Hi All I had a general enquiry about address pools in relation to "inside" addresses.
Can one configure an address pool for remote access client using either IPSec or SSL VPN to be on the same subnet as an IP address assigned to an internal interface on the terminating device, whether that be a router or ASA? By this I mean, if the device had an internal interface configured with an address 192.168.1.1/24 (tunnel terminated on a different interface) could I assigned an address pool to certain clients in the range of 192.168.1.200 - 192.168.1.220? In such a case I know the device (router or ASA) would then need to proxy ARP for the clients using the pool but I am just wondering if it is possible or if the addresses need to be on a different subnet to all interfaces configured on the device. Thanks Ben
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com Are you a CCNP or CCIE and looking for a job? Check out www.PlatinumPlacement.com
