<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi , Look like you need to in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503857#M236606</link>
    <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;Look like you need to modify default route with equal metric . Since you have many VPN tunnel try this in off business hour . Possibility your VPN tunnel may get flapped during this route &amp;nbsp;modification .&lt;/P&gt;&lt;P&gt;&amp;nbsp;no&amp;nbsp;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65 254&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65 1&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Share me show nat output from your ASA&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;HTH&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;Sandy&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 16 Jul 2014 02:30:49 GMT</pubDate>
    <dc:creator>SANTHOSHKUMAR SARAVANAN</dc:creator>
    <dc:date>2014-07-16T02:30:49Z</dc:date>
    <item>
      <title>I want configure secondary WAN on  ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503854#M236603</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have 2 redundant ASA 5510 &amp;nbsp;we had ISP1 configured on interface Ethernet 0/0 &amp;nbsp;with interface name outside. We use this WAN ip to access portal in application server.&lt;/P&gt;&lt;P&gt;This WAN ip (ISP1) is sometimes not stable so we configured new ISP WAN on Ethernet 0/3 with the name BACKUP .&lt;/P&gt;&lt;P&gt;I am able to ping the new WAN IP and I can use VPN/ssh to connect local servers however I can't access the application URL over the new WAN IP.&lt;/P&gt;&lt;P&gt;Please help.&lt;/P&gt;&lt;P&gt;Below are the configuration:&lt;/P&gt;&lt;P&gt;:&lt;BR /&gt;ASA Version 8.0(2)&lt;BR /&gt;!&lt;BR /&gt;hostname ACTIVE-SITE1&lt;BR /&gt;enable password TBdKmmusfDZ7gglC encrypted&lt;BR /&gt;names&lt;BR /&gt;name 176.9.42.71 nl.2.pool.ntp.org&lt;BR /&gt;name 67.18.187.111 nl.0.pool.ntp.org&lt;BR /&gt;name 41.204.120.137 nl.mg.pool.ntp.orgame 41.216.193.18 nl.3.africa.pool.ntp.org&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/0&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 217.74.232.15 255.255.255.224&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.1&lt;BR /&gt;&amp;nbsp;vlan 1&lt;BR /&gt;&amp;nbsp;nameif DB&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.151.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.2&lt;BR /&gt;&amp;nbsp;vlan 2&lt;BR /&gt;&amp;nbsp;nameif APP&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.152.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.3&lt;BR /&gt;&amp;nbsp;vlan 3&lt;BR /&gt;&amp;nbsp;nameif WEB&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.153.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.4&lt;BR /&gt;&amp;nbsp;vlan 4&lt;BR /&gt;&amp;nbsp;nameif ILO&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.154.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.5&lt;BR /&gt;&amp;nbsp;vlan 5&lt;BR /&gt;&amp;nbsp;nameif Ops&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.155.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt;&amp;nbsp;description LAN/STATE Failover Interface&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt;&amp;nbsp;nameif BACKUP&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 154.66.244.71 255.255.255.192&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;speed 10&lt;BR /&gt;&amp;nbsp;duplex half&lt;BR /&gt;&amp;nbsp;nameif DMZ&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.76.172.201 255.0.0.0&lt;BR /&gt;!&lt;BR /&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;BR /&gt;ftp mode passive&lt;BR /&gt;clock timezone EAT 3&lt;BR /&gt;dns domain-lookup outside&lt;BR /&gt;dns server-group DefaultDNS&lt;BR /&gt;&amp;nbsp;name-server 8.8.8.8&lt;BR /&gt;&amp;nbsp;name-server 8.8.4.4&lt;BR /&gt;same-security-traffic permit inter-interface&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;object-group service Mmoney tcp&lt;BR /&gt;&amp;nbsp;port-object eq 8092&lt;BR /&gt;&amp;nbsp;port-object eq 8001&lt;BR /&gt;object-group service PG tcp&lt;BR /&gt;&amp;nbsp;port-object eq 8900&lt;BR /&gt;&amp;nbsp;port-object eq 8901&lt;BR /&gt;object-group service DM_INLINE_TCP_1 tcp&lt;BR /&gt;&amp;nbsp;group-object Mmoney&lt;BR /&gt;&amp;nbsp;port-object eq www&lt;BR /&gt;&amp;nbsp;port-object eq https&lt;BR /&gt;&amp;nbsp;group-object PG&lt;BR /&gt;object-group network DM_INLINE_NETWORK_1&lt;BR /&gt;&amp;nbsp;network-object 172.16.151.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.152.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.153.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.154.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.155.0 255.255.255.128&lt;BR /&gt;object-group network DM_INLINE_NETWORK_4&lt;BR /&gt;&amp;nbsp;network-object 172.16.151.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.152.0 255.255.255.128&lt;BR /&gt;object-group network DM_INLINE_NETWORK_5&lt;BR /&gt;&amp;nbsp;network-object 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.162.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl standard permit 172.16.162.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_1 standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_4 standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_4 standard permit 10.0.0.0 255.0.0.0&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 10.0.0.0 255.255.255.192&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 10.76.172.0 255.255.255.0&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip object-group DM_INLINE_NETWORK_4 object-group DM_INLINE_NETWORK_5&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 40.40.40.0 255.255.255.192&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 70.70.70.0 255.255.255.128&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 10.0.0.0 255.0.0.0 40.40.40.0 255.255.255.192&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 40.40.40.0 255.255.255.0&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.0 10.0.0.0 255.0.0.0&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.155.0 255.255.255.128 192.168.46.0 255.255.255.0&lt;BR /&gt;access-list nationlink_splitTunnelAcl_2 standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_2 standard permit 172.16.151.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_2 standard permit 172.16.153.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_3 standard permit 172.16.151.0 255.255.255.128&lt;BR /&gt;access-list emaal-ilouser_splitTunnelAcl standard permit 172.16.154.0 255.255.255.128&lt;BR /&gt;access-list outside_access_in extended permit tcp any any object-group DM_INLINE_TCP_1&lt;BR /&gt;access-list outside_access_in extended permit tcp any any eq 6666&lt;BR /&gt;access-list outside_access_in extended permit tcp any any eq 7891&lt;BR /&gt;access-list outside_access_in extended permit udp any any eq ntp&lt;BR /&gt;access-list ILO_nat0_outbound extended permit ip 172.16.154.0 255.255.255.128 10.10.10.0 255.255.255.192&lt;BR /&gt;access-list ILO_nat0_outbound extended permit ip 172.16.154.0 255.255.255.128 40.40.40.0 255.255.255.0&lt;BR /&gt;access-list ILO_nat0_outbound extended permit ip 10.0.0.0 255.0.0.0 40.40.40.0 255.255.255.192&lt;BR /&gt;access-list outside_1_cryptomap extended permit ip 172.16.152.0 255.255.255.128 10.76.172.0 255.255.255.0&lt;BR /&gt;access-list outside_2_cryptomap extended permit ip 172.16.152.0 255.255.255.128 172.16.162.0 255.255.255.128&lt;BR /&gt;access-list ILOVLAN4_splitTunnelAcl standard permit 172.16.154.0 255.255.255.128&lt;BR /&gt;access-list sanovi-site1_splitTunnelAcl standard permit host 172.16.151.4&lt;BR /&gt;access-list DB_nat0_outbound extended permit ip host 172.16.151.4 25.25.25.0 255.255.255.224&lt;BR /&gt;access-list P2P extended permit ip 172.16.151.0 255.255.255.128 25.25.25.0 255.255.255.224&lt;BR /&gt;access-list P2P extended permit ip 172.16.151.0 255.255.255.128 172.16.161.0 255.255.255.128&lt;BR /&gt;access-list P2p_access_in extended permit ip any any&lt;BR /&gt;access-list nationlink3_splitTunnelAcl standard permit 172.16.154.0 255.255.255.128&lt;BR /&gt;access-list nationlink3_splitTunnelAcl standard permit 10.0.0.0 255.0.0.0&lt;BR /&gt;access-list cisco_splitTunnelAcl standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list cisco_splitTunnelAcl standard permit 10.0.0.0 255.0.0.0&lt;BR /&gt;access-list test_splitTunnelAcl standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list nonat extended permit ip 10.76.0.0 255.255.0.0 40.40.40.0 255.255.255.0&lt;BR /&gt;access-list nonatDMZ extended permit ip 10.0.0.0 255.0.0.0 40.40.40.0 255.255.255.0&lt;BR /&gt;access-list cap extended permit ip host 40.40.40.3 host 10.76.172.63&lt;BR /&gt;access-list cap extended permit ip host 10.76.172.63 host 40.40.40.3&lt;BR /&gt;access-list cap3 extended permit ip host 172.16.152.4 host 10.76.172.201&lt;BR /&gt;access-list cap3 extended permit ip host 10.76.172.201 host 172.16.152.4&lt;BR /&gt;access-list cap3 extended permit ip host 10.0.0.2 host 10.76.172.30&lt;BR /&gt;access-list cap3 extended permit ip host 10.76.172.30 host 10.0.0.2&lt;BR /&gt;access-list cap2 extended permit ip host 172.16.152.4 host 40.40.40.4&lt;BR /&gt;access-list cap2 extended permit ip host 40.40.40.4 host 172.16.152.4&lt;BR /&gt;access-list test extended permit ip host 172.16.151.4 host 10.76.172.63&lt;BR /&gt;access-list test extended permit ip host 10.76.172.63 host 172.16.151.4&lt;BR /&gt;access-list test1 extended permit ip host 172.16.152.4 host 10.76.172.63&lt;BR /&gt;access-list test1 extended permit ip host 10.76.172.63 host 172.16.152.4&lt;BR /&gt;access-list test2 extended permit ip host 172.16.152.4 host 10.76.172.201&lt;BR /&gt;access-list test2 extended permit ip host 10.76.172.201 host 172.16.152.4&lt;BR /&gt;access-list test3 extended permit ip host 172.16.152.4 host 172.16.151.126&lt;BR /&gt;access-list test3 extended permit ip host 172.16.151.126 host 172.16.152.4&lt;BR /&gt;access-list Ops_nat0_outbound extended permit ip 172.16.155.0 255.255.255.128 192.168.46.0 255.255.255.0&lt;BR /&gt;access-list outside_3_cryptomap extended permit ip 172.16.155.0 255.255.255.128 192.168.46.0 255.255.255.0&lt;BR /&gt;access-list NTP extended permit icmp host 172.16.153.3 any&lt;BR /&gt;access-list NTP extended permit icmp host 172.16.153.2 any&lt;BR /&gt;access-list NTP extended permit icmp host 172.16.153.1 any&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.3 host nl.2.