I have got Cisco VPN concentrator 3030 at work , it is working fine.
I have got mobile PC (with Cisco PC client ) that is looking to access its correspondent server in the DMZ area (192.168.101.204) at work 's network, through VPN concentrator.
How can i assigned a specific ip address from internal pool (10.2.2.1-10.2.2.10) for that mobile PC ,,,the reason I am doing that to reserve the specific private ip address for that mobile PC
We use safeword Token for authentication
How can I configure that on VPN ?
On PIX, I have got no problem to configure ACL from inside to DMZ.
Back to top
Assign a Specific IP Address to a User
----------------------------------------
In order to assign a static IP address for the remote VPN user every time they connect to the VPN 3000 Series Concentrator, choose: Configuration > User Management > Users > Modify ipsecuser2 > identity.
1- I modified the existing current group (see my VPN figure ) to be from range 10.2.2.1-10.2.2.9 instead of 10.2.2.1-10.2.2.10
2- Create another group called : " mobile_users "
3- Create a user called : " commuter "
4- Assign the user " commuter " to the group " mobile_user "
5- Assign ip address 10..2.2.2 to the user " commuter "
6- In the cisco site that I have posted , it syas: tick option for " User address from Authentication Server ",,,,I do not think this will apply to me (right now we use AD for authentication) ?
I am using production box, I have to assure that the modification above (off peack time) does not screw up the whole system
You are about to answer a thread that has been inactive for more than 6 months. If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.