: ASA Version 7.0(7) ! hostname asa5510 domain-name default.domain.invalid enable password xxxxxxxxxxxxxxx encrypted names dns-guard ! interface Ethernet0/0 nameif inside security-level 100 ip address 192.168.1.100 255.255.255.0 ! interface Ethernet0/1 nameif outside security-level 0 ip address 216.xxx.xxx.xxx 255.255.255.240 ! interface Ethernet0/2 shutdown no nameif no security-level no ip address ! interface Ethernet0/3 shutdown no nameif no security-level no ip address ! interface Management0/0 nameif management security-level 100 ip address 192.168.0.1 255.255.255.0 management-only ! passwd xxxxxxxxxxxxx encrypted ftp mode passive access-list nonat extended permit ip any 10.0.0.0 255.255.255.0 access-list mobile_splitTunnelAcl standard permit 192.168.1.0 255.255.255.0 pager lines 24 logging asdm informational mtu inside 1500 mtu outside 1500 mtu management 1500 ip local pool mobile-pool 10.0.0.1-10.0.0.254 no failover asdm image disk0:/asdm-507.bin no asdm history enable arp timeout 14400 nat-control global (outside) 1 216.xxx.xxx.xxx nat (inside) 0 access-list nonat nat (inside) 1 192.168.0.0 255.255.0.0 route outside 0.0.0.0 0.0.0.0 216.xxx.xxx.xxx 1 timeout xlate 3:00:00 timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02 timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 timeout mgcp-pat 0:05:00 sip 0:30:00 sip_media 0:02:00 timeout uauth 0:05:00 absolute group-policy mobile internal group-policy mobile attributes split-tunnel-policy tunnelspecified split-tunnel-network-list value mobile_splitTunnelAcl webvpn username xxxxxxxxxxxxxx password xxxxxxxxxxxxxxxxx encrypted privilege 0 username xxxxxxxxxxxxxx attributes vpn-group-policy mobile webvpn http server enable http 0.0.0.0 0.0.0.0 inside no snmp-server location no snmp-server contact snmp-server enable traps snmp authentication linkup linkdown coldstart crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac crypto dynamic-map outside_dyn_map 20 set transform-set ESP-3DES-SHA crypto map outside_map 65535 ipsec-isakmp dynamic outside_dyn_map crypto map outside_map interface outside isakmp enable outside isakmp policy 10 authentication pre-share isakmp policy 10 encryption 3des isakmp policy 10 hash sha isakmp policy 10 group 2 isakmp policy 10 lifetime 86400 isakmp nat-traversal 20 tunnel-group ddddd type ipsec-ra tunnel-group ddddd general-attributes address-pool ddddd-pool default-group-policy ddddd tunnel-group ddddd ipsec-attributes pre-shared-key xxxxxxxxxxx telnet timeout 5 ssh timeout 5 console timeout 0 dhcpd address 192.168.0.2-192.168.0.254 management dhcpd lease 3600 dhcpd ping_timeout 50 dhcpd enable management ! class-map inspection_default match default-inspection-traffic ! ! policy-map global_policy class inspection_default inspect dns maximum-length 512 inspect ftp inspect h323 h225 inspect h323 ras inspect rsh inspect rtsp inspect esmtp inspect sqlnet inspect skinny inspect sunrpc inspect xdmcp inspect sip inspect netbios inspect tftp inspect icmp ! service-policy global_policy global