<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ASA 5500 routing issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710041#M535581</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have done what you asked, the same issue persists. Below is the log again, again thank you your a great help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "show running-config"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;ASA Version 8.2(2) &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;name 192.168.1.25 ACCMX-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.44 ACCSUN-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.28 ACCIRON-INT&lt;/P&gt;&lt;P&gt;name 69.130.7.116 ACCIRON-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.115 ACCMX-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.117 ACCSUN-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.118 FacileHR-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.120 NRIYP-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.126 ADDON-EXT&lt;/P&gt;&lt;P&gt;name 192.168.1.26 ADDON-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.21 Kyle&lt;/P&gt;&lt;P&gt;name 192.168.1.30 NRIYP-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.186 FacileHR-INT&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;/P&gt;&lt;P&gt; description LAN [INSIDE INTERFACE]&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 192.168.1.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan2&lt;/P&gt;&lt;P&gt; description T1 LINE [EXTERNAL INTERFACE]&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; ip address 69.130.7.114 255.255.255.240 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/7&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;boot system disk0:/asa822-k8.bin&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;clock timezone EST -5&lt;/P&gt;&lt;P&gt;clock summer-time EDT recurring&lt;/P&gt;&lt;P&gt;dns server-group DefaultDNS&lt;/P&gt;&lt;P&gt; domain-name aim-cc.com&lt;/P&gt;&lt;P&gt;same-security-traffic permit intra-interface&lt;/P&gt;&lt;P&gt;object-group service aptela udp&lt;/P&gt;&lt;P&gt; description for Aptela Phones&lt;/P&gt;&lt;P&gt; port-object range 10000 20000&lt;/P&gt;&lt;P&gt; port-object range sip 5061&lt;/P&gt;&lt;P&gt;object-group service RDP tcp-udp&lt;/P&gt;&lt;P&gt; port-object range 3389 3389&lt;/P&gt;&lt;P&gt;object-group network BLACKLIST&lt;/P&gt;&lt;P&gt; network-object host 190.18.107.140&lt;/P&gt;&lt;P&gt; network-object host 121.244.106.2&lt;/P&gt;&lt;P&gt; network-object host 187.11.194.28&lt;/P&gt;&lt;P&gt; network-object host 188.2.237.199&lt;/P&gt;&lt;P&gt; network-object host 190.48.38.184&lt;/P&gt;&lt;P&gt; network-object host 201.47.229.72&lt;/P&gt;&lt;P&gt; network-object host 207.155.250.20&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.56&lt;/P&gt;&lt;P&gt; network-object host 209.85.222.199&lt;/P&gt;&lt;P&gt; network-object host 63.246.10.50&lt;/P&gt;&lt;P&gt; network-object host 66.77.56.84&lt;/P&gt;&lt;P&gt; network-object host 83.168.1.28&lt;/P&gt;&lt;P&gt; network-object host 124.121.68.190&lt;/P&gt;&lt;P&gt; network-object host 174.35.12.35&lt;/P&gt;&lt;P&gt; network-object host 174.37.81.160&lt;/P&gt;&lt;P&gt; network-object host 188.192.97.110&lt;/P&gt;&lt;P&gt; network-object host 188.38.164.31&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.162&lt;/P&gt;&lt;P&gt; network-object host 41.131.81.19&lt;/P&gt;&lt;P&gt; network-object host 65.168.1.28&lt;/P&gt;&lt;P&gt; network-object host 74.125.83.174&lt;/P&gt;&lt;P&gt; network-object host 74.125.83.184&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.191&lt;/P&gt;&lt;P&gt; network-object host 82.230.100.32&lt;/P&gt;&lt;P&gt; network-object host 89.173.0.9&lt;/P&gt;&lt;P&gt; network-object host 89.228.129.126&lt;/P&gt;&lt;P&gt; network-object host 93.86.217.140&lt;/P&gt;&lt;P&gt; network-object host 123.21.107.67&lt;/P&gt;&lt;P&gt; network-object host 178.92.126.228&lt;/P&gt;&lt;P&gt; network-object host 189.10.192.107&lt;/P&gt;&lt;P&gt; network-object host 189.55.158.40&lt;/P&gt;&lt;P&gt; network-object host 189.70.186.225&lt;/P&gt;&lt;P&gt; network-object host 201.11.0.98&lt;/P&gt;&lt;P&gt; network-object host 207.250.58.8&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.163&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.226&lt;/P&gt;&lt;P&gt; network-object host 209.85.211.156&lt;/P&gt;&lt;P&gt; network-object host 209.85.221.146&lt;/P&gt;&lt;P&gt; network-object host 209.85.222.159&lt;/P&gt;&lt;P&gt; network-object host 211.170.114.154&lt;/P&gt;&lt;P&gt; network-object host 24.38.18.233&lt;/P&gt;&lt;P&gt; network-object host 64.49.82.68&lt;/P&gt;&lt;P&gt; network-object host 64.50.170.80&lt;/P&gt;&lt;P&gt; network-object host 65.217.159.98&lt;/P&gt;&lt;P&gt; network-object host 68.200.154.75&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.195&lt;/P&gt;&lt;P&gt; network-object host 75.146.94.187&lt;/P&gt;&lt;P&gt; network-object host 80.14.122.109&lt;/P&gt;&lt;P&gt; network-object host 92.84.207.252&lt;/P&gt;&lt;P&gt; network-object host 93.153.0.155&lt;/P&gt;&lt;P&gt; network-object host 93.73.179.61&lt;/P&gt;&lt;P&gt; network-object host 96.252.6.79&lt;/P&gt;&lt;P&gt; network-object host 99.174.113.44&lt;/P&gt;&lt;P&gt; network-object host 117.6.64.137&lt;/P&gt;&lt;P&gt; network-object host 178.93.144.158&lt;/P&gt;&lt;P&gt; network-object host 190.245.171.12&lt;/P&gt;&lt;P&gt; network-object host 195.174.128.15&lt;/P&gt;&lt;P&gt; network-object host 199.238.178.138&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.228&lt;/P&gt;&lt;P&gt; network-object host 209.85.217.193&lt;/P&gt;&lt;P&gt; network-object host 24.103.215.120&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.194&lt;/P&gt;&lt;P&gt; network-object host 84.24.253.217&lt;/P&gt;&lt;P&gt; network-object host 98.117.251.114&lt;/P&gt;&lt;P&gt; network-object host 12.164.54.36&lt;/P&gt;&lt;P&gt; network-object host 160.75.192.3&lt;/P&gt;&lt;P&gt; network-object host 186.87.3.225&lt;/P&gt;&lt;P&gt; network-object host 190.174.208.57&lt;/P&gt;&lt;P&gt; network-object host 190.59.189.71&lt;/P&gt;&lt;P&gt; network-object host 201.4.160.18&lt;/P&gt;&lt;P&gt; network-object host 207.155.248.47&lt;/P&gt;&lt;P&gt; network-object host 208.111.169.150&lt;/P&gt;&lt;P&gt; network-object host 208.89.132.145&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.46&lt;/P&gt;&lt;P&gt; network-object host 209.85.210.163&lt;/P&gt;&lt;P&gt; network-object host 62.248.88.175&lt;/P&gt;&lt;P&gt; network-object host 64.202.189.25&lt;/P&gt;&lt;P&gt; network-object host 66.165.70.198&lt;/P&gt;&lt;P&gt; network-object host 67.132.93.114&lt;/P&gt;&lt;P&gt; network-object host 69.174.244.158&lt;/P&gt;&lt;P&gt; network-object host 69.67.52.156&lt;/P&gt;&lt;P&gt; network-object host 69.74.142.209&lt;/P&gt;&lt;P&gt; network-object host 74.125.92.25&lt;/P&gt;&lt;P&gt; network-object host 74.203.196.51&lt;/P&gt;&lt;P&gt; network-object host 79.110.128.212&lt;/P&gt;&lt;P&gt; network-object host 87.70.217.30&lt;/P&gt;&lt;P&gt; network-object host 88.146.41.234&lt;/P&gt;&lt;P&gt; network-object host 88.76.127.77&lt;/P&gt;&lt;P&gt; network-object host 93.86.37.241&lt;/P&gt;&lt;P&gt; network-object host 94.70.115.94&lt;/P&gt;&lt;P&gt; network-object host 95.168.100.87&lt;/P&gt;&lt;P&gt; network-object host 123.201.69.230&lt;/P&gt;&lt;P&gt; network-object host 186.9.50.90&lt;/P&gt;&lt;P&gt; network-object host 189.73.235.78&lt;/P&gt;&lt;P&gt; network-object host 195.2.236.11&lt;/P&gt;&lt;P&gt; network-object host 202.63.105.220&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.55&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.57&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.58&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.61&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.184&lt;/P&gt;&lt;P&gt; network-object host 209.85.221.171&lt;/P&gt;&lt;P&gt; network-object host 218.147.37.219&lt;/P&gt;&lt;P&gt; network-object host 64.120.250.82&lt;/P&gt;&lt;P&gt; network-object host 66.227.62.183&lt;/P&gt;&lt;P&gt; network-object host 67.228.227.25&lt;/P&gt;&lt;P&gt; network-object host 87.109.179.247&lt;/P&gt;&lt;P&gt; network-object host 87.163.5.34&lt;/P&gt;&lt;P&gt; network-object host 89.78.170.200&lt;/P&gt;&lt;P&gt; network-object host 89.78.3.139&lt;/P&gt;&lt;P&gt; network-object host 92.29.204.146&lt;/P&gt;&lt;P&gt; network-object host 94.189.180.81&lt;/P&gt;&lt;P&gt; network-object host 95.180.64.244&lt;/P&gt;&lt;P&gt; network-object host 122.169.182.129&lt;/P&gt;&lt;P&gt; network-object host 122.169.182.213&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.131&lt;/P&gt;&lt;P&gt; network-object host 115.184.136.110&lt;/P&gt;&lt;P&gt; network-object host 123.176.39.134&lt;/P&gt;&lt;P&gt; network-object host 123.237.6.173&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.135&lt;/P&gt;&lt;P&gt; network-object host 216.87.164.19&lt;/P&gt;&lt;P&gt; network-object host 217.23.15.143&lt;/P&gt;&lt;P&gt; network-object host 61.49.36.166&lt;/P&gt;&lt;P&gt; network-object host 67.138.108.151&lt;/P&gt;&lt;P&gt; network-object host 67.138.109.158&lt;/P&gt;&lt;P&gt; network-object host 111.118.156.170&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.132&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.133&lt;/P&gt;&lt;P&gt; network-object host 117.96.18.118&lt;/P&gt;&lt;P&gt; network-object host 121.151.149.220&lt;/P&gt;&lt;P&gt; network-object host 121.183.243.205&lt;/P&gt;&lt;P&gt; network-object host 123.19.170.237&lt;/P&gt;&lt;P&gt; network-object host 125.176.14.67&lt;/P&gt;&lt;P&gt; network-object host 183.107.94.151&lt;/P&gt;&lt;P&gt; network-object host 183.97.35.5&lt;/P&gt;&lt;P&gt; network-object host 186.104.230.5&lt;/P&gt;&lt;P&gt; network-object host 187.52.232.152&lt;/P&gt;&lt;P&gt; network-object host 189.211.159.220&lt;/P&gt;&lt;P&gt; network-object host 190.102.239.219&lt;/P&gt;&lt;P&gt; network-object host 190.235.13.233&lt;/P&gt;&lt;P&gt; network-object host 190.35.206.68&lt;/P&gt;&lt;P&gt; network-object host 190.7.109.65&lt;/P&gt;&lt;P&gt; network-object host 200.87.116.58&lt;/P&gt;&lt;P&gt; network-object host 204.188.223.222&lt;/P&gt;&lt;P&gt; network-object host 204.45.2.197&lt;/P&gt;&lt;P&gt; network-object host 208.83.232.3&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.107&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.15&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.83&lt;/P&gt;&lt;P&gt; network-object host 212.200.197.62&lt;/P&gt;&lt;P&gt; network-object host 216.1.203.94&lt;/P&gt;&lt;P&gt; network-object host 220.227.80.226&lt;/P&gt;&lt;P&gt; network-object host 41.186.0.212&lt;/P&gt;&lt;P&gt; network-object host 41.249.114.143&lt;/P&gt;&lt;P&gt; network-object host 58.26.151.196&lt;/P&gt;&lt;P&gt; network-object host 62.19.51.5&lt;/P&gt;&lt;P&gt; network-object host 64.212.196.228&lt;/P&gt;&lt;P&gt; network-object host 67.138.109.68&lt;/P&gt;&lt;P&gt; network-object host 67.138.110.68&lt;/P&gt;&lt;P&gt; network-object host 68.142.134.126&lt;/P&gt;&lt;P&gt; network-object host 70.98.204.112&lt;/P&gt;&lt;P&gt; network-object host 70.98.205.140&lt;/P&gt;&lt;P&gt; network-object host 70.98.205.165&lt;/P&gt;&lt;P&gt; network-object host 74.63.107.46&lt;/P&gt;&lt;P&gt; network-object host 78.97.189.115&lt;/P&gt;&lt;P&gt; network-object host 79.106.2.46&lt;/P&gt;&lt;P&gt; network-object host 84.22.56.50&lt;/P&gt;&lt;P&gt; network-object host 89.123.211.42&lt;/P&gt;&lt;P&gt; network-object host 89.46.84.214&lt;/P&gt;&lt;P&gt; network-object host 90.169.74.53&lt;/P&gt;&lt;P&gt; network-object host 90.185.163.176&lt;/P&gt;&lt;P&gt; network-object host 95.35.16.79&lt;/P&gt;&lt;P&gt; network-object host 95.65.253.179&lt;/P&gt;&lt;P&gt;object-group service SMTP-587 tcp&lt;/P&gt;&lt;P&gt; description SMTP 587&lt;/P&gt;&lt;P&gt; port-object eq 587&lt;/P&gt;&lt;P&gt;object-group service smtp-587 tcp&lt;/P&gt;&lt;P&gt; description smtp 587&lt;/P&gt;&lt;P&gt; port-object eq 587&lt;/P&gt;&lt;P&gt;object-group protocol TCPUDP&lt;/P&gt;&lt;P&gt; protocol-object udp&lt;/P&gt;&lt;P&gt; protocol-object tcp&lt;/P&gt;&lt;P&gt;object-group service SMTP-465 tcp&lt;/P&gt;&lt;P&gt; port-object eq 465&lt;/P&gt;&lt;P&gt;object-group service TCP-993 tcp&lt;/P&gt;&lt;P&gt; port-object eq 993&lt;/P&gt;&lt;P&gt;object-group service TCP-995 tcp&lt;/P&gt;&lt;P&gt; port-object eq 995&lt;/P&gt;&lt;P&gt;object-group service TCP-7071 tcp&lt;/P&gt;&lt;P&gt; port-object eq 7071&lt;/P&gt;&lt;P&gt;object-group service TCP-10000 tcp&lt;/P&gt;&lt;P&gt; port-object eq 10000&lt;/P&gt;&lt;P&gt;object-group service TCP-8080 tcp&lt;/P&gt;&lt;P&gt; port-object eq 8080&lt;/P&gt;&lt;P&gt;object-group service TCP-8443 tcp&lt;/P&gt;&lt;P&gt; port-object eq 8443&lt;/P&gt;&lt;P&gt;object-group service TCP-23781 tcp&lt;/P&gt;&lt;P&gt; port-object eq 23781&lt;/P&gt;&lt;P&gt;object-group protocol DM_INLINE_PROTOCOL_1&lt;/P&gt;&lt;P&gt; protocol-object udp&lt;/P&gt;&lt;P&gt; protocol-object tcp&lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host FacileHR-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp object-group BLACKLIST any eq smtp inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCSUN-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host ACCSUN-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host FacileHR-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCSUN-INT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host FacileHR-INT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host ACCSUN-INT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host