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.2 host nl.2.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.1 host nl.2.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.3 host nl.0.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.2 host nl.0.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.1 host nl.0.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.3 host nl.mg.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.2 host nl.mg.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.1 host nl.mg.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.3 host nl.3.africa.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.2 host nl.3.africa.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.1 host nl.3.africa.pool.ntp.org eq ntp&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging buffered debugging&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu DB 1500&lt;BR /&gt;mtu APP 1500&lt;BR /&gt;mtu WEB 1500&lt;BR /&gt;mtu ILO 1500&lt;BR /&gt;mtu Ops 1500&lt;BR /&gt;mtu BACKUP 1500&lt;BR /&gt;mtu DMZ 1500&lt;BR /&gt;ip local pool VPN 10.0.0.2-10.0.0.50 mask 255.255.255.128&lt;BR /&gt;ip local pool ilo 10.10.10.2-10.10.10.50 mask 255.255.255.128&lt;BR /&gt;ip local pool vpnpool 40.40.40.1-40.40.40.40 mask 255.255.255.0&lt;BR /&gt;ip local pool sanovi 25.25.25.2-25.25.25.25 mask 255.255.255.128&lt;BR /&gt;ip local pool newVPN 70.70.70.1-70.70.70.70 mask 255.255.0.0&lt;BR /&gt;failover&lt;BR /&gt;failover lan unit primary&lt;BR /&gt;failover lan interface failover Ethernet0/2&lt;BR /&gt;failover key *****&lt;BR /&gt;failover link failover Ethernet0/2&lt;BR /&gt;failover interface ip failover 10.10.10.1 255.255.255.0 standby 10.10.10.2&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;icmp permit any APP&lt;BR /&gt;icmp permit any DMZ&lt;BR /&gt;asdm image disk0:/asdm-603.bin&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;global (outside) 1 interface&lt;BR /&gt;global (BACKUP) 1 interface&lt;BR /&gt;nat (DB) 0 access-list P2P&lt;BR /&gt;nat (APP) 0 access-list APP_nat0_outbound&lt;BR /&gt;nat (WEB) 1 access-list NTP&lt;BR /&gt;nat (ILO) 0 access-list ILO_nat0_outbound&lt;BR /&gt;nat (DMZ) 0 access-list nonatDMZ&lt;BR /&gt;static (WEB,outside) tcp interface https 172.16.153.3 8001 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;static (APP,outside) tcp interface 8900 172.16.152.7 8900 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;static (APP,outside) tcp interface 8901 172.16.152.7 8901 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;access-group outside_access_in in interface outside&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 217.74.232.1 1 track 1&lt;BR /&gt;route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65 254&lt;BR /&gt;route DMZ 172.16.161.0 255.255.255.0 192.168.1.2 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout uauth 0:05:00 absolute&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;aaa authentication ssh console LOCAL&lt;BR /&gt;http server enable 444&lt;BR /&gt;http 0.0.0.0 0.0.0.0 outside&lt;BR /&gt;http 0.0.0.0 0.0.0.0 BACKUP&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;sla monitor 123&lt;BR /&gt;&amp;nbsp;type echo protocol ipIcmpEcho 4.2.2.2 interface outside&lt;BR /&gt;&amp;nbsp;num-packets 3&lt;BR /&gt;&amp;nbsp;frequency 10&lt;BR /&gt;sla monitor schedule 123 life forever start-time now&lt;BR /&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;BR /&gt;crypto dynamic-map mydynamic 10 set transform-set ESP-DES-SHA ESP-DES-MD5 ESP-AES-256-MD5 ESP-AES-256-SHA ESP-AES-192-SHA ESP-3DES-SHA ESP-3DES-MD5&lt;BR /&gt;crypto map outside_map 1 match address outside_1_cryptomap&lt;BR /&gt;crypto map outside_map 1 set pfs&lt;BR /&gt;crypto map outside_map 1 set peer 217.74.232.3&lt;BR /&gt;crypto map outside_map 1 set transform-set ESP-3DES-SHA&lt;BR /&gt;crypto map outside_map 2 match address outside_2_cryptomap&lt;BR /&gt;crypto map outside_map 2 set pfs&lt;BR /&gt;crypto map outside_map 2 set peer 84.233.182.218&lt;BR /&gt;crypto map outside_map 2 set transform-set ESP-3DES-SHA&lt;BR /&gt;crypto map outside_map 3 match address outside_3_cryptomap&lt;BR /&gt;crypto map outside_map 3 set pfs&lt;BR /&gt;crypto map outside_map 3 set peer 121.241.107.34&lt;BR /&gt;crypto map outside_map 3 set transform-set ESP-3DES-MD5&lt;BR /&gt;crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;BR /&gt;crypto map outside_map interface outside&lt;BR /&gt;crypto map mymap 2 match address outside_2_cryptomap&lt;BR /&gt;crypto map mymap 2 set pfs&lt;BR /&gt;crypto map mymap 2 set peer 84.233.182.218&lt;BR /&gt;crypto map mymap 2 set transform-set ESP-3DES-SHA&lt;BR /&gt;crypto map mymap 1000 ipsec-isakmp dynamic mydynamic&lt;BR /&gt;crypto map mymap interface BACKUP&lt;BR /&gt;crypto isakmp enable outside&lt;BR /&gt;crypto isakmp enable BACKUP&lt;BR /&gt;crypto isakmp policy 1&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 86400&lt;BR /&gt;crypto isakmp policy 30&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 5&lt;BR /&gt;&amp;nbsp;lifetime 86400&lt;BR /&gt;crypto isakmp policy 50&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash md5&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 86400&lt;BR /&gt;no crypto isakmp nat-traversal&lt;BR /&gt;crypto isakmp ipsec-over-tcp port 10000&lt;BR /&gt;!&lt;BR /&gt;track 1 rtr 123 reachability&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 outside&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 BACKUP&lt;BR /&gt;ssh timeout 60&lt;BR /&gt;console timeout 0&lt;BR /&gt;management-access DMZ&lt;BR /&gt;vpn load-balancing&lt;BR /&gt;&amp;nbsp;interface lbprivate WEB&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp; inspect ftp&lt;BR /&gt;&amp;nbsp; inspect h323 h225&lt;BR /&gt;&amp;nbsp; inspect h323 ras&lt;BR /&gt;&amp;nbsp; inspect netbios&lt;BR /&gt;&amp;nbsp; inspect rsh&lt;BR /&gt;&amp;nbsp; inspect rtsp&lt;BR /&gt;&amp;nbsp; inspect skinny&lt;BR /&gt;&amp;nbsp; inspect esmtp&lt;BR /&gt;&amp;nbsp; inspect sqlnet&lt;BR /&gt;&amp;nbsp; inspect sunrpc&lt;BR /&gt;&amp;nbsp; inspect tftp&lt;BR /&gt;&amp;nbsp; inspect sip&lt;BR /&gt;&amp;nbsp; inspect xdmcp&lt;BR /&gt;&amp;nbsp; inspect icmp&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;ntp server nl.2.pool.ntp.org&lt;BR /&gt;ntp server nl.mg.pool.ntp.org&lt;BR /&gt;ntp server nl.3.africa.pool.ntp.org&lt;BR /&gt;ntp server nl.0.pool.ntp.org&lt;BR /&gt;group-policy test internal&lt;BR /&gt;group-policy test attributes&lt;BR /&gt;&amp;nbsp;dns-server value 4.2.2.2&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value test_splitTunnelAcl&lt;BR /&gt;group-policy sanovi-site1 internal&lt;BR /&gt;group-policy sanovi-site1 attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value sanovi-site1_splitTunnelAcl&lt;BR /&gt;group-policy ILOVLAN4 internal&lt;BR /&gt;group-policy ILOVLAN4 attributes&lt;BR /&gt;&amp;nbsp;dns-server value 4.2.2.2&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value ILOVLAN4_splitTunnelAcl&lt;BR /&gt;group-policy emaal-ilouser internal&lt;BR /&gt;group-policy emaal-ilouser attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value emaal-ilouser_splitTunnelAcl&lt;BR /&gt;group-policy cisco internal&lt;BR /&gt;group-policy cisco attributes&lt;BR /&gt;&amp;nbsp;dns-server value 4.2.2.2&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value cisco_splitTunnelAcl&lt;BR /&gt;group-policy nationlink3 internal&lt;BR /&gt;group-policy nationlink3 attributes&lt;BR /&gt;&amp;nbsp;dns-server value 4.2.2.2&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value nationlink3_splitTunnelAcl&lt;BR /&gt;group-policy nationlink internal&lt;BR /&gt;group-policy nationlink attributes&lt;BR /&gt;&amp;nbsp;vpn-simultaneous-logins 50&lt;BR /&gt;&amp;nbsp;vpn-idle-timeout none&lt;BR /&gt;&amp;nbsp;vpn-session-timeout none&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value nationlink_splitTunnelAcl_4&lt;BR /&gt;username test password P4ttSyrm33SV8TYp encrypted privilege 0&lt;BR /&gt;username test attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy test&lt;BR /&gt;username sanovi password yVffc6q4JZU//5xU encrypted privilege 0&lt;BR /&gt;username sanovi attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy sanovi-site1&lt;BR /&gt;username admin password SWZ1kF7VOHAXyK10 encrypted privilege 15&lt;BR /&gt;username emaal-ilouser password XCE.CqS6nvttZYic encrypted privilege 0&lt;BR /&gt;username emaal-ilouser attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy