69-109
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter69 General VPN Setup
Mapping Certificates to IPsec or SSL VPN Connection Profiles
Configuring Client Addressing for SSL VPN Connections
Use this dialog box to specify the global client address assignment policy and to configure
interface-specific address pools. You can also add, edit, or delete interface-specific address pools using
this dialog box. The table at the bottom of the dialog box lists the configured interface-specific address
pools.
Fields
Global Client Address Assignment Policy—Configures a policy that affects all IPsec and SSL VPN
Client connections (including AnyConnect client connections). The ASA uses the selected sources
in order, until it finds an address:
Use authentication server—Specifies that the ASA should attempt to use the authentication
server as the source for a client address.
Use DHCP—Specifies that the ASA should attempt to use DHCP as the source for a client
address.
Use address pool—Specifies that the ASA should attempt to use address pools as the source for
a client address.
Interface-Specific Address Pools—Lists the configured interface-specific address pools.
Add—Opens the Assign Address Pools to Interface dialog box, on which you can select an interface
and select an address pool to assign.
Edit—Opens the Assign Address Pools to Interface dialog box with the interface and address pool
fields filled i n.
Delete—Deletes the selected interface-specific address pool. There is no confirmation or undo.
Modes
The following table shows the modes in which this feature is available:
Assign Address Pools to Interface
Use this dialog box to select an interface and assign one or more address pools to that interface.
Fields
Interface—Select the interface to which you want to assign an address pool. The default is DMZ.
Address Pools—Specify an address pool to assign to the specified interface.
Select—Opens the Select Address Pools dialog box, in which you can select one or more address
pools to assign to this interface. Your selection appears in the Address Pools field of the Assign
Address Pools to Interface dialog box.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——