FacileHR-INT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ACCSUN-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq ssh host FacileHR-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCMX-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit object-group TCPUDP any host ADDON-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ADDON-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCIRON-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host NRIYP-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host NRIYP-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit udp any any object-group aptela &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit udp any host 64.50.254.253 inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny ip host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny udp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any any eq 15250 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq 3389 any eq 3389 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq 23781 host 192.168.1.121 eq 23781 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq smtp any eq smtp inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny ip any host 192.168.1.188 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp any host 192.168.1.188 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq smtp &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit object-group TCPUDP any host ADDON-EXT eq domain &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq https &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group SMTP-587 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group SMTP-465 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-993 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-995 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq imap4 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq pop3 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-8080 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-10000 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-8443 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any any eq pptp &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit udp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny ip host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny tcp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny udp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-7071 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-10000 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-8080 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host Kyle object-group TCP-23781 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any any eq pptp &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group TCPUDP host FacileHR-INT any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any host FacileHR-INT &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group DM_INLINE_PROTOCOL_1 any host FacileHR-INT eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group DM_INLINE_PROTOCOL_1 192.168.1.0 255.255.255.0 host FacileHR-EXT eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq 3389 any eq 3389 &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq domain any eq domain &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq domain any eq domain &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq www any eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq www any eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq https any eq https &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq 443 any eq 443 &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq smtp any eq smtp &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging asdm informational&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;ip local pool new 192.168.1.45-192.168.1.50 mask 255.255.255.255&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;icmp permit any inside&lt;/P&gt;&lt;P&gt;icmp permit any outside&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-625.bin&lt;/P&gt;&lt;P&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;arp inside 192.168.1.43 0019.d137.8533 &lt;/P&gt;&lt;P&gt;arp outside 192.168.1.43 0019.d137.8533 &lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;global (inside) 1 interface&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;static (outside,inside) tcp FacileHR-INT 81 FacileHR-EXT www netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) tcp FacileHR-INT 81 FacileHR-EXT www netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (outside,inside) ACCSUN-INT ACCSUN-EXT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (outside,inside) ACCIRON-INT ACCIRON-EXT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCMX-EXT ACCMX-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCSUN-EXT ACCSUN-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCIRON-EXT ACCIRON-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) NRIYP-EXT NRIYP-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ADDON-EXT ADDON-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,inside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 norandomseq nailed &lt;/P&gt;&lt;P&gt;access-group inside_access_in in interface inside&lt;/P&gt;&lt;P&gt;access-group inside_access_out out interface inside&lt;/P&gt;&lt;P&gt;access-group outside_in_inside in interface outside&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 69.130.7.113 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication telnet console LOCAL &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;snmp-server location AIM Computer Consulting - Closet&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;snmp-server contact Red Level Networks - &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:support@redlevelnetworks.com"&gt;support@redlevelnetworks.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set TRANS_ESP_3DES_SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set TRANS_ESP_3DES_SHA mode transport&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;/P&gt;&lt;P&gt;crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;/P&gt;&lt;P&gt;crypto map outside_map interface outside&lt;/P&gt;&lt;P&gt;crypto isakmp policy 10&lt;/P&gt;&lt;P&gt; authentication crack&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 30&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 50&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash md5&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;telnet 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;telnet timeout 30&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 outside&lt;/P&gt;&lt;P&gt;ssh timeout 15&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;dhcpd dns ADDON-INT&lt;/P&gt;&lt;P&gt;dhcpd domain aim-cc.com&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dhcpd address 192.168.1.150-192.168.1.250 inside&lt;/P&gt;&lt;P&gt;dhcpd enable inside&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;threat-detection statistics&lt;/P&gt;&lt;P&gt;threat-detection statistics tcp-intercept rate-interval 30 burst-rate 400 average-rate 200&lt;/P&gt;&lt;P&gt;ssl encryption aes256-sha1 aes128-sha1 3des-sha1 des-sha1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "access-list inside_test permit icmp any host 192.168.1.186"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The command has been sent to the device&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "capture inside_interface access-list inside_test interface inside"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The command has been sent to the device&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "show capture inside_interface"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;4 packets captured&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 1: 12:15:16.728981 802.1Q vlan#1 P0 192.168.1.21 &amp;gt; 192.168.1.186: icmp: echo request &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 2: 12:15:21.260331 802.1Q vlan#1 P0 192.168.1.21 &amp;gt; 192.168.1.186: icmp: echo request &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 3: 12:15:26.259858 802.1Q vlan#1 P0 192.168.1.21 &amp;gt; 192.168.1.186: icmp: echo request &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 4: 12:15:31.258592 802.1Q vlan#1 P0 192.168.1.21 &amp;gt; 192.168.1.186: icmp: echo request &lt;/P&gt;&lt;P&gt;4 packets shown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "show logging"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syslog logging: enabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Facility: 20&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Timestamp logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Standby logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Debug-trace logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Console logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Monitor logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Buffer logging: level debugging, 8205 messages logged&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Trap logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; History logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Device ID: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Mail logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ASDM logging: level informational, 21494596 messages logged&lt;/P&gt;&lt;P&gt;tes 6464 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-106015: Deny TCP (no connection) from 207.155.253.212/25 to ADDON-EXT/53777 flags FIN PSH ACK&amp;nbsp; on interface outside&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10506718 for outside:209.85.218.56/50127 to inside:ACCIRON-INT/25 duration 0:00:30 bytes 13186 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-305012: Teardown dynamic TCP translation from inside:192.168.1.188/37212 to outside:69.130.7.114/25820 duration 0:01:00&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507509 for outside:209.85.225.14/25 (209.85.225.14/25) to inside:ACCIRON-INT/43560 (ACCIRON-EXT/43560)&lt;/P&gt;&lt;P&gt;%ASA-6-302016: Teardown UDP connection 10505434 for outside:192.228.79.201/53 to inside:ACCMX-INT/32768 duration 0:03:09 bytes 667&lt;/P&gt;&lt;P&gt;%ASA-7-609002: Teardown local-host outside:192.26.92.30 duration 0:12:36&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10503790 for outside:64.50.243.27/80 to inside:192.168.1.202/4600 duration 0:05:06 bytes 1800 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10503786 for outside:64.50.243.27/80 to inside:192.168.1.202/4597 duration 0:05:06 bytes 2585 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10503788 for outside:64.50.243.27/80 to inside:192.168.1.202/4598 duration 0:05:06 bytes 7068 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10489607 for outside:74.125.225.93/443 to inside:192.168.1.173/49659 duration 0:26:10 bytes 36449 TCP Reset-I&lt;/P&gt;&lt;P&gt;%ASA-6-305012: Teardown dynamic TCP translation from inside:192.168.1.181/59641 to outside:69.130.7.114/33656 duration 0:00:30&lt;/P&gt;&lt;P&gt;%ASA-6-302015: Built outbound UDP connection 10507510 for outside:216.165.129.157/53 (216.165.129.157/53) to inside:ADDON-INT/19434 (ADDON-EXT/19434)&lt;/P&gt;&lt;P&gt;%ASA-6-302016: Teardown UDP connection 10507510 for outside:216.165.129.157/53 to inside:ADDON-INT/19434 duration 0:00:00 bytes 354&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10507487 for outside:122.169.129.112/4999 to inside:ADDON-INT/995 duration 0:00:03 bytes 6472 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-305011: Built dynamic TCP translation from inside:192.168.1.170/50538 to outside:69.130.7.114/1602&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507511 for outside:67.195.186.236/80 (67.195.186.236/80) to inside:192.168.1.170/50538 (69.130.7.114/1602)&lt;/P&gt;&lt;P&gt;%ASA-6-305011: Built dynamic TCP translation from inside:192.168.1.173/49760 to outside:69.130.7.114/57521&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507512 for outside:74.125.225.84/80 (74.125.225.84/80) to inside:192.168.1.173/49760 (69.130.7.114/57521)&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built inbound TCP connection 10507513 for outside:209.85.213.184/46523 (209.85.213.184/46523) to inside:ACCIRON-INT/25 (ACCIRON-EXT/25)&lt;/P&gt;&lt;P&gt;%ASA-6-305011: Built dynamic TCP translation from inside:192.168.1.170/50539 to outside:69.130.7.114/31933&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507514 for outside:98.139.240.23/80 (98.139.240.23/80) to inside:192.168.1.170/50539 (69.130.7.114/31933)&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10507511 for outside:67.195.186.236/80 to inside:192.168.1.170/50538 duration 0:00:00 bytes 1893 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302015: Built outbound UDP connection 10507515 for outside:216.165.129.157/53 (216.165.129.157/53) to inside:ADDON-INT/34614 (ADDON-EXT/34614)&lt;/P&gt;&lt;P&gt;%ASA-6-302016: Teardown UDP connection 10507515 for outside:216.165.129.157/53 to inside:ADDON-INT/34614 duration 0:00:00 bytes 473&lt;/P&gt;&lt;P&gt;%ASA-6-305011: Built dynamic TCP translation from inside:192.168.1.173/49761 to outside:69.130.7.114/2730&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507516 for outside:74.125.225.78/443 (74.125.225.78/443) to inside:192.168.1.173/49761 (69.130.7.114/2730)&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10507514 for outside:98.139.240.23/80 to inside:192.168.1.170/50539 duration 0:00:00 bytes 1422 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built inbound TCP connection 10507517 for inside:Kyle/52576 (Kyle/52576) to identity:192.168.1.1/443 (192.168.1.1/443)&lt;/P&gt;&lt;P&gt;%ASA-6-725001: Starting SSL handshake with client inside:Kyle/52576 for TLSv1 session.&lt;/P&gt;&lt;P&gt;%ASA-6-725003: SSL client inside:Kyle/52576 request to resume previous session.&lt;/P&gt;&lt;P&gt;%ASA-6-725002: Device completed SSL handshake with client inside:Kyle/52576&lt;/P&gt;&lt;P&gt;%ASA-5-111007: Begin configuration: Kyle reading from http [POST]&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 19 Jul 2011 17:32:04 GMT</pubDate>
