I have pulled my ASA5505 out of my internal network, after hearing that ASA needs direct WAN ip access to have VPN running. (at least for novice/freshmen like new CCNAs like me).ASA5505 has direct WAN mapping now and has a non-private IP address.I'm ...