Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
35-63
Cisco ASDM User Guide
OL-16647-01
Chapter 35 General
Mapping Certificates to IPSec or SSL VPN Connection Profiles
Fields
Use the following descriptions to assign values to the fields in this window:
Global Client Address Assignment Policy—Configures a policy that affects all IPSec and SSL VPN
Client connections (including AnyConnect client connections). The security appliance uses the
selected sources in order, until it finds an address:
Use authentication server—Specifies that the security appliance should attempt to use the
authentication server as the source for a client address.
Use DHCP—Specifies that the security appliance should attempt to use DHCP as the source for
a client address.
Use address pool—Specifies that the security appliance should attempt to use address pools as
the source for a client address.
Interface-Specific Address Pools—Lists the configured interface-specific address pools.
Modes
The following table shows the modes in which this feature is available:
Assign Address Pools to Interface
Use the Assign Address Pools to Interface window to select an interface and assign one or more address
pools to that interface. To access this window, choose Config > Remote Access VPN > Network (Client)
Access > IPsec or SSL VPN Connections > Add or Edit > Advanced > Client Addressing > Add or Edit.
Fields
Use the following descriptions to assign values to the fields in this window:
Interface—Select the interface to which you want to assign an address pool. The default is DMZ.
Address Pools—Specify an address pool to assign to the specified interface.
Select—Opens the Select Address Pools dialog box, on which you can select one or more address
pools to assign to this interface. Your selection appears in the Address Pools field of the Assign
Address Pools to Interface dialog box.
Modes
The following table shows the modes in which this feature is available:
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——