rule 5003 { description "ipsec proxy tunnel" destination { address 10.218.5.0/24 } log disable outbound-interface eth0 outside-address { address 10.212.5.2 } protocol all source { address 10.212.3.0/24 } type source }