emaal-ilouser&lt;BR /&gt;username cisco123 password ffIRPGpDSOJh9YLq encrypted privilege 0&lt;BR /&gt;username cisco123 attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy cisco&lt;BR /&gt;username cisco1 password i675yHjYh7DFdX7e encrypted privilege 15&lt;BR /&gt;username cisco password 3USUcOPFUiMCO4Jk encrypted privilege 15&lt;BR /&gt;username nationlink3 password Q3j4FV4cRow3qzQ6 encrypted privilege 0&lt;BR /&gt;username nationlink3 attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy nationlink3&lt;BR /&gt;username nationlinkilo password guj9QBhuRxkKppvA encrypted privilege 0&lt;BR /&gt;username nationlinkilo attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy ILOVLAN4&lt;BR /&gt;username nationlink password y/fB7FUObNv4Fjl2 encrypted privilege 0&lt;BR /&gt;username nationlink attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy nationlink&lt;BR /&gt;&amp;nbsp;vpn-access-hours none&lt;BR /&gt;&amp;nbsp;vpn-simultaneous-logins 50&lt;BR /&gt;&amp;nbsp;vpn-idle-timeout none&lt;BR /&gt;&amp;nbsp;vpn-session-timeout none&lt;BR /&gt;tunnel-group nationlink type remote-access&lt;BR /&gt;tunnel-group nationlink general-attributes&lt;BR /&gt;&amp;nbsp;address-pool VPN&lt;BR /&gt;&amp;nbsp;default-group-policy nationlink&lt;BR /&gt;tunnel-group nationlink ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group 217.74.232.3 type ipsec-l2l&lt;BR /&gt;tunnel-group 217.74.232.3 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group emaal-ilouser type remote-access&lt;BR /&gt;tunnel-group emaal-ilouser general-attributes&lt;BR /&gt;&amp;nbsp;address-pool ilo&lt;BR /&gt;&amp;nbsp;default-group-policy emaal-ilouser&lt;BR /&gt;tunnel-group emaal-ilouser ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group 84.233.182.218 type ipsec-l2l&lt;BR /&gt;tunnel-group 84.233.182.218 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group ILOVLAN4 type remote-access&lt;BR /&gt;tunnel-group ILOVLAN4 general-attributes&lt;BR /&gt;&amp;nbsp;address-pool ilo&lt;BR /&gt;&amp;nbsp;default-group-policy ILOVLAN4&lt;BR /&gt;tunnel-group ILOVLAN4 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group sanovi-site1 type remote-access&lt;BR /&gt;tunnel-group sanovi-site1 general-attributes&lt;BR /&gt;&amp;nbsp;address-pool sanovi&lt;BR /&gt;&amp;nbsp;default-group-policy sanovi-site1&lt;BR /&gt;tunnel-group sanovi-site1 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group nationlink3 type remote-access&lt;BR /&gt;tunnel-group nationlink3 general-attributes&lt;BR /&gt;&amp;nbsp;address-pool vpnpool&lt;BR /&gt;&amp;nbsp;default-group-policy nationlink3&lt;BR /&gt;tunnel-group nationlink3 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group cisco type remote-access&lt;BR /&gt;tunnel-group cisco general-attributes&lt;BR /&gt;&amp;nbsp;address-pool vpnpool&lt;BR /&gt;&amp;nbsp;default-group-policy cisco&lt;BR /&gt;tunnel-group cisco ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group test type remote-access&lt;BR /&gt;tunnel-group test general-attributes&lt;BR /&gt;&amp;nbsp;address-pool newVPN&lt;BR /&gt;&amp;nbsp;default-group-policy test&lt;BR /&gt;tunnel-group test ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group 121.241.107.34 type ipsec-l2l&lt;BR /&gt;tunnel-group 121.241.107.34 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;prompt hostname context&lt;BR /&gt;Cryptochecksum:bef76609e6eb18222281f7dc65964ca3&lt;BR /&gt;: end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:27:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503854#M236603</guid>
      <dc:creator>fatahdirie</dc:creator>
      <dc:date>2019-03-12T04:27:58Z</dc:date>
    </item>
    <item>
      <title>Hi  Add below NATTo access</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503855#M236604</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Add below NAT&lt;/P&gt;&lt;P&gt;To access your NEW server via new WAN IP address .&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;static (WEB,BACKUP) tcp interface https 172.16.153.3 8001 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;HTH&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;Sandy&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Jul 2014 10:08:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503855#M236604</guid>
      <dc:creator>SANTHOSHKUMAR SARAVANAN</dc:creator>
      <dc:date>2014-07-15T10:08:09Z</dc:date>
    </item>
    <item>
      <title>Hi Sandy,Thanks for your time</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503856#M236605</link>
      <description>&lt;P&gt;Hi Sandy,&lt;/P&gt;&lt;P&gt;Thanks for your time.&lt;/P&gt;&lt;P&gt;I added below NAT:&lt;/P&gt;&lt;P&gt;static (WEB,BACKUP) tcp interface https 172.16.153.3 8001 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;static (APP,BACKUP) tcp interface 8900 172.16.152.7 8900 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;static (APP,BACKUP) tcp interface 8901 172.16.152.7 8901 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;but still I can access the URL with new WAN IP. here is the URL :&amp;nbsp;https://154.66.244.71/mmoney-web/&lt;/P&gt;&lt;P&gt;Please let me know what to do next.&lt;/P&gt;&lt;P&gt;Below are the running config after changes:&lt;/P&gt;&lt;P&gt;: Saved&lt;BR /&gt;:&lt;BR /&gt;ASA Version 8.0(2)&lt;BR /&gt;!&lt;BR /&gt;hostname ACTIVE-SITE1&lt;BR /&gt;enable password TBdKmmusfDZ7gglC encrypted&lt;BR /&gt;names&lt;BR /&gt;name 176.9.42.71 nl.2.pool.ntp.org&lt;BR /&gt;name 67.18.187.111 nl.0.pool.ntp.org&lt;BR /&gt;name 41.204.120.137 nl.mg.pool.ntp.org&lt;BR /&gt;name 41.216.193.18 nl.3.africa.pool.ntp.org&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/0&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 217.74.232.15 255.255.255.224&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.1&lt;BR /&gt;&amp;nbsp;vlan 1&lt;BR /&gt;&amp;nbsp;nameif DB&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.151.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.2&lt;BR /&gt;&amp;nbsp;vlan 2&lt;BR /&gt;&amp;nbsp;nameif APP&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.152.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.3&lt;BR /&gt;&amp;nbsp;vlan 3&lt;BR /&gt;&amp;nbsp;nameif WEB&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.153.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.4&lt;BR /&gt;&amp;nbsp;vlan 4&lt;BR /&gt;&amp;nbsp;nameif ILO&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.154.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1.5&lt;BR /&gt;&amp;nbsp;vlan 5&lt;BR /&gt;&amp;nbsp;nameif Ops&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.16.155.126 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt;&amp;nbsp;description LAN/STATE Failover Interface&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/3&lt;BR /&gt;&amp;nbsp;nameif BACKUP&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 154.66.244.71 255.255.255.192&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;speed 10&lt;BR /&gt;&amp;nbsp;duplex half&lt;BR /&gt;&amp;nbsp;nameif DMZ&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 10.76.172.201 255.0.0.0&lt;BR /&gt;!&lt;BR /&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;BR /&gt;ftp mode passive&lt;BR /&gt;clock timezone EAT 3&lt;BR /&gt;dns domain-lookup outside&lt;BR /&gt;dns server-group DefaultDNS&lt;BR /&gt;&amp;nbsp;name-server 8.8.8.8&lt;BR /&gt;&amp;nbsp;name-server 8.8.4.4&lt;BR /&gt;same-security-traffic permit inter-interface&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;object-group service Mmoney tcp&lt;BR /&gt;&amp;nbsp;port-object eq 8092&lt;BR /&gt;&amp;nbsp;port-object eq 8001&lt;BR /&gt;object-group service PG tcp&lt;BR /&gt;&amp;nbsp;port-object eq 8900&lt;BR /&gt;&amp;nbsp;port-object eq 8901&lt;BR /&gt;object-group service DM_INLINE_TCP_1 tcp&lt;BR /&gt;&amp;nbsp;group-object Mmoney&lt;BR /&gt;&amp;nbsp;port-object eq www&lt;BR /&gt;&amp;nbsp;port-object eq https&lt;BR /&gt;&amp;nbsp;group-object PG&lt;BR /&gt;object-group network DM_INLINE_NETWORK_1&lt;BR /&gt;&amp;nbsp;network-object 172.16.151.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.152.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.153.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.154.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.155.0 255.255.255.128&lt;BR /&gt;object-group network DM_INLINE_NETWORK_4&lt;BR /&gt;&amp;nbsp;network-object 172.16.151.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.152.0 255.255.255.128&lt;BR /&gt;object-group network DM_INLINE_NETWORK_5&lt;BR /&gt;&amp;nbsp;network-object 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp;network-object 172.16.162.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl standard permit 172.16.162.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_1 standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_4 standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_4 standard permit 10.0.0.0 255.0.0.0&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 10.0.0.0 255.255.255.192&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 10.76.172.0 255.255.255.0&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip object-group DM_INLINE_NETWORK_4 object-group DM_INLINE_NETWORK_5&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 40.40.40.0 255.255.255.192&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 70.70.70.0 255.255.255.128&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 10.0.0.0 255.0.0.0 40.40.40.0 255.255.255.192&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.128 40.40.40.0 255.255.255.0&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.152.0 255.255.255.0 10.0.0.0 255.0.0.0&lt;BR /&gt;access-list APP_nat0_outbound extended permit ip 172.16.155.0 255.255.255.128 192.168.46.0 255.255.255.0&lt;BR /&gt;access-list nationlink_splitTunnelAcl_2 standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_2 standard permit 172.16.151.