    <dc:creator>bluemookie</dc:creator>
    <dc:date>2011-07-19T17:32:04Z</dc:date>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710037#M535577</link>
      <description>&lt;P&gt;Hello, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; I am fairly new to the networking world, and I set up a web server that connects from the internal network, to the outside world. This functionality works, but something surpriseing appears to happen. I am unable to ping the server from the computers on the same network. Also I am unable to go to the website on the outside from the internal network. I am using the cisco asdm 6.2 interface to make the changes. If there is any advice you may be able to provide, I would greatly appreciate it. I suspect its a nat rule but I could be wrong, below I have a copy/paste of running config.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Clarifying: On other networks other then ours we can reach facilehr.com, but trying to access it via the web url, or internal IP we are unabel to access it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Domain: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://facilehr.com" target="_blank"&gt;http://facilehr.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Internal IP: 192.168.1.186 Port forward to 81&lt;/P&gt;&lt;P&gt;internal network 192.168.1.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "show running-config"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;ASA Version 8.2(2) &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;name 192.168.1.25 ACCMX-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.44 ACCSUN-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.28 ACCIRON-INT&lt;/P&gt;&lt;P&gt;name 69.130.7.116 ACCIRON-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.115 ACCMX-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.117 ACCSUN-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.118 FacileHR-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.120 NRIYP-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.126 ADDON-EXT&lt;/P&gt;&lt;P&gt;name 192.168.1.26 ADDON-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.21 Kyle&lt;/P&gt;&lt;P&gt;name 192.168.1.30 NRIYP-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.186 FacileHR-INT&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;/P&gt;&lt;P&gt; description LAN [INSIDE INTERFACE]&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 192.168.1.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan2&lt;/P&gt;&lt;P&gt; description T1 LINE [EXTERNAL INTERFACE]&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; ip address 69.130.7.114 255.255.255.240 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/7&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;boot system disk0:/asa822-k8.bin&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;clock timezone EST -5&lt;/P&gt;&lt;P&gt;clock summer-time EDT recurring&lt;/P&gt;&lt;P&gt;dns server-group DefaultDNS&lt;/P&gt;&lt;P&gt; domain-name aim-cc.com&lt;/P&gt;&lt;P&gt;object-group service aptela udp&lt;/P&gt;&lt;P&gt; description for Aptela Phones&lt;/P&gt;&lt;P&gt; port-object range 10000 20000&lt;/P&gt;&lt;P&gt; port-object range sip 5061&lt;/P&gt;&lt;P&gt;object-group service RDP tcp-udp&lt;/P&gt;&lt;P&gt; port-object range 3389 3389&lt;/P&gt;&lt;P&gt;object-group network BLACKLIST&lt;/P&gt;&lt;P&gt; network-object host 190.18.107.140&lt;/P&gt;&lt;P&gt; network-object host 121.244.106.2&lt;/P&gt;&lt;P&gt; network-object host 187.11.194.28&lt;/P&gt;&lt;P&gt; network-object host 188.2.237.199&lt;/P&gt;&lt;P&gt; network-object host 190.48.38.184&lt;/P&gt;&lt;P&gt; network-object host 201.47.229.72&lt;/P&gt;&lt;P&gt; network-object host 207.155.250.20&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.56&lt;/P&gt;&lt;P&gt; network-object host 209.85.222.199&lt;/P&gt;&lt;P&gt; network-object host 63.246.10.50&lt;/P&gt;&lt;P&gt; network-object host 66.77.56.84&lt;/P&gt;&lt;P&gt; network-object host 83.168.1.28&lt;/P&gt;&lt;P&gt; network-object host 124.121.68.190&lt;/P&gt;&lt;P&gt; network-object host 174.35.12.35&lt;/P&gt;&lt;P&gt; network-object host 174.37.81.160&lt;/P&gt;&lt;P&gt; network-object host 188.192.97.110&lt;/P&gt;&lt;P&gt; network-object host 188.38.164.31&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.162&lt;/P&gt;&lt;P&gt; network-object host 41.131.81.19&lt;/P&gt;&lt;P&gt; network-object host 65.168.1.28&lt;/P&gt;&lt;P&gt; network-object host 74.125.83.174&lt;/P&gt;&lt;P&gt; network-object host 74.125.83.184&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.191&lt;/P&gt;&lt;P&gt; network-object host 82.230.100.32&lt;/P&gt;&lt;P&gt; network-object host 89.173.0.9&lt;/P&gt;&lt;P&gt; network-object host 89.228.129.126&lt;/P&gt;&lt;P&gt; network-object host 93.86.217.140&lt;/P&gt;&lt;P&gt; network-object host 123.21.107.67&lt;/P&gt;&lt;P&gt; network-object host 178.92.126.228&lt;/P&gt;&lt;P&gt; network-object host 189.10.192.107&lt;/P&gt;&lt;P&gt; network-object host 189.55.158.40&lt;/P&gt;&lt;P&gt; network-object host 189.70.186.225&lt;/P&gt;&lt;P&gt; network-object host 201.11.0.98&lt;/P&gt;&lt;P&gt; network-object host 207.250.58.8&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.163&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.226&lt;/P&gt;&lt;P&gt; network-object host 209.85.211.156&lt;/P&gt;&lt;P&gt; network-object host 209.85.221.146&lt;/P&gt;&lt;P&gt; network-object host 209.85.222.159&lt;/P&gt;&lt;P&gt; network-object host 211.170.114.154&lt;/P&gt;&lt;P&gt; network-object host 24.38.18.233&lt;/P&gt;&lt;P&gt; network-object host 64.49.82.68&lt;/P&gt;&lt;P&gt; network-object host 64.50.170.80&lt;/P&gt;&lt;P&gt; network-object host 65.217.159.98&lt;/P&gt;&lt;P&gt; network-object host 68.200.154.75&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.195&lt;/P&gt;&lt;P&gt; network-object host 75.146.94.187&lt;/P&gt;&lt;P&gt; network-object host 80.14.122.109&lt;/P&gt;&lt;P&gt; network-object host 92.84.207.252&lt;/P&gt;&lt;P&gt; network-object host 93.153.0.155&lt;/P&gt;&lt;P&gt; network-object host 93.73.179.61&lt;/P&gt;&lt;P&gt; network-object host 96.252.6.79&lt;/P&gt;&lt;P&gt; network-object host 99.174.113.44&lt;/P&gt;&lt;P&gt; network-object host 117.6.64.137&lt;/P&gt;&lt;P&gt; network-object host 178.93.144.158&lt;/P&gt;&lt;P&gt; network-object host 190.245.171.12&lt;/P&gt;&lt;P&gt; network-object host 195.174.128.15&lt;/P&gt;&lt;P&gt; network-object host 199.238.178.138&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.228&lt;/P&gt;&lt;P&gt; network-object host 209.85.217.193&lt;/P&gt;&lt;P&gt; network-object host 24.103.215.120&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.194&lt;/P&gt;&lt;P&gt; network-object host 84.24.253.217&lt;/P&gt;&lt;P&gt; network-object host 98.117.251.114&lt;/P&gt;&lt;P&gt; network-object host 12.164.54.36&lt;/P&gt;&lt;P&gt; network-object host 160.75.192.3&lt;/P&gt;&lt;P&gt; network-object host 186.87.3.225&lt;/P&gt;&lt;P&gt; network-object host 190.174.208.57&lt;/P&gt;&lt;P&gt; network-object host 190.59.189.71&lt;/P&gt;&lt;P&gt; network-object host 201.4.160.18&lt;/P&gt;&lt;P&gt; network-object host 207.155.248.47&lt;/P&gt;&lt;P&gt; network-object host 208.111.169.150&lt;/P&gt;&lt;P&gt; network-object host 208.89.132.145&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.46&lt;/P&gt;&lt;P&gt; network-object host 209.85.210.163&lt;/P&gt;&lt;P&gt; network-object host 62.248.88.175&lt;/P&gt;&lt;P&gt; network-object host 64.202.189.25&lt;/P&gt;&lt;P&gt; network-object host 66.165.70.198&lt;/P&gt;&lt;P&gt; network-object host 67.132.93.114&lt;/P&gt;&lt;P&gt; network-object host 69.174.244.158&lt;/P&gt;&lt;P&gt; network-object host 69.67.52.156&lt;/P&gt;&lt;P&gt; network-object host 69.74.142.209&lt;/P&gt;&lt;P&gt; network-object host 74.125.92.25&lt;/P&gt;&lt;P&gt; network-object host 74.203.196.51&lt;/P&gt;&lt;P&gt; network-object host 79.110.128.212&lt;/P&gt;&lt;P&gt; network-object host 87.70.217.30&lt;/P&gt;&lt;P&gt; network-object host 88.146.41.234&lt;/P&gt;&lt;P&gt; network-object host 88.76.127.77&lt;/P&gt;&lt;P&gt; network-object host 93.86.37.241&lt;/P&gt;&lt;P&gt; network-object host 94.70.115.94&lt;/P&gt;&lt;P&gt; network-object host 95.168.100.87&lt;/P&gt;&lt;P&gt; network-object host 123.201.69.230&lt;/P&gt;&lt;P&gt; network-object host 186.9.50.90&lt;/P&gt;&lt;P&gt; network-object host 189.73.235.78&lt;/P&gt;&lt;P&gt; network-object host 195.2.236.11&lt;/P&gt;&lt;P&gt; network-object host 202.63.105.220&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.55&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.57&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.58&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.61&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.184&lt;/P&gt;&lt;P&gt; network-object host 209.85.221.171&lt;/P&gt;&lt;P&gt; network-object host 218.147.37.219&lt;/P&gt;&lt;P&gt; network-object host 64.120.250.82&lt;/P&gt;&lt;P&gt; network-object host 66.227.62.183&lt;/P&gt;&lt;P&gt; network-object host 67.228.227.25&lt;/P&gt;&lt;P&gt; network-object host 87.109.179.247&lt;/P&gt;&lt;P&gt; network-object host 87.163.5.34&lt;/P&gt;&lt;P&gt; network-object host 89.78.170.200&lt;/P&gt;&lt;P&gt; network-object host 89.78.3.139&lt;/P&gt;&lt;P&gt; network-object host 92.29.204.146&lt;/P&gt;&lt;P&gt; network-object host 94.189.180.81&lt;/P&gt;&lt;P&gt; network-object host 95.180.64.244&lt;/P&gt;&lt;P&gt; network-object host 122.169.182.129&lt;/P&gt;&lt;P&gt; network-object host 122.169.182.213&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.131&lt;/P&gt;&lt;P&gt; network-object host 115.184.136.110&lt;/P&gt;&lt;P&gt; network-object host 123.176.39.134&lt;/P&gt;&lt;P&gt; network-object host 123.237.6.173&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.135&lt;/P&gt;&lt;P&gt; network-object host 216.87.164.19&lt;/P&gt;&lt;P&gt; network-object host 217.23.15.143&lt;/P&gt;&lt;P&gt; network-object host 61.49.36.166&lt;/P&gt;&lt;P&gt; network-object host 67.138.108.151&lt;/P&gt;&lt;P&gt; network-object host 67.138.109.158&lt;/P&gt;&lt;P&gt; network-object host 111.118.156.170&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.132&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.133&lt;/P&gt;&lt;P&gt; network-object host 117.96.18.118&lt;/P&gt;&lt;P&gt; network-object host 121.151.149.220&lt;/P&gt;&lt;P&gt; network-object host 121.183.243.205&lt;/P&gt;&lt;P&gt; network-object host 123.19.170.237&lt;/P&gt;&lt;P&gt; network-object host 125.176.14.67&lt;/P&gt;&lt;P&gt; network-object host 183.107.94.151&lt;/P&gt;&lt;P&gt; network-object host 183.97.35.5&lt;/P&gt;&lt;P&gt; network-object host 186.104.230.5&lt;/P&gt;&lt;P&gt; network-object host 187.52.232.152&lt;/P&gt;&lt;P&gt; network-object host 189.211.159.220&lt;/P&gt;&lt;P&gt; network-object host 190.102.239.219&lt;/P&gt;&lt;P&gt; network-object host 190.235.13.233&lt;/P&gt;&lt;P&gt; network-object host 190.35.206.68&lt;/P&gt;&lt;P&gt; network-object host 190.7.109.65&lt;/P&gt;&lt;P&gt; network-object host 200.87.116.58&lt;/P&gt;&lt;P&gt; network-object host 204.188.223.222&lt;/P&gt;&lt;P&gt; network-object host 204.45.2.197&lt;/P&gt;&lt;P&gt; network-object host 208.83.232.3&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.107&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.15&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.83&lt;/P&gt;&lt;P&gt; network-object host 212.200.197.62&lt;/P&gt;&lt;P&gt; network-object host 216.1.203.94&lt;/P&gt;&lt;P&gt; network-object host 220.227.80.226&lt;/P&gt;&lt;P&gt; network-object host 41.186.0.212&lt;/P&gt;&lt;P&gt; network-object host 41.249.114.143&lt;/P&gt;&lt;P&gt; network-object host 58.26.151.196&lt;/P&gt;&lt;P&gt; network-object host 62.19.51.5&lt;/P&gt;&lt;P&gt; network-object host 64.212.196.228&lt;/P&gt;&lt;P&gt; network-object host 67.138.109.68&lt;/P&gt;&lt;P&gt; network-object host 67.138.110.68&lt;/P&gt;&lt;P&gt; network-object host 68.142.134.126&lt;/P&gt;&lt;P&gt; network-object host 70.98.204.112&lt;/P&gt;&lt;P&gt; network-object host 70.98.205.140&lt;/P&gt;&lt;P&gt; network-object host 70.98.205.165&lt;/P&gt;&lt;P&gt; network-object host 74.63.107.46&lt;/P&gt;&lt;P&gt; network-object host 78.97.189.115&lt;/P&gt;&lt;P&gt; network-object host 79.106.2.46&lt;/P&gt;&lt;P&gt; network-object host 84.22.56.50&lt;/P&gt;&lt;P&gt; network-object host 89.123.211.42&lt;/P&gt;&lt;P&gt; network-object host 89.46.84.214&lt;/P&gt;&lt;P&gt; network-object host 90.169.74.53&lt;/P&gt;&lt;P&gt; network-object host 90.185.163.176&lt;/P&gt;&lt;P&gt; network-object host 95.35.16.79&lt;/P&gt;&lt;P&gt; network-object host 95.65.253.179&lt;/P&gt;&lt;P&gt;object-group service SMTP-587 tcp&lt;/P&gt;&lt;P&gt; description SMTP 587&lt;/P&gt;&lt;P&gt; port-object eq 587&lt;/P&gt;&lt;P&gt;object-group service smtp-587 tcp&lt;/P&gt;&lt;P&gt; description smtp 587&lt;/P&gt;&lt;P&gt; port-object eq 