Config
Config
: Saved
:
ASA Version 9.6(1)
!
hostname ASA-5505
names
!
interface GigabitEthernet1/1
nameif outside
security-level 0
ip address 209.165.200.226 255.255.255.248
!
interface GigabitEthernet1/2
nameif inside
security-level 100
ip address 192.168.1.1 255.255.255.0
!
interface GigabitEthernet1/3
nameif dmz
security-level 50
ip address 192.168.2.1 255.255.255.0
!
interface GigabitEthernet1/4
no nameif
no security-level
no ip address
shutdown
!
interface GigabitEthernet1/5
no nameif
no security-level
no ip address
shutdown
!
interface GigabitEthernet1/6
no nameif
no security-level
no ip address
shutdown
!
interface GigabitEthernet1/7
no nameif
no security-level
no ip address
shutdown
!
interface GigabitEthernet1/8
no nameif
no security-level
no ip address
shutdown
!
interface Management1/1
management-only
no nameif
no security-level
no ip address
shutdown
!
object network obj-dmz
subnet 192.168.2.0 255.255.255.0
object network obj-inside
subnet 192.168.1.0 255.255.255.0
object network obj-local
subnet 192.168.1.0 255.255.255.0
object network obj-remote
subnet 172.16.3.0 255.255.255.0
!
route outside 172.16.3.0 255.255.255.0 209.165.200.225 1
!
access-list ICMP_ACL extended permit icmp any any
access-list outside_access_in extended permit udp any any eq isakmp
access-list outside_access_in extended permit udp any any eq non500-isakmp
access-list outside_access_in extended permit ip 192.168.2.0 255.255.255.0
172.16.3.0 255.255.255.0
access-list outside_access_in extended permit ip 172.16.3.0 255.255.255.0
192.168.2.0 255.255.255.0
!
!
access-group ICMP_ACL in interface inside
access-group ICMP_ACL in interface dmz
access-group outside_access_in in interface outside
!
!
class-map inspection_default
match default-inspection-traffic
!
policy-map type inspect dns preset_dns_map
parameters
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect tftp
!
service-policy global_policy global
!
telnet timeout 5
ssh timeout 5
!
!
!
R1>en
R1#
R1#show run
Building configuration...
R3#
R3#show run
Building configuration...
R2>
R2>en
R2#
R2#show run
Building configuration...
R2>
R2>en
R2#
R2#show run
Building configuration...
R2>
R2>en
R2#
R2#show run
Building configuration...
R2>
R2>en
R2#
R2#show run
Building configuration...
R2>
R2>en
R2#
R2#show run
Building configuration...
R2>
R2>en
R2#
R2#show run
Building configuration...