Create an ASA IP address pool

ASA address pool objects define IPv4 or IPv6 address pools that ASA devices assign to remote VPN clients. If you configure more than one address pool for a connection profile or group policy, the ASA uses the pools in the order in which you added them.

To define an IPv4 address pool, provide the IP address range. For example, 10.10.147.100 - 10.10.147.177.

To define an IPv6 address pool, provide the starting IP address, prefix, and number of addresses in the pool. For example, 2001:DB8:1::1.

If you assign addresses from a nonlocal subnet, add pools that fall on subnet boundaries so that routes for these networks are easier to add.

Perform the following to create an IP address pool:

Procedure


Step 1

In the left pane, click Objects.

Step 2

Click the blue plus button and select ASA > Address Pool.

Step 3

In the Create IP Address Pool dialog box, enter this information:

  • Object Name: Enter the name of the address pool. It can be up to 64 characters

  • IPv4 address pool: Select this radio button to configure IPv4 address pools.

    • IPv4 Address Range: Enter the first IP address and the last IP address available in each configured pool. For example, 10.10.147.100 - 10.10.147.177.

    • Mask: Identifies the subnet on which this IP address pool resides.

  • IPv6 address pool: Select this radio button to configure IPv6 address pools.

    • IPv6 Address: Enter the first IP address available in the configured pool and prefix length in bits in <address>/<prefix> format. For example, 2001:DB8:1::1/3.

    • Number of Addresses: Identifies the number of IPv6 addresses, starting at the IP Address, that are in the pool.

Step 4

Click Save.