<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic The NAT statement I posted is in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494327#M237572</link>
    <description>&lt;P&gt;The NAT statement I posted is the correct format.&lt;/P&gt;&lt;P&gt;nat (real_int,mapped_int) source static &amp;lt;real_source_IP&amp;gt; &amp;lt;mapped_source_IP&amp;gt; destination static &amp;lt;mapped_dest_IP&amp;gt; &amp;lt;real_dest_IP&amp;gt;&lt;/P&gt;&lt;P&gt;so in this case the real IP is the 202.xxx.xxx.xxx IP and we want to translate that IP to 192.168.0.149.&lt;/P&gt;&lt;P&gt;The correct NAT config is:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,inside) source static PW-LAN PW-LAN destination static 192.168.0.149 202.xxx.xxx.xxx&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;I believe the problem is that the packet is translated correctly but the server sees the source address as being on the same subnet, so asynchronous routing seems to be your issue here.&lt;/P&gt;&lt;P&gt;You could try to enable TCP bypass on the ASA...(I would usually not recommend this as it can be a security risk).&amp;nbsp; Use this option at your own risk.&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/conns_tcpstatebypass.html"&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/conns_tcpstatebypass.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
    <pubDate>Tue, 17 Jun 2014 10:54:16 GMT</pubDate>
    <dc:creator>Marius Gunnerud</dc:creator>
    <dc:date>2014-06-17T10:54:16Z</dc:date>
    <item>
      <title>STATIC IP issues from outside of firewall</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494319#M237559</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I’m having one issue, we have static IP and we NAT the same to some local IP for our internal needs. Whenever we tried to reach the static IP from outside of firewall(some other network), it is working properly. But when we try to ping or use that static IP in internal LAN that is not working.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;192.168.0.149 is internal LAN I have NAT to 202.xxx.xxx.xxx static IP with port 80.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help me on this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;here is the device running configuration&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Result of the command: "show running-config"&lt;/P&gt;&lt;P&gt;: Saved&lt;BR /&gt;:&lt;BR /&gt;ASA Version 9.1(3)&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa&lt;BR /&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;BR /&gt;names&lt;BR /&gt;ip local pool clientpool 192.168.0.20-192.168.0.50 mask 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.0.5 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 202.53.82.98 255.255.255.240&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/4&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/5&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;management-only&lt;BR /&gt;&amp;nbsp;nameif management&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.5.1 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;ftp mode passive&lt;BR /&gt;dns domain-lookup outside&lt;BR /&gt;dns server-group PW&lt;BR /&gt;&amp;nbsp;name-server 202.53.64.202&lt;BR /&gt;&amp;nbsp;name-server 202.53.72.13&lt;BR /&gt;&amp;nbsp;name-server 192.168.0.16&lt;BR /&gt;&amp;nbsp;name-server 192.168.0.8&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;object network PW-LAN&lt;BR /&gt;&amp;nbsp;subnet 192.168.0.0 255.255.255.0&lt;BR /&gt;object network USA&lt;BR /&gt;&amp;nbsp;subnet 192.168.2.0 255.255.255.0&lt;BR /&gt;object network 202.53.82.110&lt;BR /&gt;&amp;nbsp;host 202.53.82.110&lt;BR /&gt;object network PWHYD&lt;BR /&gt;&amp;nbsp;subnet 192.168.1.0 255.255.255.0&lt;BR /&gt;object network 192.168.0.151&lt;BR /&gt;&amp;nbsp;host 192.168.0.151&lt;BR /&gt;object network 192.168.0.154&lt;BR /&gt;&amp;nbsp;host 192.168.0.154&lt;BR /&gt;object network 192.168.0.156&lt;BR /&gt;&amp;nbsp;host 192.168.0.156&lt;BR /&gt;object network 192.168.0.158&lt;BR /&gt;&amp;nbsp;host 192.168.0.158&lt;BR /&gt;object network 192.168.0.159&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.149&lt;BR /&gt;&amp;nbsp;host 192.168.0.149&lt;BR /&gt;object network Rackspace&lt;BR /&gt;&amp;nbsp;subnet 10.176.0.0 255.240.0.0&lt;BR /&gt;object network NETWORK_OBJ_10.176.0.0_12&lt;BR /&gt;&amp;nbsp;subnet 10.176.0.0 255.240.0.0&lt;BR /&gt;object network 192.168.0.147_http&lt;BR /&gt;&amp;nbsp;host 192.168.0.147&lt;BR /&gt;object service http&lt;BR /&gt;&amp;nbsp;service tcp source eq www destination eq www&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14&lt;BR /&gt;&amp;nbsp;host 192.168.0.14&lt;BR /&gt;object network 192.168.0.14_iCA&lt;BR /&gt;&amp;nbsp;host 192.168.0.14&lt;BR /&gt;object network 192.168.0.159_http&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.159_50100&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 202.53.82.101&lt;BR /&gt;&amp;nbsp;host 202.53.82.101&lt;BR /&gt;object network 192.168.0.159_8001&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.192&lt;BR /&gt;&amp;nbsp;host 192.168.0.192&lt;BR /&gt;object network 192.168.0.159_any&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network clientpool&lt;BR /&gt;&amp;nbsp;range 192.168.0.20 192.168.0.50&lt;BR /&gt;object network NETWORK_OBJ_192.168.1.0_24&lt;BR /&gt;&amp;nbsp;subnet 192.168.1.0 255.255.255.0&lt;BR /&gt;object network 192.168.0.192_DEV&lt;BR /&gt;&amp;nbsp;host 192.168.0.192&lt;BR /&gt;object-group network PW-All-Sites&lt;BR /&gt;&amp;nbsp;network-object 192.168.0.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;network-object object PWHYD&lt;BR /&gt;&amp;nbsp;network-object object USA&lt;BR /&gt;&amp;nbsp;network-object object clientpool&lt;BR /&gt;access-list 100 extended permit ip any any&amp;nbsp;&lt;BR /&gt;access-list 100 extended permit icmp any any&amp;nbsp;&lt;BR /&gt;access-list l2l-list extended permit ip object-group PW-All-Sites 192.168.2.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list outside_access_in extended permit ip any any&amp;nbsp;&lt;BR /&gt;access-list outside_cryptomap extended permit ip object-group PW-All-Sites 192.168.1.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.0.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.1.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.2.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 10.176.0.0 255.240.0.0&amp;nbsp;&lt;BR /&gt;access-list outside_cryptomap_3 extended permit ip object-group PW-All-Sites object Rackspace&amp;nbsp;&lt;BR /&gt;access-list inside_access_in extended permit ip any any&amp;nbsp;&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu management 1500&lt;BR /&gt;no failover&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;no arp permit-nonconnected&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static Rackspace Rackspace&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static PWHYD PWHYD&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static USA USA&lt;BR /&gt;nat (inside,outside) source dynamic PW-LAN interface&lt;BR /&gt;nat (any,inside) source dynamic clientpool interface&lt;BR /&gt;!&lt;BR /&gt;object network 192.168.0.151&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.102 service tcp 3200 3200&amp;nbsp;&lt;BR /&gt;object network 192.168.0.154&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.104 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.156&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.107 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.158&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.109 service tcp 3222 3222&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.149&lt;BR /&gt;&amp;nbsp;nat (inside,outside) static 202.53.82.100 service tcp www www&amp;nbsp;&lt;BR /&gt;object network 192.168.0.147_http&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.110 service tcp www www&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.99 service tcp https https&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14_iCA&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.99 service tcp citrix-ica citrix-ica&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159_50100&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 50100 50100&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159_8001&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 8001 8001&amp;nbsp;&lt;BR /&gt;object network 192.168.0.192_DEV&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.106 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;access-group inside_access_in in interface inside&lt;BR /&gt;access-group outside_access_in in interface outside&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 202.53.82.97 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout pat-xlate 0:00:30&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout floating-conn 0:00:00&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;aaa-server PW protocol radius&lt;BR /&gt;aaa-server PW (inside) host 192.168.0.16&lt;BR /&gt;&amp;nbsp;key *****&lt;BR /&gt;user-identity default-domain LOCAL&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.5.0 255.255.255.0 management&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart&lt;BR /&gt;crypto ipsec ikev1 transform-set pwset esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS esp-aes esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS esp-aes esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS esp-aes-192 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS esp-aes-192 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS esp-aes-256 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS esp-aes-256 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS esp-3des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA esp-des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5 esp-des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS esp-des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS esp-des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set pwsethyd esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set RackspaceSet esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal RackSpaceSecure&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal pwhydsetsecure&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal secure&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes 3des des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES256&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes-256&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES192&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes-192&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal 3DES&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal DES&lt;BR /&gt;&amp;nbsp;protocol esp encryption des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec security-association replay disable&lt;BR /&gt;crypto ipsec security-association pmtu-aging infinite&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs&amp;nbsp;&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev1 transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;BR /&gt;crypto map outsidemap 1 match address l2l-list&lt;BR /&gt;crypto map outsidemap 1 set peer 63.82.1.98&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 1 set ikev1 transform-set pwset&lt;BR /&gt;crypto map outsidemap 1 set ikev2 ipsec-proposal secure&lt;BR /&gt;crypto map outsidemap 2 match address outside_cryptomap&lt;BR /&gt;crypto map outsidemap 2 set pfs&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 2 set peer 115.119.186.194&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 2 set ikev1 transform-set pwsethyd&lt;BR /&gt;crypto map outsidemap 3 match address outside_cryptomap_3&lt;BR /&gt;crypto map outsidemap 3 