access-list allAddr extended permit ip any any crypto isakmp enable outside crypto isakmp policy 10 authentication pre-share encryption aes hash sha group 2 tunnel-group 192.168.1.197 type ipsec-l2l tunnel-group 192.168.1.197 ipsec-attributes pre-shared-key cisco crypto ipsec transform-set ts1 esp-aes esp-sha-hmac crypto map cm1 10 match address allAddr crypto map cm1 10 set peer 192.168.1.197 crypto map cm1 10 set transform-set ts1 crypto map cm1 interface outside