<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Expanding subnet on inside interface in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419256#M308978</link>
    <description>&lt;P&gt;Hello All!&lt;/P&gt;&lt;P&gt;I have something that I hope someone can give me a hand with. I have taken over a network with an existing ASA already configured and working perfectly. Right now the inside interface subnet is 255.255.255.0 and we would like to change it to be 255.255.254.0 so it will include 192.168.0.0 and 192.168.1.0 to&amp;nbsp; make more addresses available on the network. Obviously I know I have to change our DHCP settings on the server and the subnet on the inside interface, but what else needs to be changed as far as ACL, NAT, etc? This ASA has multiple VPN's and it is critical to have as little downtime as possible. I am posting the current config, although I have removed any outside IP and password, etc info. If someone could please assist I would greatly appreciate it!&lt;/P&gt;&lt;P&gt;Thanks in advance!!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-size: 10pt;"&gt;hostname *****&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;domain-name *******.com&lt;/P&gt;&lt;P&gt;enable password ********* encrypted&lt;/P&gt;&lt;P&gt;passwd ******** encrypted&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;name 10.0.0.30 Adonis&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; ip address 1.1.1.1 255.255.255.224 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt; speed 100&lt;/P&gt;&lt;P&gt; duplex full&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 192.168.0.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt; nameif dmz&lt;/P&gt;&lt;P&gt; security-level 50&lt;/P&gt;&lt;P&gt; ip address 10.0.0.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt; no nameif&lt;/P&gt;&lt;P&gt; no security-level&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Management0/0&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt; no nameif&lt;/P&gt;&lt;P&gt; no security-level&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;boot system disk0:/asa842-18-k8.bin&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;clock timezone CST -6&lt;/P&gt;&lt;P&gt;clock summer-time CDT recurring&lt;/P&gt;&lt;P&gt;dns server-group DefaultDNS&lt;/P&gt;&lt;P&gt; domain-name *******.com&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.0&lt;/P&gt;&lt;P&gt; subnet 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.77.0&lt;/P&gt;&lt;P&gt; subnet 10.73.77.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.51.0&lt;/P&gt;&lt;P&gt; subnet 192.168.51.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.79.0&lt;/P&gt;&lt;P&gt; subnet 10.73.79.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.6.0&lt;/P&gt;&lt;P&gt; subnet 192.168.6.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.1.0&lt;/P&gt;&lt;P&gt; subnet 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.50.0&lt;/P&gt;&lt;P&gt; subnet 192.168.50.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.70.0&lt;/P&gt;&lt;P&gt; subnet 192.168.70.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.2.0&lt;/P&gt;&lt;P&gt; subnet 192.168.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.26.0&lt;/P&gt;&lt;P&gt; subnet 192.168.26.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.95.0&lt;/P&gt;&lt;P&gt; subnet 10.73.95.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.0&lt;/P&gt;&lt;P&gt; subnet 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.5.0&lt;/P&gt;&lt;P&gt; subnet 192.168.5.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.30.0&lt;/P&gt;&lt;P&gt; subnet 192.168.30.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.90.0&lt;/P&gt;&lt;P&gt; subnet 10.73.90.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.52.0&lt;/P&gt;&lt;P&gt; subnet 192.168.52.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.53.0&lt;/P&gt;&lt;P&gt; subnet 192.168.53.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.75&lt;/P&gt;&lt;P&gt; host 192.168.0.75&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.132&lt;/P&gt;&lt;P&gt; host 192.168.0.132&lt;/P&gt;&lt;P&gt;object network obj-192.168.35.0&lt;/P&gt;&lt;P&gt; subnet 192.168.35.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.88.0&lt;/P&gt;&lt;P&gt; subnet 10.73.88.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.50.0&lt;/P&gt;&lt;P&gt; subnet 10.73.50.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.82.0&lt;/P&gt;&lt;P&gt; subnet 192.168.82.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.87.0&lt;/P&gt;&lt;P&gt; subnet 10.73.87.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.78.0&lt;/P&gt;&lt;P&gt; subnet 10.73.78.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.70.70.0&lt;/P&gt;&lt;P&gt; subnet 10.70.70.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.80.0&lt;/P&gt;&lt;P&gt; subnet 10.73.80.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.3.0&lt;/P&gt;&lt;P&gt; host 192.168.3.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.4.0&lt;/P&gt;&lt;P&gt; host 192.168.4.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.129&lt;/P&gt;&lt;P&gt; host 192.168.0.129&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.5&lt;/P&gt;&lt;P&gt; host 192.168.0.5&lt;/P&gt;&lt;P&gt;object network obj_any&lt;/P&gt;&lt;P&gt; subnet 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;object network obj_any-01&lt;/P&gt;&lt;P&gt; subnet 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.2&lt;/P&gt;&lt;P&gt; host 10.0.0.2&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.3&lt;/P&gt;&lt;P&gt; host 10.0.0.3&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.4&lt;/P&gt;&lt;P&gt; host 10.0.0.4&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.10&lt;/P&gt;&lt;P&gt; host 10.0.0.10&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.8&lt;/P&gt;&lt;P&gt; host 10.0.0.8&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.11&lt;/P&gt;&lt;P&gt; host 10.0.0.11&lt;/P&gt;&lt;P&gt;object network Adonis&lt;/P&gt;&lt;P&gt; host 10.0.0.30&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.15&lt;/P&gt;&lt;P&gt; host 10.0.0.15&lt;/P&gt;&lt;P&gt;object network obj-10.73.85.0&lt;/P&gt;&lt;P&gt; subnet 10.73.85.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.20.0&lt;/P&gt;&lt;P&gt; subnet 192.168.20.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.22.0&lt;/P&gt;&lt;P&gt; subnet 192.168.22.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.27.0&lt;/P&gt;&lt;P&gt; subnet 192.168.27.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.28.0&lt;/P&gt;&lt;P&gt; subnet 192.168.28.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network Controller1&lt;/P&gt;&lt;P&gt; host 192.168.0.136&lt;/P&gt;&lt;P&gt; description Controller1 VM&lt;/P&gt;&lt;P&gt;object network Controller2&lt;/P&gt;&lt;P&gt; host 192.168.0.253&lt;/P&gt;&lt;P&gt; description Controller2 VM&lt;/P&gt;&lt;P&gt;object-group network KIMCAM_VPN_REMOTE&lt;/P&gt;&lt;P&gt; network-object 192.168.5.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network KIMCAM_VPN_LOCAL&lt;/P&gt;&lt;P&gt; network-object 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt; network-object 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network PIX506_VPN_REMOTE&lt;/P&gt;&lt;P&gt; network-object 10.73.87.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network PIX506_VPN_LOCAL&lt;/P&gt;&lt;P&gt; network-object 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt; network-object 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network CONVEN_VPN_REMOTE&lt;/P&gt;&lt;P&gt; network-object 10.73.88.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network CONVEN_VPN_LOCAL&lt;/P&gt;&lt;P&gt; network-object 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt; network-object 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network Controller&lt;/P&gt;&lt;P&gt; description Controller machines&lt;/P&gt;&lt;P&gt; network-object object Controller1&lt;/P&gt;&lt;P&gt; network-object object Controller2&lt;/P&gt;&lt;P&gt;object-group service Internet&lt;/P&gt;&lt;P&gt; description Internet Services 80/443&lt;/P&gt;&lt;P&gt; service-object tcp destination eq www &lt;/P&gt;&lt;P&gt; service-object tcp destination eq https &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.2 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host **** any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.3 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host **** any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.2 eq 1433 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.3 host 192.168.0.2 eq 137 &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.3 host 192.168.0.2 eq 138 &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.3 host 192.168.0.2 eq netbios-ssn &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.3 host 192.168.0.2 eq netbios-ns &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.3 host 192.168.0.2 eq netbios-dgm &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.3 host 192.168.0.2 eq 139 &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.4 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host **** any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.6 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.7 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.8 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.9 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.10 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.11 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.21 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.12 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.22 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.25 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.7 host 10.73.95.36 eq sqlnet &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp object Adonis any eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp object Adonis any eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip object Adonis host 10.73.95.16 &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.15 host 192.168.0.121 eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.15 host 192.168.0.121 eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.15 host 192.168.0.120 eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.15 host 192.168.0.120 eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.15 any eq www &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.15 any eq https &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp object Adonis any eq ntp &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 10.0.