<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic thank you karsten :) in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-block-current-session/m-p/2800696#M174304</link>
    <description>&lt;P&gt;thank you karsten &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 04 Dec 2015 08:37:56 GMT</pubDate>
    <dc:creator>george.tsanava</dc:creator>
    <dc:date>2015-12-04T08:37:56Z</dc:date>
    <item>
      <title>ASA Block Current Session</title>
      <link>https://community.cisco.com/t5/network-security/asa-block-current-session/m-p/2800694#M174302</link>
      <description>&lt;P&gt;hello&lt;/P&gt;
&lt;P&gt;I have ASA 5525 and i create on it access rule to permit ping from 172.16.10.10 to 172.16.20.10&lt;/P&gt;
&lt;P&gt;im pinging 172.16.20.10 from 172.16.10.10 with -t&amp;nbsp;&lt;/P&gt;
&lt;P&gt;now i want to deny ping. i modified this access rule to deny ping.&lt;/P&gt;
&lt;P&gt;but ping wasnot interrupted automatically.&lt;/P&gt;
&lt;P&gt;i stopped it manually on 172.16.10.10 and when i tryed to ping 172.16.20.10 again then it was denyed.&lt;/P&gt;
&lt;P&gt;question is how to block current session on asa to deny all unwanted traffic immediately, and no to stop it manually or without shutting down interfaces?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;sorry for my english &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; i am new to asa.&lt;/P&gt;
&lt;P&gt;thank you in advance.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:59:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-block-current-session/m-p/2800694#M174302</guid>
      <dc:creator>george.tsanava</dc:creator>
      <dc:date>2019-03-12T06:59:28Z</dc:date>
    </item>
    <item>
      <title>Changing the access-list</title>
      <link>https://community.cisco.com/t5/network-security/asa-block-current-session/m-p/2800695#M174303</link>
      <description>&lt;P&gt;Changing the access-list doesn't delete active sessions on the ASA. You can make it work in two different ways:&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;Do a "clear conn ..." to delete the actual session. The command takes various parameters that you can see with "clear conn ?".&lt;/LI&gt;
&lt;LI&gt;Do a "shun IP-ADDRESS". This command will block all connections from this IP until you manually remove the shun.&lt;/LI&gt;
&lt;/OL&gt;</description>
      <pubDate>Thu, 03 Dec 2015 21:29:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-block-current-session/m-p/2800695#M174303</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2015-12-03T21:29:10Z</dc:date>
    </item>
    <item>
      <title>thank you karsten :)</title>
      <link>https://community.cisco.com/t5/network-security/asa-block-current-session/m-p/2800696#M174304</link>
      <description>&lt;P&gt;thank you karsten &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 04 Dec 2015 08:37:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-block-current-session/m-p/2800696#M174304</guid>
      <dc:creator>george.tsanava</dc:creator>
      <dc:date>2015-12-04T08:37:56Z</dc:date>
    </item>
  </channel>
</rss>