587&lt;/P&gt;&lt;P&gt;object-group protocol TCPUDP&lt;/P&gt;&lt;P&gt; protocol-object udp&lt;/P&gt;&lt;P&gt; protocol-object tcp&lt;/P&gt;&lt;P&gt;object-group service SMTP-465 tcp&lt;/P&gt;&lt;P&gt; port-object eq 465&lt;/P&gt;&lt;P&gt;object-group service TCP-993 tcp&lt;/P&gt;&lt;P&gt; port-object eq 993&lt;/P&gt;&lt;P&gt;object-group service TCP-995 tcp&lt;/P&gt;&lt;P&gt; port-object eq 995&lt;/P&gt;&lt;P&gt;object-group service TCP-7071 tcp&lt;/P&gt;&lt;P&gt; port-object eq 7071&lt;/P&gt;&lt;P&gt;object-group service TCP-10000 tcp&lt;/P&gt;&lt;P&gt; port-object eq 10000&lt;/P&gt;&lt;P&gt;object-group service TCP-8080 tcp&lt;/P&gt;&lt;P&gt; port-object eq 8080&lt;/P&gt;&lt;P&gt;object-group service TCP-8443 tcp&lt;/P&gt;&lt;P&gt; port-object eq 8443&lt;/P&gt;&lt;P&gt;object-group service TCP-23781 tcp&lt;/P&gt;&lt;P&gt; port-object eq 23781&lt;/P&gt;&lt;P&gt;object-group protocol DM_INLINE_PROTOCOL_1&lt;/P&gt;&lt;P&gt; protocol-object udp&lt;/P&gt;&lt;P&gt; protocol-object tcp&lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host FacileHR-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp object-group BLACKLIST any eq smtp inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCSUN-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host ACCSUN-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host FacileHR-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCSUN-INT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host FacileHR-INT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host ACCSUN-INT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host FacileHR-INT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ACCSUN-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq ssh host FacileHR-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCMX-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit object-group TCPUDP any host ADDON-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ADDON-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCIRON-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host NRIYP-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host NRIYP-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit udp any any object-group aptela &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit udp any host 64.50.254.253 inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny ip host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny udp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any any eq 15250 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq 3389 any eq 3389 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq 23781 host 192.168.1.121 eq 23781 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq smtp any eq smtp inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny ip any host 192.168.1.188 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp any host 192.168.1.188 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq smtp &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit object-group TCPUDP any host ADDON-EXT eq domain &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq https &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group SMTP-587 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group SMTP-465 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-993 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-995 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq imap4 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq pop3 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-8080 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-10000 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-8443 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any any eq pptp &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit udp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny ip host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny tcp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny udp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-7071 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-10000 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-8080 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host Kyle object-group TCP-23781 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any any eq pptp &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group TCPUDP host FacileHR-INT any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any host FacileHR-INT &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group DM_INLINE_PROTOCOL_1 any host FacileHR-INT eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group DM_INLINE_PROTOCOL_1 192.168.1.0 255.255.255.0 host FacileHR-EXT eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq 3389 any eq 3389 &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq domain any eq domain &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq domain any eq domain &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq www any eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq www any eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq https any eq https &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq 443 any eq 443 &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq smtp any eq smtp &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging asdm informational&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;ip local pool new 192.168.1.45-192.168.1.50 mask 255.255.255.255&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;icmp permit any inside&lt;/P&gt;&lt;P&gt;icmp permit any outside&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-625.bin&lt;/P&gt;&lt;P&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;arp inside 192.168.1.43 0019.d137.8533 &lt;/P&gt;&lt;P&gt;arp outside 192.168.1.43 0019.d137.8533 &lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;nat (inside) 1 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;static (outside,inside) tcp FacileHR-INT 81 FacileHR-EXT www netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) tcp FacileHR-INT 81 FacileHR-EXT www netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (outside,inside) ACCSUN-INT ACCSUN-EXT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (outside,inside) ACCIRON-INT ACCIRON-EXT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCMX-EXT ACCMX-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCSUN-EXT ACCSUN-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCIRON-EXT ACCIRON-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) NRIYP-EXT NRIYP-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ADDON-EXT ADDON-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;access-group inside_access_in in interface inside&lt;/P&gt;&lt;P&gt;access-group inside_access_out out interface inside&lt;/P&gt;&lt;P&gt;access-group outside_in_inside in interface outside&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 69.130.7.113 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication telnet console LOCAL &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;snmp-server location AIM Computer Consulting - Closet&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;snmp-server contact Red Level Networks - &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:support@redlevelnetworks.com" target="_blank"&gt;support@redlevelnetworks.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set TRANS_ESP_3DES_SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set TRANS_ESP_3DES_SHA mode transport&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;/P&gt;&lt;P&gt;crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;/P&gt;&lt;P&gt;crypto map outside_map interface outside&lt;/P&gt;&lt;P&gt;crypto isakmp policy 10&lt;/P&gt;&lt;P&gt; authentication crack&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 30&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 50&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash md5&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;telnet 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;telnet timeout 30&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 outside&lt;/P&gt;&lt;P&gt;ssh timeout 15&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;dhcpd dns ADDON-INT&lt;/P&gt;&lt;P&gt;dhcpd domain aim-cc.com&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dhcpd address 192.168.1.150-192.168.1.250 inside&lt;/P&gt;&lt;P&gt;dhcpd enable inside&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;threat-detection statistics&lt;/P&gt;&lt;P&gt;threat-detection statistics tcp-intercept rate-interval 30 burst-rate 400 average-rate 200&lt;/P&gt;&lt;P&gt;ssl encryption aes256-sha1 aes128-sha1 3des-sha1 des-sha1&lt;/P&gt;&lt;P&gt;webvpn&lt;/P&gt;&lt;P&gt;group-policy DefaultRAGroup internal&lt;/P&gt;&lt;P&gt;group-policy DefaultRAGroup attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.1.189 192.168.1.26&lt;/P&gt;&lt;P&gt; dns-server value 192.168.1.189 192.168.1.26&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol l2tp-ipsec &lt;/P&gt;&lt;P&gt; default-domain value Addon&lt;/P&gt;&lt;P&gt;group-policy DefaultRAGroup_1 internal&lt;/P&gt;&lt;P&gt;group-policy DefaultRAGroup_1 attributes&lt;/P&gt;&lt;P&gt; dns-server value 192.168.1.189 192.168.1.26&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol l2tp-ipsec &lt;/P&gt;&lt;P&gt; default-domain value Addon&lt;/P&gt;&lt;P&gt;group-policy addonusa internal&lt;/P&gt;&lt;P&gt;group-policy addonusa attributes&lt;/P&gt;&lt;P&gt; wins-server value 192.168.1.189 192.168.1.26&lt;/P&gt;&lt;P&gt; dns-server value 192.168.1.189 192.168.1.26&lt;/P&gt;&lt;P&gt; vpn-tunnel-protocol IPSec &lt;/P&gt;&lt;P&gt; default-domain value Addon&lt;/P&gt;&lt;P&gt;username Patrick.Addon nopassword privilege 0&lt;/P&gt;&lt;P&gt;username Patrick.Addon attributes&lt;/P&gt;&lt;P&gt; vpn-group-policy addonusa&lt;/P&gt;&lt;P&gt;username redlevel password OqxvfJhMsUFUOSg7 encrypted privilege 15&lt;/P&gt;&lt;P&gt;username aimfwadm password a87SLutMml8bG8MZ encrypted privilege 15&lt;/P&gt;&lt;P&gt;tunnel-group DefaultRAGroup general-attributes&lt;/P&gt;&lt;P&gt; address-pool new&lt;/P&gt;&lt;P&gt; default-group-policy DefaultRAGroup_1&lt;/P&gt;&lt;P&gt;tunnel-group DefaultRAGroup ipsec-attributes&lt;/P&gt;&lt;P&gt; pre-shared-key *****&lt;/P&gt;&lt;P&gt;tunnel-group addonusa type remote-access&lt;/P&gt;&lt;P&gt;tunnel-group addonusa general-attributes&lt;/P&gt;&lt;P&gt; default-group-policy addonusa&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;class-map inspection_default&lt;/P&gt;&lt;P&gt; match default-inspection-traffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map type inspect dns preset_dns_map&lt;/P&gt;&lt;P&gt; parameters&lt;/P&gt;&lt;P&gt;&amp;nbsp; message-length maximum 512&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns preset_dns_map &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225 &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sunrpc &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect xdmcp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sip&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect netbios &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp &lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ip-options &lt;/P&gt;&lt;P&gt;policy-map global-policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;prompt hostname context &lt;/P&gt;&lt;P&gt;call-home&lt;/P&gt;&lt;P&gt; profile CiscoTAC-1&lt;/P&gt;&lt;P&gt;&amp;nbsp; no active&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; destination address http &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://tools.cisco.com/its/service/oddce/services/DDCEService" target="_blank"&gt;https://tools.cisco.com/its/service/oddce/services/DDCEService&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; destination address email &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:callhome@cisco.com" target="_blank"&gt;callhome@cisco.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; destination transport-method http&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group diagnostic&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group environment&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group inventory periodic monthly&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group configuration periodic monthly&lt;/P&gt;&lt;P&gt;&amp;nbsp; subscribe-to-alert-group telemetry periodic daily&lt;/P&gt;&lt;P&gt;Cryptochecksum:20abefdb02ddf76a4c8656fa30da43cd&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:00:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710037#M535577</guid>
      <dc:creator>bluemookie</dc:creator>