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.26.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 10.0.0.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.30.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.30.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.90.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.26.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.26.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.30.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.78.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.70.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 10.0.0.0 255.255.255.0 10.73.78.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 10.0.0.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.26.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list karen extended permit ip 192.168.0.0 255.255.255.0 192.168.2.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list karen extended permit ip 10.0.0.0 255.255.255.0 192.168.2.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 192.168.2.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 10.0.0.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 192.168.0.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 192.168.26.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 192.168.30.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list beverly extended permit ip 192.168.0.0 255.255.255.0 192.168.6.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list beverly extended permit ip 10.0.0.0 255.255.255.0 192.168.6.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 192.168.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 10.0.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 192.168.30.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.51.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.6.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.2.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 10.0.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.90.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip host 192.168.0.75 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip host 192.168.0.132 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 10.0.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.26.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.88.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.82.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.87.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.78.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.70.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 10.0.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.2.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.3.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.51.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.6.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.88.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.87.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.78.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 120 extended permit ip 10.0.0.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 120 extended permit ip 192.168.26.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 120 extended permit ip 192.168.0.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 192.168.0.0 255.255.255.0 192.168.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 10.0.0.0 255.255.255.0 192.168.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 192.168.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 10.0.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 192.168.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 10.0.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 192.168.0.0 255.255.255.0 10.73.88.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 10.0.0.0 255.255.255.0 10.73.88.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 121 extended permit ip 192.168.0.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 121 extended permit ip 192.168.26.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 121 extended permit ip 192.168.30.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 121 extended permit ip 10.0.0.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 122 extended permit ip 192.168.0.0 255.255.255.0 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 122 extended permit ip 192.168.30.0 255.255.255.0 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list DYNVPN extended permit ip object-group KIMCAM_VPN_LOCAL object-group KIMCAM_VPN_REMOTE &lt;/P&gt;&lt;P&gt;access-list DYNVPN extended permit ip any 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list DYNVPN extended permit ip object-group PIX506_VPN_LOCAL object-group PIX506_VPN_REMOTE &lt;/P&gt;&lt;P&gt;access-list DYNVPN extended permit ip object-group CONVEN_VPN_LOCAL object-group CONVEN_VPN_REMOTE &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.3 eq domain &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq 7877 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq 7777 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq 2121 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.3 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.3 eq 5005 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq rtsp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.4 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit ip host ***** host 192.168.0.75 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit ip host ***** host 192.168.0.75 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.10 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.10 eq 5005 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq rtsp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.10 eq domain &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq 7877 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq 7777 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq 2121 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host 192.168.0.75 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** any eq 161 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** any eq 162 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp host **** any eq snmp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp host **** any eq snmptrap &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.8 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.8 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.11 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.11 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.11 eq 5005 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.11 eq rtsp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.11 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.11 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host **** eq 3389 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host **** eq 3389 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.129 eq smtp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.129 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.129 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.129 eq pop3 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host 192.168.0.129 eq 3389 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host **** eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any object Adonis eq domain &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any object Adonis eq domain &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.132 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.132 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq pop3 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit icmp host **** any &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit ip host **** host 192.168.0.132 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.15 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.15 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq 995 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq 587 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host 72.159.96.162 eq ssh &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host 72.159.96.162 eq ssh &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit icmp any any &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging timestamp&lt;/P&gt;&lt;P&gt;logging trap warnings&lt;/P&gt;&lt;P&gt;logging history warnings&lt;/P&gt;&lt;P&gt;logging asdm informational&lt;/P&gt;&lt;P&gt;logging host inside 192.168.0.2&lt;/P&gt;&lt;P&gt;logging host inside 10.73.95.70&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu dmz 1500&lt;/P&gt;&lt;P&gt;ip local pool vpn3000-pool 192.168.50.180-192.168.50.209&lt;/P&gt;&lt;P&gt;ip local pool vpn3001-pool 192.168.52.180-192.168.52.190&lt;/P&gt;&lt;P&gt;ip local pool vpn3002-pool 192.168.53.180-192.168.53.185&lt;/P&gt;&lt;P&gt;ip local pool sp-software 192.168.50.140-192.168.50.179&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;icmp permit host **** outside&lt;/P&gt;&lt;P&gt;icmp permit host **** outside&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-645-206.bin&lt;/P&gt;&lt;P&gt;asdm history enable&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.5.0 obj-192.168.5.