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_2 standard permit 172.16.153.0 255.255.255.128&lt;BR /&gt;access-list nationlink_splitTunnelAcl_3 standard permit 172.16.151.0 255.255.255.128&lt;BR /&gt;access-list emaal-ilouser_splitTunnelAcl standard permit 172.16.154.0 255.255.255.128&lt;BR /&gt;access-list outside_access_in extended permit tcp any any object-group DM_INLINE_TCP_1&lt;BR /&gt;access-list outside_access_in extended permit tcp any any eq 6666&lt;BR /&gt;access-list outside_access_in extended permit tcp any any eq 7891&lt;BR /&gt;access-list outside_access_in extended permit udp any any eq ntp&lt;BR /&gt;access-list ILO_nat0_outbound extended permit ip 172.16.154.0 255.255.255.128 10.10.10.0 255.255.255.192&lt;BR /&gt;access-list ILO_nat0_outbound extended permit ip 172.16.154.0 255.255.255.128 40.40.40.0 255.255.255.0&lt;BR /&gt;access-list ILO_nat0_outbound extended permit ip 10.0.0.0 255.0.0.0 40.40.40.0 255.255.255.192&lt;BR /&gt;access-list outside_1_cryptomap extended permit ip 172.16.152.0 255.255.255.128 10.76.172.0 255.255.255.0&lt;BR /&gt;access-list outside_2_cryptomap extended permit ip 172.16.152.0 255.255.255.128 172.16.162.0 255.255.255.128&lt;BR /&gt;access-list ILOVLAN4_splitTunnelAcl standard permit 172.16.154.0 255.255.255.128&lt;BR /&gt;access-list sanovi-site1_splitTunnelAcl standard permit host 172.16.151.4&lt;BR /&gt;access-list DB_nat0_outbound extended permit ip host 172.16.151.4 25.25.25.0 255.255.255.224&lt;BR /&gt;access-list P2P extended permit ip 172.16.151.0 255.255.255.128 25.25.25.0 255.255.255.224&lt;BR /&gt;access-list P2P extended permit ip 172.16.151.0 255.255.255.128 172.16.161.0 255.255.255.128&lt;BR /&gt;access-list P2p_access_in extended permit ip any any&lt;BR /&gt;access-list nationlink3_splitTunnelAcl standard permit 172.16.154.0 255.255.255.128&lt;BR /&gt;access-list nationlink3_splitTunnelAcl standard permit 10.0.0.0 255.0.0.0&lt;BR /&gt;access-list cisco_splitTunnelAcl standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list cisco_splitTunnelAcl standard permit 10.0.0.0 255.0.0.0&lt;BR /&gt;access-list test_splitTunnelAcl standard permit 172.16.152.0 255.255.255.128&lt;BR /&gt;access-list nonat extended permit ip 10.76.0.0 255.255.0.0 40.40.40.0 255.255.255.0&lt;BR /&gt;access-list nonatDMZ extended permit ip 10.0.0.0 255.0.0.0 40.40.40.0 255.255.255.0&lt;BR /&gt;access-list cap extended permit ip host 40.40.40.3 host 10.76.172.63&lt;BR /&gt;access-list cap extended permit ip host 10.76.172.63 host 40.40.40.3&lt;BR /&gt;access-list cap3 extended permit ip host 172.16.152.4 host 10.76.172.201&lt;BR /&gt;access-list cap3 extended permit ip host 10.76.172.201 host 172.16.152.4&lt;BR /&gt;access-list cap3 extended permit ip host 10.0.0.2 host 10.76.172.30&lt;BR /&gt;access-list cap3 extended permit ip host 10.76.172.30 host 10.0.0.2&lt;BR /&gt;access-list cap2 extended permit ip host 172.16.152.4 host 40.40.40.4&lt;BR /&gt;access-list cap2 extended permit ip host 40.40.40.4 host 172.16.152.4&lt;BR /&gt;access-list test extended permit ip host 172.16.151.4 host 10.76.172.63&lt;BR /&gt;access-list test extended permit ip host 10.76.172.63 host 172.16.151.4&lt;BR /&gt;access-list test1 extended permit ip host 172.16.152.4 host 10.76.172.63&lt;BR /&gt;access-list test1 extended permit ip host 10.76.172.63 host 172.16.152.4&lt;BR /&gt;access-list test2 extended permit ip host 172.16.152.4 host 10.76.172.201&lt;BR /&gt;access-list test2 extended permit ip host 10.76.172.201 host 172.16.152.4&lt;BR /&gt;access-list test3 extended permit ip host 172.16.152.4 host 172.16.151.126&lt;BR /&gt;access-list test3 extended permit ip host 172.16.151.126 host 172.16.152.4&lt;BR /&gt;access-list Ops_nat0_outbound extended permit ip 172.16.155.0 255.255.255.128 192.168.46.0 255.255.255.0&lt;BR /&gt;access-list outside_3_cryptomap extended permit ip 172.16.155.0 255.255.255.128 192.168.46.0 255.255.255.0&lt;BR /&gt;access-list NTP extended permit icmp host 172.16.153.3 any&lt;BR /&gt;access-list NTP extended permit icmp host 172.16.153.2 any&lt;BR /&gt;access-list NTP extended permit icmp host 172.16.153.1 any&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.3 host nl.2.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.2 host nl.2.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.1 host nl.2.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.3 host nl.0.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.2 host nl.0.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.1 host nl.0.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.3 host nl.mg.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.2 host nl.mg.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.1 host nl.mg.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.3 host nl.3.africa.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.2 host nl.3.africa.pool.ntp.org eq ntp&lt;BR /&gt;access-list NTP extended permit udp host 172.16.153.1 host nl.3.africa.pool.ntp.org eq ntp&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging buffered debugging&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu DB 1500&lt;BR /&gt;mtu APP 1500&lt;BR /&gt;mtu WEB 1500&lt;BR /&gt;mtu ILO 1500&lt;BR /&gt;mtu Ops 1500&lt;BR /&gt;mtu BACKUP 1500&lt;BR /&gt;mtu DMZ 1500&lt;BR /&gt;ip local pool VPN 10.0.0.2-10.0.0.50 mask 255.255.255.128&lt;BR /&gt;ip local pool ilo 10.10.10.2-10.10.10.50 mask 255.255.255.128&lt;BR /&gt;ip local pool vpnpool 40.40.40.1-40.40.40.40 mask 255.255.255.0&lt;BR /&gt;ip local pool sanovi 25.25.25.2-25.25.25.25 mask 255.255.255.128&lt;BR /&gt;ip local pool newVPN 70.70.70.1-70.70.70.70 mask 255.255.0.0&lt;BR /&gt;failover&lt;BR /&gt;failover lan unit primary&lt;BR /&gt;failover lan interface failover Ethernet0/2&lt;BR /&gt;failover key *****&lt;BR /&gt;failover link failover Ethernet0/2&lt;BR /&gt;failover interface ip failover 10.10.10.1 255.255.255.0 standby 10.10.10.2&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;icmp permit any APP&lt;BR /&gt;icmp permit any DMZ&lt;BR /&gt;asdm image disk0:/asdm-603.bin&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;global (outside) 1 interface&lt;BR /&gt;global (BACKUP) 1 interface&lt;BR /&gt;nat (DB) 0 access-list P2P&lt;BR /&gt;nat (APP) 0 access-list APP_nat0_outbound&lt;BR /&gt;nat (WEB) 1 access-list NTP&lt;BR /&gt;nat (ILO) 0 access-list ILO_nat0_outbound&lt;BR /&gt;nat (DMZ) 0 access-list nonatDMZ&lt;BR /&gt;static (WEB,outside) tcp interface https 172.16.153.3 8001 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;static (APP,outside) tcp interface 8900 172.16.152.7 8900 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;static (APP,outside) tcp interface 8901 172.16.152.7 8901 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;static (WEB,BACKUP) tcp interface https 172.16.153.3 8001 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;BR /&gt;access-group outside_access_in in interface outside&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 217.74.232.1 1 track 1&lt;BR /&gt;route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65 254&lt;BR /&gt;route DMZ 172.16.161.0 255.255.255.0 192.168.1.2 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout uauth 0:05:00 absolute&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;aaa authentication ssh console LOCAL&lt;BR /&gt;http server enable&lt;BR /&gt;http 0.0.0.0 0.0.0.0 outside&lt;BR /&gt;http 0.0.0.0 0.0.0.0 BACKUP&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;sla monitor 123&lt;BR /&gt;&amp;nbsp;type echo protocol ipIcmpEcho 4.2.2.2 interface outside&lt;BR /&gt;&amp;nbsp;num-packets 3&lt;BR /&gt;&amp;nbsp;frequency 10&lt;BR /&gt;sla monitor schedule 123 life forever start-time now&lt;BR /&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;BR /&gt;crypto dynamic-map mydynamic 10 set transform-set ESP-DES-SHA ESP-DES-MD5 ESP-AES-256-MD5 ESP-AES-256-SHA ESP-AES-192-SHA ESP-3DES-SHA ESP-3DES-MD5&lt;BR /&gt;crypto map outside_map 1 match address outside_1_cryptomap&lt;BR /&gt;crypto map outside_map 1 set pfs&lt;BR /&gt;crypto map outside_map 1 set peer 217.74.232.3&lt;BR /&gt;crypto map outside_map 1 set transform-set ESP-3DES-SHA&lt;BR /&gt;crypto map outside_map 2 match address outside_2_cryptomap&lt;BR /&gt;crypto map outside_map 2 set pfs&lt;BR /&gt;crypto map outside_map 2 set peer 84.233.182.218&lt;BR /&gt;crypto map outside_map 2 set transform-set ESP-3DES-SHA&lt;BR /&gt;crypto map outside_map 3 match address outside_3_cryptomap&lt;BR /&gt;crypto map outside_map 3 set pfs&lt;BR /&gt;crypto map outside_map 3 set peer 121.241.107.34&lt;BR /&gt;crypto map outside_map 3 set transform-set ESP-3DES-MD5&lt;BR /&gt;crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;BR /&gt;crypto map outside_map interface outside&lt;BR /&gt;crypto map mymap 2 match address outside_2_cryptomap&lt;BR /&gt;crypto map mymap 2 set pfs&lt;BR /&gt;crypto map mymap 2 set peer 84.233.182.218&lt;BR /&gt;crypto map mymap 2 set transform-set ESP-3DES-SHA&lt;BR /&gt;crypto map mymap 1000 ipsec-isakmp dynamic mydynamic&lt;BR /&gt;crypto map mymap interface BACKUP&lt;BR /&gt;crypto isakmp enable outside&lt;BR /&gt;crypto isakmp enable BACKUP&lt;BR /&gt;crypto isakmp policy 1&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 86400&lt;BR /&gt;crypto isakmp policy 30&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 5&lt;BR /&gt;&amp;nbsp;lifetime 86400&lt;BR /&gt;crypto isakmp policy 50&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash md5&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 86400&lt;BR /&gt;no crypto isakmp nat-traversal&lt;BR /&gt;crypto isakmp ipsec-over-tcp port 10000&lt;BR /&gt;!