      <dc:date>2019-03-11T21:00:40Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710038#M535578</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Kyle,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What you are trying to do on the ASA is called u-turning, you would need the following config for it:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;global (inside) 1 interface&lt;/P&gt;&lt;P&gt;static (inside,inside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;same-security-traffic permit intra-interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try adding these commands, and ping after that. If it still doesn'y ping, paste the config(the one after making the changes) , i'll have a look at it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2011 16:05:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710038#M535578</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-19T16:05:27Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710039#M535579</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Varun,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you by the way for your help, it is greatly appreciated. I entered the commands, but I am still unable to ping/access. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;below I have a copy/paste of the config again.&lt;/P&gt;&lt;P&gt;Result of the command: "show running-config"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;ASA Version 8.2(2) &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;name 192.168.1.25 ACCMX-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.44 ACCSUN-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.28 ACCIRON-INT&lt;/P&gt;&lt;P&gt;name 69.130.7.116 ACCIRON-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.115 ACCMX-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.117 ACCSUN-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.118 FacileHR-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.120 NRIYP-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.126 ADDON-EXT&lt;/P&gt;&lt;P&gt;name 192.168.1.26 ADDON-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.21 Kyle&lt;/P&gt;&lt;P&gt;name 192.168.1.30 NRIYP-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.186 FacileHR-INT&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;/P&gt;&lt;P&gt; description LAN [INSIDE INTERFACE]&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 192.168.1.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan2&lt;/P&gt;&lt;P&gt; description T1 LINE [EXTERNAL INTERFACE]&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; ip address 69.130.7.114 255.255.255.240 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/7&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;boot system disk0:/asa822-k8.bin&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;clock timezone EST -5&lt;/P&gt;&lt;P&gt;clock summer-time EDT recurring&lt;/P&gt;&lt;P&gt;dns server-group DefaultDNS&lt;/P&gt;&lt;P&gt; domain-name aim-cc.com&lt;/P&gt;&lt;P&gt;same-security-traffic permit intra-interface&lt;/P&gt;&lt;P&gt;object-group service aptela udp&lt;/P&gt;&lt;P&gt; description for Aptela Phones&lt;/P&gt;&lt;P&gt; port-object range 10000 20000&lt;/P&gt;&lt;P&gt; port-object range sip 5061&lt;/P&gt;&lt;P&gt;object-group service RDP tcp-udp&lt;/P&gt;&lt;P&gt; port-object range 3389 3389&lt;/P&gt;&lt;P&gt;object-group network BLACKLIST&lt;/P&gt;&lt;P&gt; network-object host 190.18.107.140&lt;/P&gt;&lt;P&gt; network-object host 121.244.106.2&lt;/P&gt;&lt;P&gt; network-object host 187.11.194.28&lt;/P&gt;&lt;P&gt; network-object host 188.2.237.199&lt;/P&gt;&lt;P&gt; network-object host 190.48.38.184&lt;/P&gt;&lt;P&gt; network-object host 201.47.229.72&lt;/P&gt;&lt;P&gt; network-object host 207.155.250.20&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.56&lt;/P&gt;&lt;P&gt; network-object host 209.85.222.199&lt;/P&gt;&lt;P&gt; network-object host 63.246.10.50&lt;/P&gt;&lt;P&gt; network-object host 66.77.56.84&lt;/P&gt;&lt;P&gt; network-object host 83.168.1.28&lt;/P&gt;&lt;P&gt; network-object host 124.121.68.190&lt;/P&gt;&lt;P&gt; network-object host 174.35.12.35&lt;/P&gt;&lt;P&gt; network-object host 174.37.81.160&lt;/P&gt;&lt;P&gt; network-object host 188.192.97.110&lt;/P&gt;&lt;P&gt; network-object host 188.38.164.31&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.162&lt;/P&gt;&lt;P&gt; network-object host 41.131.81.19&lt;/P&gt;&lt;P&gt; network-object host 65.168.1.28&lt;/P&gt;&lt;P&gt; network-object host 74.125.83.174&lt;/P&gt;&lt;P&gt; network-object host 74.125.83.184&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.191&lt;/P&gt;&lt;P&gt; network-object host 82.230.100.32&lt;/P&gt;&lt;P&gt; network-object host 89.173.0.9&lt;/P&gt;&lt;P&gt; network-object host 89.228.129.126&lt;/P&gt;&lt;P&gt; network-object host 93.86.217.140&lt;/P&gt;&lt;P&gt; network-object host 123.21.107.67&lt;/P&gt;&lt;P&gt; network-object host 178.92.126.228&lt;/P&gt;&lt;P&gt; network-object host 189.10.192.107&lt;/P&gt;&lt;P&gt; network-object host 189.55.158.40&lt;/P&gt;&lt;P&gt; network-object host 189.70.186.225&lt;/P&gt;&lt;P&gt; network-object host 201.11.0.98&lt;/P&gt;&lt;P&gt; network-object host 207.250.58.8&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.163&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.226&lt;/P&gt;&lt;P&gt; network-object host 209.85.211.156&lt;/P&gt;&lt;P&gt; network-object host 209.85.221.146&lt;/P&gt;&lt;P&gt; network-object host 209.85.222.159&lt;/P&gt;&lt;P&gt; network-object host 211.170.114.154&lt;/P&gt;&lt;P&gt; network-object host 24.38.18.233&lt;/P&gt;&lt;P&gt; network-object host 64.49.82.68&lt;/P&gt;&lt;P&gt; network-object host 64.50.170.80&lt;/P&gt;&lt;P&gt; network-object host 65.217.159.98&lt;/P&gt;&lt;P&gt; network-object host 68.200.154.75&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.195&lt;/P&gt;&lt;P&gt; network-object host 75.146.94.187&lt;/P&gt;&lt;P&gt; network-object host 80.14.122.109&lt;/P&gt;&lt;P&gt; network-object host 92.84.207.252&lt;/P&gt;&lt;P&gt; network-object host 93.153.0.155&lt;/P&gt;&lt;P&gt; network-object host 93.73.179.61&lt;/P&gt;&lt;P&gt; network-object host 96.252.6.79&lt;/P&gt;&lt;P&gt; network-object host 99.174.113.44&lt;/P&gt;&lt;P&gt; network-object host 117.6.64.137&lt;/P&gt;&lt;P&gt; network-object host 178.93.144.158&lt;/P&gt;&lt;P&gt; network-object host 190.245.171.12&lt;/P&gt;&lt;P&gt; network-object host 195.174.128.15&lt;/P&gt;&lt;P&gt; network-object host 199.238.178.138&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.228&lt;/P&gt;&lt;P&gt; network-object host 209.85.217.193&lt;/P&gt;&lt;P&gt; network-object host 24.103.215.120&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.194&lt;/P&gt;&lt;P&gt; network-object host 84.24.253.217&lt;/P&gt;&lt;P&gt; network-object host 98.117.251.114&lt;/P&gt;&lt;P&gt; network-object host 12.164.54.36&lt;/P&gt;&lt;P&gt; network-object host 160.75.192.3&lt;/P&gt;&lt;P&gt; network-object host 186.87.3.225&lt;/P&gt;&lt;P&gt; network-object host 190.174.208.57&lt;/P&gt;&lt;P&gt; network-object host 190.59.189.71&lt;/P&gt;&lt;P&gt; network-object host 201.4.160.18&lt;/P&gt;&lt;P&gt; network-object host 207.155.248.47&lt;/P&gt;&lt;P&gt; network-object host 208.111.169.150&lt;/P&gt;&lt;P&gt; network-object host 208.89.132.145&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.46&lt;/P&gt;&lt;P&gt; network-object host 209.85.210.163&lt;/P&gt;&lt;P&gt; network-object host 62.248.88.175&lt;/P&gt;&lt;P&gt; network-object host 64.202.189.25&lt;/P&gt;&lt;P&gt; network-object host 66.165.70.198&lt;/P&gt;&lt;P&gt; network-object host 67.132.93.114&lt;/P&gt;&lt;P&gt; network-object host 69.174.244.158&lt;/P&gt;&lt;P&gt; network-object host 69.67.52.156&lt;/P&gt;&lt;P&gt; network-object host 69.74.142.209&lt;/P&gt;&lt;P&gt; network-object host 74.125.92.25&lt;/P&gt;&lt;P&gt; network-object host 74.203.196.51&lt;/P&gt;&lt;P&gt; network-object host 79.110.128.212&lt;/P&gt;&lt;P&gt; network-object host 87.70.217.30&lt;/P&gt;&lt;P&gt; network-object host 88.146.41.234&lt;/P&gt;&lt;P&gt; network-object host 88.76.127.77&lt;/P&gt;&lt;P&gt; network-object host 93.86.37.241&lt;/P&gt;&lt;P&gt; network-object host 94.70.115.94&lt;/P&gt;&lt;P&gt; network-object host 95.168.100.87&lt;/P&gt;&lt;P&gt; network-object host 123.201.69.230&lt;/P&gt;&lt;P&gt; network-object host 186.9.50.90&lt;/P&gt;&lt;P&gt; network-object host 189.73.235.78&lt;/P&gt;&lt;P&gt; network-object host 195.2.236.11&lt;/P&gt;&lt;P&gt; network-object host 202.63.105.220&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.55&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.57&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.58&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.61&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.184&lt;/P&gt;&lt;P&gt; network-object host 209.85.221.171&lt;/P&gt;&lt;P&gt; network-object host 218.147.37.219&lt;/P&gt;&lt;P&gt; network-object host 64.120.250.82&lt;/P&gt;&lt;P&gt; network-object host 66.227.62.183&lt;/P&gt;&lt;P&gt; network-object host 67.228.227.25&lt;/P&gt;&lt;P&gt; network-object host 87.109.179.247&lt;/P&gt;&lt;P&gt; network-object host 87.163.5.34&lt;/P&gt;&lt;P&gt; network-object host 89.78.170.200&lt;/P&gt;&lt;P&gt; network-object host 89.78.3.139&lt;/P&gt;&lt;P&gt; network-object host 92.29.204.146&lt;/P&gt;&lt;P&gt; network-object host 94.189.180.81&lt;/P&gt;&lt;P&gt; network-object host 95.180.64.244&lt;/P&gt;&lt;P&gt; network-object host 122.169.182.129&lt;/P&gt;&lt;P&gt; network-object host 122.169.182.213&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.131&lt;/P&gt;&lt;P&gt; network-object host 115.184.136.110&lt;/P&gt;&lt;P&gt; network-object host 123.176.39.134&lt;/P&gt;&lt;P&gt; network-object host 123.237.6.173&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.135&lt;/P&gt;&lt;P&gt; network-object host 216.87.164.19&lt;/P&gt;&lt;P&gt; network-object host 217.23.15.143&lt;/P&gt;&lt;P&gt; network-object host 61.49.36.166&lt;/P&gt;&lt;P&gt; network-object host 67.138.108.151&lt;/P&gt;&lt;P&gt; network-object host 67.138.109.158&lt;/P&gt;&lt;P&gt; network-object host 111.118.156.170&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.132&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.133&lt;/P&gt;&lt;P&gt; network-object host 117.96.18.118&lt;/P&gt;&lt;P&gt; network-object host 121.151.149.220&lt;/P&gt;&lt;P&gt; network-object host 121.183.243.205&lt;/P&gt;&lt;P&gt; network-object host 123.19.170.237&lt;/P&gt;&lt;P&gt; network-object host 125.176.14.67&lt;/P&gt;&lt;P&gt; network-object host 183.107.94.151&lt;/P&gt;&lt;P&gt; network-object host 183.97.35.5&lt;/P&gt;&lt;P&gt; network-object host 186.104.230.5&lt;/P&gt;&lt;P&gt; network-object host 187.52.232.152&lt;/P&gt;&lt;P&gt; network-object host 189.211.159.220&lt;/P&gt;&lt;P&gt; network-object host 190.102.239.219&lt;/P&gt;&lt;P&gt; network-object host 190.235.13.233&lt;/P&gt;&lt;P&gt; network-object host 190.35.206.68&lt;/P&gt;&lt;P&gt; network-object host 190.7.109.65&lt;/P&gt;&lt;P&gt; network-object host 200.87.116.58&lt;/P&gt;&lt;P&gt; network-object host 204.188.223.222&lt;/P&gt;&lt;P&gt; network-object host 204.45.2.197&lt;/P&gt;&lt;P&gt; network-object host 208.83.232.3&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.107&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.15&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.83&lt;/P&gt;&lt;P&gt; network-object host 212.200.197.62&lt;/P&gt;&lt;P&gt; network-object host 216.1.203.94&lt;/P&gt;&lt;P&gt; network-object host 220.227.80.226&lt;/P&gt;&lt;P&gt; network-object host 41.186.0.212&lt;/P&gt;&lt;P&gt; network-object host 41.249.114.143&lt;/P&gt;&lt;P&gt; network-object host 58.26.151.196&lt;/P&gt;&lt;P&gt; network-object host 62.19.51.5&lt;/P&gt;&lt;P&gt; network-object host 64.212.196.228&lt;/P&gt;&lt;P&gt; network-object host 67.138.109.68&lt;/P&gt;&lt;P&gt; network-object host 67.138.110.68&lt;/P&gt;&lt;P&gt; network-object host 68.142.134.126&lt;/P&gt;&lt;P&gt; network-object host 70.98.204.112&lt;/P&gt;&lt;P&gt; network-object host 70.98.205.140&lt;/P&gt;&lt;P&gt; network-object host 70.98.205.165&lt;/P&gt;&lt;P&gt; network-object host 74.63.107.46&lt;/P&gt;&lt;P&gt; network-object host 78.97.189.115&lt;/P&gt;&lt;P&gt; network-object host 79.106.2.46&lt;/P&gt;&lt;P&gt; network-object host 84.22.56.50&lt;/P&gt;&lt;P&gt; network-object host 89.123.211.42&lt;/P&gt;&lt;P&gt; network-object host 89.46.84.214&lt;/P&gt;&lt;P&gt; network-object host 90.169.74.53&lt;/P&gt;&lt;P&gt; network-object host 90.185.163.176&lt;/P&gt;&lt;P&gt; network-object host 95.35.16.79&lt;/P&gt;&lt;P&gt; network-object host 95.65.253.179&lt;/P&gt;&lt;P&gt;object-group service SMTP-587 tcp&lt;/P&gt;&lt;P&gt; description SMTP 587&lt;/P&gt;&lt;P&gt; port-object eq 587&lt;/P&gt;&lt;P&gt;object-group service smtp-587 tcp&lt;/P&gt;&lt;P&gt; description smtp 587&lt;/P&gt;&lt;P&gt; port-object eq 587&lt;/P&gt;&lt;P&gt;object-group protocol TCPUDP&lt;/P&gt;&lt;P&gt; protocol-object udp&lt;/P&gt;&lt;P&gt; protocol-object tcp&lt;/P&gt;&lt;P&gt;object-group service SMTP-465 tcp&lt;/P&gt;&lt;P&gt; port-object eq 465&lt;/P&gt;&lt;P&gt;object-group service TCP-993 tcp&lt;/P&gt;&lt;P&gt; port-object eq 993&lt;/P&gt;&lt;P&gt;object-group service TCP-995 tcp&lt;/P&gt;&lt;P&gt; port-object eq 995&lt;/P&gt;&lt;P&gt;object-group service TCP-7071 tcp&lt;/P&gt;&lt;P&gt; port-object eq 7071&lt;/P&gt;&lt;P&gt;object-group service TCP-10000 tcp&lt;/P&gt;&lt;P&gt; port-object eq 10000&lt;/P&gt;&lt;P&gt;object-group service TCP-8080 tcp&lt;/P&gt;&lt;P&gt; port-object eq 8080&lt;/P&gt;&lt;P&gt;object-group service TCP-8443 tcp&lt;/P&gt;&lt;P&gt; port-object eq 8443&lt;/P&gt;&lt;P&gt;object-group service TCP-23781 tcp&lt;/P&gt;&lt;P&gt; port-object eq 23781&lt;/P&gt;&lt;P&gt;object-group protocol DM_INLINE_PROTOCOL_1&lt;/P&gt;&lt;P&gt; protocol-object udp&lt;/P&gt;&lt;P&gt; protocol-object tcp&lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host FacileHR-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp object-group BLACKLIST any eq smtp inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCSUN-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host ACCSUN-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host FacileHR-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCSUN-INT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host