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.5.0 obj-192.168.5.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.51.0 obj-192.168.51.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.79.0 obj-10.73.79.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.6.0 obj-192.168.6.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.1.0 obj-192.168.1.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.50.0 obj-192.168.50.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.70.0 obj-192.168.70.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.2.0 obj-192.168.2.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.79.0 obj-10.73.79.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.95.0 obj-10.73.95.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.95.0 obj-10.73.95.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-192.168.1.0 obj-192.168.1.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-10.73.95.0 obj-10.73.95.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.90.0 obj-10.73.90.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-10.73.79.0 obj-10.73.79.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-192.168.52.0 obj-192.168.52.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.52.0 obj-192.168.52.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-192.168.52.0 obj-192.168.52.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-192.168.53.0 obj-192.168.53.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.75 obj-192.168.0.75 destination static obj-192.168.53.0 obj-192.168.53.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.132 obj-192.168.0.132 destination static obj-192.168.53.0 obj-192.168.53.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.35.0 obj-192.168.35.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.35.0 obj-192.168.35.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.26.0 obj-192.168.26.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.88.0 obj-10.73.88.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.50.0 obj-10.73.50.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.50.0 obj-10.73.50.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-10.73.50.0 obj-10.73.50.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.82.0 obj-192.168.82.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.87.0 obj-10.73.87.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.78.0 obj-10.73.78.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.70.70.0 obj-10.70.70.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.80.0 obj-10.73.80.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.80.0 obj-10.73.80.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.2.0 obj-192.168.2.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.3.0 obj-192.168.3.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.51.0 obj-192.168.51.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.79.0 obj-10.73.79.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.6.0 obj-192.168.6.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.1.0 obj-192.168.1.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.50.0 obj-192.168.50.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.70.0 obj-192.168.70.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.95.0 obj-10.73.95.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.5.0 obj-192.168.5.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.52.0 obj-192.168.52.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.35.0 obj-192.168.35.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.88.0 obj-10.73.88.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.87.0 obj-10.73.87.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.78.0 obj-10.73.78.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.80.0 obj-10.73.80.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.85.0 obj-10.73.85.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.85.0 obj-10.73.85.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.20.0 obj-192.168.20.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.20.0 obj-192.168.20.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.22.0 obj-192.168.22.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.22.0 obj-192.168.22.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.27.0 obj-192.168.27.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.27.0 obj-192.168.27.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.28.0 obj-192.168.28.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.28.0 obj-192.168.28.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.0.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-10.73.77.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 10.73.77.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.1.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.1.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.2.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.2.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 10.0.0.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.5.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.5.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.75&lt;/P&gt;&lt;P&gt; nat (inside,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.132&lt;/P&gt;&lt;P&gt; nat (inside,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-192.168.3.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.3.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.4.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.4.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.129&lt;/P&gt;&lt;P&gt; nat (inside,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.5&lt;/P&gt;&lt;P&gt; nat (inside,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj_any&lt;/P&gt;&lt;P&gt; nat (inside,outside) dynamic interface&lt;/P&gt;&lt;P&gt;object network obj_any-01&lt;/P&gt;&lt;P&gt; nat (dmz,outside) dynamic interface&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.2&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.3&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.4&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.10&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.8&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.11&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network Adonis&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.15&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;access-group outsideif in interface outside&lt;/P&gt;&lt;P&gt;access-group dmzintf in interface dmz&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 *.*.*.* 1&lt;/P&gt;&lt;P&gt;route inside 192.168.26.0 255.255.255.0 192.168.0.9 1&lt;/P&gt;&lt;P&gt;route inside 192.168.30.0 255.255.255.0 192.168.0.8 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P&gt;timeout floating-conn 0:00:00&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ (inside) host 10.73.95.70&lt;/P&gt;&lt;P&gt; timeout 8&lt;/P&gt;&lt;P&gt; key *******&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ (outside) host &lt;/P&gt;&lt;P&gt; timeout 8&lt;/P&gt;&lt;P&gt; key *******&lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius&lt;/P&gt;&lt;P&gt;aaa-server RADIUS_Auth protocol radius&lt;/P&gt;&lt;P&gt;aaa-server RADIUS_Auth (inside) host 192.168.0.7&lt;/P&gt;&lt;P&gt; key ****&lt;/P&gt;&lt;P&gt; authentication-port 1812&lt;/P&gt;&lt;P&gt; accounting-port 1813&lt;/P&gt;&lt;P&gt;user-identity default-domain LOCAL&lt;/P&gt;&lt;P&gt;aaa authentication ssh console TACACS+ &lt;/P&gt;&lt;P&gt;aaa authentication http console TACACS+ &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.0.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;http 10.73.77.