! ! Last configuration change at 09:36:11 UTC Wed Nov 23 2016 ! version 15.1 no service pad service timestamps debug datetime msec service timestamps log datetime msec service password-encryption ! hostname warren ! boot-start-marker boot-end-marker ! ! logging buffered 51200 warnings enable secret 5 $1$MVyR$SJMAKsLVCshCDsuM.gFzq0 ! no aaa new-model ! no process cpu extended history no process cpu autoprofile hog memory-size iomem 10 crypto pki token default removal timeout 0 ! ! ip source-route ! ! ! ! ! ip cef no ip domain lookup ip domain name epping.local ip multicast-routing no ipv6 cef ! ! multilink bundle-name authenticated chat-script gsm "" "ATDT*98*#" TIMEOUT 60 "CONNECT" license udi pid CISCO887G-K9 sn FCZ1453C3LB ! ! username admin privilege 15 secret 5 $1$ANxp$ZHPnS1t0gFGHloDECcEMw1 ! ! ! ! controller Cellular 0 ! ip ssh logging events ip ssh version 2 ! ! crypto isakmp policy 1 encr 3des hash md5 authentication pre-share group 2 ! crypto isakmp policy 2 encr 3des hash md5 authentication pre-share group 2 ! crypto isakmp policy 3 encr aes authentication pre-share group 5 lifetime 28800 ! crypto isakmp policy 4 encr 3des hash md5 authentication pre-share group 2 crypto isakmp key fdHgfjdr54564 address 81.149.59.10 crypto isakmp key fdHgfjdr54564 address 81.149.16.39 crypto isakmp key fdHgfjdr54564 address 10.8.44.52 crypto isakmp key zxy367njk94nhsjklkjnndruy address 195.224.75.170 ! ! crypto ipsec transform-set vpn1 ah-sha-hmac esp-3des esp-sha-hmac mode transport crypto ipsec transform-set vpn2 ah-sha-hmac esp-3des esp-sha-hmac mode transport crypto ipsec transform-set vpn3 esp-aes 256 esp-sha-hmac crypto ipsec transform-set vpn4 ah-sha-hmac esp-3des esp-sha-hmac mode transport ! crypto map cmap 1 ipsec-isakmp set peer 81.149.59.10 set transform-set vpn1 match address 110 crypto map cmap 2 ipsec-isakmp set peer 81.149.16.39 set transform-set vpn2 match address 120 crypto map cmap 3 ipsec-isakmp set peer 195.224.75.170 set transform-set vpn3 set pfs group2 match address 130 ! crypto map mcmap 1 ipsec-isakmp set peer 10.8.44.52 set transform-set vpn4 match address 140 ! ! ! ! ! interface Tunnel1 ip address 172.16.1.2 255.255.255.252 ip pim dense-mode ip nat inside ip virtual-reassembly in keepalive 10 3 tunnel source Dialer0 tunnel destination 81.149.59.10 ! interface Tunnel2 ip address 172.16.1.9 255.255.255.252 ip pim dense-mode ip nat inside ip virtual-reassembly in keepalive 10 3 tunnel source Dialer0 tunnel destination 81.149.16.39 ! interface Tunnel3 ip address 172.16.1.14 255.255.255.252 ip hello-interval eigrp 10 60 ip hold-time eigrp 10 180 ip pim dense-mode ip nat inside ip virtual-reassembly in keepalive 10 3 tunnel source Dialer2 tunnel destination 10.8.44.52 ! interface ATM0 no ip address shutdown atm ilmi-keepalive pvc 0/38 encapsulation aal5mux ppp dialer dialer pool-member 1 ! ! interface FastEthernet0 switchport access vlan 2 no cdp enable ! interface FastEthernet1 no cdp enable ! interface FastEthernet2 no cdp enable ! interface FastEthernet3 no cdp enable ! interface Cellular0 no ip address ip nat outside ip virtual-reassembly in encapsulation ppp dialer in-band dialer pool-member 2 crypto map mcmap ! interface