FacileHR-INT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host ACCSUN-INT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host FacileHR-INT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ACCSUN-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq ssh host FacileHR-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCMX-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit object-group TCPUDP any host ADDON-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ADDON-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCIRON-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host NRIYP-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host NRIYP-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit udp any any object-group aptela &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit udp any host 64.50.254.253 inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny ip host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny udp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any any eq 15250 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq 3389 any eq 3389 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq 23781 host 192.168.1.121 eq 23781 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq smtp any eq smtp inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny ip any host 192.168.1.188 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp any host 192.168.1.188 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq smtp &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit object-group TCPUDP any host ADDON-EXT eq domain &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq https &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group SMTP-587 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group SMTP-465 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-993 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-995 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq imap4 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq pop3 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-8080 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-10000 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-8443 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any any eq pptp &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit udp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny ip host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny tcp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny udp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-7071 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-10000 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-8080 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host Kyle object-group TCP-23781 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any any eq pptp &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group TCPUDP host FacileHR-INT any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any host FacileHR-INT &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group DM_INLINE_PROTOCOL_1 any host FacileHR-INT eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group DM_INLINE_PROTOCOL_1 192.168.1.0 255.255.255.0 host FacileHR-EXT eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq 3389 any eq 3389 &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq domain any eq domain &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq domain any eq domain &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq www any eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq www any eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq https any eq https &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq 443 any eq 443 &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq smtp any eq smtp &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging asdm informational&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;ip local pool new 192.168.1.45-192.168.1.50 mask 255.255.255.255&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;icmp permit any inside&lt;/P&gt;&lt;P&gt;icmp permit any outside&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-625.bin&lt;/P&gt;&lt;P&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;arp inside 192.168.1.43 0019.d137.8533 &lt;/P&gt;&lt;P&gt;arp outside 192.168.1.43 0019.d137.8533 &lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;global (inside) 1 interface&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;nat (inside) 1 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;static (outside,inside) tcp FacileHR-INT 81 FacileHR-EXT www netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) tcp FacileHR-INT 81 FacileHR-EXT www netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (outside,inside) ACCSUN-INT ACCSUN-EXT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (outside,inside) ACCIRON-INT ACCIRON-EXT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCMX-EXT ACCMX-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCSUN-EXT ACCSUN-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCIRON-EXT ACCIRON-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) NRIYP-EXT NRIYP-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ADDON-EXT ADDON-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,inside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;access-group inside_access_in in interface inside&lt;/P&gt;&lt;P&gt;access-group inside_access_out out interface inside&lt;/P&gt;&lt;P&gt;access-group outside_in_inside in interface outside&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 69.130.7.113 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication telnet console LOCAL &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;snmp-server location AIM Computer Consulting - Closet&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;snmp-server contact Red Level Networks - &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:support@redlevelnetworks.com"&gt;support@redlevelnetworks.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set TRANS_ESP_3DES_SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set TRANS_ESP_3DES_SHA mode transport&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;/P&gt;&lt;P&gt;crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;/P&gt;&lt;P&gt;crypto map outside_map interface outside&lt;/P&gt;&lt;P&gt;crypto isakmp policy 10&lt;/P&gt;&lt;P&gt; authentication crack&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 30&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 50&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash md5&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;telnet 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;telnet timeout 30&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 outside&lt;/P&gt;&lt;P&gt;ssh timeout 15&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;dhcpd dns ADDON-INT&lt;/P&gt;&lt;P&gt;dhcpd domain aim-cc.com&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dhcpd address 192.168.1.150-192.168.1.250 inside&lt;/P&gt;&lt;P&gt;dhcpd enable inside&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2011 16:17:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710039#M535579</guid>
      <dc:creator>bluemookie</dc:creator>
      <dc:date>2011-07-19T16:17:11Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710040#M535580</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Kyle,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you just remove this static staement on the firewall, do :&lt;/P&gt;&lt;P&gt;no static (inside,inside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and add this:&lt;/P&gt;&lt;P&gt;static (inside,inside) FacileHR-EXT FacileHR-INT norand nailed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and try again, if this doesn't work, we'll need to take the captures on the ASA and the logs as well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;One more thing, these statements are overlapping on ASA:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside) 1 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so you can remove the first statement, because the second one include all the ip's. (don't you think so)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2011 16:26:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710040#M535580</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-19T16:26:13Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710041#M535581</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have done what you asked, the same issue persists. Below is the log again, again thank you your a great help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "show running-config"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: Saved&lt;/P&gt;&lt;P&gt;:&lt;/P&gt;&lt;P&gt;ASA Version 8.2(2) &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;name 192.168.1.25 ACCMX-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.44 ACCSUN-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.28 ACCIRON-INT&lt;/P&gt;&lt;P&gt;name 69.130.7.116 ACCIRON-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.115 ACCMX-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.117 ACCSUN-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.118 FacileHR-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.120 NRIYP-EXT&lt;/P&gt;&lt;P&gt;name 69.130.7.126 ADDON-EXT&lt;/P&gt;&lt;P&gt;name 192.168.1.26 ADDON-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.21 Kyle&lt;/P&gt;&lt;P&gt;name 192.168.1.30 NRIYP-INT&lt;/P&gt;&lt;P&gt;name 192.168.1.186 FacileHR-INT&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;/P&gt;&lt;P&gt; description LAN [INSIDE INTERFACE]&lt;/P&gt;&lt;P&gt; nameif inside&lt;/P&gt;&lt;P&gt; security-level 100&lt;/P&gt;&lt;P&gt; ip address 192.168.1.1 255.255.255.0 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Vlan2&lt;/P&gt;&lt;P&gt; description T1 LINE [EXTERNAL INTERFACE]&lt;/P&gt;&lt;P&gt; nameif outside&lt;/P&gt;&lt;P&gt; security-level 0&lt;/P&gt;&lt;P&gt; ip address 69.130.7.114 255.255.255.240 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/0&lt;/P&gt;&lt;P&gt; switchport access vlan 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/7&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;boot system disk0:/asa822-k8.bin&lt;/P&gt;&lt;P&gt;ftp mode passive&lt;/P&gt;&lt;P&gt;clock timezone EST -5&lt;/P&gt;&lt;P&gt;clock summer-time EDT recurring&lt;/P&gt;&lt;P&gt;dns server-group DefaultDNS&lt;/P&gt;&lt;P&gt; domain-name aim-cc.com&lt;/P&gt;&lt;P&gt;same-security-traffic permit intra-interface&lt;/P&gt;&lt;P&gt;object-group service aptela udp&lt;/P&gt;&lt;P&gt; description for Aptela Phones&lt;/P&gt;&lt;P&gt; port-object range 10000 20000&lt;/P&gt;&lt;P&gt; port-object range sip 5061&lt;/P&gt;&lt;P&gt;object-group service RDP tcp-udp&lt;/P&gt;&lt;P&gt; port-object range 3389 3389&lt;/P&gt;&lt;P&gt;object-group network BLACKLIST&lt;/P&gt;&lt;P&gt; network-object host 190.18.107.140&lt;/P&gt;&lt;P&gt; network-object host 121.244.106.2&lt;/P&gt;&lt;P&gt; network-object host 187.11.194.28&lt;/P&gt;&lt;P&gt; network-object host 188.2.237.199&lt;/P&gt;&lt;P&gt; network-object host 190.48.38.184&lt;/P&gt;&lt;P&gt; network-object host 201.47.229.72&lt;/P&gt;&lt;P&gt; network-object host 207.155.250.20&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.56&lt;/P&gt;&lt;P&gt; network-object host 209.85.222.199&lt;/P&gt;&lt;P&gt; network-object host 63.246.10.50&lt;/P&gt;&lt;P&gt; network-object host 66.77.56.84&lt;/P&gt;&lt;P&gt; network-object host 83.168.1.28&lt;/P&gt;&lt;P&gt; network-object host 124.121.68.190&lt;/P&gt;&lt;P&gt; network-object host 174.35.12.35&lt;/P&gt;&lt;P&gt; network-object host 174.37.81.160&lt;/P&gt;&lt;P&gt; network-object host 188.192.97.110&lt;/P&gt;&lt;P&gt; network-object host 188.38.164.31&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.162&lt;/P&gt;&lt;P&gt; network-object host 41.131.81.19&lt;/P&gt;&lt;P&gt; network-object host 65.168.1.28&lt;/P&gt;&lt;P&gt; network-object host 74.125.83.174&lt;/P&gt;&lt;P&gt; network-object host 74.125.83.184&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.191&lt;/P&gt;&lt;P&gt; network-object host 82.230.100.32&lt;/P&gt;&lt;P&gt; network-object host 89.173.0.9&lt;/P&gt;&lt;P&gt; network-object host 89.228.129.126&lt;/P&gt;&lt;P&gt; network-object host 93.86.217.140&lt;/P&gt;&lt;P&gt; network-object host 123.21.107.67&lt;/P&gt;&lt;P&gt; network-object host 178.92.126.228&lt;/P&gt;&lt;P&gt; network-object host 189.10.192.107&lt;/P&gt;&lt;P&gt; network-object host 189.55.158.40&lt;/P&gt;&lt;P&gt; network-object host 189.70.186.225&lt;/P&gt;&lt;P&gt; network-object host 201.11.0.98&lt;/P&gt;&lt;P&gt; network-object host 207.250.58.8&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.163&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.226&lt;/P&gt;&lt;P&gt; network-object host 209.85.211.156&lt;/P&gt;&lt;P&gt; network-object host 209.85.221.146&lt;/P&gt;&lt;P&gt; network-object host 209.85.222.159&lt;/P&gt;&lt;P&gt; network-object host 211.170.114.154&lt;/P&gt;&lt;P&gt; network-object host 24.38.18.233&lt;/P&gt;&lt;P&gt; network-object host 64.49.82.68&lt;/P&gt;&lt;P&gt; network-object host 64.50.170.80&lt;/P&gt;&lt;P&gt; network-object host 65.217.159.98&lt;/P&gt;&lt;P&gt; network-object host 68.200.154.75&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.195&lt;/P&gt;&lt;P&gt; network-object host 75.146.94.187&lt;/P&gt;&lt;P&gt; network-object host 80.14.122.109&lt;/P&gt;&lt;P&gt; network-object