set peer 67.192.250.53&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 3 set ikev1 transform-set RackspaceSet&lt;BR /&gt;crypto map outsidemap 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;BR /&gt;crypto map outsidemap interface outside&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint0&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint1&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint2&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;fqdn vpn.processweaver.com&lt;BR /&gt;&amp;nbsp;subject-name CN=vpn.processweaver.com,OU=PWIT,O="ProcessWeaver,Inc",C=US,St=California,L=Fremont&lt;BR /&gt;&amp;nbsp;keypair ciscovpn.key&lt;BR /&gt;&amp;nbsp;no validation-usage&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint3&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint4&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpool policy&lt;BR /&gt;crypto ca certificate chain ASDM_TrustPoint2&lt;BR /&gt;&amp;nbsp;certificate ca 47869fe5&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3082046a 30820352 a0030201 02020447 869fe530 0d06092a 864886f7 0d010105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05003048 310b3009 06035504 06130255 53312030 1e060355 040a1317 53656375&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 72655472 75737420 436f7270 6f726174 696f6e31 17301506 03550403 130e5365&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 63757265 54727573 74204341 301e170d 30383132 32323233 34373339 5a170d32&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 38313232 32323334 3733395a 3081ae31 0b300906 03550406 13025553 3111300f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06035504 08130849 6c6c696e 6f697331 10300e06 03550407 13074368 69636167&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f312130 1f060355 040a1318 54727573 74776176 6520486f 6c64696e 67732c20&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 496e632e 31363034 06035504 03132d54 72757374 77617665 204f7267 616e697a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6174696f 6e205661 6c696461 74696f6e 2043412c 204c6576 656c2032 311f301d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06092a86 4886f70d 01090116 10636140 74727573 74776176 652e636f 6d308201&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 22300d06 092a8648 86f70d01 01010500 0382010f 00308201 0a028201 0100e814&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; eea0da97 bd89bd0c cc8ddf08 fb060983 a823515b 013f34da 1f1f6ec1 e35865cb&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0af9f387 c8c8faa1 ccf574e2 b8ae2d06 8480286f 5ac1225c 929442cd 1902125c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 10627ea2 44fb165e 9c72b1ac ea04e615 aa99e85a f858b987 24e875cd 2588e258&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 925e8683 7f8a2353 ae8ae8a3 217e83af 40091849 afe1d05a b04f6fe2 31adf4f1&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 371fc92a e18bd68c 1231d427 1adfea6b 9e7853ed 9a19b0ce 45445b1b ef645921&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; fac7b7d1 d30c1ecb 88dafd23 3ff4ac2b a04d61d3 becade19 616124f1 f69cb496&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; bd9deb17 9f243978 e92350d3 015077d8 52642f3e 194f75b9 17b1da8d e0d0eddb&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3713dc2f e05f8068 d7f487ba c11f1278 d0082717 7a98a69f d221ba4e 87bf0203&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 010001a3 81f43081 f1300f06 03551d13 0101ff04 05300301 01ff301d 0603551d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0e041604 145dd996 9a40c727 cb2c9ba2 eccf19ab c8afcc86 48301f06 03551d23&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 04183016 80144232 b616fa04 fdfe5d4b 7ac3fdf7 4c401d5a 43af300b 0603551d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0f040403 02010630 34060355 1d1f042d 302b3029 a027a025 86236874 74703a2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 2f63726c 2e736563 75726574 72757374 2e636f6d 2f535443 412e6372 6c305b06&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 03551d20 04543052 300c060a 2b060104 0181ed18 03003042 060f2b06 01040181&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; ed180303 03030404 03302f30 2d06082b 06010505 07020116 21687474 703a2f2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7777772e 73656375 72657472 7573742e 636f6d2f 6c656761 6c2f300d 06092a86&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 4886f70d 01010505 00038201 010053f1 c8a017ec 6c8882b1 c024afd1 0858b32c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f7bc15c 89926f88 fc4bc002 50932f5a 419859b6 e37f8c14 63777d45 3c88505e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; a6815200 c8c5fe48 ee1f5dad de440b42 589ce167 5c43b6a0 8598ff16 d41a28be&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 76e12fe1 84f47eb9 27aa77cb 36b3fec3 fad217f6 e1624ed3 ccccb319 65d34ba8&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; e8b3d54c eaf64eae cbae3448 1f60cc58 e7e774c9 0135fd6a e0588ad2 16ebece9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3ebbf01d cfb6ff1e 0cb7bb39 e9b7981b c05221eb 3a3d7838 8ca9195f 27a4d07f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3661ab24 7e9ff82d 3f922963 becb10db 0d403602 a0d417a2 8d7f7e7c 99af455a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 40cda26b 5cbe0ef3 d387fca1 10caaa33 b7ba4bc0 3da4218c 179ccfd8 bfe657fe&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; cdebfa30 1ad5fee8 2597a9be 3bea&lt;BR /&gt;&amp;nbsp; quit&lt;BR /&gt;&amp;nbsp;certificate 0649f9a965553e7df2709c06c4da1b09e17cd9&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 30820510 308203f8 a0030201 02021306 49f9a965 553e7df2 709c06c4 da1b09e1&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7cd9300d 06092a86 4886f70d 01010505 003081ae 310b3009 06035504 06130255&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 53311130 0f060355 04081308 496c6c69 6e6f6973 3110300e 06035504 07130743&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 68696361 676f3121 301f0603 55040a13 18547275 73747761 76652048 6f6c6469&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6e67732c 20496e63 2e313630 34060355 0403132d 54727573 74776176 65204f72&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 67616e69 7a617469 6f6e2056 616c6964 6174696f 6e204341 2c204c65 76656c20&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 32311f30 1d06092a 864886f7 0d010901 16106361 40747275 73747761 76652e63&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f6d301e 170d3134 30363131 30353330 33355a17 0d313530 32323331 31333033&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 355a3070 311e301c 06035504 030c1576 706e2e70 726f6365 73737765 61766572&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 2e636f6d 31163014 06035504 0a0c0d50 726f6365 73735765 61766572 31143012&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06035504 070c0b53 616e7461 20436c61 72613113 30110603 5504080c 0a43616c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 69666f72 6e696131 0b300906 03550406 13025553 30820122 300d0609 2a864886&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; f70d0101 01050003 82010f00 3082010a 02820101 00cc194c fbdd63f5 0b49141a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 9d21063f a13136df e524cef9 c55e9331 e6c5bc67 43361421 cafb7dc1 d244942e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6fd02ee7 198e7f7e 48ca62c2 1c8e1a8e 20431d42 b24103f1 5fad9287 9f9dc2da&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 5002e0b4 cf14b414 31e0e691 26cfbc0c 1ee09d6d 8176a63d 6ad81c30 b2b69dbe&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 59ce7092 44c09e62 27f20c58 8bd8e38a a3d75a94 94bbca6f 7ad87b93 3892ddb0&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3f00a693 e05b5fe8 7a71d36c 223e1ded 8afb8ee4 1eea579c 53d964df 467694e9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; b7ffe4f9 22c6dd5e 33d0ffee 9fd57fed 621c62f1 4dc6f14e 6518de53 c2fd7d5d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; b37913b8 69211fe5 e194a6bf f60bc88a 343a93dc 34526931 b41566e3 f38f219f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 9a6cefd5 d6d60002 2442b3e5 b4096717 2ffea23d b1020301 0001a382 01623082&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 015e300b 0603551d 0f040403 0205a030 1d060355 1d250416 30140608 2b060105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05070302 06082b06 01050507 0301301d 0603551d 0e041604 14cd47cf 646a8932&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7cecb024 9fd2a31a b54d73dc c0301f06 03551d23 04183016 80145dd9 969a40c7&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 27cb2c9b a2eccf19 abc8afcc 86483048 0603551d 20044130 3f303d06 0f2b0601&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 040181ed 18030303 03040403 302a3028 06082b06 01050507 0201161c 68747470&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 733a2f2f 73736c2e 74727573 74776176 652e636f 6d2f4341 30370603 551d1104&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 30302e82 1576706e 2e70726f 63657373 77656176 65722e63 6f6d8215 7774732e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 70726f63 65737377 65617665 722e636f 6d303506 03551d1f 042e302c 302aa028&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; a0268624 68747470 3a2f2f63 726c2e74 72757374 77617665 2e636f6d 2f4f5643&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 415f4c32 2e63726c 30360608 2b060105 05070101 042a3028 30260608 2b060105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05073001 861a6874 74703a2f 2f6f6373 702e7472 75737477 6176652e 636f6d2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 300d0609 2a864886 f70d0101 05050003 82010100 0785070e 045d6201 3ffc49b5&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 88808587 b6418d0e 87dc7ae8 3204563b 6e51ff93 25e8ad7a 9a11d439 2439a533&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 768477ca 902fdfbe f0c58a04 e15bf6a5 63829d4b a36c7ccc 0af9532b f39ec31d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 21cd6b74 d3adffc2 5f8ee1c4 92c07ac6 ab547346 c740f477 857a82fd 897029d5&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 1cfa9b55 b1064ab7 1274556c 6a14f7a8 b8705cd4 51d6b7f4 0a024f6d 1818918c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0cb15bc5 cd301684 38c2dcb8 2585b44c 18808e1b 823a6043 28da0194 280fa6c9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 80831cbc 1179be24 fc391e54 965761e5 e51031e1 0c76c65f 187922d0 96be80c9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3de9a56e 41d0fd3f 76afaf49 4bc4ff4c 213aa474 60a742ba 2a8fb3bd c9349da3&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 1ac96b24 7b99cba5 a28c6647 7803cf2c ee70540c&lt;BR /&gt;&amp;nbsp; quit&lt;BR /&gt;crypto ikev2 policy 10&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;integrity sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;prf sha&lt;BR /&gt;&amp;nbsp;lifetime seconds 28800&lt;BR /&gt;crypto ikev2 enable outside&lt;BR /&gt;crypto ikev2 remote-access trustpoint ASDM_TrustPoint2&lt;BR /&gt;crypto ikev1 enable outside&lt;BR /&gt;crypto ikev1 policy 10&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 28800&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;ssh key-exchange group dh-group1-sha1&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.5.2-192.168.5.254 management&lt;BR /&gt;dhcpd enable management&lt;BR /&gt;!