Building configuration... Current configuration : 2754 bytes ! ! Last configuration change at 16:10:25 UTC Thu May 25 2023 by admin ! version 15.1 service timestamps debug datetime msec service timestamps log datetime msec no service password-encryption ! hostname x.x.x.x ! boot-start-marker boot-end-marker ! ! enable secret 5 xxxxxxxxxxxxxxxxxxxxxxxxxxxxx ! aaa new-model ! ! aaa authentication login default local aaa authentication login RemoteAccess local aaa authorization network default local aaa authorization network RemoteAccess local ! ! ! ! ! aaa session-id common ! ! no ipv6 cef ip source-route ip cef ! ! ! ! ! ! multilink bundle-name authenticated ! ! ! ! ! crypto pki token default removal timeout 0 ! ! voice-card 0 ! ! ! ! ! ! ! license udi pid CISCO2901/K9 sn FCZ1520C0L9 license accept end user agreement license boot module c2900 technology-package securityk9 license boot module c2900 technology-package uck9 license boot module c2900 technology-package datak9 ! ! username admin privilege 15 password 7 11081B06464058 ! redundancy ! ! ! ! ! ! crypto isakmp policy 1 encr 3des authentication pre-share group 2 ! crypto isakmp client configuration group xxxx key xxxxxxxxxxxx pool RemoteAccess-Pool acl 100 max-users 10 netmask 255.255.255.0 crypto isakmp profile RemoteAccess-IKE match identity group xxx client authentication list default isakmp authorization list default client configuration address respond virtual-template 1 ! ! crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac ! crypto ipsec profile RemoteAccess-IPSEC set transform-set ESP-3DES-SHA set isakmp-profile RemoteAccess-IKE ! ! ! ! ! ! interface Loopback1 ip address xxxxxxx xx.xxx.x..x..x ! interface GigabitEthernet0/0 ip address xx.xx.xx.xx xx.xx.xx.xx ip nat inside ip virtual-reassembly in duplex auto speed auto ! interface GigabitEthernet0/1 ip address xx.xx.xx.xx.xx xx.xx.xx.xx // that is public IP ip nat outside ip virtual-reassembly in duplex auto speed auto ! interface Virtual-Template1 type tunnel ip unnumbered Loopback1 tunnel mode ipsec ipv4 tunnel protection ipsec profile RemoteAccess-IPSEC ! ! ip local pool RemoteAccess-Pool xx.xx.xx.xx xx.xx.xx.xx ip forward-protocol nd ! no ip http server no ip http secure-server ! ip nat inside source list 1 interface GigabitEthernet0/1 overload ip nat inside source static tcp 192.168.xx.xx 4370 xx.xx.xx.xx 4370 extendable //First is the device static Second is the public ip route 0.0.0.0 0.0.0.0 xx.xx.xx.xxx ! logging esm config access-list 1 remark CCP_ACL Category=2 access-list 1 permit 192.168.xx.xx 0.0.0.xx access-list 100 permit ip 192.168.xx.xx 0.0.0.xx any ! ! ! ! ! ! ! control-plane ! ! ! ! mgcp profile default ! ! ! ! ! gatekeeper shutdown