Which configuration allows a Cisco ASA to receive an IPsec connection from a peer with an unknown IP address?
Which configuration allows a Cisco ASA to receive an IPsec connection from a peer with an unknown IP address?
To allow a Cisco ASA to receive an IPsec connection from a peer with an unknown IP address, a dynamic crypto map configuration is used. Dynamic crypto maps allow the ASA to accept VPN connections from peers whose IP addresses are not known in advance, making it suitable for remote access VPN configurations where the client's IP address may change.
Dynamic Crypto Map https://www.cisco.com/c/en/us/td/docs/security/asa/asa94/config-guides/cli/vpn/asa-94-vpn-config/vpn-remote-access.html
Dynamic crypto maps define policy templates in which not all the parameters are configured. This lets the ASA receive connections from peers that have unknown IP addresses, such as remote access clients. From the link haydenme97 posted