&lt;BR /&gt;track 1 rtr 123 reachability&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 outside&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 BACKUP&lt;BR /&gt;ssh timeout 60&lt;BR /&gt;console timeout 0&lt;BR /&gt;management-access DMZ&lt;BR /&gt;vpn load-balancing&lt;BR /&gt;&amp;nbsp;interface lbprivate WEB&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp; inspect ftp&lt;BR /&gt;&amp;nbsp; inspect h323 h225&lt;BR /&gt;&amp;nbsp; inspect h323 ras&lt;BR /&gt;&amp;nbsp; inspect netbios&lt;BR /&gt;&amp;nbsp; inspect rsh&lt;BR /&gt;&amp;nbsp; inspect rtsp&lt;BR /&gt;&amp;nbsp; inspect skinny&lt;BR /&gt;&amp;nbsp; inspect esmtp&lt;BR /&gt;&amp;nbsp; inspect sqlnet&lt;BR /&gt;&amp;nbsp; inspect sunrpc&lt;BR /&gt;&amp;nbsp; inspect tftp&lt;BR /&gt;&amp;nbsp; inspect sip&lt;BR /&gt;&amp;nbsp; inspect xdmcp&lt;BR /&gt;&amp;nbsp; inspect icmp&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;ntp server nl.2.pool.ntp.org&lt;BR /&gt;ntp server nl.mg.pool.ntp.org&lt;BR /&gt;ntp server nl.3.africa.pool.ntp.org&lt;BR /&gt;ntp server nl.0.pool.ntp.org&lt;BR /&gt;group-policy test internal&lt;BR /&gt;group-policy test attributes&lt;BR /&gt;&amp;nbsp;dns-server value 4.2.2.2&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value test_splitTunnelAcl&lt;BR /&gt;group-policy sanovi-site1 internal&lt;BR /&gt;group-policy sanovi-site1 attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value sanovi-site1_splitTunnelAcl&lt;BR /&gt;group-policy ILOVLAN4 internal&lt;BR /&gt;group-policy ILOVLAN4 attributes&lt;BR /&gt;&amp;nbsp;dns-server value 4.2.2.2&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value ILOVLAN4_splitTunnelAcl&lt;BR /&gt;group-policy emaal-ilouser internal&lt;BR /&gt;group-policy emaal-ilouser attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value emaal-ilouser_splitTunnelAcl&lt;BR /&gt;group-policy cisco internal&lt;BR /&gt;group-policy cisco attributes&lt;BR /&gt;&amp;nbsp;dns-server value 4.2.2.2&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value cisco_splitTunnelAcl&lt;BR /&gt;group-policy nationlink3 internal&lt;BR /&gt;group-policy nationlink3 attributes&lt;BR /&gt;&amp;nbsp;dns-server value 4.2.2.2&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value nationlink3_splitTunnelAcl&lt;BR /&gt;group-policy nationlink internal&lt;BR /&gt;group-policy nationlink attributes&lt;BR /&gt;&amp;nbsp;vpn-simultaneous-logins 50&lt;BR /&gt;&amp;nbsp;vpn-idle-timeout none&lt;BR /&gt;&amp;nbsp;vpn-session-timeout none&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value nationlink_splitTunnelAcl_4&lt;BR /&gt;username test password P4ttSyrm33SV8TYp encrypted privilege 0&lt;BR /&gt;username test attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy test&lt;BR /&gt;username sanovi password yVffc6q4JZU//5xU encrypted privilege 0&lt;BR /&gt;username sanovi attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy sanovi-site1&lt;BR /&gt;username admin password SWZ1kF7VOHAXyK10 encrypted privilege 15&lt;BR /&gt;username emaal-ilouser password XCE.CqS6nvttZYic encrypted privilege 0&lt;BR /&gt;username emaal-ilouser attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy emaal-ilouser&lt;BR /&gt;username cisco123 password ffIRPGpDSOJh9YLq encrypted privilege 0&lt;BR /&gt;username cisco123 attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy cisco&lt;BR /&gt;username cisco1 password i675yHjYh7DFdX7e encrypted privilege 15&lt;BR /&gt;username cisco password 3USUcOPFUiMCO4Jk encrypted privilege 15&lt;BR /&gt;username nationlink3 password Q3j4FV4cRow3qzQ6 encrypted privilege 0&lt;BR /&gt;username nationlink3 attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy nationlink3&lt;BR /&gt;username nationlinkilo password guj9QBhuRxkKppvA encrypted privilege 0&lt;BR /&gt;username nationlinkilo attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy ILOVLAN4&lt;BR /&gt;username nationlink password y/fB7FUObNv4Fjl2 encrypted privilege 0&lt;BR /&gt;username nationlink attributes&lt;BR /&gt;&amp;nbsp;vpn-group-policy nationlink&lt;BR /&gt;&amp;nbsp;vpn-access-hours none&lt;BR /&gt;&amp;nbsp;vpn-simultaneous-logins 50&lt;BR /&gt;&amp;nbsp;vpn-idle-timeout none&lt;BR /&gt;&amp;nbsp;vpn-session-timeout none&lt;BR /&gt;tunnel-group nationlink type remote-access&lt;BR /&gt;tunnel-group nationlink general-attributes&lt;BR /&gt;&amp;nbsp;address-pool VPN&lt;BR /&gt;&amp;nbsp;default-group-policy nationlink&lt;BR /&gt;tunnel-group nationlink ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group 217.74.232.3 type ipsec-l2l&lt;BR /&gt;tunnel-group 217.74.232.3 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group emaal-ilouser type remote-access&lt;BR /&gt;tunnel-group emaal-ilouser general-attributes&lt;BR /&gt;&amp;nbsp;address-pool ilo&lt;BR /&gt;&amp;nbsp;default-group-policy emaal-ilouser&lt;BR /&gt;tunnel-group emaal-ilouser ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group 84.233.182.218 type ipsec-l2l&lt;BR /&gt;tunnel-group 84.233.182.218 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group ILOVLAN4 type remote-access&lt;BR /&gt;tunnel-group ILOVLAN4 general-attributes&lt;BR /&gt;&amp;nbsp;address-pool ilo&lt;BR /&gt;&amp;nbsp;default-group-policy ILOVLAN4&lt;BR /&gt;tunnel-group ILOVLAN4 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group sanovi-site1 type remote-access&lt;BR /&gt;tunnel-group sanovi-site1 general-attributes&lt;BR /&gt;&amp;nbsp;address-pool sanovi&lt;BR /&gt;&amp;nbsp;default-group-policy sanovi-site1&lt;BR /&gt;tunnel-group sanovi-site1 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group nationlink3 type remote-access&lt;BR /&gt;tunnel-group nationlink3 general-attributes&lt;BR /&gt;&amp;nbsp;address-pool vpnpool&lt;BR /&gt;&amp;nbsp;default-group-policy nationlink3&lt;BR /&gt;tunnel-group nationlink3 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group cisco type remote-access&lt;BR /&gt;tunnel-group cisco general-attributes&lt;BR /&gt;&amp;nbsp;address-pool vpnpool&lt;BR /&gt;&amp;nbsp;default-group-policy cisco&lt;BR /&gt;tunnel-group cisco ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group test type remote-access&lt;BR /&gt;tunnel-group test general-attributes&lt;BR /&gt;&amp;nbsp;address-pool newVPN&lt;BR /&gt;&amp;nbsp;default-group-policy test&lt;BR /&gt;tunnel-group test ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;tunnel-group 121.241.107.34 type ipsec-l2l&lt;BR /&gt;tunnel-group 121.241.107.34 ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;prompt hostname context&lt;BR /&gt;Cryptochecksum:bef76609e6eb18222281f7dc65964ca3&lt;BR /&gt;: end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Abdul&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Jul 2014 23:53:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503856#M236605</guid>
      <dc:creator>fatahdirie</dc:creator>
      <dc:date>2014-07-15T23:53:55Z</dc:date>
    </item>
    <item>
      <title>Hi , Look like you need to</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503857#M236606</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;Look like you need to modify default route with equal metric . Since you have many VPN tunnel try this in off business hour . Possibility your VPN tunnel may get flapped during this route &amp;nbsp;modification .&lt;/P&gt;&lt;P&gt;&amp;nbsp;no&amp;nbsp;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65 254&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65 1&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Share me show nat output from your ASA&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;HTH&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;Sandy&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2014 02:30:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503857#M236606</guid>
      <dc:creator>SANTHOSHKUMAR SARAVANAN</dc:creator>
      <dc:date>2014-07-16T02:30:49Z</dc:date>
    </item>
    <item>
      <title>Hi Sandy, I executed the</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503858#M236607</link>
      <description>&lt;P&gt;Hi Sandy,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I executed the commands, the first one remove the route entry but entering the second route command, I am getting &amp;nbsp;below error:&lt;/P&gt;&lt;P&gt;ACTIVE-SITE1(config)# route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65 1&lt;BR /&gt;&lt;SPAN style="color:#FF0000;"&gt;ERROR: Cannot add route entry, conflict with existing routes&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Abdul&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2014 11:24:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503858#M236607</guid>
      <dc:creator>fatahdirie</dc:creator>
      <dc:date>2014-07-16T11:24:07Z</dc:date>
    </item>
    <item>