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;snmp-server host inside 10.73.77.106 &lt;/P&gt;&lt;P&gt;snmp-server host outside **** poll &lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;snmp-server community public&lt;/P&gt;&lt;P&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;/P&gt;&lt;P&gt;snmp-server enable traps syslog&lt;/P&gt;&lt;P&gt;crypto ipsec ikev1 transform-set myset esp-des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto dynamic-map dynmap 20 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto dynamic-map dynmap 30 match address DYNVPN&lt;/P&gt;&lt;P&gt;crypto dynamic-map dynmap 30 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 5 match address tango&lt;/P&gt;&lt;P&gt;crypto map mymap 5 set peer **** &lt;/P&gt;&lt;P&gt;crypto map mymap 5 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 5 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 5 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 6 match address karen&lt;/P&gt;&lt;P&gt;crypto map mymap 6 set peer ****&lt;/P&gt;&lt;P&gt;crypto map mymap 6 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 6 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 6 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 9 match address walker&lt;/P&gt;&lt;P&gt;crypto map mymap 9 set peer **** &lt;/P&gt;&lt;P&gt;crypto map mymap 9 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 9 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 9 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 12 match address hooper&lt;/P&gt;&lt;P&gt;crypto map mymap 12 set peer ****&lt;/P&gt;&lt;P&gt;crypto map mymap 12 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 12 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 12 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 15 match address beverly&lt;/P&gt;&lt;P&gt;crypto map mymap 15 set peer ****&lt;/P&gt;&lt;P&gt;crypto map mymap 15 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 15 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 15 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 100 ipsec-isakmp dynamic dynmap&lt;/P&gt;&lt;P&gt;crypto map mymap interface outside&lt;/P&gt;&lt;P&gt;crypto ca trustpoint _SmartCallHome_ServerCA&lt;/P&gt;&lt;P&gt; crl configure&lt;/P&gt;&lt;P&gt;crypto ca certificate chain _SmartCallHome_ServerCA&lt;/P&gt;&lt;P&gt;crypto isakmp identity address &lt;/P&gt;&lt;P&gt;crypto isakmp nat-traversal 60&lt;/P&gt;&lt;P&gt;crypto ikev1 enable outside&lt;/P&gt;&lt;P&gt;crypto ikev1 policy 10&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption des&lt;/P&gt;&lt;P&gt; hash md5&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto ikev1 policy 20&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption des&lt;/P&gt;&lt;P&gt; hash md5&lt;/P&gt;&lt;P&gt; group 1&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto ikev1 policy 65535&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;management-access inside&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;threat-detection statistics access-list&lt;/P&gt;&lt;P&gt;no threat-detection statistics tcp-intercept&lt;/P&gt;&lt;P&gt;webvpn&lt;/P&gt;&lt;P&gt;group-policy sp-remote internal&lt;/P&gt;&lt;P&gt;group-policy sp-remote attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 120&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy sp-software internal&lt;/P&gt;&lt;P&gt;group-policy sp-software attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 120&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy vpn3002 internal&lt;/P&gt;&lt;P&gt;group-policy vpn3002 attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 2&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 122&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy vpn3000 internal&lt;/P&gt;&lt;P&gt;group-policy vpn3000 attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 120&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy vpn3001 internal&lt;/P&gt;&lt;P&gt;group-policy vpn3001 attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 121&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy pix2pix internal&lt;/P&gt;&lt;P&gt;group-policy pix2pix attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol ikev1 l2tp-ipsec &lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value pix2pix&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt; nem enable&lt;/P&gt;&lt;P&gt;username admin password ***** encrypted privilege 15&lt;/P&gt;&lt;P&gt;tunnel-group DefaultL2LGroup ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group DefaultRAGroup general-attributes&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt;tunnel-group DefaultRAGroup ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1 type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1 ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group vpn3000 type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group vpn3000 general-attributes&lt;/P&gt;&lt;P&gt; address-pool vpn3000-pool&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy vpn3000&lt;/P&gt;&lt;P&gt;tunnel-group vpn3000 ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group pix2pix type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group pix2pix general-attributes&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy pix2pix&lt;/P&gt;&lt;P&gt;tunnel-group pix2pix ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group vpn3001 type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group vpn3001 general-attributes&lt;/P&gt;&lt;P&gt; address-pool vpn3001-pool&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy vpn3001&lt;/P&gt;&lt;P&gt;tunnel-group vpn3001 ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group vpn3002 type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group vpn3002 general-attributes&lt;/P&gt;&lt;P&gt; address-pool vpn3002-pool&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy vpn3002&lt;/P&gt;&lt;P&gt;tunnel-group vpn3002 ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group sp-remote type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group sp-remote general-attributes&lt;/P&gt;&lt;P&gt; address-pool vpn3000-pool&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy sp-remote&lt;/P&gt;&lt;P&gt;tunnel-group sp-remote ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group sp-software type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group sp-software general-attributes&lt;/P&gt;&lt;P&gt; address-pool sp-software&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy sp-software&lt;/P&gt;&lt;P&gt;tunnel-group sp-software ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt; parameters&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225 &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect http &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ip-options &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;prompt hostname context &lt;/P&gt;&lt;P&gt;call-home reporting anonymous&lt;/P&gt;&lt;P&gt;call-home&lt;/P&gt;&lt;P&gt; profile CiscoTAC-1&lt;/P&gt;&lt;P&gt;&amp;nbsp; no active&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 03:04:45 GMT</pubDate>
    <dc:creator>djl7780</dc:creator>
    <dc:date>2019-03-12T03:04:45Z</dc:date>
    <item>
      <title>Expanding subnet on inside interface</title>
      <link>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419256#M308978</link>
      <description>&lt;P&gt;Hello All!&lt;/P&gt;&lt;P&gt;I have something that I hope someone can give me a hand with. I have taken over a network with an existing ASA already configured and working perfectly. Right now the inside interface subnet is 255.255.255.0 and we would like to change it to be 255.255.254.0 so it will include 192.168.0.0 and 192.168.1.0 to&amp;nbsp; make more addresses available on the network. Obviously I know I have to change our DHCP settings on the server and the subnet on the inside interface, but what else needs to be changed as far as ACL, NAT, etc? This ASA has multiple VPN's and it is critical to have as little downtime as possible. I am posting the current config, although I have removed any outside IP and password, etc info. If someone could please assist I would greatly appreciate it!&lt;/P&gt;&lt;P&gt;Thanks in advance!!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-size: 10pt;"&gt;hostname *****&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;domain-name *******.com&lt;/P&gt;&lt;P&gt;enable password ********* encrypted&lt;/P&gt;&lt;P&gt;passwd ******** encrypted&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;name 10.0.0.30 Adonis&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; ip address 1.1.1.1 255.255.255.224 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt; speed 100&lt;/P&gt;&lt;P&gt; duplex full&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 192.168.0.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt; nameif dmz&lt;/P&gt;&lt;P&gt; security-level 50&lt;/P&gt;&lt;P&gt; ip address 10.0.0.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt; no nameif&lt;/P&gt;&lt;P&gt; no security-level&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Management0/0&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt; no nameif&lt;/P&gt;&lt;P&gt; no security-level&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;boot system disk0:/asa842-18-k8.bin&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;clock timezone CST -6&lt;/P&gt;&lt;P&gt;clock summer-time CDT recurring&lt;/P&gt;&lt;P&gt;dns server-group DefaultDNS&lt;/P&gt;&lt;P&gt; domain-name *******.com&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.0&lt;/P&gt;&lt;P&gt; subnet 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.77.0&lt;/P&gt;&lt;P&gt; subnet 10.73.77.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.51.0&lt;/P&gt;&lt;P&gt; subnet 192.168.51.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.79.0&lt;/P&gt;&lt;P&gt; subnet 10.73.79.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.6.0&lt;/P&gt;&lt;P&gt; subnet 192.168.6.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.1.0&lt;/P&gt;&lt;P&gt; subnet 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.50.0&lt;/P&gt;&lt;P&gt; subnet 192.168.50.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.70.0&lt;/P&gt;&lt;P&gt; subnet 192.168.70.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.2.0&lt;/P&gt;&lt;P&gt; subnet 192.168.