In this case, I think you can configure your ldap server to return an attribute with assigned IP address (such as msRADIUSFramedIPAddress), then on ASA, you need do ldap-attribute-map to map the above attribute to "IETF-Radius-Framed-IP-Address" so that ASA could understand it and assign this address to vpn client.
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...