      <title>Hi , Remove 1 from your below</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503859#M236608</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;Remove 1 from your below command&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;HTH&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;Sandy&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2014 11:24:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503859#M236608</guid>
      <dc:creator>SANTHOSHKUMAR SARAVANAN</dc:creator>
      <dc:date>2014-07-16T11:24:08Z</dc:date>
    </item>
    <item>
      <title>Hi Sandy,Still I am getting</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503860#M236609</link>
      <description>&lt;P&gt;Hi Sandy,&lt;/P&gt;&lt;P&gt;Still I am getting the same error:&lt;/P&gt;&lt;P&gt;ACTIVE-SITE1(config)# route BACKUP 0.0.0.0 0.0.0.0 154.66.244.65&lt;BR /&gt;ERROR: Cannot add route entry, conflict with existing routes&lt;BR /&gt;ACTIVE-SITE1(config)#&lt;/P&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;P&gt;below is the show nat command output:&lt;/P&gt;&lt;P&gt;ACTIVE-SITE1# show nat&lt;/P&gt;&lt;P&gt;NAT policies on Interface DB:&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 outside 25.25.25.0 255.255.255.224&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 1, untranslate_hits = 2&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 outside 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 DB 25.25.25.0 255.255.255.224&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 DB 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 APP 25.25.25.0 255.255.255.224&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 APP 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 WEB 25.25.25.0 255.255.255.224&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 WEB 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 ILO 25.25.25.0 255.255.255.224&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 ILO 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 Ops 25.25.25.0 255.255.255.224&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 Ops 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 BACKUP 25.25.25.0 255.255.255.224&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 BACKUP 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 DMZ 25.25.25.0 255.255.255.224&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DB 172.16.151.0 255.255.255.128 DMZ 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 94768, untranslate_hits = 0&lt;/P&gt;&lt;P&gt;NAT policies on Interface APP:&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 outside 10.0.0.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 938, untranslate_hits = 467472&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 outside 10.76.172.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 263, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 outside 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 outside 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 outside 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 outside 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 2263506, untranslate_hits = 19378&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 outside 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 outside 70.70.70.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 10.0.0.0 255.0.0.0 outside 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 outside 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.0 outside 10.0.0.0 255.0.0.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 68, untranslate_hits = 26011&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.155.0 255.255.255.128 outside 192.168.46.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DB 10.0.0.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DB 10.76.172.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 DB 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 DB 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DB 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DB 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DB 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DB 70.70.70.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 10.0.0.0 255.0.0.0 DB 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DB 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.0 DB 10.0.0.0 255.0.0.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.155.0 255.255.255.128 DB 192.168.46.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 APP 10.0.0.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 APP 10.76.172.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 APP 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 APP 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 APP 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 APP 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 APP 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 APP 70.70.70.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 10.0.0.0 255.0.0.0 APP 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 APP 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.0 APP 10.0.0.0 255.0.0.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.155.0 255.255.255.128 APP 192.168.46.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 WEB 10.0.0.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 WEB 10.76.172.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 WEB 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 WEB 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 WEB 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 WEB 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 WEB 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 WEB 70.70.70.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 10.0.0.0 255.0.0.0 WEB 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 WEB 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.0 WEB 10.0.0.0 255.0.0.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.155.0 255.255.255.128 WEB 192.168.46.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 ILO 10.0.0.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 ILO 10.76.172.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 ILO 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 ILO 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 ILO 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 ILO 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 ILO 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 ILO 70.70.70.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 10.0.0.0 255.0.0.0 ILO 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 ILO 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.0 ILO 10.0.0.0 255.0.0.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.155.0 255.255.255.128 ILO 192.168.46.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 Ops 10.0.0.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 Ops 10.76.172.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 Ops 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 Ops 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 Ops 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 Ops 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 Ops 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 Ops 70.70.70.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 10.0.0.0 255.0.0.0 Ops 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 Ops 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.0 Ops 10.0.0.0 255.0.0.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.155.0 255.255.255.128 Ops 192.168.46.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 BACKUP 10.0.0.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 48, untranslate_hits = 438&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 BACKUP 10.76.172.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 BACKUP 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 BACKUP 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 BACKUP 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 BACKUP 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 21818, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 BACKUP 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 BACKUP 70.70.70.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 10.0.0.0 255.0.0.0 BACKUP 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 BACKUP 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.0 BACKUP 10.0.0.0 255.0.0.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.155.0 255.255.255.128 BACKUP 192.168.46.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DMZ 10.0.0.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 20981, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DMZ 10.76.172.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 4521402, untranslate_hits = 659606&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 DMZ 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.151.0 255.255.255.128 DMZ 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DMZ 172.16.161.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 422, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DMZ 172.16.162.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DMZ 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DMZ 70.70.70.0 255.255.255.128&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 10.0.0.0 255.0.0.0 DMZ 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.128 DMZ 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.152.0 255.255.255.0 DMZ 10.0.0.0 255.0.0.