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.26.0&lt;/P&gt;&lt;P&gt; subnet 192.168.26.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.95.0&lt;/P&gt;&lt;P&gt; subnet 10.73.95.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.0&lt;/P&gt;&lt;P&gt; subnet 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.5.0&lt;/P&gt;&lt;P&gt; subnet 192.168.5.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.30.0&lt;/P&gt;&lt;P&gt; subnet 192.168.30.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.90.0&lt;/P&gt;&lt;P&gt; subnet 10.73.90.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.52.0&lt;/P&gt;&lt;P&gt; subnet 192.168.52.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.53.0&lt;/P&gt;&lt;P&gt; subnet 192.168.53.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.75&lt;/P&gt;&lt;P&gt; host 192.168.0.75&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.132&lt;/P&gt;&lt;P&gt; host 192.168.0.132&lt;/P&gt;&lt;P&gt;object network obj-192.168.35.0&lt;/P&gt;&lt;P&gt; subnet 192.168.35.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.88.0&lt;/P&gt;&lt;P&gt; subnet 10.73.88.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.50.0&lt;/P&gt;&lt;P&gt; subnet 10.73.50.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.82.0&lt;/P&gt;&lt;P&gt; subnet 192.168.82.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.87.0&lt;/P&gt;&lt;P&gt; subnet 10.73.87.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.78.0&lt;/P&gt;&lt;P&gt; subnet 10.73.78.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.70.70.0&lt;/P&gt;&lt;P&gt; subnet 10.70.70.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-10.73.80.0&lt;/P&gt;&lt;P&gt; subnet 10.73.80.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.3.0&lt;/P&gt;&lt;P&gt; host 192.168.3.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.4.0&lt;/P&gt;&lt;P&gt; host 192.168.4.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.129&lt;/P&gt;&lt;P&gt; host 192.168.0.129&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.5&lt;/P&gt;&lt;P&gt; host 192.168.0.5&lt;/P&gt;&lt;P&gt;object network obj_any&lt;/P&gt;&lt;P&gt; subnet 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;object network obj_any-01&lt;/P&gt;&lt;P&gt; subnet 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.2&lt;/P&gt;&lt;P&gt; host 10.0.0.2&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.3&lt;/P&gt;&lt;P&gt; host 10.0.0.3&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.4&lt;/P&gt;&lt;P&gt; host 10.0.0.4&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.10&lt;/P&gt;&lt;P&gt; host 10.0.0.10&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.8&lt;/P&gt;&lt;P&gt; host 10.0.0.8&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.11&lt;/P&gt;&lt;P&gt; host 10.0.0.11&lt;/P&gt;&lt;P&gt;object network Adonis&lt;/P&gt;&lt;P&gt; host 10.0.0.30&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.15&lt;/P&gt;&lt;P&gt; host 10.0.0.15&lt;/P&gt;&lt;P&gt;object network obj-10.73.85.0&lt;/P&gt;&lt;P&gt; subnet 10.73.85.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.20.0&lt;/P&gt;&lt;P&gt; subnet 192.168.20.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.22.0&lt;/P&gt;&lt;P&gt; subnet 192.168.22.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.27.0&lt;/P&gt;&lt;P&gt; subnet 192.168.27.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network obj-192.168.28.0&lt;/P&gt;&lt;P&gt; subnet 192.168.28.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object network Controller1&lt;/P&gt;&lt;P&gt; host 192.168.0.136&lt;/P&gt;&lt;P&gt; description Controller1 VM&lt;/P&gt;&lt;P&gt;object network Controller2&lt;/P&gt;&lt;P&gt; host 192.168.0.253&lt;/P&gt;&lt;P&gt; description Controller2 VM&lt;/P&gt;&lt;P&gt;object-group network KIMCAM_VPN_REMOTE&lt;/P&gt;&lt;P&gt; network-object 192.168.5.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network KIMCAM_VPN_LOCAL&lt;/P&gt;&lt;P&gt; network-object 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt; network-object 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network PIX506_VPN_REMOTE&lt;/P&gt;&lt;P&gt; network-object 10.73.87.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network PIX506_VPN_LOCAL&lt;/P&gt;&lt;P&gt; network-object 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt; network-object 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network CONVEN_VPN_REMOTE&lt;/P&gt;&lt;P&gt; network-object 10.73.88.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network CONVEN_VPN_LOCAL&lt;/P&gt;&lt;P&gt; network-object 192.168.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt; network-object 10.0.0.0 255.255.255.0&lt;/P&gt;&lt;P&gt;object-group network Controller&lt;/P&gt;&lt;P&gt; description Controller machines&lt;/P&gt;&lt;P&gt; network-object object Controller1&lt;/P&gt;&lt;P&gt; network-object object Controller2&lt;/P&gt;&lt;P&gt;object-group service Internet&lt;/P&gt;&lt;P&gt; description Internet Services 80/443&lt;/P&gt;&lt;P&gt; service-object tcp destination eq www &lt;/P&gt;&lt;P&gt; service-object tcp destination eq https &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.2 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host **** any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.3 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host **** any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.2 eq 1433 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.3 host 192.168.0.2 eq 137 &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.3 host 192.168.0.2 eq 138 &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.3 host 192.168.0.2 eq netbios-ssn &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.3 host 192.168.0.2 eq netbios-ns &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.3 host 192.168.0.2 eq netbios-dgm &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.3 host 192.168.0.2 eq 139 &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.4 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host **** any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.6 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.7 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.8 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.9 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.10 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.11 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.21 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.12 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.22 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip host 10.0.0.25 any &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.7 host 10.73.95.36 eq sqlnet &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp object Adonis any eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp object Adonis any eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit ip object Adonis host 10.73.95.16 &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.15 host 192.168.0.121 eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.15 host 192.168.0.121 eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp host 10.0.0.15 host 192.168.0.120 eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.15 host 192.168.0.120 eq domain &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.15 any eq www &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit tcp host 10.0.0.15 any eq https &lt;/P&gt;&lt;P&gt;access-list dmzintf extended permit udp object Adonis any eq ntp &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 10.0.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.26.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 10.0.0.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.30.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.30.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.90.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.26.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.26.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.30.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.78.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.70.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 10.0.0.0 255.255.255.0 10.73.78.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.0.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 10.0.0.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list tango extended permit ip 192.168.26.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list karen extended permit ip 192.168.0.0 255.255.255.0 192.168.2.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list karen extended permit ip 10.0.0.0 255.255.255.0 192.168.2.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 192.168.2.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 10.0.0.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 192.168.0.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 192.168.26.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list walker extended permit ip 192.168.30.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list beverly extended permit ip 192.168.0.0 255.255.255.0 192.168.6.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list beverly extended permit ip 10.0.0.0 255.255.255.0 192.168.6.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 192.168.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 10.0.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 192.168.30.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.51.