&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;ssl trust-point ASDM_TrustPoint2 outside&lt;BR /&gt;webvpn&lt;BR /&gt;&amp;nbsp;enable outside&lt;BR /&gt;&amp;nbsp;anyconnect image disk0:/anyconnect-win-2.5.2014-k9.pkg 1&lt;BR /&gt;&amp;nbsp;anyconnect enable&lt;BR /&gt;&amp;nbsp;tunnel-group-list enable&lt;BR /&gt;group-policy GroupPolicy_PWSSL internal&lt;BR /&gt;group-policy GroupPolicy_PWSSL attributes&lt;BR /&gt;&amp;nbsp;wins-server none&lt;BR /&gt;&amp;nbsp;dns-server value 192.168.0.16&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ssl-client&amp;nbsp;&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value PW-VPN-Tunnel-ACL&lt;BR /&gt;&amp;nbsp;default-domain value processw.local&lt;BR /&gt;&amp;nbsp;webvpn&lt;BR /&gt;&amp;nbsp; anyconnect keep-installer none&lt;BR /&gt;group-policy GroupPolicy_115.119.186.194 internal&lt;BR /&gt;group-policy GroupPolicy_115.119.186.194 attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 l2tp-ipsec&amp;nbsp;&lt;BR /&gt;group-policy GroupPolicy_67.192.250.53 internal&lt;BR /&gt;group-policy GroupPolicy_67.192.250.53 attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 l2tp-ipsec ssl-clientless&lt;BR /&gt;group-policy pw internal&lt;BR /&gt;group-policy pw attributes&lt;BR /&gt;&amp;nbsp;dns-server value 192.168.0.16&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 ikev2&amp;nbsp;&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value PW-VPN-Tunnel-ACL&lt;BR /&gt;&amp;nbsp;default-domain none&lt;BR /&gt;username rajuvaradha password 6biM7HbMtaadT82k encrypted&lt;BR /&gt;username e172 password E1abOIw/eu.DKO/y encrypted&lt;BR /&gt;username e150 password dJMsBQfrQRISuR8n encrypted&lt;BR /&gt;username e134 password bLBixKKCoH5Udlk9 encrypted&lt;BR /&gt;username e182 password mirFopEi/OG0LT4d encrypted&lt;BR /&gt;username e192 password u2P6WXLa1k8.kA1w encrypted&lt;BR /&gt;username e184 password Rpt/S1N6et6Xwi7W encrypted&lt;BR /&gt;username u033 password pS5QN8QLvYFHJfoK encrypted&lt;BR /&gt;username u011 password HGFsDnR5XiFAzrcE encrypted&lt;BR /&gt;username u010 password 5R8mktMpyUYPCpTO encrypted&lt;BR /&gt;username u032 password rst8O1b/yrXsKVmu encrypted&lt;BR /&gt;username u002 password .u2izEtqOIC5D2fT encrypted&lt;BR /&gt;username admin password eY/fQXw7Ure8Qrz7 encrypted&lt;BR /&gt;username u012 password JClYI3r7x0T/ed26 encrypted&lt;BR /&gt;username u015 password 6tNvtB4hPcUNDyhE encrypted&lt;BR /&gt;username u014 password Wy6x8dPcSnMcAT1v encrypted&lt;BR /&gt;username u017 password xahCXrBaZWzW8aEp encrypted&lt;BR /&gt;username u006 password BCEOAmlRL6CbQfTV encrypted&lt;BR /&gt;username e006 password DG96SZQ2gBqIXEYv encrypted&lt;BR /&gt;username e034 password 1sG72DUjsY7nt81V encrypted&lt;BR /&gt;username u007 password vtcK6xerueHvqZJZ encrypted&lt;BR /&gt;username u016 password pZgySMnraNBlTTnL encrypted&lt;BR /&gt;username u025 password ulAXIX1u2.UD/KvT encrypted&lt;BR /&gt;username u008 password G4vmDF.mv3rXWa7h encrypted&lt;BR /&gt;username u019 password NxlycJwroZrzCSJ3 encrypted&lt;BR /&gt;username e019 password E9NaUPs18c0.PBnd encrypted&lt;BR /&gt;username u018 password 33CghGQSMjbWDfdb encrypted&lt;BR /&gt;username u009 password uaaSLEu55XXbD5Sr encrypted&lt;BR /&gt;username u028 password UMFMzXMs6He7.zR8 encrypted&lt;BR /&gt;username e097 password .UawdlGNiYnRHnzF encrypted&lt;BR /&gt;username e314 password ye2/LpVufAXvAUJ6 encrypted&lt;BR /&gt;username e327 password 6mKef3HGlnyb6hnu encrypted&lt;BR /&gt;username e343 password 0g33Wbvzi.NL1PjH encrypted&lt;BR /&gt;username e222 password e0.SFEwm1RqC6lLj encrypted&lt;BR /&gt;username e289 password /YrO2mEvMUr9zxq3 encrypted&lt;BR /&gt;username e201 password Eox2TB.HgdkKLuec encrypted&lt;BR /&gt;username e265 password fTk7Vxw0Z06AAbHi encrypted&lt;BR /&gt;username e251 password 6y7YjKQO1rP3nAQG encrypted&lt;BR /&gt;username e219 password p049Lf7jFLisN6UJ encrypted&lt;BR /&gt;username e269 password v7oFefIpmPGd307D encrypted&lt;BR /&gt;tunnel-group 63.82.1.98 type ipsec-l2l&lt;BR /&gt;tunnel-group 63.82.1.98 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;tunnel-group pw type remote-access&lt;BR /&gt;tunnel-group pw general-attributes&lt;BR /&gt;&amp;nbsp;address-pool clientpool&lt;BR /&gt;&amp;nbsp;default-group-policy pw&lt;BR /&gt;tunnel-group pw ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;tunnel-group 115.119.186.194 type ipsec-l2l&lt;BR /&gt;tunnel-group 115.119.186.194 general-attributes&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_115.119.186.194&lt;BR /&gt;tunnel-group 115.119.186.194 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 remote-authentication pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 local-authentication pre-shared-key *****&lt;BR /&gt;tunnel-group 67.192.250.53 type ipsec-l2l&lt;BR /&gt;tunnel-group 67.192.250.53 general-attributes&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_67.192.250.53&lt;BR /&gt;tunnel-group 67.192.250.53 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 remote-authentication pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 local-authentication pre-shared-key *****&lt;BR /&gt;tunnel-group PWSSL type remote-access&lt;BR /&gt;tunnel-group PWSSL general-attributes&lt;BR /&gt;&amp;nbsp;address-pool clientpool&lt;BR /&gt;&amp;nbsp;authentication-server-group PW LOCAL&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_PWSSL&lt;BR /&gt;tunnel-group PWSSL webvpn-attributes&lt;BR /&gt;&amp;nbsp;group-alias PWSSL enable&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum client auto&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 h225&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 ras&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rsh&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rtsp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect esmtp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sqlnet&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect skinny &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sunrpc&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect xdmcp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sip &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect netbios&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect tftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ip-options&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect icmp&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;prompt hostname context&amp;nbsp;&lt;BR /&gt;call-home reporting anonymous prompt 1&lt;BR /&gt;Cryptochecksum:80663f0c45d0a6736344cf989a7af706&lt;BR /&gt;: end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:19:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494319#M237559</guid>
      <dc:creator>processweavertechnologies</dc:creator>
      <dc:date>2019-03-12T04:19:53Z</dc:date>
    </item>
    <item>
      <title>Let me see if I understand</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494320#M237561</link>
      <description>&lt;P&gt;Let me see if I understand this correctly, you are trying to access the server using the public IP?&amp;nbsp; Any reason why you don't want to use the internal IP...if that is the case?&lt;/P&gt;&lt;P&gt;I don't suppose you are using a FQDN to access the server?&lt;/P&gt;&lt;P&gt;If you are using the public IP to access the server locally, this will not work as the ASA will expect to see that traffic entering on the outside interface and will therefore drop that traffic entering the inside interface.&amp;nbsp; You would need to set up hairpining and NAT the servers public IP to the private IP on the inside interface.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;same-security-traffic permit intra-interface&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;object network 202.xxx.xxx.xxx&lt;BR /&gt;host 202.xxx.xxx.xxx&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,inside) source static PW-LAN PW-LAN destination static 192.168.0.149 202.xxx.xxx.xxx&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
      <pubDate>Fri, 13 Jun 2014 10:53:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494320#M237561</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-06-13T10:53:55Z</dc:date>
    </item>
    <item>
      <title>Hi Marius, Thanks for your</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494321#M237564</link>
      <description>&lt;P&gt;Hi Marius,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your suggestion&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i have followed the same, but i'm still not able to access the static IP internal LAN. here is the running config out put.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Result of the command: "show running-config"&lt;/P&gt;&lt;P&gt;: Saved&lt;BR /&gt;:&lt;BR /&gt;ASA Version 9.1(3)&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa&lt;BR /&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;BR /&gt;names&lt;BR /&gt;ip local pool clientpool 192.168.0.20-192.168.0.50 mask 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.0.5 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 202.53.82.98 255.255.255.240&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/4&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/5&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;management-only&lt;BR /&gt;&amp;nbsp;nameif management&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.5.1 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;ftp mode passive&lt;BR /&gt;dns domain-lookup outside&lt;BR /&gt;dns server-group PW&lt;BR /&gt;&amp;nbsp;name-server 202.53.64.202&lt;BR /&gt;&amp;nbsp;name-server 202.53.72.13&lt;BR /&gt;&amp;nbsp;name-server 192.168.0.16&lt;BR /&gt;&amp;nbsp;name-server 192.168.0.8&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;object network PW-LAN&lt;BR /&gt;&amp;nbsp;subnet 192.168.0.0 255.255.255.0&lt;BR /&gt;object network USA&lt;BR /&gt;&amp;nbsp;subnet 192.168.2.0 255.255.255.0&lt;BR /&gt;object network 202.53.82.110&lt;BR /&gt;&amp;nbsp;host 202.53.82.110&lt;BR /&gt;object network PWHYD&lt;BR /&gt;&amp;nbsp;subnet 192.168.1.0 255.255.255.0&lt;BR /&gt;object network 192.168.0.151&lt;BR /&gt;&amp;nbsp;host 192.168.0.151&lt;BR /&gt;object network 192.168.0.154&lt;BR /&gt;&amp;nbsp;host 192.168.0.154&lt;BR /&gt;object network 192.168.0.156&lt;BR /&gt;&amp;nbsp;host 192.168.0.156&lt;BR /&gt;object network 192.168.0.158&lt;BR /&gt;&amp;nbsp;host 192.168.0.158&lt;BR /&gt;object network 192.168.0.159&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.149&lt;BR /&gt;&amp;nbsp;host 192.168.0.149&lt;BR /&gt;object network Rackspace&lt;BR /&gt;&amp;nbsp;subnet 10.176.0.0 255.240.0.0&lt;BR /&gt;object network NETWORK_OBJ_10.176.0.0_12&lt;BR /&gt;&amp;nbsp;subnet 10.176.0.0 255.240.0.0&lt;BR /&gt;object network 192.168.0.147_http&lt;BR /&gt;&amp;nbsp;host 192.168.0.147&lt;BR /&gt;object service http&lt;BR /&gt;&amp;nbsp;service tcp source eq www destination eq www&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14&lt;BR /&gt;&amp;nbsp;host 192.168.0.14&lt;BR /&gt;object network 192.168.0.14_iCA&lt;BR /&gt;&amp;nbsp;host 192.168.0.14&lt;BR /&gt;object network 192.168.0.159_http&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.159_50100&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 202.53.82.101&lt;BR /&gt;&amp;nbsp;host 202.53.82.101&lt;BR /&gt;object network 192.168.0.159_8001&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.192&lt;BR /&gt;&amp;nbsp;host 192.168.0.192&lt;BR /&gt;object network 192.168.0.159_any&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network clientpool&lt;BR /&gt;&amp;nbsp;range 192.168.0.20 192.168.0.50&lt;BR /&gt;object network NETWORK_OBJ_192.168.1.0_24&lt;BR /&gt;&amp;nbsp;subnet 192.168.1.0 255.255.255.0&lt;BR /&gt;object network 192.168.0.192_DEV&lt;BR /&gt;&amp;nbsp;host 192.168.0.192&lt;BR /&gt;object network 202.53.82.100&lt;BR /&gt;&amp;nbsp;host 202.53.82.100&lt;BR /&gt;object network 149&lt;BR /&gt;&amp;nbsp;host 192.168.0.149&lt;BR /&gt;object-group network PW-All-Sites&lt;BR /&gt;&amp;nbsp;network-object 192.168.0.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;network-object object PWHYD&lt;BR /&gt;&amp;nbsp;network-object object USA&lt;BR /&gt;&amp;nbsp;network-object object clientpool&lt;BR /&gt;access-list 100 extended permit ip any any&amp;nbsp;&lt;BR /&gt;access-list 100 extended permit icmp any any&amp;nbsp;&lt;BR /&gt;access-list l2l-list extended permit ip object-group PW-All-Sites 192.168.2.