Mapping Certificates to IPsec or SSL VPN Connection Profiles
Modes
The following table shows the modes in which this feature is available:
Firewall Mode
Routed
•
Add/Edit SSL VPN Connections > Advanced > Accounting
The settings on this dialog box apply to the connection (tunnel group) globally across the adaptive
security appliance. This dialog box lets you configure the following attribute:
•
•
Modes
The following table shows the modes in which this feature is available:
Firewall Mode
Routed
•
Add/Edit Tunnel Group > General > Client Address Assignment
To specify whether to use DHCP or address pools for address assignment, go to Configuration > VPN >
I P Address Management > Assignment. The Add or Edit Tunnel Group dialog box > General > Client
Address Assignment dialog box, lets you configure the following Client Address Assignment attributes:
•
•
Note
Cisco ASA 5500 Series Configuration Guide using ASDM
64-88
Security Context
Transparent Single
—
•
Accounting Server Group—Lists the available accounting server groups. You can also select None
(the default). LOCAL is not an option.
Manage—Opens the Configure AAA Server Groups dialog box.
Security Context
Transparent Single
—
•
DHCP Servers—Specifies a DHCP server to use. You can add up to 10 servers, one at a time.
IP Address—Specifies the IP address of a DHCP server.
–
Add—Adds the specified DHCP server to the list for client address assignment.
–
Delete—Deletes the specified DHCP server from the list for client address assignment. There
–
is no confirmation or undo.
Address Pools—Lets you specify up to 6 address pools, using the following parameters:
Available Pools—Lists the available, configured address pools you can choose.
–
Add—Adds the selected address pool to the list for client address assignment.
–
Remove—Moves the selected address pool from the Assigned Pools list to the Available Pools
–
list.
Assigned Pools—Lists the address pools selected for address assignment.
–
To configure interface-specific address pools, click Advanced.
Multiple
Context
System
—
—
Multiple
Context
System
—
—
Chapter 64
General VPN Setup
OL-20339-01