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.6.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.2.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 10.0.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.90.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip host 192.168.0.75 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip host 192.168.0.132 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 10.0.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.26.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.88.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.30.0 255.255.255.0 10.73.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 192.168.82.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.87.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.78.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.70.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.0.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 192.168.26.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 110 extended permit ip 10.0.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.77.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.2.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.3.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.51.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.79.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.6.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.95.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.88.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.87.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.78.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list nonatdmz extended permit ip 10.0.0.0 255.255.255.0 10.73.80.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 120 extended permit ip 10.0.0.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 120 extended permit ip 192.168.26.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 120 extended permit ip 192.168.0.0 255.255.255.0 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 192.168.0.0 255.255.255.0 192.168.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 10.0.0.0 255.255.255.0 192.168.70.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 192.168.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 10.0.0.0 255.255.255.0 192.168.5.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 192.168.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 10.0.0.0 255.255.255.0 192.168.35.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 192.168.0.0 255.255.255.0 10.73.88.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list pix2pix extended permit ip 10.0.0.0 255.255.255.0 10.73.88.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 121 extended permit ip 192.168.0.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 121 extended permit ip 192.168.26.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 121 extended permit ip 192.168.30.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 121 extended permit ip 10.0.0.0 255.255.255.0 192.168.52.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 122 extended permit ip 192.168.0.0 255.255.255.0 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list 122 extended permit ip 192.168.30.0 255.255.255.0 192.168.53.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list DYNVPN extended permit ip object-group KIMCAM_VPN_LOCAL object-group KIMCAM_VPN_REMOTE &lt;/P&gt;&lt;P&gt;access-list DYNVPN extended permit ip any 192.168.50.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list DYNVPN extended permit ip object-group PIX506_VPN_LOCAL object-group PIX506_VPN_REMOTE &lt;/P&gt;&lt;P&gt;access-list DYNVPN extended permit ip object-group CONVEN_VPN_LOCAL object-group CONVEN_VPN_REMOTE &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.3 eq domain &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq 7877 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq 7777 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq 2121 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.3 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.3 eq 5005 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.3 eq rtsp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.4 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit ip host ***** host 192.168.0.75 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit ip host ***** host 192.168.0.75 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.10 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.10 eq 5005 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq rtsp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.10 eq domain &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq 7877 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq 7777 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.10 eq 2121 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host 192.168.0.75 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** any eq 161 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** any eq 162 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp host **** any eq snmp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp host **** any eq snmptrap &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.8 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.8 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.11 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.11 eq 1755 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any host 10.0.0.11 eq 5005 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.11 eq rtsp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.11 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.11 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host **** eq 3389 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host **** eq 3389 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.129 eq smtp &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.129 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.129 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.129 eq pop3 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host 192.168.0.129 eq 3389 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host **** eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit udp any object Adonis eq domain &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any object Adonis eq domain &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.132 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.132 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq pop3 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit icmp host **** any &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit ip host **** host 192.168.0.132 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.15 eq www &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 10.0.0.15 eq https &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq 995 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp any host 192.168.0.5 eq 587 &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host 72.159.96.162 eq ssh &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit tcp host **** host 72.159.96.162 eq ssh &lt;/P&gt;&lt;P&gt;access-list outsideif extended permit icmp any any &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging timestamp&lt;/P&gt;&lt;P&gt;logging trap warnings&lt;/P&gt;&lt;P&gt;logging history warnings&lt;/P&gt;&lt;P&gt;logging asdm informational&lt;/P&gt;&lt;P&gt;logging host inside 192.168.0.2&lt;/P&gt;&lt;P&gt;logging host inside 10.73.95.70&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu dmz 1500&lt;/P&gt;&lt;P&gt;ip local pool vpn3000-pool 192.168.50.180-192.168.50.209&lt;/P&gt;&lt;P&gt;ip local pool vpn3001-pool 192.168.52.180-192.168.52.190&lt;/P&gt;&lt;P&gt;ip local pool vpn3002-pool 192.168.53.180-192.168.53.185&lt;/P&gt;&lt;P&gt;ip local pool sp-software 192.168.50.140-192.168.50.179&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;icmp permit host **** outside&lt;/P&gt;&lt;P&gt;icmp permit host **** outside&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-645-206.bin&lt;/P&gt;&lt;P&gt;asdm history enable&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.5.0 obj-192.168.5.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.5.0 obj-192.168.5.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.51.0 obj-192.168.51.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.79.0 obj-10.73.79.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.6.0 obj-192.168.6.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.1.0 obj-192.168.1.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.50.0 obj-192.168.50.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.70.0 obj-192.168.70.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.2.0 obj-192.168.2.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.79.0 obj-10.73.79.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.95.0 obj-10.73.95.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.95.0 obj-10.73.95.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-192.168.1.0 obj-192.168.1.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-10.73.95.0 obj-10.73.95.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.90.0 obj-10.73.90.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-10.73.79.0 obj-10.73.79.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-192.168.52.0 obj-192.168.52.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.52.0 obj-192.168.52.