host 92.84.207.252&lt;/P&gt;&lt;P&gt; network-object host 93.153.0.155&lt;/P&gt;&lt;P&gt; network-object host 93.73.179.61&lt;/P&gt;&lt;P&gt; network-object host 96.252.6.79&lt;/P&gt;&lt;P&gt; network-object host 99.174.113.44&lt;/P&gt;&lt;P&gt; network-object host 117.6.64.137&lt;/P&gt;&lt;P&gt; network-object host 178.93.144.158&lt;/P&gt;&lt;P&gt; network-object host 190.245.171.12&lt;/P&gt;&lt;P&gt; network-object host 195.174.128.15&lt;/P&gt;&lt;P&gt; network-object host 199.238.178.138&lt;/P&gt;&lt;P&gt; network-object host 208.75.123.228&lt;/P&gt;&lt;P&gt; network-object host 209.85.217.193&lt;/P&gt;&lt;P&gt; network-object host 24.103.215.120&lt;/P&gt;&lt;P&gt; network-object host 74.208.4.194&lt;/P&gt;&lt;P&gt; network-object host 84.24.253.217&lt;/P&gt;&lt;P&gt; network-object host 98.117.251.114&lt;/P&gt;&lt;P&gt; network-object host 12.164.54.36&lt;/P&gt;&lt;P&gt; network-object host 160.75.192.3&lt;/P&gt;&lt;P&gt; network-object host 186.87.3.225&lt;/P&gt;&lt;P&gt; network-object host 190.174.208.57&lt;/P&gt;&lt;P&gt; network-object host 190.59.189.71&lt;/P&gt;&lt;P&gt; network-object host 201.4.160.18&lt;/P&gt;&lt;P&gt; network-object host 207.155.248.47&lt;/P&gt;&lt;P&gt; network-object host 208.111.169.150&lt;/P&gt;&lt;P&gt; network-object host 208.89.132.145&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.46&lt;/P&gt;&lt;P&gt; network-object host 209.85.210.163&lt;/P&gt;&lt;P&gt; network-object host 62.248.88.175&lt;/P&gt;&lt;P&gt; network-object host 64.202.189.25&lt;/P&gt;&lt;P&gt; network-object host 66.165.70.198&lt;/P&gt;&lt;P&gt; network-object host 67.132.93.114&lt;/P&gt;&lt;P&gt; network-object host 69.174.244.158&lt;/P&gt;&lt;P&gt; network-object host 69.67.52.156&lt;/P&gt;&lt;P&gt; network-object host 69.74.142.209&lt;/P&gt;&lt;P&gt; network-object host 74.125.92.25&lt;/P&gt;&lt;P&gt; network-object host 74.203.196.51&lt;/P&gt;&lt;P&gt; network-object host 79.110.128.212&lt;/P&gt;&lt;P&gt; network-object host 87.70.217.30&lt;/P&gt;&lt;P&gt; network-object host 88.146.41.234&lt;/P&gt;&lt;P&gt; network-object host 88.76.127.77&lt;/P&gt;&lt;P&gt; network-object host 93.86.37.241&lt;/P&gt;&lt;P&gt; network-object host 94.70.115.94&lt;/P&gt;&lt;P&gt; network-object host 95.168.100.87&lt;/P&gt;&lt;P&gt; network-object host 123.201.69.230&lt;/P&gt;&lt;P&gt; network-object host 186.9.50.90&lt;/P&gt;&lt;P&gt; network-object host 189.73.235.78&lt;/P&gt;&lt;P&gt; network-object host 195.2.236.11&lt;/P&gt;&lt;P&gt; network-object host 202.63.105.220&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.55&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.57&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.58&lt;/P&gt;&lt;P&gt; network-object host 205.178.146.61&lt;/P&gt;&lt;P&gt; network-object host 209.85.160.184&lt;/P&gt;&lt;P&gt; network-object host 209.85.221.171&lt;/P&gt;&lt;P&gt; network-object host 218.147.37.219&lt;/P&gt;&lt;P&gt; network-object host 64.120.250.82&lt;/P&gt;&lt;P&gt; network-object host 66.227.62.183&lt;/P&gt;&lt;P&gt; network-object host 67.228.227.25&lt;/P&gt;&lt;P&gt; network-object host 87.109.179.247&lt;/P&gt;&lt;P&gt; network-object host 87.163.5.34&lt;/P&gt;&lt;P&gt; network-object host 89.78.170.200&lt;/P&gt;&lt;P&gt; network-object host 89.78.3.139&lt;/P&gt;&lt;P&gt; network-object host 92.29.204.146&lt;/P&gt;&lt;P&gt; network-object host 94.189.180.81&lt;/P&gt;&lt;P&gt; network-object host 95.180.64.244&lt;/P&gt;&lt;P&gt; network-object host 122.169.182.129&lt;/P&gt;&lt;P&gt; network-object host 122.169.182.213&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.131&lt;/P&gt;&lt;P&gt; network-object host 115.184.136.110&lt;/P&gt;&lt;P&gt; network-object host 123.176.39.134&lt;/P&gt;&lt;P&gt; network-object host 123.237.6.173&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.135&lt;/P&gt;&lt;P&gt; network-object host 216.87.164.19&lt;/P&gt;&lt;P&gt; network-object host 217.23.15.143&lt;/P&gt;&lt;P&gt; network-object host 61.49.36.166&lt;/P&gt;&lt;P&gt; network-object host 67.138.108.151&lt;/P&gt;&lt;P&gt; network-object host 67.138.109.158&lt;/P&gt;&lt;P&gt; network-object host 111.118.156.170&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.132&lt;/P&gt;&lt;P&gt; network-object host 111.224.250.133&lt;/P&gt;&lt;P&gt; network-object host 117.96.18.118&lt;/P&gt;&lt;P&gt; network-object host 121.151.149.220&lt;/P&gt;&lt;P&gt; network-object host 121.183.243.205&lt;/P&gt;&lt;P&gt; network-object host 123.19.170.237&lt;/P&gt;&lt;P&gt; network-object host 125.176.14.67&lt;/P&gt;&lt;P&gt; network-object host 183.107.94.151&lt;/P&gt;&lt;P&gt; network-object host 183.97.35.5&lt;/P&gt;&lt;P&gt; network-object host 186.104.230.5&lt;/P&gt;&lt;P&gt; network-object host 187.52.232.152&lt;/P&gt;&lt;P&gt; network-object host 189.211.159.220&lt;/P&gt;&lt;P&gt; network-object host 190.102.239.219&lt;/P&gt;&lt;P&gt; network-object host 190.235.13.233&lt;/P&gt;&lt;P&gt; network-object host 190.35.206.68&lt;/P&gt;&lt;P&gt; network-object host 190.7.109.65&lt;/P&gt;&lt;P&gt; network-object host 200.87.116.58&lt;/P&gt;&lt;P&gt; network-object host 204.188.223.222&lt;/P&gt;&lt;P&gt; network-object host 204.45.2.197&lt;/P&gt;&lt;P&gt; network-object host 208.83.232.3&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.107&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.15&lt;/P&gt;&lt;P&gt; network-object host 209.250.243.83&lt;/P&gt;&lt;P&gt; network-object host 212.200.197.62&lt;/P&gt;&lt;P&gt; network-object host 216.1.203.94&lt;/P&gt;&lt;P&gt; network-object host 220.227.80.226&lt;/P&gt;&lt;P&gt; network-object host 41.186.0.212&lt;/P&gt;&lt;P&gt; network-object host 41.249.114.143&lt;/P&gt;&lt;P&gt; network-object host 58.26.151.196&lt;/P&gt;&lt;P&gt; network-object host 62.19.51.5&lt;/P&gt;&lt;P&gt; network-object host 64.212.196.228&lt;/P&gt;&lt;P&gt; network-object host 67.138.109.68&lt;/P&gt;&lt;P&gt; network-object host 67.138.110.68&lt;/P&gt;&lt;P&gt; network-object host 68.142.134.126&lt;/P&gt;&lt;P&gt; network-object host 70.98.204.112&lt;/P&gt;&lt;P&gt; network-object host 70.98.205.140&lt;/P&gt;&lt;P&gt; network-object host 70.98.205.165&lt;/P&gt;&lt;P&gt; network-object host 74.63.107.46&lt;/P&gt;&lt;P&gt; network-object host 78.97.189.115&lt;/P&gt;&lt;P&gt; network-object host 79.106.2.46&lt;/P&gt;&lt;P&gt; network-object host 84.22.56.50&lt;/P&gt;&lt;P&gt; network-object host 89.123.211.42&lt;/P&gt;&lt;P&gt; network-object host 89.46.84.214&lt;/P&gt;&lt;P&gt; network-object host 90.169.74.53&lt;/P&gt;&lt;P&gt; network-object host 90.185.163.176&lt;/P&gt;&lt;P&gt; network-object host 95.35.16.79&lt;/P&gt;&lt;P&gt; network-object host 95.65.253.179&lt;/P&gt;&lt;P&gt;object-group service SMTP-587 tcp&lt;/P&gt;&lt;P&gt; description SMTP 587&lt;/P&gt;&lt;P&gt; port-object eq 587&lt;/P&gt;&lt;P&gt;object-group service smtp-587 tcp&lt;/P&gt;&lt;P&gt; description smtp 587&lt;/P&gt;&lt;P&gt; port-object eq 587&lt;/P&gt;&lt;P&gt;object-group protocol TCPUDP&lt;/P&gt;&lt;P&gt; protocol-object udp&lt;/P&gt;&lt;P&gt; protocol-object tcp&lt;/P&gt;&lt;P&gt;object-group service SMTP-465 tcp&lt;/P&gt;&lt;P&gt; port-object eq 465&lt;/P&gt;&lt;P&gt;object-group service TCP-993 tcp&lt;/P&gt;&lt;P&gt; port-object eq 993&lt;/P&gt;&lt;P&gt;object-group service TCP-995 tcp&lt;/P&gt;&lt;P&gt; port-object eq 995&lt;/P&gt;&lt;P&gt;object-group service TCP-7071 tcp&lt;/P&gt;&lt;P&gt; port-object eq 7071&lt;/P&gt;&lt;P&gt;object-group service TCP-10000 tcp&lt;/P&gt;&lt;P&gt; port-object eq 10000&lt;/P&gt;&lt;P&gt;object-group service TCP-8080 tcp&lt;/P&gt;&lt;P&gt; port-object eq 8080&lt;/P&gt;&lt;P&gt;object-group service TCP-8443 tcp&lt;/P&gt;&lt;P&gt; port-object eq 8443&lt;/P&gt;&lt;P&gt;object-group service TCP-23781 tcp&lt;/P&gt;&lt;P&gt; port-object eq 23781&lt;/P&gt;&lt;P&gt;object-group protocol DM_INLINE_PROTOCOL_1&lt;/P&gt;&lt;P&gt; protocol-object udp&lt;/P&gt;&lt;P&gt; protocol-object tcp&lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host FacileHR-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp object-group BLACKLIST any eq smtp inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCSUN-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host ACCSUN-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host FacileHR-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCSUN-INT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host FacileHR-INT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host ACCSUN-INT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq www host FacileHR-INT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ACCSUN-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq ssh host FacileHR-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCMX-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit object-group TCPUDP any host ADDON-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ADDON-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host ACCIRON-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit ip any host NRIYP-EXT &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host NRIYP-EXT eq www &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit udp any any object-group aptela &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit udp any host 64.50.254.253 inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny ip host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny udp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any any eq 15250 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq 3389 any eq 3389 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq 23781 host 192.168.1.121 eq 23781 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any eq smtp any eq smtp inactive &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny ip any host 192.168.1.188 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended deny tcp any host 192.168.1.188 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq smtp &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit object-group TCPUDP any host ADDON-EXT eq domain &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq ssh &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq https &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group SMTP-587 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group SMTP-465 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-993 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-995 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq imap4 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT eq pop3 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-8080 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-10000 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any host ADDON-EXT object-group TCP-8443 &lt;/P&gt;&lt;P&gt;access-list outside_in_inside extended permit tcp any any eq pptp &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit udp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny ip host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny tcp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended deny udp host 216.101.194.154 any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-7071 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-10000 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host ADDON-EXT object-group TCP-8080 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any host Kyle object-group TCP-23781 &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit tcp any any eq pptp &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group TCPUDP host FacileHR-INT any &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit ip any host FacileHR-INT &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group DM_INLINE_PROTOCOL_1 any host FacileHR-INT eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_in extended permit object-group DM_INLINE_PROTOCOL_1 192.168.1.0 255.255.255.0 host FacileHR-EXT eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit ip any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any any &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq 3389 any eq 3389 &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq domain any eq domain &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq domain any eq domain &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq www any eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq www any eq www &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq https any eq https &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit udp any eq 443 any eq 443 &lt;/P&gt;&lt;P&gt;access-list inside_access_out extended permit tcp any eq smtp any eq smtp &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging asdm informational&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;ip local pool new 192.168.1.45-192.168.1.50 mask 255.255.255.255&lt;/P&gt;&lt;P&gt;icmp unreachable rate-limit 1 burst-size 1&lt;/P&gt;&lt;P&gt;icmp permit any inside&lt;/P&gt;&lt;P&gt;icmp permit any outside&lt;/P&gt;&lt;P&gt;asdm image disk0:/asdm-625.bin&lt;/P&gt;&lt;P&gt;no asdm history enable&lt;/P&gt;&lt;P&gt;arp inside 192.168.1.43 0019.d137.8533 &lt;/P&gt;&lt;P&gt;arp outside 192.168.1.43 0019.d137.8533 &lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;global (inside) 1 interface&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0&lt;/P&gt;&lt;P&gt;static (outside,inside) tcp FacileHR-INT 81 FacileHR-EXT www netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) tcp FacileHR-INT 81 FacileHR-EXT www netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (outside,inside) ACCSUN-INT ACCSUN-EXT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (outside,inside) ACCIRON-INT ACCIRON-EXT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCMX-EXT ACCMX-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCSUN-EXT ACCSUN-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ACCIRON-EXT ACCIRON-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) NRIYP-EXT NRIYP-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) ADDON-EXT ADDON-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,outside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 &lt;/P&gt;&lt;P&gt;static (inside,inside) FacileHR-EXT FacileHR-INT netmask 255.255.255.255 norandomseq nailed &lt;/P&gt;&lt;P&gt;access-group inside_access_in in interface inside&lt;/P&gt;&lt;P&gt;access-group inside_access_out out interface inside&lt;/P&gt;&lt;P&gt;access-group outside_in_inside in interface outside&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 69.130.7.113 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;/P&gt;&lt;P&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;/P&gt;&lt;P&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;timeout tcp-proxy-reassembly 0:01:00&lt;/P&gt;&lt;P&gt;dynamic-access-policy-record DfltAccessPolicy&lt;/P&gt;&lt;P&gt;aaa authentication ssh console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL &lt;/P&gt;&lt;P&gt;aaa authentication telnet console LOCAL &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.1.0 255.255.255.0 inside&lt;/P&gt;&lt;P&gt;snmp-server location AIM Computer Consulting - Closet&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;snmp-server contact Red Level Networks - &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:support@redlevelnetworks.com"&gt;support@redlevelnetworks.