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 8, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip APP 172.16.155.0 255.255.255.128 DMZ 192.168.46.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match tcp APP host 172.16.152.7 eq 8900 outside any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; static translation to 217.74.232.15/8900&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 72, untranslate_hits = 8119&lt;BR /&gt;&amp;nbsp; match tcp APP host 172.16.152.7 eq 8901 outside any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; static translation to 217.74.232.15/8901&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 9, untranslate_hits = 810&lt;BR /&gt;&amp;nbsp; match tcp APP host 172.16.152.7 eq 8900 BACKUP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; static translation to 154.66.244.71/8900&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match tcp APP host 172.16.152.7 eq 8901 BACKUP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; static translation to 154.66.244.71/8901&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;/P&gt;&lt;P&gt;NAT policies on Interface WEB:&lt;BR /&gt;&amp;nbsp; match tcp WEB host 172.16.153.3 eq 8001 outside any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; static translation to 217.74.232.15/443&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 1963, untranslate_hits = 104996&lt;BR /&gt;&amp;nbsp; match tcp WEB host 172.16.153.3 eq 8001 BACKUP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; static translation to 154.66.244.71/443&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 3, untranslate_hits = 223&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.3 outside any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.2 outside any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 13, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.1 outside any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 182, untranslate_hits = 1&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 outside host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 outside host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 31, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 outside host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 36, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 outside host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 outside host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 30, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 outside host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 34, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 outside host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 outside host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 59040, untranslate_hits = 7918&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 outside host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 52538, untranslate_hits = 2443&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 outside host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 outside host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 42024, untranslate_hits = 5802&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 outside host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (217.74.232.15 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 42288, untranslate_hits = 11283&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.3 DB any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.2 DB any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.1 DB any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 DB host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 DB host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 DB host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 DB host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 DB host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 DB host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 DB host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 DB host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 DB host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 DB host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 DB host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 DB host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.3 APP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.2 APP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.1 APP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 APP host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 APP host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 APP host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 APP host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 APP host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 APP host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 APP host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 APP host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 APP host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 APP host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 APP host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 APP host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.3 WEB any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.2 WEB any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.1 WEB any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 WEB host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 WEB host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 WEB host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 WEB host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 WEB host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 WEB host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 WEB host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 WEB host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 WEB host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 WEB host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 WEB host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 WEB host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.3 ILO any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.2 ILO any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.1 ILO any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 ILO host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 ILO host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 ILO host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 ILO host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 ILO host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 ILO host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 ILO host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 ILO host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 ILO host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 ILO host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 ILO host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 ILO host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.3 Ops any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.2 Ops any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.1 Ops any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 762, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 Ops host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 Ops host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 Ops host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 Ops host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 Ops host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 Ops host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 Ops host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 Ops host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 Ops host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 Ops host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 Ops host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 Ops host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.3 BACKUP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.2 BACKUP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.1 BACKUP any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 BACKUP host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 BACKUP host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 BACKUP host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 BACKUP host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 BACKUP host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 BACKUP host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 BACKUP host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 BACKUP host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 542, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 BACKUP host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 530, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 BACKUP host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 BACKUP host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 548, untranslate_hits = 428&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 BACKUP host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (154.66.244.71 [Interface PAT])&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 531, untranslate_hits = 423&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.3 DMZ any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.2 DMZ any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match icmp WEB host 172.16.153.1 DMZ any&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 DMZ host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 DMZ host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 DMZ host nl.2.