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list outside_access_in extended permit ip any any&amp;nbsp;&lt;BR /&gt;access-list outside_cryptomap extended permit ip object-group PW-All-Sites 192.168.1.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.0.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.1.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.2.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 10.176.0.0 255.240.0.0&amp;nbsp;&lt;BR /&gt;access-list outside_cryptomap_3 extended permit ip object-group PW-All-Sites object Rackspace&amp;nbsp;&lt;BR /&gt;access-list inside_access_in extended permit ip any any&amp;nbsp;&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu management 1500&lt;BR /&gt;no failover&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;no arp permit-nonconnected&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static Rackspace Rackspace&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static PWHYD PWHYD&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static USA USA&lt;BR /&gt;nat (inside,outside) source dynamic PW-LAN interface&lt;BR /&gt;nat (any,inside) source dynamic clientpool interface&lt;BR /&gt;nat (inside,inside) source static PW-LAN PW-LAN destination static 192.168.0.149 202.53.82.100&lt;BR /&gt;!&lt;BR /&gt;object network 192.168.0.151&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.102 service tcp 3200 3200&amp;nbsp;&lt;BR /&gt;object network 192.168.0.154&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.104 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.156&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.107 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.158&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.109 service tcp 3222 3222&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.147_http&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.110 service tcp www www&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.99 service tcp https https&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14_iCA&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.99 service tcp citrix-ica citrix-ica&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159_50100&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 50100 50100&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159_8001&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 8001 8001&amp;nbsp;&lt;BR /&gt;object network 192.168.0.192_DEV&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.106 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 149&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.100 service tcp www www&amp;nbsp;&lt;BR /&gt;access-group inside_access_in in interface inside&lt;BR /&gt;access-group outside_access_in in interface outside&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 202.53.82.97 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout pat-xlate 0:00:30&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout floating-conn 0:00:00&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;aaa-server PW protocol radius&lt;BR /&gt;aaa-server PW (inside) host 192.168.0.16&lt;BR /&gt;&amp;nbsp;key *****&lt;BR /&gt;user-identity default-domain LOCAL&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.5.0 255.255.255.0 management&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart&lt;BR /&gt;crypto ipsec ikev1 transform-set pwset esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS esp-aes esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS esp-aes esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS esp-aes-192 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS esp-aes-192 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS esp-aes-256 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS esp-aes-256 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS esp-3des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA esp-des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5 esp-des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS esp-des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS esp-des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set pwsethyd esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set RackspaceSet esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal RackSpaceSecure&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal pwhydsetsecure&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal secure&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes 3des des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES256&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes-256&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES192&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes-192&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal 3DES&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal DES&lt;BR /&gt;&amp;nbsp;protocol esp encryption des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec security-association replay disable&lt;BR /&gt;crypto ipsec security-association pmtu-aging infinite&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs&amp;nbsp;&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev1 transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;BR /&gt;crypto map outsidemap 1 match address l2l-list&lt;BR /&gt;crypto map outsidemap 1 set peer 63.82.1.98&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 1 set ikev1 transform-set pwset&lt;BR /&gt;crypto map outsidemap 1 set ikev2 ipsec-proposal secure&lt;BR /&gt;crypto map outsidemap 2 match address outside_cryptomap&lt;BR /&gt;crypto map outsidemap 2 set pfs&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 2 set peer 115.119.186.194&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 2 set ikev1 transform-set pwsethyd&lt;BR /&gt;crypto map outsidemap 3 match address outside_cryptomap_3&lt;BR /&gt;crypto map outsidemap 3 set peer 67.192.250.53&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 3 set ikev1 transform-set RackspaceSet&lt;BR /&gt;crypto map outsidemap 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;BR /&gt;crypto map outsidemap interface outside&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint0&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint1&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint2&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;fqdn vpn.processweaver.com&lt;BR /&gt;&amp;nbsp;subject-name CN=vpn.processweaver.com,OU=PWIT,O="ProcessWeaver,Inc",C=US,St=California,L=Fremont&lt;BR /&gt;&amp;nbsp;keypair ciscovpn.key&lt;BR /&gt;&amp;nbsp;no validation-usage&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint3&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint4&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpool policy&lt;BR /&gt;crypto ca certificate chain ASDM_TrustPoint2&lt;BR /&gt;&amp;nbsp;certificate ca 47869fe5&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3082046a 30820352 a0030201 02020447 869fe530 0d06092a 864886f7 0d010105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05003048 310b3009 06035504 06130255 53312030 1e060355 040a1317 53656375&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 72655472 75737420 436f7270 6f726174 696f6e31 17301506 03550403 130e5365&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 63757265 54727573 74204341 301e170d 30383132 32323233 34373339 5a170d32&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 38313232 32323334 3733395a 3081ae31 0b300906 03550406 13025553 3111300f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06035504 08130849 6c6c696e 6f697331 10300e06 03550407 13074368 69636167&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f312130 1f060355 040a1318 54727573 74776176 6520486f 6c64696e 67732c20&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 496e632e 31363034 06035504 03132d54 72757374 77617665 204f7267 616e697a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6174696f 6e205661 6c696461 74696f6e 2043412c 204c6576 656c2032 311f301d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06092a86 4886f70d 01090116 10636140 74727573 74776176 652e636f 6d308201&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 22300d06 092a8648 86f70d01 01010500 0382010f 00308201 0a028201 0100e814&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; eea0da97 bd89bd0c cc8ddf08 fb060983 a823515b 013f34da 1f1f6ec1 e35865cb&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0af9f387 c8c8faa1 ccf574e2 b8ae2d06 8480286f 5ac1225c 929442cd 1902125c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 10627ea2 44fb165e 9c72b1ac ea04e615 aa99e85a f858b987 24e875cd 2588e258&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 925e8683 7f8a2353 ae8ae8a3 217e83af 40091849 afe1d05a b04f6fe2 31adf4f1&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 371fc92a e18bd68c 1231d427 1adfea6b 9e7853ed 9a19b0ce 45445b1b ef645921&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; fac7b7d1 d30c1ecb 88dafd23 3ff4ac2b a04d61d3 becade19 616124f1 f69cb496&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; bd9deb17 9f243978 e92350d3 015077d8 52642f3e 194f75b9 17b1da8d e0d0eddb&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3713dc2f e05f8068 d7f487ba c11f1278 d0082717 7a98a69f d221ba4e 87bf0203&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 010001a3 81f43081 f1300f06 03551d13 0101ff04 05300301 01ff301d 0603551d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0e041604 145dd996 9a40c727 cb2c9ba2 eccf19ab c8afcc86 48301f06 03551d23&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 04183016 80144232 b616fa04 fdfe5d4b 7ac3fdf7 4c401d5a 43af300b 0603551d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0f040403 02010630 34060355 1d1f042d 302b3029 a027a025 86236874 74703a2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 2f63726c 2e736563 75726574 72757374 2e636f6d 2f535443 412e6372 6c305b06&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 03551d20 04543052 300c060a 2b060104 0181ed18 03003042 060f2b06 01040181&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; ed180303 03030404 03302f30 2d06082b 06010505 07020116 21687474 703a2f2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7777772e 73656375 72657472 7573742e 636f6d2f 6c656761 6c2f300d 06092a86&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 4886f70d 01010505 00038201 010053f1 c8a017ec 6c8882b1 c024afd1 0858b32c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f7bc15c 89926f88 fc4bc002 50932f5a 419859b6 e37f8c14 63777d45 3c88505e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; a6815200 c8c5fe48 ee1f5dad de440b42 589ce167 5c43b6a0 8598ff16 d41a28be&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 76e12fe1 84f47eb9 27aa77cb 36b3fec3 fad217f6 e1624ed3 ccccb319 65d34ba8&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; e8b3d54c eaf64eae cbae3448 1f60cc58 e7e774c9 0135fd6a e0588ad2 16ebece9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3ebbf01d cfb6ff1e 0cb7bb39 e9b7981b c05221eb 3a3d7838 8ca9195f 27a4d07f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3661ab24 7e9ff82d 3f922963 becb10db 0d403602 a0d417a2 8d7f7e7c 99af455a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 40cda26b 5cbe0ef3 d387fca1 10caaa33 b7ba4bc0 3da4218c 179ccfd8 bfe657fe&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; cdebfa30 1ad5fee8 2597a9be 3bea&lt;BR /&gt;&amp;nbsp; quit&lt;BR /&gt;&amp;nbsp;certificate 0649f9a965553e7df2709c06c4da1b09e17cd9&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 30820510 308203f8 a0030201 02021306 49f9a965 553e7df2 709c06c4 da1b09e1&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7cd9300d 06092a86 4886f70d 01010505 003081ae 310b3009 