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set TRANS_ESP_3DES_SHA esp-3des esp-sha-hmac &lt;/P&gt;&lt;P&gt;crypto ipsec transform-set TRANS_ESP_3DES_SHA mode transport&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime seconds 28800&lt;/P&gt;&lt;P&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1&lt;/P&gt;&lt;P&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;/P&gt;&lt;P&gt;crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;/P&gt;&lt;P&gt;crypto map outside_map interface outside&lt;/P&gt;&lt;P&gt;crypto isakmp policy 10&lt;/P&gt;&lt;P&gt; authentication crack&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 30&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash sha&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;crypto isakmp policy 50&lt;/P&gt;&lt;P&gt; authentication pre-share&lt;/P&gt;&lt;P&gt; encryption 3des&lt;/P&gt;&lt;P&gt; hash md5&lt;/P&gt;&lt;P&gt; group 2&lt;/P&gt;&lt;P&gt; lifetime 86400&lt;/P&gt;&lt;P&gt;telnet 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;telnet timeout 30&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 inside&lt;/P&gt;&lt;P&gt;ssh 0.0.0.0 0.0.0.0 outside&lt;/P&gt;&lt;P&gt;ssh timeout 15&lt;/P&gt;&lt;P&gt;console timeout 0&lt;/P&gt;&lt;P&gt;dhcpd dns ADDON-INT&lt;/P&gt;&lt;P&gt;dhcpd domain aim-cc.com&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dhcpd address 192.168.1.150-192.168.1.250 inside&lt;/P&gt;&lt;P&gt;dhcpd enable inside&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;threat-detection basic-threat&lt;/P&gt;&lt;P&gt;threat-detection statistics&lt;/P&gt;&lt;P&gt;threat-detection statistics tcp-intercept rate-interval 30 burst-rate 400 average-rate 200&lt;/P&gt;&lt;P&gt;ssl encryption aes256-sha1 aes128-sha1 3des-sha1 des-sha1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "access-list inside_test permit icmp any host 192.168.1.186"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The command has been sent to the device&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "capture inside_interface access-list inside_test interface inside"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The command has been sent to the device&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "show capture inside_interface"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;4 packets captured&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 1: 12:15:16.728981 802.1Q vlan#1 P0 192.168.1.21 &amp;gt; 192.168.1.186: icmp: echo request &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 2: 12:15:21.260331 802.1Q vlan#1 P0 192.168.1.21 &amp;gt; 192.168.1.186: icmp: echo request &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 3: 12:15:26.259858 802.1Q vlan#1 P0 192.168.1.21 &amp;gt; 192.168.1.186: icmp: echo request &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 4: 12:15:31.258592 802.1Q vlan#1 P0 192.168.1.21 &amp;gt; 192.168.1.186: icmp: echo request &lt;/P&gt;&lt;P&gt;4 packets shown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result of the command: "show logging"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Syslog logging: enabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Facility: 20&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Timestamp logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Standby logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Debug-trace logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Console logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Monitor logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Buffer logging: level debugging, 8205 messages logged&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Trap logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; History logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Device ID: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Mail logging: disabled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ASDM logging: level informational, 21494596 messages logged&lt;/P&gt;&lt;P&gt;tes 6464 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-106015: Deny TCP (no connection) from 207.155.253.212/25 to ADDON-EXT/53777 flags FIN PSH ACK&amp;nbsp; on interface outside&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10506718 for outside:209.85.218.56/50127 to inside:ACCIRON-INT/25 duration 0:00:30 bytes 13186 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-305012: Teardown dynamic TCP translation from inside:192.168.1.188/37212 to outside:69.130.7.114/25820 duration 0:01:00&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507509 for outside:209.85.225.14/25 (209.85.225.14/25) to inside:ACCIRON-INT/43560 (ACCIRON-EXT/43560)&lt;/P&gt;&lt;P&gt;%ASA-6-302016: Teardown UDP connection 10505434 for outside:192.228.79.201/53 to inside:ACCMX-INT/32768 duration 0:03:09 bytes 667&lt;/P&gt;&lt;P&gt;%ASA-7-609002: Teardown local-host outside:192.26.92.30 duration 0:12:36&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10503790 for outside:64.50.243.27/80 to inside:192.168.1.202/4600 duration 0:05:06 bytes 1800 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10503786 for outside:64.50.243.27/80 to inside:192.168.1.202/4597 duration 0:05:06 bytes 2585 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10503788 for outside:64.50.243.27/80 to inside:192.168.1.202/4598 duration 0:05:06 bytes 7068 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10489607 for outside:74.125.225.93/443 to inside:192.168.1.173/49659 duration 0:26:10 bytes 36449 TCP Reset-I&lt;/P&gt;&lt;P&gt;%ASA-6-305012: Teardown dynamic TCP translation from inside:192.168.1.181/59641 to outside:69.130.7.114/33656 duration 0:00:30&lt;/P&gt;&lt;P&gt;%ASA-6-302015: Built outbound UDP connection 10507510 for outside:216.165.129.157/53 (216.165.129.157/53) to inside:ADDON-INT/19434 (ADDON-EXT/19434)&lt;/P&gt;&lt;P&gt;%ASA-6-302016: Teardown UDP connection 10507510 for outside:216.165.129.157/53 to inside:ADDON-INT/19434 duration 0:00:00 bytes 354&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10507487 for outside:122.169.129.112/4999 to inside:ADDON-INT/995 duration 0:00:03 bytes 6472 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-305011: Built dynamic TCP translation from inside:192.168.1.170/50538 to outside:69.130.7.114/1602&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507511 for outside:67.195.186.236/80 (67.195.186.236/80) to inside:192.168.1.170/50538 (69.130.7.114/1602)&lt;/P&gt;&lt;P&gt;%ASA-6-305011: Built dynamic TCP translation from inside:192.168.1.173/49760 to outside:69.130.7.114/57521&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507512 for outside:74.125.225.84/80 (74.125.225.84/80) to inside:192.168.1.173/49760 (69.130.7.114/57521)&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built inbound TCP connection 10507513 for outside:209.85.213.184/46523 (209.85.213.184/46523) to inside:ACCIRON-INT/25 (ACCIRON-EXT/25)&lt;/P&gt;&lt;P&gt;%ASA-6-305011: Built dynamic TCP translation from inside:192.168.1.170/50539 to outside:69.130.7.114/31933&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507514 for outside:98.139.240.23/80 (98.139.240.23/80) to inside:192.168.1.170/50539 (69.130.7.114/31933)&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10507511 for outside:67.195.186.236/80 to inside:192.168.1.170/50538 duration 0:00:00 bytes 1893 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302015: Built outbound UDP connection 10507515 for outside:216.165.129.157/53 (216.165.129.157/53) to inside:ADDON-INT/34614 (ADDON-EXT/34614)&lt;/P&gt;&lt;P&gt;%ASA-6-302016: Teardown UDP connection 10507515 for outside:216.165.129.157/53 to inside:ADDON-INT/34614 duration 0:00:00 bytes 473&lt;/P&gt;&lt;P&gt;%ASA-6-305011: Built dynamic TCP translation from inside:192.168.1.173/49761 to outside:69.130.7.114/2730&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built outbound TCP connection 10507516 for outside:74.125.225.78/443 (74.125.225.78/443) to inside:192.168.1.173/49761 (69.130.7.114/2730)&lt;/P&gt;&lt;P&gt;%ASA-6-302014: Teardown TCP connection 10507514 for outside:98.139.240.23/80 to inside:192.168.1.170/50539 duration 0:00:00 bytes 1422 TCP FINs&lt;/P&gt;&lt;P&gt;%ASA-6-302013: Built inbound TCP connection 10507517 for inside:Kyle/52576 (Kyle/52576) to identity:192.168.1.1/443 (192.168.1.1/443)&lt;/P&gt;&lt;P&gt;%ASA-6-725001: Starting SSL handshake with client inside:Kyle/52576 for TLSv1 session.&lt;/P&gt;&lt;P&gt;%ASA-6-725003: SSL client inside:Kyle/52576 request to resume previous session.&lt;/P&gt;&lt;P&gt;%ASA-6-725002: Device completed SSL handshake with client inside:Kyle/52576&lt;/P&gt;&lt;P&gt;%ASA-5-111007: Begin configuration: Kyle reading from http [POST]&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2011 17:32:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710041#M535581</guid>
      <dc:creator>bluemookie</dc:creator>
      <dc:date>2011-07-19T17:32:04Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710042#M535582</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Kyle,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Make sure you ping the public ip of your server, you would not be able to ping the real ip, you should try:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ping 69.130.7.118&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;otherwise it wont work, the static has been put in place so that internal users can access serevr only on public ip.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Before trying again, do " clear logging buffer"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and then try and ping and collect the captures and logs again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2011 17:41:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710042#M535582</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-19T17:41:02Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710043#M535583</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I just want to say....... "YOU ROCK MAH SOCKS!"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyhow, you have helped me resolve my issue, I am always cheerful to see knowledgeable professionals that are willing to help the young runts in the business, I tip my hat to you sir, and a bid you a great day.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers~!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Status: "&lt;STRONG&gt;Resolved&lt;/STRONG&gt;"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2011 18:03:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710043#M535583</guid>
      <dc:creator>bluemookie</dc:creator>
      <dc:date>2011-07-19T18:03:01Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710044#M535584</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Wow......thats great Kyle, really happy to help you out.... &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt; would be always be there for your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can mark this thread as anwered.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2011 18:05:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710044#M535584</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-19T18:05:00Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5500 routing issue</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710045#M535585</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Will do~&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2011 18:12:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5500-routing-issue/m-p/1710045#M535585</guid>
      <dc:creator>bluemookie</dc:creator>
      <dc:date>2011-07-19T18:12:41Z</dc:date>
    </item>
  </channel>
</rss>

