: Saved
:
ASA Version 9.8(4)
!
hostname BRANCH-FW-01
enable password cisco
!
interface GigabitEthernet0/0
 nameif outside
 security-level 0
 ip address 203.0.113.10 255.255.255.252
!
interface GigabitEthernet0/1
 nameif inside
 security-level 100
 ip address 10.10.10.1 255.255.255.0
!
interface Management0/0
 nameif management
 security-level 100
 ip address 10.99.0.50 255.255.255.0
!
ssh version 1
ssh 0.0.0.0 0.0.0.0 outside
ssh 0.0.0.0 0.0.0.0 inside
telnet 0.0.0.0 0.0.0.0 inside
http server enable
http 0.0.0.0 0.0.0.0 management
!
snmp-server community public
snmp-server host management 10.99.0.20 community public
!
access-list outside-in extended permit ip any any
access-group outside-in in interface outside
!
crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
crypto map OUTSIDE-MAP 10 set transform-set ESP-3DES-MD5
!
class-map inspection_default
 match default-inspection-traffic
policy-map global_policy
 class inspection_default
  inspect dns
  inspect ftp
  inspect http
service-policy global_policy global
!
end
