<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi VibhorThe FWSM in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746726#M192477</link>
    <description>&lt;P&gt;Hi Vibhor&lt;/P&gt;&lt;P&gt;The FWSM configuration is attached. &amp;nbsp;tcp-state-bypass is enabled for all IP traffic. &amp;nbsp;I did a test by exclude the traffic for a testing PC&amp;nbsp;(adding "deny" lines in the ACL). &amp;nbsp;But UDP traffics for the testing PC are still not cleared properly.&lt;/P&gt;&lt;P&gt;UDP outside 10.2.2.40:137 inside 10.224.16.232:137 idle 0:04:03 Bytes 68544 FLAGS - b&lt;BR /&gt;UDP outside 10.2.2.40:138 inside 10.224.16.53:138 idle 0:04:05 Bytes 26216 FLAGS - b&lt;BR /&gt;UDP outside 10.2.2.40:3229 inside 10.224.16.53:389 idle 0:28:12 Bytes 820 FLAGS - b&lt;BR /&gt;UDP outside 10.2.2.40:52113 inside 10.224.16.230:53 idle 0:06:11 Bytes 736 FLAGS - bD&lt;BR /&gt;UDP outside 10.2.2.40:59607 inside 10.224.16.230:53 idle 0:19:03 Bytes 620 FLAGS - bD&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any other thoughts?&lt;/P&gt;&lt;P&gt;Thanks again.&lt;/P&gt;&lt;P&gt;Joseph&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 31 Aug 2015 05:41:13 GMT</pubDate>
    <dc:creator>josephqiu</dc:creator>
    <dc:date>2015-08-31T05:41:13Z</dc:date>
    <item>
      <title>FWSM does not clear UDP connections properly</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746723#M192474</link>
      <description>&lt;P&gt;I'm having an issue with the FWSM that is not clearing the idle UDP connections properly. &amp;nbsp;The configuration has the UDP idle timeout set for 2 minutes. &amp;nbsp;But I'm seeing the UDP connections not cleared until 30 minutes.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;UDP outside 10.2.107.211:55004 inside 10.224.16.55:389 idle 0:26:51 Bytes 810 FLAGS - b&lt;BR /&gt;UDP outside 10.2.13.201:51782 inside 10.3.14.79:161 idle 0:22:30 Bytes 382 FLAGS - b&lt;BR /&gt;UDP outside 10.2.69.248:60113 inside 10.224.16.230:53 idle 0:13:29 Bytes 950 FLAGS - bD&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Compared with other FWSM's on other 6509's (same model, same OS, almost same configs), only this particular one has the issue. &amp;nbsp;I don't have a policy-map to set UDP timeout for any traffic, and I don't have "inspect dns" in the global policy-map as well.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Maybe I'm hitting a bug? &amp;nbsp;Any suggestion would be appreciated.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:28:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746723#M192474</guid>
      <dc:creator>josephqiu</dc:creator>
      <dc:date>2019-03-12T06:28:45Z</dc:date>
    </item>
    <item>
      <title>Hi,Can you post the FWSM</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746724#M192475</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Can you post the FWSM configuration ?&lt;/P&gt;&lt;P&gt;I am seeing the "b" flag which means that these have State Byapss configured.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Sun, 30 Aug 2015 15:34:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746724#M192475</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-08-30T15:34:40Z</dc:date>
    </item>
    <item>
      <title>Hi VibhorI think you have a</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746725#M192476</link>
      <description>&lt;P&gt;Hi Vibhor&lt;/P&gt;&lt;P&gt;I think you have a good point there. &amp;nbsp;I totally missed the "b" flag, and I&amp;nbsp;do believe we have a state bypass configured. &amp;nbsp;I will check the configuration and do some testing if possible. &amp;nbsp;Will update the post.&lt;/P&gt;&lt;P&gt;Appreciate your help!&lt;/P&gt;&lt;P&gt;Joseph&lt;/P&gt;</description>
      <pubDate>Sun, 30 Aug 2015 17:16:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746725#M192476</guid>
      <dc:creator>josephqiu</dc:creator>
      <dc:date>2015-08-30T17:16:40Z</dc:date>
    </item>
    <item>
      <title>Hi VibhorThe FWSM</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746726#M192477</link>
      <description>&lt;P&gt;Hi Vibhor&lt;/P&gt;&lt;P&gt;The FWSM configuration is attached. &amp;nbsp;tcp-state-bypass is enabled for all IP traffic. &amp;nbsp;I did a test by exclude the traffic for a testing PC&amp;nbsp;(adding "deny" lines in the ACL). &amp;nbsp;But UDP traffics for the testing PC are still not cleared properly.&lt;/P&gt;&lt;P&gt;UDP outside 10.2.2.40:137 inside 10.224.16.232:137 idle 0:04:03 Bytes 68544 FLAGS - b&lt;BR /&gt;UDP outside 10.2.2.40:138 inside 10.224.16.53:138 idle 0:04:05 Bytes 26216 FLAGS - b&lt;BR /&gt;UDP outside 10.2.2.40:3229 inside 10.224.16.53:389 idle 0:28:12 Bytes 820 FLAGS - b&lt;BR /&gt;UDP outside 10.2.2.40:52113 inside 10.224.16.230:53 idle 0:06:11 Bytes 736 FLAGS - bD&lt;BR /&gt;UDP outside 10.2.2.40:59607 inside 10.224.16.230:53 idle 0:19:03 Bytes 620 FLAGS - bD&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any other thoughts?&lt;/P&gt;&lt;P&gt;Thanks again.&lt;/P&gt;&lt;P&gt;Joseph&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 05:41:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746726#M192477</guid>
      <dc:creator>josephqiu</dc:creator>
      <dc:date>2015-08-31T05:41:13Z</dc:date>
    </item>
    <item>
      <title>Hi,From the connections</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746727#M192478</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;From the connections outputs , I still see them being classified by the TCP state Bypass policy.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;VIbhor Amrodia&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 18:39:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746727#M192478</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-08-31T18:39:21Z</dc:date>
    </item>
    <item>
      <title>Yes the "b" flag is still</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746728#M192479</link>
      <description>&lt;P&gt;Yes the "b" flag is still there. &amp;nbsp;But why the TCP state bypass is affecting UDP connections? &amp;nbsp;Also, I have added the deny lines to exclude the testing traffics. &amp;nbsp;Looks like the "deny" lines are just ignored.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 19:05:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746728#M192479</guid>
      <dc:creator>josephqiu</dc:creator>
      <dc:date>2015-08-31T19:05:11Z</dc:date>
    </item>
    <item>
      <title>Hi,Yes , it seems to be and</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746729#M192480</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Yes , it seems to be and also did you try to clear the connections after making the changes to the Byapss ACL ?&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 19:11:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746729#M192480</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-08-31T19:11:28Z</dc:date>
    </item>
    <item>
      <title>Yes, I did clear all</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746730#M192481</link>
      <description>&lt;P&gt;Yes, I did clear all connections for that testing PC.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 19:32:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-does-not-clear-udp-connections-properly/m-p/2746730#M192481</guid>
      <dc:creator>josephqiu</dc:creator>
      <dc:date>2015-08-31T19:32:16Z</dc:date>
    </item>
  </channel>
</rss>

