<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Sanjay, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-firewall-connections-not-getting-timeout/m-p/2913930#M154419</link>
    <description>&lt;P&gt;Hi Sanjay,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The behaviour you are noticing does not look normal as the device is configured for specific timeouts.&lt;/P&gt;
&lt;P&gt;I would suggest you to check following defect which is reported for ASA.&lt;/P&gt;
&lt;P&gt;Here is a link for defect:&lt;/P&gt;
&lt;P&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCuh13899/?reffering_site=dumpcr&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Hope it helps...&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;RS&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 30 Apr 2016 18:37:42 GMT</pubDate>
    <dc:creator>Rishabh Seth</dc:creator>
    <dc:date>2016-04-30T18:37:42Z</dc:date>
    <item>
      <title>CISCO ASA firewall connections not getting timeout</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-firewall-connections-not-getting-timeout/m-p/2913929#M154418</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I'm seeing connections which are established through ASA are not getting cleared from connection table.&lt;/P&gt;
&lt;P&gt;I've defined the time out conn globally on the firewall, but not seeing that idle connections are not getting timeout &amp;amp; removed from the connection table.&lt;/P&gt;
&lt;P&gt;!&lt;/P&gt;
&lt;P&gt;timeout conn 1:10:00 half-closed 0:10:00 udp 0:01:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 1:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:00:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;timeout floating-conn 0:00:00&lt;/P&gt;
&lt;P&gt;!&lt;/P&gt;
&lt;P&gt;Below are some of the connection count which are observed to be more than configured timeline.&lt;/P&gt;
&lt;P&gt;UDP dmz1 &amp;nbsp;y.y.y.y:162 inside &amp;nbsp;x.x.x.x:162, idle 227:28:39, bytes 9946115, flags -&amp;nbsp;&lt;/P&gt;
&lt;P&gt;TCP dmz1 &amp;nbsp;z.z.z.z:22 inside &amp;nbsp;x.x.x.x:64880, idle 243:16:17, bytes 13755432, flags UI&lt;/P&gt;
&lt;P&gt;UDP dmz1 &amp;nbsp;y.y.y.y:162 inside &amp;nbsp;x.x.x.x:49962, idle 640:41:09, bytes 1599882, flags -&amp;nbsp;&lt;/P&gt;
&lt;P&gt;TCP dmz1 &amp;nbsp;a.a.a.a:22 inside &amp;nbsp;x.x.x.x:56750, idle 600:06:46, bytes 148361, flags UIO&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Some connections are having there flag set which says its up, but whereas many are not having any flags set(empty).&lt;/P&gt;
&lt;P&gt;I'm running with 9.1(2) code.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 07:40:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-firewall-connections-not-getting-timeout/m-p/2913929#M154418</guid>
      <dc:creator>Sanjay S N</dc:creator>
      <dc:date>2019-03-12T07:40:25Z</dc:date>
    </item>
    <item>
      <title>Hi Sanjay,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-firewall-connections-not-getting-timeout/m-p/2913930#M154419</link>
      <description>&lt;P&gt;Hi Sanjay,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The behaviour you are noticing does not look normal as the device is configured for specific timeouts.&lt;/P&gt;
&lt;P&gt;I would suggest you to check following defect which is reported for ASA.&lt;/P&gt;
&lt;P&gt;Here is a link for defect:&lt;/P&gt;
&lt;P&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCuh13899/?reffering_site=dumpcr&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Hope it helps...&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;RS&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 30 Apr 2016 18:37:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-firewall-connections-not-getting-timeout/m-p/2913930#M154419</guid>
      <dc:creator>Rishabh Seth</dc:creator>
      <dc:date>2016-04-30T18:37:42Z</dc:date>
    </item>
  </channel>
</rss>