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 DMZ host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 DMZ host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 DMZ host nl.0.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 DMZ host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 DMZ host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 DMZ host nl.mg.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.3 DMZ host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.2 DMZ host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match udp WEB host 172.16.153.1 DMZ host nl.3.africa.pool.ntp.org eq 123&lt;BR /&gt;&amp;nbsp; &amp;nbsp; dynamic translation to pool 1 (No matching global)&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;/P&gt;&lt;P&gt;NAT policies on Interface ILO:&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 outside 10.10.10.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 outside 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 10.0.0.0 255.0.0.0 outside 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 DB 10.10.10.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 DB 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 10.0.0.0 255.0.0.0 DB 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 APP 10.10.10.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 APP 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 10.0.0.0 255.0.0.0 APP 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 WEB 10.10.10.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 WEB 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 10.0.0.0 255.0.0.0 WEB 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 ILO 10.10.10.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 ILO 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 10.0.0.0 255.0.0.0 ILO 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 Ops 10.10.10.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 Ops 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 10.0.0.0 255.0.0.0 Ops 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 BACKUP 10.10.10.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 BACKUP 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 10.0.0.0 255.0.0.0 BACKUP 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 DMZ 10.10.10.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 172.16.154.0 255.255.255.128 DMZ 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip ILO 10.0.0.0 255.0.0.0 DMZ 40.40.40.0 255.255.255.192&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;/P&gt;&lt;P&gt;NAT policies on Interface DMZ:&lt;BR /&gt;&amp;nbsp; match ip DMZ 10.0.0.0 255.0.0.0 outside 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DMZ 10.0.0.0 255.0.0.0 DB 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DMZ 10.0.0.0 255.0.0.0 APP 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DMZ 10.0.0.0 255.0.0.0 WEB 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DMZ 10.0.0.0 255.0.0.0 ILO 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DMZ 10.0.0.0 255.0.0.0 Ops 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DMZ 10.0.0.0 255.0.0.0 BACKUP 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;&amp;nbsp; match ip DMZ 10.0.0.0 255.0.0.0 DMZ 40.40.40.0 255.255.255.0&lt;BR /&gt;&amp;nbsp; &amp;nbsp; NAT exempt&lt;BR /&gt;&amp;nbsp; &amp;nbsp; translate_hits = 0, untranslate_hits = 0&lt;BR /&gt;ACTIVE-SITE1# $&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Abdul&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2014 12:40:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503860#M236609</guid>
      <dc:creator>fatahdirie</dc:creator>
      <dc:date>2014-07-16T12:40:32Z</dc:date>
    </item>
    <item>
      <title>Hi  Share me show running</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503861#M236610</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Share me show running route from your ASA firewall .&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Sandy&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2014 12:46:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503861#M236610</guid>
      <dc:creator>SANTHOSHKUMAR SARAVANAN</dc:creator>
      <dc:date>2014-07-16T12:46:43Z</dc:date>
    </item>
    <item>
      <title>Hi, Below is the output of</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503862#M236611</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Below is the output of show running route:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ACTIVE-SITE1# show running route&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 217.74.232.1 1 track 1&lt;BR /&gt;route DMZ 172.16.161.0 255.255.255.0 192.168.1.2 1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Abdul&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2014 12:58:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503862#M236611</guid>
      <dc:creator>fatahdirie</dc:creator>
      <dc:date>2014-07-16T12:58:41Z</dc:date>
    </item>
    <item>
      <title>Hi  , can you you open webex</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503863#M236612</link>
      <description>&lt;P&gt;Hi &amp;nbsp;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;can you you open webex session ??&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2014 14:15:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503863#M236612</guid>
      <dc:creator>SANTHOSHKUMAR SARAVANAN</dc:creator>
      <dc:date>2014-07-16T14:15:25Z</dc:date>
    </item>
    <item>
      <title> Hi, Webex is ready and I</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503864#M236613</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Webex is ready and I sent invitation, alternatively you can use this url:&lt;/P&gt;&lt;P&gt;https://meetings.webex.com/collabs/meetings/join?uuid=M4MZ9EENPEELH99BWGMJTB34LU-LQR3&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2014 15:18:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503864#M236613</guid>
      <dc:creator>fatahdirie</dc:creator>
      <dc:date>2014-07-16T15:18:15Z</dc:date>
    </item>
    <item>
      <title>Hi Sandy, I am online on the</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503865#M236614</link>
      <description>&lt;P&gt;Hi Sandy,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am online on the skype pls ping me.&lt;/P&gt;&lt;P&gt;I need your help to solve the issue.&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Abdul&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2014 11:56:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503865#M236614</guid>
      <dc:creator>fatahdirie</dc:creator>
      <dc:date>2014-07-21T11:56:56Z</dc:date>
    </item>
    <item>
      <title>Hi Abdul ,On remote session </title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503866#M236615</link>
      <description>&lt;P&gt;Hi Abdul ,&lt;/P&gt;&lt;P&gt;On remote session&lt;/P&gt;&lt;P&gt;&amp;nbsp; I have updated your NAT config for your Backup Interface , along with that i have applied ACL permitting https traffic &amp;nbsp;on your BACK up interface.&lt;/P&gt;&lt;P&gt;Here is summary of configuration&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px; background-color: rgb(247, 247, 247);"&gt;static (WEB,BACKUP) tcp interface https 172.16.153.3 8001 netmask 255.255.255.255 &amp;nbsp;norandomseq&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: rgb(119, 119, 119); font-size: 14px;"&gt;access-group outside_access_in in interface &lt;/SPAN&gt;&lt;SPAN style="font-size: 14px;"&gt;BACKUP&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;HTH&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;Sandy&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;Kindly rate for helpful post .&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2014 17:31:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503866#M236615</guid>
      <dc:creator>SANTHOSHKUMAR SARAVANAN</dc:creator>
      <dc:date>2014-07-21T17:31:17Z</dc:date>
    </item>
    <item>
      <title>Hi Sandy,Thank you very much</title>
      <link>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503867#M236616</link>
      <description>&lt;P&gt;&lt;SPAN style="font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 14px;"&gt;Hi Sandy,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 14px;"&gt;Thank you very much for the support. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 14px;"&gt;The issue is resolved and now we can access the URL with the secondary ISP, so I really appreciated the time you spent with me.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 14px;"&gt;Cheers,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 14px;"&gt;Abdul&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2014 18:42:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/i-want-configure-secondary-wan-on-asa-5510/m-p/2503867#M236616</guid>
      <dc:creator>fatahdirie</dc:creator>
      <dc:date>2014-07-21T18:42:02Z</dc:date>
    </item>
  </channel>
</rss>