06035504 06130255&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 53311130 0f060355 04081308 496c6c69 6e6f6973 3110300e 06035504 07130743&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 68696361 676f3121 301f0603 55040a13 18547275 73747761 76652048 6f6c6469&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6e67732c 20496e63 2e313630 34060355 0403132d 54727573 74776176 65204f72&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 67616e69 7a617469 6f6e2056 616c6964 6174696f 6e204341 2c204c65 76656c20&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 32311f30 1d06092a 864886f7 0d010901 16106361 40747275 73747761 76652e63&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f6d301e 170d3134 30363131 30353330 33355a17 0d313530 32323331 31333033&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 355a3070 311e301c 06035504 030c1576 706e2e70 726f6365 73737765 61766572&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 2e636f6d 31163014 06035504 0a0c0d50 726f6365 73735765 61766572 31143012&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06035504 070c0b53 616e7461 20436c61 72613113 30110603 5504080c 0a43616c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 69666f72 6e696131 0b300906 03550406 13025553 30820122 300d0609 2a864886&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; f70d0101 01050003 82010f00 3082010a 02820101 00cc194c fbdd63f5 0b49141a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 9d21063f a13136df e524cef9 c55e9331 e6c5bc67 43361421 cafb7dc1 d244942e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6fd02ee7 198e7f7e 48ca62c2 1c8e1a8e 20431d42 b24103f1 5fad9287 9f9dc2da&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 5002e0b4 cf14b414 31e0e691 26cfbc0c 1ee09d6d 8176a63d 6ad81c30 b2b69dbe&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 59ce7092 44c09e62 27f20c58 8bd8e38a a3d75a94 94bbca6f 7ad87b93 3892ddb0&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3f00a693 e05b5fe8 7a71d36c 223e1ded 8afb8ee4 1eea579c 53d964df 467694e9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; b7ffe4f9 22c6dd5e 33d0ffee 9fd57fed 621c62f1 4dc6f14e 6518de53 c2fd7d5d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; b37913b8 69211fe5 e194a6bf f60bc88a 343a93dc 34526931 b41566e3 f38f219f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 9a6cefd5 d6d60002 2442b3e5 b4096717 2ffea23d b1020301 0001a382 01623082&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 015e300b 0603551d 0f040403 0205a030 1d060355 1d250416 30140608 2b060105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05070302 06082b06 01050507 0301301d 0603551d 0e041604 14cd47cf 646a8932&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7cecb024 9fd2a31a b54d73dc c0301f06 03551d23 04183016 80145dd9 969a40c7&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 27cb2c9b a2eccf19 abc8afcc 86483048 0603551d 20044130 3f303d06 0f2b0601&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 040181ed 18030303 03040403 302a3028 06082b06 01050507 0201161c 68747470&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 733a2f2f 73736c2e 74727573 74776176 652e636f 6d2f4341 30370603 551d1104&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 30302e82 1576706e 2e70726f 63657373 77656176 65722e63 6f6d8215 7774732e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 70726f63 65737377 65617665 722e636f 6d303506 03551d1f 042e302c 302aa028&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; a0268624 68747470 3a2f2f63 726c2e74 72757374 77617665 2e636f6d 2f4f5643&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 415f4c32 2e63726c 30360608 2b060105 05070101 042a3028 30260608 2b060105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05073001 861a6874 74703a2f 2f6f6373 702e7472 75737477 6176652e 636f6d2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 300d0609 2a864886 f70d0101 05050003 82010100 0785070e 045d6201 3ffc49b5&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 88808587 b6418d0e 87dc7ae8 3204563b 6e51ff93 25e8ad7a 9a11d439 2439a533&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 768477ca 902fdfbe f0c58a04 e15bf6a5 63829d4b a36c7ccc 0af9532b f39ec31d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 21cd6b74 d3adffc2 5f8ee1c4 92c07ac6 ab547346 c740f477 857a82fd 897029d5&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 1cfa9b55 b1064ab7 1274556c 6a14f7a8 b8705cd4 51d6b7f4 0a024f6d 1818918c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0cb15bc5 cd301684 38c2dcb8 2585b44c 18808e1b 823a6043 28da0194 280fa6c9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 80831cbc 1179be24 fc391e54 965761e5 e51031e1 0c76c65f 187922d0 96be80c9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3de9a56e 41d0fd3f 76afaf49 4bc4ff4c 213aa474 60a742ba 2a8fb3bd c9349da3&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 1ac96b24 7b99cba5 a28c6647 7803cf2c ee70540c&lt;BR /&gt;&amp;nbsp; quit&lt;BR /&gt;crypto ikev2 policy 10&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;integrity sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;prf sha&lt;BR /&gt;&amp;nbsp;lifetime seconds 28800&lt;BR /&gt;crypto ikev2 enable outside&lt;BR /&gt;crypto ikev2 remote-access trustpoint ASDM_TrustPoint2&lt;BR /&gt;crypto ikev1 enable outside&lt;BR /&gt;crypto ikev1 policy 10&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 28800&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;ssh key-exchange group dh-group1-sha1&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.5.2-192.168.5.254 management&lt;BR /&gt;dhcpd enable management&lt;BR /&gt;!&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;ssl trust-point ASDM_TrustPoint2 outside&lt;BR /&gt;webvpn&lt;BR /&gt;&amp;nbsp;enable outside&lt;BR /&gt;&amp;nbsp;anyconnect image disk0:/anyconnect-win-2.5.2014-k9.pkg 1&lt;BR /&gt;&amp;nbsp;anyconnect enable&lt;BR /&gt;&amp;nbsp;tunnel-group-list enable&lt;BR /&gt;group-policy GroupPolicy_PWSSL internal&lt;BR /&gt;group-policy GroupPolicy_PWSSL attributes&lt;BR /&gt;&amp;nbsp;wins-server none&lt;BR /&gt;&amp;nbsp;dns-server value 192.168.0.16&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ssl-client&amp;nbsp;&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value PW-VPN-Tunnel-ACL&lt;BR /&gt;&amp;nbsp;default-domain value processw.local&lt;BR /&gt;&amp;nbsp;webvpn&lt;BR /&gt;&amp;nbsp; anyconnect keep-installer none&lt;BR /&gt;group-policy GroupPolicy_115.119.186.194 internal&lt;BR /&gt;group-policy GroupPolicy_115.119.186.194 attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 l2tp-ipsec&amp;nbsp;&lt;BR /&gt;group-policy GroupPolicy_67.192.250.53 internal&lt;BR /&gt;group-policy GroupPolicy_67.192.250.53 attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 l2tp-ipsec ssl-clientless&lt;BR /&gt;group-policy pw internal&lt;BR /&gt;group-policy pw attributes&lt;BR /&gt;&amp;nbsp;dns-server value 192.168.0.16&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 ikev2&amp;nbsp;&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value PW-VPN-Tunnel-ACL&lt;BR /&gt;&amp;nbsp;default-domain none&lt;BR /&gt;username rajuvaradha password 6biM7HbMtaadT82k encrypted&lt;BR /&gt;username e172 password E1abOIw/eu.DKO/y encrypted&lt;BR /&gt;username e150 password dJMsBQfrQRISuR8n encrypted&lt;BR /&gt;username e134 password bLBixKKCoH5Udlk9 encrypted&lt;BR /&gt;username e182 password mirFopEi/OG0LT4d encrypted&lt;BR /&gt;username e192 password u2P6WXLa1k8.kA1w encrypted&lt;BR /&gt;username e184 password Rpt/S1N6et6Xwi7W encrypted&lt;BR /&gt;username u033 password pS5QN8QLvYFHJfoK encrypted&lt;BR /&gt;username u011 password HGFsDnR5XiFAzrcE encrypted&lt;BR /&gt;username u010 password 5R8mktMpyUYPCpTO encrypted&lt;BR /&gt;username u032 password rst8O1b/yrXsKVmu encrypted&lt;BR /&gt;username u002 password .u2izEtqOIC5D2fT encrypted&lt;BR /&gt;username admin password eY/fQXw7Ure8Qrz7 encrypted&lt;BR /&gt;username u012 password JClYI3r7x0T/ed26 encrypted&lt;BR /&gt;username u015 password 6tNvtB4hPcUNDyhE encrypted&lt;BR /&gt;username u014 password Wy6x8dPcSnMcAT1v encrypted&lt;BR /&gt;username u017 password xahCXrBaZWzW8aEp encrypted&lt;BR /&gt;username u006 password BCEOAmlRL6CbQfTV encrypted&lt;BR /&gt;username e006 password DG96SZQ2gBqIXEYv encrypted&lt;BR /&gt;username e034 password 1sG72DUjsY7nt81V encrypted&lt;BR /&gt;username u007 password vtcK6xerueHvqZJZ encrypted&lt;BR /&gt;username u016 password pZgySMnraNBlTTnL encrypted&lt;BR /&gt;username u025 password ulAXIX1u2.UD/KvT encrypted&lt;BR /&gt;username u008 password G4vmDF.mv3rXWa7h encrypted&lt;BR /&gt;username u019 password NxlycJwroZrzCSJ3 encrypted&lt;BR /&gt;username e019 password E9NaUPs18c0.PBnd encrypted&lt;BR /&gt;username u018 password 33CghGQSMjbWDfdb encrypted&lt;BR /&gt;username u009 password uaaSLEu55XXbD5Sr encrypted&lt;BR /&gt;username u028 password UMFMzXMs6He7.zR8 encrypted&lt;BR /&gt;username e097 password .UawdlGNiYnRHnzF encrypted&lt;BR /&gt;username e314 password ye2/LpVufAXvAUJ6 encrypted&lt;BR /&gt;username e327 password 6mKef3HGlnyb6hnu encrypted&lt;BR /&gt;username e343 password 0g33Wbvzi.NL1PjH encrypted&lt;BR /&gt;username e222 password e0.SFEwm1RqC6lLj encrypted&lt;BR /&gt;username e289 password /YrO2mEvMUr9zxq3 encrypted&lt;BR /&gt;username e201 password Eox2TB.HgdkKLuec encrypted&lt;BR /&gt;username e265 password fTk7Vxw0Z06AAbHi encrypted&lt;BR /&gt;username e251 password 6y7YjKQO1rP3nAQG encrypted&lt;BR /&gt;username e219 password p049Lf7jFLisN6UJ encrypted&lt;BR /&gt;username e269 password v7oFefIpmPGd307D encrypted&lt;BR /&gt;tunnel-group 63.82.1.98 type ipsec-l2l&lt;BR /&gt;tunnel-group 63.82.1.98 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;tunnel-group pw type remote-access&lt;BR /&gt;tunnel-group pw general-attributes&lt;BR /&gt;&amp;nbsp;address-pool clientpool&lt;BR /&gt;&amp;nbsp;default-group-policy pw&lt;BR /&gt;tunnel-group pw ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;tunnel-group 115.119.186.194 type ipsec-l2l&lt;BR /&gt;tunnel-group 115.119.186.194 general-attributes&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_115.119.186.194&lt;BR /&gt;tunnel-group 115.119.186.194 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 remote-authentication pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 local-authentication pre-shared-key *****&lt;BR /&gt;tunnel-group 67.192.250.53 type ipsec-l2l&lt;BR /&gt;tunnel-group 67.192.250.53 general-attributes&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_67.192.250.53&lt;BR /&gt;tunnel-group 67.192.250.53 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 remote-authentication pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 local-authentication pre-shared-key *****&lt;BR /&gt;tunnel-group PWSSL type remote-access&lt;BR /&gt;tunnel-group PWSSL general-attributes&lt;BR /&gt;&amp;nbsp;address-pool clientpool&lt;BR /&gt;&amp;nbsp;authentication-server-group PW LOCAL&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_PWSSL&lt;BR /&gt;tunnel-group PWSSL webvpn-attributes&lt;BR /&gt;&amp;nbsp;group-alias PWSSL enable&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum client auto&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 h225&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 ras&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rsh&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rtsp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect esmtp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sqlnet&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect skinny &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sunrpc&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect xdmcp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sip &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect netbios&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect tftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ip-options&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect icmp&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;prompt hostname context&amp;nbsp;&lt;BR /&gt;call-home reporting anonymous prompt 1&lt;BR /&gt;Cryptochecksum:3b6339b71a4cf924c7b30056a3e6fc31&lt;BR /&gt;: end&lt;/P&gt;</description>
