Setting up a VPN session between remote user and Cisco PIX firewall is fairly easy because of numerous documents out there at Cisco site. Uniquely enough, there might be a situation where you want a particular VPN client to be given a static ip all the time ? How do ya do this? Only way as I see it now is;

1. Create 2 groups (Group1 and Group2)

2. Create 2 pools (Pool1 and Pool2)

Put “THE” user in Group1 and have Pool1 be assigned to him. Configure in such a way that Pool1 has only one ip address.

Put all the other users into the second group and configure Pool2 be assigned to them with regular pool. Comes very handy for administrators…