webvpn enable outside svc image disk0:/sslclient-win-1.1.4.179.pkg 1 svc enable group-policy DefaultRAGroup internal group-policy DefaultRAGroup attributes vpn-tunnel-protocol IPSec l2tp-ipsec group-policy DfltGrpPolicy attributes banner none wins-server none dns-server none dhcp-network-scope none vpn-access-hours none vpn-simultaneous-logins 3 vpn-idle-timeout 30 vpn-session-timeout none vpn-filter none vpn-tunnel-protocol IPSec l2tp-ipsec webvpn password-storage disable ip-comp disable re-xauth disable group-lock none pfs disable ipsec-udp disable ipsec-udp-port 10000 split-tunnel-policy tunnelall split-tunnel-network-list none default-domain none split-dns none intercept-dhcp 255.255.255.255 disable secure-unit-authentication disable user-authentication disable user-authentication-idle-timeout 30 ip-phone-bypass disable leap-bypass disable nem disable backup-servers keep-client-config msie-proxy server none msie-proxy method no-modify msie-proxy except-list none msie-proxy local-bypass disable nac disable nac-sq-period 300 nac-reval-period 36000 nac-default-acl none address-pools none smartcard-removal-disconnect enable client-firewall none client-access-rule none webvpn functions none html-content-filter none homepage none keep-alive-ignore 4 http-comp gzip filter none url-list none customization value DfltCustomization port-forward none port-forward-name value Application Access sso-server none deny-message value Login was successful, but because certain criteria have not been met or due to some specific group policy, you do not have permission to use any of the VPN features. Contact your IT administrator for more information svc none svc keep-installer installed svc keepalive none svc rekey time none svc rekey method none svc dpd-interval client none svc dpd-interval gateway none svc compression deflate group-policy WebGroupPolicy internal group-policy WebGroupPolicy attributes vpn-tunnel-protocol IPSec l2tp-ipsec webvpn webvpn svc required svc keep-installer installed svc rekey time 30 svc rekey method new-tunnel svc dpd-interval client 500 svc dpd-interval gateway 500 group-policy Internal_Users internal group-policy Internal_Users attributes vpn-tunnel-protocol IPSec l2tp-ipsec webvpn webvpn svc enable svc keep-installer installed svc rekey time 30 svc rekey method new-tunnel svc dpd-interval client 500 svc dpd-interval gateway 500 group-policy Dmz_Users internal group-policy Dmz_Users attributes vpn-tunnel-protocol IPSec l2tp-ipsec webvpn webvpn svc enable svc keep-installer installed svc rekey time 30 svc rekey method ssl svc dpd-interval client 500 svc dpd-interval gateway 500 group-policy cisco_clients internal group-policy cisco_clients attributes dns-server value 192.168.1.113 vpn-tunnel-protocol IPSec default-domain value cypra.local username test password x encrypted privilege 0 username test attributes vpn-group-policy cisco_clients username webuser1 password x encrypted username webuser1 attributes vpn-group-policy Dmz_Users username webtest password x encrypted privilege 4 username webtest attributes vpn-group-policy WebGroupPolicy username mikecl password x encrypted privilege 15 username admin851 password x nt-encrypted privilege 15 username admin851 attributes vpn-framed-ip-address 192.168.30.5 255.255.255.0 username user1 password x nt-encrypted username user1 attributes vpn-group-policy cisco_clients username user2 password xx nt-encrypted privilege 0 username dmztest password x nt-encrypted username cypraremote password x nt-encrypted privilege 0 username nextech password x encrypted privilege 15 username nextech attributes vpn-group-policy cisco_clients webvpn functions url-entry svc enable svc keep-installer installed svc rekey time 30 svc rekey method ssl username mantis password x nt-encrypted privilege 0 username gigeorge password x nt-encrypted privilege 0 username gigeorge attributes vpn-group-policy cisco_clients tunnel-group DefaultRAGroup general-attributes address-pool dmz_pool default-group-policy DefaultRAGroup strip-realm strip-group tunnel-group DefaultRAGroup ipsec-attributes pre-shared-key * tunnel-group DefaultRAGroup ppp-attributes no authentication chap authentication ms-chap-v2 tunnel-group DefaultWEBVPNGroup general-attributes default-group-policy WebGroupPolicy tunnel-group cisco_clients type ipsec-ra tunnel-group cisco_clients general-attributes address-pool inside_pool default-group-policy cisco_clients tunnel-group cisco_clients ipsec-attributes pre-shared-key * tunnel-group x.x.x.121 type ipsec-l2l tunnel-group x.x.x.121 ipsec-attributes pre-shared-key * tunnel-group WebTunnelGroup1 type webvpn tunnel-group WebTunnelGroup1 general-attributes address-pool inside_pool default-group-policy Internal_Users tunnel-group WebTunnelGroup type webvpn tunnel-group WebTunnelGroup general-attributes address-pool inside_SSL default-group-policy WebGroupPolicy ! ip local pool inside_pool 192.168.30.10-192.168.30.20 mask 255.255.255.0 ip local pool dmz_pool 192.168.31.10-192.168.31.20 mask 255.255.255.0 ip local pool inside_SSL 192.168.30.40-192.168.30.50 mask 255.255.255.0