      <pubDate>Fri, 13 Jun 2014 12:12:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494321#M237564</guid>
      <dc:creator>processweavertechnologies</dc:creator>
      <dc:date>2014-06-13T12:12:10Z</dc:date>
    </item>
    <item>
      <title>Please explain more about how</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494322#M237565</link>
      <description>&lt;P&gt;Please explain more about how you are trying to access the server.&amp;nbsp; Are you trying to access it using the public IP or private IP?&amp;nbsp; Are you trying to access it using a FQDN? if so what IP does that FQDN resolve to?&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
      <pubDate>Fri, 13 Jun 2014 19:48:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494322#M237565</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-06-13T19:48:52Z</dc:date>
    </item>
    <item>
      <title>I'm trying to access through</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494323#M237567</link>
      <description>&lt;P&gt;I'm trying to access through public IP in local network.&lt;/P&gt;&lt;P&gt;I'm not using any FQDN.&lt;/P&gt;</description>
      <pubDate>Sat, 14 Jun 2014 10:22:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494323#M237567</guid>
      <dc:creator>processweavertechnologies</dc:creator>
      <dc:date>2014-06-14T10:22:05Z</dc:date>
    </item>
    <item>
      <title>Sorry for the late reply (I</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494324#M237569</link>
      <description>&lt;P&gt;Sorry for the late reply (I've been on sick leave).&lt;/P&gt;&lt;P&gt;could you run a packet tracer on the ASA and post the output here please.&lt;/P&gt;&lt;P&gt;packet-tracer input inside tcp 192.168.0.10 12345 202.53.82.100 80 detail&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jun 2014 07:04:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494324#M237569</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-06-16T07:04:20Z</dc:date>
    </item>
    <item>
      <title>Please make following changes</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494325#M237570</link>
      <description>&lt;P&gt;Please make following changes in firewall config-&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;no nat (inside,inside) source static PW-LAN PW-LAN destination static 192.168.0.149 202.53.82.100&lt;/P&gt;&lt;P&gt;nat (inside,inside) source static PW-LAN PW-LAN destination static 202.53.82.100 192.168.0.149&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jun 2014 08:28:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494325#M237570</guid>
      <dc:creator>Rahul Kumar Mishra</dc:creator>
      <dc:date>2014-06-16T08:28:42Z</dc:date>
    </item>
    <item>
      <title>Hi Rahul,Thank you for you</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494326#M237571</link>
      <description>&lt;P&gt;Hi Rahul,&lt;/P&gt;&lt;P&gt;Thank you for you suggestion&lt;/P&gt;&lt;P&gt;i did the same changes, but no luck, below is the running config&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Result of the command: "show running-config"&lt;/P&gt;&lt;P&gt;: Saved&lt;BR /&gt;:&lt;BR /&gt;ASA Version 9.1(3)&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;hostname ciscoasa&lt;BR /&gt;enable password 8Ry2YjIyt7RRXU24 encrypted&lt;BR /&gt;names&lt;BR /&gt;ip local pool clientpool 192.168.0.20-192.168.0.50 mask 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;nameif inside&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.0.5 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;nameif outside&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 202.53.82.98 255.255.255.240&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/4&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/5&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;management-only&lt;BR /&gt;&amp;nbsp;nameif management&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 192.168.5.1 255.255.255.0&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;ftp mode passive&lt;BR /&gt;dns domain-lookup outside&lt;BR /&gt;dns server-group PW&lt;BR /&gt;&amp;nbsp;name-server 202.53.64.202&lt;BR /&gt;&amp;nbsp;name-server 202.53.72.13&lt;BR /&gt;&amp;nbsp;name-server 192.168.0.16&lt;BR /&gt;&amp;nbsp;name-server 192.168.0.8&lt;BR /&gt;same-security-traffic permit intra-interface&lt;BR /&gt;object network PW-LAN&lt;BR /&gt;&amp;nbsp;subnet 192.168.0.0 255.255.255.0&lt;BR /&gt;object network USA&lt;BR /&gt;&amp;nbsp;subnet 192.168.2.0 255.255.255.0&lt;BR /&gt;object network 202.53.82.110&lt;BR /&gt;&amp;nbsp;host 202.53.82.110&lt;BR /&gt;object network PWHYD&lt;BR /&gt;&amp;nbsp;subnet 192.168.1.0 255.255.255.0&lt;BR /&gt;object network 192.168.0.151&lt;BR /&gt;&amp;nbsp;host 192.168.0.151&lt;BR /&gt;object network 192.168.0.154&lt;BR /&gt;&amp;nbsp;host 192.168.0.154&lt;BR /&gt;object network 192.168.0.156&lt;BR /&gt;&amp;nbsp;host 192.168.0.156&lt;BR /&gt;object network 192.168.0.158&lt;BR /&gt;&amp;nbsp;host 192.168.0.158&lt;BR /&gt;object network 192.168.0.159&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.149&lt;BR /&gt;&amp;nbsp;host 192.168.0.149&lt;BR /&gt;object network Rackspace&lt;BR /&gt;&amp;nbsp;subnet 10.176.0.0 255.240.0.0&lt;BR /&gt;object network NETWORK_OBJ_10.176.0.0_12&lt;BR /&gt;&amp;nbsp;subnet 10.176.0.0 255.240.0.0&lt;BR /&gt;object network 192.168.0.147_http&lt;BR /&gt;&amp;nbsp;host 192.168.0.147&lt;BR /&gt;object service http&lt;BR /&gt;&amp;nbsp;service tcp source eq www destination eq www&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14&lt;BR /&gt;&amp;nbsp;host 192.168.0.14&lt;BR /&gt;object network 192.168.0.14_iCA&lt;BR /&gt;&amp;nbsp;host 192.168.0.14&lt;BR /&gt;object network 192.168.0.159_http&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.159_50100&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 202.53.82.101&lt;BR /&gt;&amp;nbsp;host 202.53.82.101&lt;BR /&gt;object network 192.168.0.159_8001&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network 192.168.0.192&lt;BR /&gt;&amp;nbsp;host 192.168.0.192&lt;BR /&gt;object network 192.168.0.159_any&lt;BR /&gt;&amp;nbsp;host 192.168.0.159&lt;BR /&gt;object network clientpool&lt;BR /&gt;&amp;nbsp;range 192.168.0.20 192.168.0.50&lt;BR /&gt;object network NETWORK_OBJ_192.168.1.0_24&lt;BR /&gt;&amp;nbsp;subnet 192.168.1.0 255.255.255.0&lt;BR /&gt;object network 192.168.0.192_DEV&lt;BR /&gt;&amp;nbsp;host 192.168.0.192&lt;BR /&gt;object network 202.53.82.100&lt;BR /&gt;&amp;nbsp;host 202.53.82.100&lt;BR /&gt;object network 149&lt;BR /&gt;&amp;nbsp;host 192.168.0.149&lt;BR /&gt;object-group network PW-All-Sites&lt;BR /&gt;&amp;nbsp;network-object 192.168.0.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;network-object object PWHYD&lt;BR /&gt;&amp;nbsp;network-object object USA&lt;BR /&gt;&amp;nbsp;network-object object clientpool&lt;BR /&gt;access-list 100 extended permit ip any any&amp;nbsp;&lt;BR /&gt;access-list 100 extended permit icmp any any&amp;nbsp;&lt;BR /&gt;access-list l2l-list extended permit ip object-group PW-All-Sites 192.168.2.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list outside_access_in extended permit ip any any&amp;nbsp;&lt;BR /&gt;access-list outside_cryptomap extended permit ip object-group PW-All-Sites 192.168.1.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.0.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.1.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 192.168.2.0 255.255.255.0&amp;nbsp;&lt;BR /&gt;access-list PW-VPN-Tunnel-ACL standard permit 10.176.0.0 255.240.0.0&amp;nbsp;&lt;BR /&gt;access-list outside_cryptomap_3 extended permit ip object-group PW-All-Sites object Rackspace&amp;nbsp;&lt;BR /&gt;access-list inside_access_in extended permit ip any any&amp;nbsp;&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu inside 1500&lt;BR /&gt;mtu outside 1500&lt;BR /&gt;mtu management 1500&lt;BR /&gt;no failover&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;no arp permit-nonconnected&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static Rackspace Rackspace&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static PWHYD PWHYD&lt;BR /&gt;nat (inside,outside) source static PW-LAN PW-LAN destination static USA USA&lt;BR /&gt;nat (inside,outside) source dynamic PW-LAN interface&lt;BR /&gt;nat (any,inside) source dynamic clientpool interface&lt;BR /&gt;nat (inside,inside) source static PW-LAN PW-LAN destination static 202.53.82.100 192.168.0.149&lt;BR /&gt;!&lt;BR /&gt;object network 192.168.0.151&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.102 service tcp 3200 3200&amp;nbsp;&lt;BR /&gt;object network 192.168.0.154&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.104 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.156&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.107 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.158&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.109 service tcp 3222 3222&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;object network 192.168.0.147_http&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.110 service tcp www www&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.99 service tcp https https&amp;nbsp;&lt;BR /&gt;object network 192.168.0.14_iCA&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.99 service tcp citrix-ica citrix-ica&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159_50100&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 50100 50100&amp;nbsp;&lt;BR /&gt;object network 192.168.0.159_8001&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.101 service tcp 8001 8001&amp;nbsp;&lt;BR /&gt;object network 192.168.0.192_DEV&lt;BR /&gt;&amp;nbsp;nat (any,any) static 202.53.82.106 service tcp 3201 3201&amp;nbsp;&lt;BR /&gt;access-group inside_access_in in interface inside&lt;BR /&gt;access-group outside_access_in in interface outside&lt;BR /&gt;route outside 0.0.0.0 0.0.0.0 202.53.82.97 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout pat-xlate 0:00:30&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout floating-conn 0:00:00&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;aaa-server PW protocol radius&lt;BR /&gt;aaa-server PW (inside) host 192.168.0.16&lt;BR /&gt;&amp;nbsp;key *****&lt;BR /&gt;user-identity default-domain LOCAL&lt;BR /&gt;http server enable&lt;BR /&gt;http 192.168.5.0 255.255.255.0 management&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart&lt;BR /&gt;crypto ipsec ikev1 transform-set pwset esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS esp-aes esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS esp-aes esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-128-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS esp-aes-192 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS esp-aes-192 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-192-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS esp-aes-256 esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS esp-aes-256 esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-AES-256-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS esp-3des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-3DES-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA esp-des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5 esp-des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS esp-des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-SHA-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS esp-des