69-94
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter 69 General VPN Setup
Mapping Certificates to IPsec or SSL VPN Connection Profiles
• Global Client Address Assignment Policy—Configures a policy that affects all IPsec and SSL VPN
Client connections (including AnyConnect client connections). The ASA uses the selected sources
in order, until it finds an address:
–
Use authentication server—Specifies that the ASA should attempt to use the authentication
server as the source for a client address.
–
Use DHCP—Specifies that the ASA should attempt to use DHCP as the source for a client
address.
–
Use address pool—Specifies that the ASA should attempt to use address pools as the source for
a client address.
• Interface-Specific Address Pools—Lists the configured interface-specific address pools.
Modes
The following table shows the modes in which this feature is available:
Assign Address Pools to Interface
Use the Assign Address Pools to Interface dialog box to select an interface and assign one or more
address pools to that interface. To access this dialog box, choose Config > Remote Access VPN >
Network (Client) Access > IPsec or SSL VPN Connections > Add or Edit > Advanced > Client
Addressing > Add or Edit.
Fields
Use the following descriptions to assign values to the fields in this dialog box:
• Interface—Select the interface to which you want to assign an address pool. The default is DMZ.
• Address Pools—Specify an address pool to assign to the specified interface.
• Select—Opens the Select Address Pools dialog box, in which you can select one or more address
pools to assign to this interface. Your selection appears in the Address Pools field of the Assign
Address Pools to Interface dialog box.
Modes
The following table shows the modes in which this feature is available:
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
• — • ——
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
• — • ——