Hi All

I had a general enquiry about address pools in relation to "inside"
addresses.

Can one configure an address pool for remote access client using either
IPSec or SSL VPN to be on the same subnet as an IP address assigned to an
internal interface on the terminating device, whether that be a router or
ASA?

By this I mean, if the device had an internal interface configured with an
address 192.168.1.1/24 (tunnel terminated on a different interface) could I
assigned an address pool to certain clients in the range of 192.168.1.200 -
192.168.1.220? In such a case I know the device (router or ASA) would then
need to proxy ARP for the clients using the pool but I am just wondering if
it is possible or if the addresses need to be on a different subnet to all
interfaces configured on the device.

Thanks
Ben
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Are you a CCNP or CCIE and looking for a job? Check out 
www.PlatinumPlacement.com

Reply via email to