esp-md5-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set ESP-DES-MD5-TRANS mode transport&lt;BR /&gt;crypto ipsec ikev1 transform-set pwsethyd esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev1 transform-set RackspaceSet esp-3des esp-sha-hmac&amp;nbsp;&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal RackSpaceSecure&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal pwhydsetsecure&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal secure&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes 3des des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES256&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes-256&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES192&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes-192&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal AES&lt;BR /&gt;&amp;nbsp;protocol esp encryption aes&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal 3DES&lt;BR /&gt;&amp;nbsp;protocol esp encryption 3des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec ikev2 ipsec-proposal DES&lt;BR /&gt;&amp;nbsp;protocol esp encryption des&lt;BR /&gt;&amp;nbsp;protocol esp integrity sha-1 md5&lt;BR /&gt;crypto ipsec security-association replay disable&lt;BR /&gt;crypto ipsec security-association pmtu-aging infinite&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs&amp;nbsp;&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev1 transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;BR /&gt;crypto map outsidemap 1 match address l2l-list&lt;BR /&gt;crypto map outsidemap 1 set peer 63.82.1.98&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 1 set ikev1 transform-set pwset&lt;BR /&gt;crypto map outsidemap 1 set ikev2 ipsec-proposal secure&lt;BR /&gt;crypto map outsidemap 2 match address outside_cryptomap&lt;BR /&gt;crypto map outsidemap 2 set pfs&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 2 set peer 115.119.186.194&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 2 set ikev1 transform-set pwsethyd&lt;BR /&gt;crypto map outsidemap 3 match address outside_cryptomap_3&lt;BR /&gt;crypto map outsidemap 3 set peer 67.192.250.53&amp;nbsp;&lt;BR /&gt;crypto map outsidemap 3 set ikev1 transform-set RackspaceSet&lt;BR /&gt;crypto map outsidemap 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;BR /&gt;crypto map outsidemap interface outside&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint0&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint1&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint2&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;fqdn vpn.processweaver.com&lt;BR /&gt;&amp;nbsp;subject-name CN=vpn.processweaver.com,OU=PWIT,O="ProcessWeaver,Inc",C=US,St=California,L=Fremont&lt;BR /&gt;&amp;nbsp;keypair ciscovpn.key&lt;BR /&gt;&amp;nbsp;no validation-usage&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint3&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpoint ASDM_TrustPoint4&lt;BR /&gt;&amp;nbsp;enrollment terminal&lt;BR /&gt;&amp;nbsp;crl configure&lt;BR /&gt;crypto ca trustpool policy&lt;BR /&gt;crypto ca certificate chain ASDM_TrustPoint2&lt;BR /&gt;&amp;nbsp;certificate ca 47869fe5&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3082046a 30820352 a0030201 02020447 869fe530 0d06092a 864886f7 0d010105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05003048 310b3009 06035504 06130255 53312030 1e060355 040a1317 53656375&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 72655472 75737420 436f7270 6f726174 696f6e31 17301506 03550403 130e5365&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 63757265 54727573 74204341 301e170d 30383132 32323233 34373339 5a170d32&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 38313232 32323334 3733395a 3081ae31 0b300906 03550406 13025553 3111300f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06035504 08130849 6c6c696e 6f697331 10300e06 03550407 13074368 69636167&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f312130 1f060355 040a1318 54727573 74776176 6520486f 6c64696e 67732c20&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 496e632e 31363034 06035504 03132d54 72757374 77617665 204f7267 616e697a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6174696f 6e205661 6c696461 74696f6e 2043412c 204c6576 656c2032 311f301d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06092a86 4886f70d 01090116 10636140 74727573 74776176 652e636f 6d308201&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 22300d06 092a8648 86f70d01 01010500 0382010f 00308201 0a028201 0100e814&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; eea0da97 bd89bd0c cc8ddf08 fb060983 a823515b 013f34da 1f1f6ec1 e35865cb&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0af9f387 c8c8faa1 ccf574e2 b8ae2d06 8480286f 5ac1225c 929442cd 1902125c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 10627ea2 44fb165e 9c72b1ac ea04e615 aa99e85a f858b987 24e875cd 2588e258&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 925e8683 7f8a2353 ae8ae8a3 217e83af 40091849 afe1d05a b04f6fe2 31adf4f1&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 371fc92a e18bd68c 1231d427 1adfea6b 9e7853ed 9a19b0ce 45445b1b ef645921&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; fac7b7d1 d30c1ecb 88dafd23 3ff4ac2b a04d61d3 becade19 616124f1 f69cb496&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; bd9deb17 9f243978 e92350d3 015077d8 52642f3e 194f75b9 17b1da8d e0d0eddb&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3713dc2f e05f8068 d7f487ba c11f1278 d0082717 7a98a69f d221ba4e 87bf0203&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 010001a3 81f43081 f1300f06 03551d13 0101ff04 05300301 01ff301d 0603551d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0e041604 145dd996 9a40c727 cb2c9ba2 eccf19ab c8afcc86 48301f06 03551d23&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 04183016 80144232 b616fa04 fdfe5d4b 7ac3fdf7 4c401d5a 43af300b 0603551d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0f040403 02010630 34060355 1d1f042d 302b3029 a027a025 86236874 74703a2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 2f63726c 2e736563 75726574 72757374 2e636f6d 2f535443 412e6372 6c305b06&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 03551d20 04543052 300c060a 2b060104 0181ed18 03003042 060f2b06 01040181&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; ed180303 03030404 03302f30 2d06082b 06010505 07020116 21687474 703a2f2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7777772e 73656375 72657472 7573742e 636f6d2f 6c656761 6c2f300d 06092a86&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 4886f70d 01010505 00038201 010053f1 c8a017ec 6c8882b1 c024afd1 0858b32c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f7bc15c 89926f88 fc4bc002 50932f5a 419859b6 e37f8c14 63777d45 3c88505e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; a6815200 c8c5fe48 ee1f5dad de440b42 589ce167 5c43b6a0 8598ff16 d41a28be&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 76e12fe1 84f47eb9 27aa77cb 36b3fec3 fad217f6 e1624ed3 ccccb319 65d34ba8&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; e8b3d54c eaf64eae cbae3448 1f60cc58 e7e774c9 0135fd6a e0588ad2 16ebece9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3ebbf01d cfb6ff1e 0cb7bb39 e9b7981b c05221eb 3a3d7838 8ca9195f 27a4d07f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3661ab24 7e9ff82d 3f922963 becb10db 0d403602 a0d417a2 8d7f7e7c 99af455a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 40cda26b 5cbe0ef3 d387fca1 10caaa33 b7ba4bc0 3da4218c 179ccfd8 bfe657fe&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; cdebfa30 1ad5fee8 2597a9be 3bea&lt;BR /&gt;&amp;nbsp; quit&lt;BR /&gt;&amp;nbsp;certificate 0649f9a965553e7df2709c06c4da1b09e17cd9&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 30820510 308203f8 a0030201 02021306 49f9a965 553e7df2 709c06c4 da1b09e1&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7cd9300d 06092a86 4886f70d 01010505 003081ae 310b3009 06035504 06130255&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 53311130 0f060355 04081308 496c6c69 6e6f6973 3110300e 06035504 07130743&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 68696361 676f3121 301f0603 55040a13 18547275 73747761 76652048 6f6c6469&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6e67732c 20496e63 2e313630 34060355 0403132d 54727573 74776176 65204f72&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 67616e69 7a617469 6f6e2056 616c6964 6174696f 6e204341 2c204c65 76656c20&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 32311f30 1d06092a 864886f7 0d010901 16106361 40747275 73747761 76652e63&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6f6d301e 170d3134 30363131 30353330 33355a17 0d313530 32323331 31333033&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 355a3070 311e301c 06035504 030c1576 706e2e70 726f6365 73737765 61766572&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 2e636f6d 31163014 06035504 0a0c0d50 726f6365 73735765 61766572 31143012&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 06035504 070c0b53 616e7461 20436c61 72613113 30110603 5504080c 0a43616c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 69666f72 6e696131 0b300906 03550406 13025553 30820122 300d0609 2a864886&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; f70d0101 01050003 82010f00 3082010a 02820101 00cc194c fbdd63f5 0b49141a&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 9d21063f a13136df e524cef9 c55e9331 e6c5bc67 43361421 cafb7dc1 d244942e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 6fd02ee7 198e7f7e 48ca62c2 1c8e1a8e 20431d42 b24103f1 5fad9287 9f9dc2da&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 5002e0b4 cf14b414 31e0e691 26cfbc0c 1ee09d6d 8176a63d 6ad81c30 b2b69dbe&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 59ce7092 44c09e62 27f20c58 8bd8e38a a3d75a94 94bbca6f 7ad87b93 3892ddb0&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3f00a693 e05b5fe8 7a71d36c 223e1ded 8afb8ee4 1eea579c 53d964df 467694e9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; b7ffe4f9 22c6dd5e 33d0ffee 9fd57fed 621c62f1 4dc6f14e 6518de53 c2fd7d5d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; b37913b8 69211fe5 e194a6bf f60bc88a 343a93dc 34526931 b41566e3 f38f219f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 9a6cefd5 d6d60002 2442b3e5 b4096717 2ffea23d b1020301 0001a382 01623082&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 015e300b 0603551d 0f040403 0205a030 1d060355 1d250416 30140608 2b060105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05070302 06082b06 01050507 0301301d 0603551d 0e041604 14cd47cf 646a8932&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 7cecb024 9fd2a31a b54d73dc c0301f06 03551d23 04183016 80145dd9 969a40c7&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 27cb2c9b a2eccf19 abc8afcc 86483048 0603551d 20044130 3f303d06 0f2b0601&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 040181ed 18030303 03040403 302a3028 06082b06 01050507 0201161c 68747470&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 733a2f2f 73736c2e 74727573 74776176 652e636f 6d2f4341 30370603 551d1104&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 30302e82 1576706e 2e70726f 63657373 77656176 65722e63 6f6d8215 7774732e&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 70726f63 65737377 65617665 722e636f 6d303506 03551d1f 042e302c 302aa028&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; a0268624 68747470 3a2f2f63 726c2e74 72757374 77617665 2e636f6d 2f4f5643&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 415f4c32 2e63726c 30360608 2b060105 05070101 042a3028 30260608 2b060105&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 05073001 861a6874 74703a2f 2f6f6373 702e7472 75737477 6176652e 636f6d2f&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 300d0609 2a864886 f70d0101 05050003 82010100 0785070e 045d6201 3ffc49b5&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 88808587 b6418d0e 87dc7ae8 3204563b 6e51ff93 25e8ad7a 9a11d439 2439a533&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 768477ca 902fdfbe f0c58a04 e15bf6a5 63829d4b a36c7ccc 0af9532b f39ec31d&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 21cd6b74 d3adffc2 5f8ee1c4 92c07ac6 ab547346 c740f477 857a82fd 897029d5&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 1cfa9b55 b1064ab7 1274556c 6a14f7a8 b8705cd4 51d6b7f4 0a024f6d 1818918c&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 0cb15bc5 cd301684 38c2dcb8 2585b44c 18808e1b 823a6043 28da0194 280fa6c9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 80831cbc 1179be24 fc391e54 965761e5 e51031e1 0c76c65f 187922d0 96be80c9&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 3de9a56e 41d0fd3f 76afaf49 4bc4ff4c 213aa474 60a742ba 2a8fb3bd c9349da3&amp;nbsp;&lt;BR /&gt;&amp;nbsp; &amp;nbsp; 1ac96b24 7b99cba5 a28c6647 7803cf2c ee70540c&lt;BR /&gt;&amp;nbsp; quit&lt;BR /&gt;crypto ikev2 policy 10&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;integrity sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;prf sha&lt;BR /&gt;&amp;nbsp;lifetime seconds 28800&lt;BR /&gt;crypto ikev2 enable outside&lt;BR /&gt;crypto ikev2 remote-access trustpoint ASDM_TrustPoint2&lt;BR /&gt;crypto ikev1 enable outside&lt;BR /&gt;crypto ikev1 policy 10&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 28800&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;ssh key-exchange group dh-group1-sha1&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.5.2-192.168.5.254 management&lt;BR /&gt;dhcpd enable management&lt;BR /&gt;!