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-192.168.52.0 obj-192.168.52.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-192.168.53.0 obj-192.168.53.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.75 obj-192.168.0.75 destination static obj-192.168.53.0 obj-192.168.53.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.132 obj-192.168.0.132 destination static obj-192.168.53.0 obj-192.168.53.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.35.0 obj-192.168.35.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.35.0 obj-192.168.35.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.26.0 obj-192.168.26.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.88.0 obj-10.73.88.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.50.0 obj-10.73.50.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.50.0 obj-10.73.50.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-10.73.50.0 obj-10.73.50.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.82.0 obj-192.168.82.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.87.0 obj-10.73.87.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.78.0 obj-10.73.78.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.70.70.0 obj-10.70.70.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.80.0 obj-10.73.80.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.26.0 obj-192.168.26.0 destination static obj-10.73.80.0 obj-10.73.80.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.2.0 obj-192.168.2.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.3.0 obj-192.168.3.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.51.0 obj-192.168.51.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.79.0 obj-10.73.79.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.6.0 obj-192.168.6.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.1.0 obj-192.168.1.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.50.0 obj-192.168.50.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.70.0 obj-192.168.70.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.95.0 obj-10.73.95.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.5.0 obj-192.168.5.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.52.0 obj-192.168.52.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.35.0 obj-192.168.35.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.88.0 obj-10.73.88.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.87.0 obj-10.73.87.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.78.0 obj-10.73.78.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.80.0 obj-10.73.80.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-10.73.85.0 obj-10.73.85.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-10.73.85.0 obj-10.73.85.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.20.0 obj-192.168.20.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.20.0 obj-192.168.20.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.22.0 obj-192.168.22.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.22.0 obj-192.168.22.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.27.0 obj-192.168.27.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.27.0 obj-192.168.27.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (inside,outside) source static obj-192.168.0.0 obj-192.168.0.0 destination static obj-192.168.28.0 obj-192.168.28.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;nat (dmz,outside) source static obj-10.0.0.0 obj-10.0.0.0 destination static obj-192.168.28.0 obj-192.168.28.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.0.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-10.73.77.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 10.73.77.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.1.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.1.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.2.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.2.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 10.0.0.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.5.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.5.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.75&lt;/P&gt;&lt;P&gt; nat (inside,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.132&lt;/P&gt;&lt;P&gt; nat (inside,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-192.168.3.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.3.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.4.0&lt;/P&gt;&lt;P&gt; nat (inside,dmz) static 192.168.4.0 no-proxy-arp route-lookup&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.129&lt;/P&gt;&lt;P&gt; nat (inside,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.5&lt;/P&gt;&lt;P&gt; nat (inside,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj_any&lt;/P&gt;&lt;P&gt; nat (inside,outside) dynamic interface&lt;/P&gt;&lt;P&gt;object network obj_any-01&lt;/P&gt;&lt;P&gt; nat (dmz,outside) dynamic interface&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.2&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.3&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.4&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.10&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.8&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.11&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network Adonis&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;object network obj-10.0.0.15&lt;/P&gt;&lt;P&gt; nat (dmz,outside) static 1.1.1.1&lt;/P&gt;&lt;P&gt;access-group outsideif in interface outside&lt;/P&gt;&lt;P&gt;access-group dmzintf in interface dmz&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 *.*.*.* 1&lt;/P&gt;&lt;P&gt;route inside 192.168.26.0 255.255.255.0 192.168.0.9 1&lt;/P&gt;&lt;P&gt;route inside 192.168.30.0 255.255.255.0 192.168.0.8 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P&gt;timeout floating-conn 0:00:00&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ (inside) host 10.73.95.70&lt;/P&gt;&lt;P&gt; timeout 8&lt;/P&gt;&lt;P&gt; key *******&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ (outside) host &lt;/P&gt;&lt;P&gt; timeout 8&lt;/P&gt;&lt;P&gt; key *******&lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius&lt;/P&gt;&lt;P&gt;aaa-server RADIUS_Auth protocol radius&lt;/P&gt;&lt;P&gt;aaa-server RADIUS_Auth (inside) host 192.168.0.7&lt;/P&gt;&lt;P&gt; key ****&lt;/P&gt;&lt;P&gt; authentication-port 1812&lt;/P&gt;&lt;P&gt; accounting-port 1813&lt;/P&gt;&lt;P&gt;user-identity default-domain LOCAL&lt;/P&gt;&lt;P&gt;aaa authentication ssh console TACACS+ &lt;/P&gt;&lt;P&gt;aaa authentication http console TACACS+ &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.0.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;http 10.73.77.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;snmp-server host inside 10.73.77.106 &lt;/P&gt;&lt;P&gt;snmp-server host outside **** poll &lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;snmp-server community public&lt;/P&gt;&lt;P&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;/P&gt;&lt;P&gt;snmp-server enable traps syslog&lt;/P&gt;&lt;P&gt;crypto ipsec ikev1 transform-set myset esp-des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto dynamic-map dynmap 20 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto dynamic-map dynmap 30 match address DYNVPN&lt;/P&gt;&lt;P&gt;crypto dynamic-map dynmap 30 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 5 match address tango&lt;/P&gt;&lt;P&gt;crypto map mymap 5 set peer **** &lt;/P&gt;&lt;P&gt;crypto map mymap 5 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 5 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 5 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 6 match address karen&lt;/P&gt;&lt;P&gt;crypto map mymap 6 set peer ****&lt;/P&gt;&lt;P&gt;crypto map mymap 6 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 6 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 6 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 9 match address walker&lt;/P&gt;&lt;P&gt;crypto map mymap 9 set peer **** &lt;/P&gt;&lt;P&gt;crypto map mymap 9 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 9 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 9 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 12 match address hooper&lt;/P&gt;&lt;P&gt;crypto map mymap 12 set peer ****&lt;/P&gt;&lt;P&gt;crypto map mymap 12 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 12 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 12 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 15 match address beverly&lt;/P&gt;&lt;P&gt;crypto map mymap 15 set peer ****&lt;/P&gt;&lt;P&gt;crypto map mymap 15 set ikev1 transform-set myset&lt;/P&gt;&lt;P&gt;crypto map mymap 15 set security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto map mymap 15 set security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto map mymap 100 ipsec-isakmp dynamic dynmap&lt;/P&gt;&lt;P&gt;crypto map mymap interface outside&lt;/P&gt;&lt;P&gt;crypto ca trustpoint _SmartCallHome_ServerCA&lt;/P&gt;&lt;P&gt; crl configure&lt;/P&gt;&lt;P&gt;crypto ca certificate chain _SmartCallHome_ServerCA&lt;/P&gt;&lt;P&gt;crypto isakmp identity address &lt;/P&gt;&lt;P&gt;crypto isakmp nat-traversal 60&lt;/P&gt;&lt;P&gt;crypto ikev1 enable outside&lt;/P&gt;&lt;P&gt;crypto ikev1 policy 10&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption des&lt;/P&gt;&lt;P&gt; hash md5&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto ikev1 