: Saved : ASA Version 8.0(2) ! hostname asa0101 [...] names ! interface Ethernet0/0 nameif outside security-level 0 ip address dhcp ! interface Ethernet0/1 nameif dmz security-level 10 ip address 172.16.1.1 255.255.255.0 ! interface Ethernet0/2 shutdown no nameif no security-level no ip address ! interface Ethernet0/3 shutdown no nameif no security-level no ip address ! interface Management0/0 nameif management security-level 100 ip address 192.168.7.88 255.255.255.0 management-only ! passwd 2KFQnbNIdI.2KYOU encrypted ftp mode passive dns server-group DefaultDNS domain-name scala.eu object-group service ContentManager tcp port-object eq 8080 port-object eq ftp port-object eq www port-object eq https port-object eq smtp object-group icmp-type PING icmp-object echo icmp-object echo-reply object-group network Content_Manager network-object host 172.16.1.80 network-object host 172.16.1.81 object-group network ADSL network-object host aaa.bbb.50.144 object-group service HTTPTCPUDP tcp-udp port-object eq www object-group protocol TCPUDP protocol-object udp protocol-object tcp object-group service DM_INLINE_TCP_2 tcp group-object ContentManager group-object HTTPTCPUDP access-list dmz_access_in extended permit tcp any object-group Content_Manager object-group ContentManager log debugging access-list outside_access_in extended permit tcp any any object-group ContentManager log debugging pager lines 24 logging enable logging asdm debugging mtu outside 1500 mtu dmz 1500 mtu management 1500 icmp unreachable rate-limit 1 burst-size 1 asdm image disk0:/asdm-602.bin no asdm history enable arp timeout 14400 nat (management) 0 0.0.0.0 0.0.0.0 static (dmz,outside) aaa.bbb.50.144 172.16.1.80 netmask 255.255.255.255 access-group outside_access_in in interface outside access-group dmz_access_in in interface dmz route outside 0.0.0.0 0.0.0.0 aaa.bbb.50.144 1 timeout xlate 3:00:00 timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02 timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00 timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00 timeout uauth 0:05:00 absolute dynamic-access-policy-record DfltAccessPolicy http server enable http 192.168.7.0 255.255.255.0 management no snmp-server location no snmp-server contact snmp-server enable traps snmp authentication linkup linkdown coldstart no crypto isakmp nat-traversal telnet timeout 5 ssh timeout 5 console timeout 0 dhcpd address 192.168.7.89-192.168.7.254 management ! threat-detection basic-threat threat-detection statistics access-list ! class-map inspection_default match default-inspection-traffic ! ! policy-map type inspect dns preset_dns_map parameters message-length maximum 512 policy-map global_policy class inspection_default inspect dns preset_dns_map inspect ftp inspect h323 h225 inspect h323 ras inspect rsh inspect rtsp inspect esmtp inspect sqlnet inspect skinny inspect sunrpc inspect xdmcp inspect sip inspect netbios inspect tftp ! service-policy global_policy global prompt hostname context Cryptochecksum:23ba95d1304101568e9ee3ba1f3af794 : end asdm image disk0:/asdm-602.bin no asdm history enable