&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;ssl trust-point ASDM_TrustPoint2 outside&lt;BR /&gt;webvpn&lt;BR /&gt;&amp;nbsp;enable outside&lt;BR /&gt;&amp;nbsp;anyconnect image disk0:/anyconnect-win-2.5.2014-k9.pkg 1&lt;BR /&gt;&amp;nbsp;anyconnect enable&lt;BR /&gt;&amp;nbsp;tunnel-group-list enable&lt;BR /&gt;group-policy GroupPolicy_PWSSL internal&lt;BR /&gt;group-policy GroupPolicy_PWSSL attributes&lt;BR /&gt;&amp;nbsp;wins-server none&lt;BR /&gt;&amp;nbsp;dns-server value 192.168.0.16&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ssl-client&amp;nbsp;&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value PW-VPN-Tunnel-ACL&lt;BR /&gt;&amp;nbsp;default-domain value processw.local&lt;BR /&gt;&amp;nbsp;webvpn&lt;BR /&gt;&amp;nbsp; anyconnect keep-installer none&lt;BR /&gt;group-policy GroupPolicy_115.119.186.194 internal&lt;BR /&gt;group-policy GroupPolicy_115.119.186.194 attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 l2tp-ipsec&amp;nbsp;&lt;BR /&gt;group-policy GroupPolicy_67.192.250.53 internal&lt;BR /&gt;group-policy GroupPolicy_67.192.250.53 attributes&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 l2tp-ipsec ssl-clientless&lt;BR /&gt;group-policy pw internal&lt;BR /&gt;group-policy pw attributes&lt;BR /&gt;&amp;nbsp;dns-server value 192.168.0.16&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol ikev1 ikev2&amp;nbsp;&lt;BR /&gt;&amp;nbsp;split-tunnel-policy tunnelspecified&lt;BR /&gt;&amp;nbsp;split-tunnel-network-list value PW-VPN-Tunnel-ACL&lt;BR /&gt;&amp;nbsp;default-domain none&lt;BR /&gt;username rajuvaradha password 6biM7HbMtaadT82k encrypted&lt;BR /&gt;username e172 password E1abOIw/eu.DKO/y encrypted&lt;BR /&gt;username e150 password dJMsBQfrQRISuR8n encrypted&lt;BR /&gt;username e134 password bLBixKKCoH5Udlk9 encrypted&lt;BR /&gt;username e182 password mirFopEi/OG0LT4d encrypted&lt;BR /&gt;username e192 password u2P6WXLa1k8.kA1w encrypted&lt;BR /&gt;username e184 password Rpt/S1N6et6Xwi7W encrypted&lt;BR /&gt;username u033 password pS5QN8QLvYFHJfoK encrypted&lt;BR /&gt;username u011 password HGFsDnR5XiFAzrcE encrypted&lt;BR /&gt;username u010 password 5R8mktMpyUYPCpTO encrypted&lt;BR /&gt;username u032 password rst8O1b/yrXsKVmu encrypted&lt;BR /&gt;username u002 password .u2izEtqOIC5D2fT encrypted&lt;BR /&gt;username admin password eY/fQXw7Ure8Qrz7 encrypted&lt;BR /&gt;username u012 password JClYI3r7x0T/ed26 encrypted&lt;BR /&gt;username u015 password 6tNvtB4hPcUNDyhE encrypted&lt;BR /&gt;username u014 password Wy6x8dPcSnMcAT1v encrypted&lt;BR /&gt;username u017 password xahCXrBaZWzW8aEp encrypted&lt;BR /&gt;username u006 password BCEOAmlRL6CbQfTV encrypted&lt;BR /&gt;username e006 password DG96SZQ2gBqIXEYv encrypted&lt;BR /&gt;username e034 password 1sG72DUjsY7nt81V encrypted&lt;BR /&gt;username u007 password vtcK6xerueHvqZJZ encrypted&lt;BR /&gt;username u016 password pZgySMnraNBlTTnL encrypted&lt;BR /&gt;username u025 password ulAXIX1u2.UD/KvT encrypted&lt;BR /&gt;username u008 password G4vmDF.mv3rXWa7h encrypted&lt;BR /&gt;username u019 password NxlycJwroZrzCSJ3 encrypted&lt;BR /&gt;username e019 password E9NaUPs18c0.PBnd encrypted&lt;BR /&gt;username u018 password 33CghGQSMjbWDfdb encrypted&lt;BR /&gt;username u009 password uaaSLEu55XXbD5Sr encrypted&lt;BR /&gt;username u028 password UMFMzXMs6He7.zR8 encrypted&lt;BR /&gt;username e097 password .UawdlGNiYnRHnzF encrypted&lt;BR /&gt;username e314 password ye2/LpVufAXvAUJ6 encrypted&lt;BR /&gt;username e327 password 6mKef3HGlnyb6hnu encrypted&lt;BR /&gt;username e343 password 0g33Wbvzi.NL1PjH encrypted&lt;BR /&gt;username e222 password e0.SFEwm1RqC6lLj encrypted&lt;BR /&gt;username e289 password /YrO2mEvMUr9zxq3 encrypted&lt;BR /&gt;username e201 password Eox2TB.HgdkKLuec encrypted&lt;BR /&gt;username e265 password fTk7Vxw0Z06AAbHi encrypted&lt;BR /&gt;username e251 password 6y7YjKQO1rP3nAQG encrypted&lt;BR /&gt;username e219 password p049Lf7jFLisN6UJ encrypted&lt;BR /&gt;username e269 password v7oFefIpmPGd307D encrypted&lt;BR /&gt;tunnel-group 63.82.1.98 type ipsec-l2l&lt;BR /&gt;tunnel-group 63.82.1.98 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;tunnel-group pw type remote-access&lt;BR /&gt;tunnel-group pw general-attributes&lt;BR /&gt;&amp;nbsp;address-pool clientpool&lt;BR /&gt;&amp;nbsp;default-group-policy pw&lt;BR /&gt;tunnel-group pw ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;tunnel-group 115.119.186.194 type ipsec-l2l&lt;BR /&gt;tunnel-group 115.119.186.194 general-attributes&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_115.119.186.194&lt;BR /&gt;tunnel-group 115.119.186.194 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 remote-authentication pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 local-authentication pre-shared-key *****&lt;BR /&gt;tunnel-group 67.192.250.53 type ipsec-l2l&lt;BR /&gt;tunnel-group 67.192.250.53 general-attributes&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_67.192.250.53&lt;BR /&gt;tunnel-group 67.192.250.53 ipsec-attributes&lt;BR /&gt;&amp;nbsp;ikev1 pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 remote-authentication pre-shared-key *****&lt;BR /&gt;&amp;nbsp;ikev2 local-authentication pre-shared-key *****&lt;BR /&gt;tunnel-group PWSSL type remote-access&lt;BR /&gt;tunnel-group PWSSL general-attributes&lt;BR /&gt;&amp;nbsp;address-pool clientpool&lt;BR /&gt;&amp;nbsp;authentication-server-group PW LOCAL&lt;BR /&gt;&amp;nbsp;default-group-policy GroupPolicy_PWSSL&lt;BR /&gt;tunnel-group PWSSL webvpn-attributes&lt;BR /&gt;&amp;nbsp;group-alias PWSSL enable&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum client auto&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 h225&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect h323 ras&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rsh&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect rtsp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect esmtp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sqlnet&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect skinny &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sunrpc&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect xdmcp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect sip &amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect netbios&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect tftp&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect ip-options&amp;nbsp;&lt;BR /&gt;&amp;nbsp; inspect icmp&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;prompt hostname context&amp;nbsp;&lt;BR /&gt;call-home reporting anonymous prompt 1&lt;BR /&gt;Cryptochecksum:86bc4e355c827a2a5e1d00cb1f23ef92&lt;BR /&gt;: end&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jun 2014 13:11:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494326#M237571</guid>
      <dc:creator>processweavertechnologies</dc:creator>
      <dc:date>2014-06-16T13:11:16Z</dc:date>
    </item>
    <item>
      <title>The NAT statement I posted is</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494327#M237572</link>
      <description>&lt;P&gt;The NAT statement I posted is the correct format.&lt;/P&gt;&lt;P&gt;nat (real_int,mapped_int) source static &amp;lt;real_source_IP&amp;gt; &amp;lt;mapped_source_IP&amp;gt; destination static &amp;lt;mapped_dest_IP&amp;gt; &amp;lt;real_dest_IP&amp;gt;&lt;/P&gt;&lt;P&gt;so in this case the real IP is the 202.xxx.xxx.xxx IP and we want to translate that IP to 192.168.0.149.&lt;/P&gt;&lt;P&gt;The correct NAT config is:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nat (inside,inside) source static PW-LAN PW-LAN destination static 192.168.0.149 202.xxx.xxx.xxx&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;I believe the problem is that the packet is translated correctly but the server sees the source address as being on the same subnet, so asynchronous routing seems to be your issue here.&lt;/P&gt;&lt;P&gt;You could try to enable TCP bypass on the ASA...(I would usually not recommend this as it can be a security risk).&amp;nbsp; Use this option at your own risk.&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/conns_tcpstatebypass.html"&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/conns_tcpstatebypass.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jun 2014 10:54:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494327#M237572</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-06-17T10:54:16Z</dc:date>
    </item>
    <item>
      <title>Even I tried the same</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494328#M237573</link>
      <description>&lt;P&gt;Even I tried the same scenario here in my network and I was able to ping the public IP but reply was coming from real IP of destination. Also when i tried to telnet that on port 80 with public IP it was not successful but was successful with real IP...I guess such solution can only work if both source machine and server are in different subnet and their intersubnet routing must be happening through firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jun 2014 14:54:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494328#M237573</guid>
      <dc:creator>Rahul Kumar Mishra</dc:creator>
      <dc:date>2014-06-17T14:54:41Z</dc:date>
    </item>
    <item>
      <title>The reason ping works is</title>
      <link>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494329#M237574</link>
      <description>&lt;P&gt;The reason ping works is because both the ICMP request and ICMP reply are seperate flows...ie. they are not part of the same connection. So the ASA will never drop the next request packet as it is a new flow and new sequence number.&lt;/P&gt;&lt;P&gt;TCP bypass should take care of this issue, but as I mentioned in my previous post, it is not a recommended solution as it can be a security risk.&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jun 2014 15:06:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/static-ip-issues-from-outside-of-firewall/m-p/2494329#M237574</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-06-17T15:06:16Z</dc:date>
    </item>
  </channel>
</rss>