policy 20&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption des&lt;/P&gt;&lt;P&gt; hash md5&lt;/P&gt;&lt;P&gt; group 1&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto ikev1 policy 65535&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;management-access inside&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;threat-detection statistics access-list&lt;/P&gt;&lt;P&gt;no threat-detection statistics tcp-intercept&lt;/P&gt;&lt;P&gt;webvpn&lt;/P&gt;&lt;P&gt;group-policy sp-remote internal&lt;/P&gt;&lt;P&gt;group-policy sp-remote attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 120&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy sp-software internal&lt;/P&gt;&lt;P&gt;group-policy sp-software attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 120&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy vpn3002 internal&lt;/P&gt;&lt;P&gt;group-policy vpn3002 attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 2&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 122&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy vpn3000 internal&lt;/P&gt;&lt;P&gt;group-policy vpn3000 attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 120&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy vpn3001 internal&lt;/P&gt;&lt;P&gt;group-policy vpn3001 attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value 121&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt;group-policy pix2pix internal&lt;/P&gt;&lt;P&gt;group-policy pix2pix attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.0.2&lt;/P&gt;&lt;P&gt; dns-server value 192.168.0.121 192.168.0.120&lt;/P&gt;&lt;P&gt; vpn-idle-timeout 30&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol ikev1 l2tp-ipsec &lt;/P&gt;&lt;P&gt; split-tunnel-policy tunnelspecified&lt;/P&gt;&lt;P&gt; split-tunnel-network-list value pix2pix&lt;/P&gt;&lt;P&gt; default-domain value *******.com&lt;/P&gt;&lt;P&gt; nem enable&lt;/P&gt;&lt;P&gt;username admin password ***** encrypted privilege 15&lt;/P&gt;&lt;P&gt;tunnel-group DefaultL2LGroup ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group DefaultRAGroup general-attributes&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt;tunnel-group DefaultRAGroup ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1 type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1 ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; type ipsec-l2l&lt;/P&gt;&lt;P&gt;tunnel-group 1.1.1.1&amp;nbsp; ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group vpn3000 type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group vpn3000 general-attributes&lt;/P&gt;&lt;P&gt; address-pool vpn3000-pool&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy vpn3000&lt;/P&gt;&lt;P&gt;tunnel-group vpn3000 ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group pix2pix type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group pix2pix general-attributes&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy pix2pix&lt;/P&gt;&lt;P&gt;tunnel-group pix2pix ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group vpn3001 type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group vpn3001 general-attributes&lt;/P&gt;&lt;P&gt; address-pool vpn3001-pool&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy vpn3001&lt;/P&gt;&lt;P&gt;tunnel-group vpn3001 ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group vpn3002 type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group vpn3002 general-attributes&lt;/P&gt;&lt;P&gt; address-pool vpn3002-pool&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy vpn3002&lt;/P&gt;&lt;P&gt;tunnel-group vpn3002 ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group sp-remote type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group sp-remote general-attributes&lt;/P&gt;&lt;P&gt; address-pool vpn3000-pool&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy sp-remote&lt;/P&gt;&lt;P&gt;tunnel-group sp-remote ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;tunnel-group sp-software type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group sp-software general-attributes&lt;/P&gt;&lt;P&gt; address-pool sp-software&lt;/P&gt;&lt;P&gt; authentication-server-group (outside) RADIUS_Auth&lt;/P&gt;&lt;P&gt; default-group-policy sp-software&lt;/P&gt;&lt;P&gt;tunnel-group sp-software ipsec-attributes&lt;/P&gt;&lt;P&gt; ikev1 pre-shared-key ********&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt; parameters&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225 &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect http &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ip-options &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;prompt hostname context &lt;/P&gt;&lt;P&gt;call-home reporting anonymous&lt;/P&gt;&lt;P&gt;call-home&lt;/P&gt;&lt;P&gt; profile CiscoTAC-1&lt;/P&gt;&lt;P&gt;&amp;nbsp; no active&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 03:04:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419256#M308978</guid>
      <dc:creator>djl7780</dc:creator>
      <dc:date>2019-03-12T03:04:45Z</dc:date>
    </item>
    <item>
      <title>Expanding subnet on inside interface</title>
      <link>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419257#M308979</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; On the ASA:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NAT configuration associated to object network obj-192.168.0.0, you also need to consider&amp;nbsp; object network obj-192.168.1.0 since both are /24.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the router that connects to the ASA you need to change the subnet of the interface facing towards the ASA and consider that you have created a bigger broadcast domain. I am not sure if you are running any type of routing protocol on the internal router but if you are you need to consider this too. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also look at this configuration line:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside,any) source static obj-192.168.30.0 obj-192.168.30.0 destination static obj-192.168.1.0 obj-192.168.1.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does 192.168.1.0/24 network reside on another interface other than inside? If so then this would not be a wise configuration change. You need to get your facts right or give us more detail.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It seems it is related to the next configuration line that is part of VPN LAN to LAN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;crypto map mymap 12 match address hooper&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 192.168.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 10.0.0.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;P&gt;access-list hooper extended permit ip 192.168.30.0 255.255.255.0 192.168.1.0 255.255.255.0 &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Nov 2013 20:36:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419257#M308979</guid>
      <dc:creator>jumora</dc:creator>
      <dc:date>2013-11-13T20:36:38Z</dc:date>
    </item>
    <item>
      <title>Expanding subnet on inside interface</title>
      <link>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419258#M308980</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Could I get an example of what the new NAT line would look like?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To anwser your question, &lt;SPAN style="font-size: 10pt;"&gt;192.168.1.0/24 network only resides on the inside interface. I don't think I understand why it would not be a wise config change?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;It looks like there is another router (192.168.0.8) that has the 192.168.30.x network on it.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Nov 2013 21:11:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419258#M308980</guid>
      <dc:creator>djl7780</dc:creator>
      <dc:date>2013-11-13T21:11:19Z</dc:date>
    </item>
    <item>
      <title>Expanding subnet on inside interface</title>
      <link>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419259#M308981</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;A configuration example is simple but as I said you need to confirm what you have.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Configuration example:&lt;/P&gt;&lt;P&gt;object network new_obj-192.168.0.0&lt;/P&gt;&lt;P&gt; subnet 192.168.0.0 255.255.254.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside,any) source static new_obj-192.168.0.0&amp;nbsp; new_obj-192.168.0.0 destination static obj-10.73.77.0 obj-10.73.77.0 no-proxy-arp&lt;/P&gt;&lt;P&gt;This is an example but you can also edit the NATs that involve the object network obj-192.168.0.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;object network obj-192.168.0.0&lt;/P&gt;&lt;P&gt; subnet 192.168.0.0 255.255.254.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And it changes all the configurations that involve this NAT.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You need to be careful with what you are doing. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate the assistance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Nov 2013 22:05:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expanding-subnet-on-inside-interface/m-p/2419259#M308981</guid>
      <dc:creator>jumora</dc:creator>
      <dc:date>2013-11-13T22:05:41Z</dc:date>
    </item>
  </channel>
</rss>

