Mark-Home# sho config : Saved : Written by enable_15 at 08:38:32.702 UTC Mon Aug 29 2016 PIX Version 6.3(3) interface ethernet0 auto interface ethernet1 100full nameif ethernet0 outside security0 nameif ethernet1 inside security100 enable password 8Ry2YjIyt7RRXU24 encrypted passwd jeunYHGhr8t.WxkZ encrypted hostname Mark-Home domain-name mills.int fixup protocol dns maximum-length 512 fixup protocol ftp 21 fixup protocol h323 h225 1720 fixup protocol h323 ras 1718-1719 fixup protocol http 80 fixup protocol rsh 514 fixup protocol rtsp 554 fixup protocol sip 5060 fixup protocol sip udp 5060 fixup protocol skinny 2000 fixup protocol smtp 25 fixup protocol sqlnet 1521 fixup protocol tftp 69 names access-list 111 permit ip 192.111.11.0 255.255.255.0 10.20.10.0 255.255.255.0 access-list 111 permit ip 192.111.11.0 255.255.255.0 192.168.1.0 255.255.255.0 access-list 111 permit ip 192.111.11.0 255.255.255.0 192.168.2.0 255.255.255.0 access-list 111 permit ip 192.111.11.0 255.255.255.0 10.20.20.0 255.255.255.0 access-list 111 permit ip 192.111.11.0 255.255.255.0 10.20.50.0 255.255.255.0 access-list 111 permit ip 192.111.11.0 255.255.255.0 10.20.1.0 255.255.255.0 access-list NONAT permit ip 192.111.11.0 255.255.255.0 10.20.10.0 255.255.255.0 access-list NONAT permit ip 192.111.11.0 255.255.255.0 192.168.1.0 255.255.255.0 access-list NONAT permit ip 192.111.11.0 255.255.255.0 192.168.2.0 255.255.255.0 access-list NONAT permit ip 192.111.11.0 255.255.255.0 10.20.20.0 255.255.255.0 access-list NONAT permit ip 192.111.11.0 255.255.255.0 10.20.50.0 255.255.255.0 access-list NONAT permit ip 192.111.11.0 255.255.255.0 10.20.1.0 255.255.255.0 access-list acl_outside permit esp any any access-list acl_outside permit udp any any eq isakmp access-list acl_outside permit icmp any any echo-reply access-list acl_outside permit icmp any any time-exceeded access-list acl_outside permit icmp any any unreachable access-list acl_outside permit icmp any any source-quench access-list acl_outside permit icmp any any echo pager lines 24 mtu outside 1500 mtu inside 1500 ip address outside dhcp setroute ip address inside 192.111.11.250 255.255.255.0 ip audit info action alarm ip audit attack action alarm pdm logging informational 100 pdm history enable arp timeout 14400 global (outside) 1 interface nat (inside) 0 access-list 111 nat (inside) 1 0.0.0.0 0.0.0.0 0 0 access-group acl_outside in interface outside timeout xlate 3:00:00 timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225 1:00:00 timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00 timeout uauth 0:05:00 absolute aaa-server TACACS+ protocol tacacs+ aaa-server RADIUS protocol radius aaa-server LOCAL protocol local http server enable http 0.0.0.0 0.0.0.0 outside http 192.111.11.0 255.255.255.0 inside no snmp-server location no snmp-server contact snmp-server community public no snmp-server enable traps floodguard enable sysopt connection permit-ipsec crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac crypto map client-map 111 ipsec-isakmp crypto map client-map 111 match address 111 crypto map client-map 111 set pfs crypto map client-map 111 set peer xx.174.143.98 crypto map client-map 111 set transform-set ESP-3DES-MD5 ESP-AES-128-SHA crypto map client-map client configuration address initiate crypto map client-map client configuration address respond crypto map client-map interface outside isakmp enable outside isakmp key ******** address xx.174.143.98 netmask 255.255.255.255 isakmp identity address isakmp nat-traversal 20 isakmp policy 2 authentication pre-share isakmp policy 2 encryption 3des isakmp policy 2 hash md5 isakmp policy 2 group 2 isakmp policy 2 lifetime 86400 telnet 192.111.11.0 255.255.255.0 inside telnet timeout 5 ssh 0.0.0.0 0.0.0.0 outside ssh timeout 5 console timeout 0 dhcpd address 192.111.11.251-192.111.11.254 inside dhcpd lease 3600 dhcpd ping_timeout 750 dhcpd auto_config outside terminal width 80 Cryptochecksum:a71b621d9e37a877b6725f37ec22ebc8