Current configuration : 4066 bytes ! version 12.4 no service pad service timestamps debug datetime msec service timestamps log datetime msec no service password-encryption ! hostname SR520 ! boot-start-marker boot-end-marker ! logging message-counter syslog enable secret 5 ! no aaa new-model clock timezone CST -6 ! crypto pki trustpoint TP-self-signed-1876325491 enrollment selfsigned subject-name cn=IOS-Self-Signed-Certificate-1876325491 revocation-check none rsakeypair TP-self-signed-1876325491 ! ! crypto pki certificate chain TP-self-signed-1876325491 certificate self-signed 01 3082023D 308201A6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030 31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274 69666963 6174652D 31383736 33323534 3931301E 170D3032 30333031 30303034 33345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649 4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 38373633 32353439 3130819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281 8100B400 1A392BE6 DE25EDC0 6608DC29 62B272C9 3C46A999 E7DF0EC9 08D9874E E7883EE4 34AD2020 4420302A 402DF0FE DBFD8DBB 8F8CE0DB 8B7F140B 3E8C151D 4719E7F6 C2F99598 ED71CE7E 909D7430 13D41514 C15AE689 984D3411 33216ED2 079D1889 BFE8C5B5 CD750B3A 25E3CB42 7391F8E1 1F219582 2C7E1FC1 20471247 99BD0203 010001A3 65306330 0F060355 1D130101 FF040530 030101FF 30100603 551D1104 09300782 05535235 3230301F 0603551D 23041830 16801499 0F248382 31CA5165 ED6EA4FD 77C0F474 54F1BE30 1D060355 1D0E0416 0414990F 24838231 CA5165ED 6EA4FD77 C0F47454 F1BE300D 06092A86 4886F70D 01010405 00038181 004E347B 0D8D017A 378BC051 86B6431E 3359CA18 417B9F44 BE1D3C36 5B73EFEA 89E911C0 74253B5C 6AF4FABE 8F248AF0 6B01DF41 7ABD624F 9B61A87B B3CE4669 3C813EBA F961A0B8 8F8F283C 98C688FA 5FD5FA2B 0F9DE376 5789882A 4AA67618 40BEB9EC F733FF57 77A733A0 102E8ADC 8382EF3C A5B8327C 4C39AB51 5405B8C1 60 quit dot11 syslog ip source-route ! ! ip dhcp excluded-address 192.168.75.1 192.168.75.10 ! ip dhcp pool inside network 192.168.75.0 255.255.255.0 default-router 192.168.75.1 dns-server 24.94.163.33 24.94.163.32 option 150 ip 10.1.1.1 lease 0 2 ! ! ip cef ip name-server 24.94.163.33 ip name-server 24.94.163.32 ip accounting-list 0.0.0.0 0.0.0.0 ! no ipv6 cef multilink bundle-name authenticated ! ! username munger privilege 15 secret 5 ! ! crypto isakmp policy 5 encr 3des authentication pre-share group 2 lifetime 28800 crypto isakmp key D6uKu4ap address 76.246.96.147 ! ! crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac mode transport ! crypto map CISCO 10 ipsec-isakmp set peer 76.246.96.147 set transform-set ESP-3DES-SHA set pfs group2 match address 105 ! archive log config hidekeys ! ! ! ! ! interface FastEthernet0 ! interface FastEthernet1 ! interface FastEthernet2 ! interface FastEthernet3 ! interface FastEthernet4 ip address 24.106.42.54 255.255.255.252 ip nat inside ip virtual-reassembly duplex auto speed auto crypto map CISCO ! interface Vlan1 ip address 192.168.75.1 255.255.255.0 ip nat outside ip virtual-reassembly no ip route-cache cef no ip route-cache ip tcp adjust-mss 1452 ! no ip forward-protocol nd ip route 0.0.0.0 0.0.0.0 24.106.42.53 ! ip http server ip http authentication local ip http secure-server ip http timeout-policy idle 60 life 86400 requests 10000 ip nat inside source list 2 interface Vlan1 overload ! access-list 1 remark SDM_ACL Category=2 access-list 1 permit 192.168.75.0 0.0.0.255 access-list 1 permit 192.168.10.0 0.0.0.255 access-list 1 permit 10.1.1.0 0.0.0.255 access-list 2 remark SDM_ACL Category=2 access-list 2 permit 24.106.42.52 0.0.0.3 access-list 105 permit ip 192.168.75.0 0.0.0.255 192.168.100.0 0.0.0.255 access-list 105 permit ip 192.168.75.0 0.0.0.255 10.1.10.0 0.0.0.255 ! ! ! ! ! control-plane ! banner login ^CSR520 Base Config - MFG 1.0 ^C ! line con 0 login local no modem enable line aux 0 line vty 0 4 privilege level 15 login local transport input telnet ssh ! scheduler max-task-time 5000 end