<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic hi,it's not a limit to the in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/shun-limits/m-p/2525333#M237754</link>
    <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;it's not a limit to the ASA's interface per se. only a single shun entry can exist for any one source host at any time.&lt;/P&gt;&lt;P&gt;if you shun a single connection and the host launches an attack from a different source port, the shun would have no effect on that subsequent attack.&lt;/P&gt;&lt;P&gt;you cannot add multiple shun entries for the same host.&lt;/P&gt;</description>
    <pubDate>Sat, 07 Jun 2014 03:26:01 GMT</pubDate>
    <dc:creator>johnlloyd_13</dc:creator>
    <dc:date>2014-06-07T03:26:01Z</dc:date>
    <item>
      <title>Shun limits</title>
      <link>https://community.cisco.com/t5/network-security/shun-limits/m-p/2525331#M237752</link>
      <description>&lt;P&gt;Is there a limit to the number of shuns configured on an interface of a Cisco ASA 5550 with 8.4.3?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:18:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/shun-limits/m-p/2525331#M237752</guid>
      <dc:creator>enterprisesoc</dc:creator>
      <dc:date>2019-03-12T04:18:09Z</dc:date>
    </item>
    <item>
      <title>I don't believe there is a</title>
      <link>https://community.cisco.com/t5/network-security/shun-limits/m-p/2525332#M237753</link>
      <description>&lt;P&gt;I don't believe there is a limit as to how many shun entries you can configure, with the exception that you can only have a single shun entry for a given source address.&amp;nbsp; But you may be limited by the CPU performance of your ASA depending on how much traffic is being dropped.&amp;nbsp; So that being said I would try to keep the amount of shunned IPs to a minimum.&lt;/P&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;Please remember to select a correct answer and rate helpful posts&lt;/P&gt;</description>
      <pubDate>Fri, 06 Jun 2014 11:52:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/shun-limits/m-p/2525332#M237753</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2014-06-06T11:52:49Z</dc:date>
    </item>
    <item>
      <title>hi,it's not a limit to the</title>
      <link>https://community.cisco.com/t5/network-security/shun-limits/m-p/2525333#M237754</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;it's not a limit to the ASA's interface per se. only a single shun entry can exist for any one source host at any time.&lt;/P&gt;&lt;P&gt;if you shun a single connection and the host launches an attack from a different source port, the shun would have no effect on that subsequent attack.&lt;/P&gt;&lt;P&gt;you cannot add multiple shun entries for the same host.&lt;/P&gt;</description>
      <pubDate>Sat, 07 Jun 2014 03:26:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/shun-limits/m-p/2525333#M237754</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2014-06-07T03:26:01Z</dc:date>
    </item>
  </channel>
</rss>