Vlan1 description Local_LAN_WARREN ip address 172.17.3.1 255.255.255.0 ip pim dense-mode ip nat inside ip virtual-reassembly in ip tcp adjust-mss 1452 ! interface Vlan2 description Link_to_CGH ip address 172.16.1.17 255.255.255.252 ip pim dense-mode ip nat inside ip virtual-reassembly in ip tcp adjust-mss 1452 ! interface Dialer0 ip address negotiated ip access-group 101 in ip mtu 1492 ip nat outside ip virtual-reassembly in encapsulation ppp dialer pool 1 dialer-group 1 ppp authentication chap callin ppp chap hostname A976708@hg43.btclick.com ppp chap password 7 09414F1B1A0A191B5A no cdp enable crypto map cmap ! interface Dialer2 ip address negotiated ip access-group 102 in ip nat outside no ip virtual-reassembly in encapsulation ppp dialer pool 2 dialer string gsm dialer-group 2 ppp chap hostname slcn@wirelesslogic-hsdpa.co.uk ppp chap password 7 14041E0802 ppp ipcp dns 207.126.96.162 no cdp enable crypto map mcmap ! ! router eigrp 10 network 10.64.0.0 0.63.255.255 network 172.16.0.0 network 172.17.0.0 passive-interface Dialer0 passive-interface Dialer2 ! ip forward-protocol nd no ip http server no ip http secure-server ! ! ip nat inside source list nat interface Dialer0 overload ip route 0.0.0.0 0.0.0.0 Dialer0 ip route 10.8.44.48 255.255.255.248 Dialer2 ip route 10.64.0.0 255.192.0.0 Dialer0 ! ip access-list extended nat deny ip 172.16.0.0 0.1.255.255 172.16.0.0 0.1.255.255 deny ip 172.16.0.0 0.1.255.255 10.0.0.0 0.255.255.255 permit ip 172.0.0.0 0.255.255.255 any ! logging esm config access-list 101 remark INTERNET IN ACCESS LIST access-list 101 permit ahp host 81.149.16.39 any access-list 101 permit esp host 81.149.16.39 any access-list 101 permit ip host 81.149.16.39 any access-list 101 permit ahp host 81.149.59.10 any access-list 101 permit esp host 81.149.59.10 any access-list 101 permit ip host 81.149.59.10 any access-list 101 permit ahp host 195.224.75.170 any access-list 101 permit esp host 195.224.75.170 any access-list 101 permit ip host 195.224.75.170 any access-list 101 permit ip host 195.224.75.171 any access-list 101 permit ip host 176.35.34.193 any access-list 101 deny ip any any access-list 102 remark GSM IN ACCESS LIST access-list 102 permit ahp host 10.8.44.52 any access-list 102 permit esp host 10.8.44.52 any access-list 102 permit ip host 10.8.44.52 any access-list 102 deny ip any any access-list 110 remark vpn1 definition access-list 110 permit gre host 81.149.16.160 host 81.149.59.10 access-list 110 remark vpn1 definition access-list 120 remark vpn2 definition access-list 120 permit gre host 81.149.16.160 host 81.149.16.39 access-list 130 remark vpn3 definition access-list 130 permit ip 172.0.0.0 0.255.255.255 10.0.0.0 0.255.255.255 access-list 130 remark vpn3 definition access-list 140 remark vpn4 definition access-list 140 permit gre host 10.8.44.51 host 10.8.44.52 access-list 140 remark vpn4 definition dialer-list 1 protocol ip permit dialer-list 2 protocol ip permit no cdp run ! ! ! ! ! control-plane ! ! line con 0 exec-timeout 0 0 login local no modem enable line aux 0 line 3 exec-timeout 0 0 script dialer gsm login modem InOut no exec line vty 0 4 privilege level 15 login local transport input ssh ! end