global (DMZ3_VPN) 1 interface nat (inside) 0 access-list no_nat access-list no_nat extended permit ip 192.168.15.0 255.255.255.0 any ip local pool vpn-pool1 192.168.15.100-192.168.15.254 mask 255.255.255.0 route outside 0.0.0.0 0.0.0.0 1.2.3.4 1 route DMZ3_VPN 0.0.0.0 0.0.0.0 5.6.7.8 tunneled route DMZ3_VPN A.A.A.A 255.255.255.255 5.6.7.8 1 group-policy TWvpn internal group-policy TWvpn attributes dns-server value 192.168.4.127 vpn-tunnel-protocol IPSec default-domain value crypto ipsec transform-set 3dessha esp-3des esp-sha-hmac crypto dynamic-map dynmap 10 set transform-set 3dessha crypto dynamic-map dynmap 10 set reverse-route crypto map 3DES 10 ipsec-isakmp dynamic dynmap crypto map 3DES interface DMZ3_VPN crypto isakmp identity address crypto isakmp enable DMZ3_VPN crypto isakmp policy 10 authentication pre-share encryption 3des hash sha group 2 lifetime 86400 tunnel-group TWvpn type ipsec-ra tunnel-group TWvpn general-attributes address-pool vpn-pool1 default-group-policy TWvpn tunnel-group TWvpn ipsec-attributes pre-shared-key *