Template for remote-access (8.3 and later)
object network NETWORK_OBJ_192.168.10.0_24
subnet 192.168.10.0 255.255.254.0
object network NETWORK_OBJ_192.168.200.128_26
subnet 192.168.200.128 255.255.255.192
access-list remote-access_splitTunnelAcl standard permit 192.168.10.0 255.255.254.0
nat (inside,outside) source static NETWORK_OBJ_192.168.10.0_24 NETWORK_OBJ_192.168.10.0_24 destination static NETWORK_OBJ_192.168.200.128_26 NETWORK_OBJ_192.168.200.128_26
ip local pool outside_mappool 192.168.200.150-192.168.200.190 mask 255.255.255.0
crypto ipsec ikev1 transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-DES-SHA esp-des esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-DES-MD5 esp-des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
crypto ipsec ikev1 transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
crypto dynamic-map dynmap 65535 set ikev1 transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
crypto map outside_map 65535 ipsec-isakmp dynamic dynmap
crypto map outside_map interface outside
crypto ikev1 enable outside
crypto ikev1 policy 10
authentication pre-share
encryption 3des
hash sha
group 2
lifetime 86400
group-policy remote-access internal
group-policy remote-access attributes
dns-server value 4.2.2.2
outside_map-tunnel-protocol ikev1
split-tunnel-policy tunnelspecified
split-tunnel-network-list value remote-access_splitTunnelAcl
default-domain value company.local
tunnel-group remote-access type remote-access
tunnel-group remote-access general-attributes
address-pool outside_mappool
default-group-policy remote-access
tunnel-group remote-access ipsec-attributes
ikev1 pre-shared-key whateveritis