<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Time based ACL issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288189#M342365</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No, im not inspecting any traffic. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if I use "show conn" command when the acl applied to the interface, it will show the icmp connection on the asa. if I use "clear conn all" command the ping will be droped and will not be able to start a new ping.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 01 Oct 2013 10:34:35 GMT</pubDate>
    <dc:creator>CSCO12059485</dc:creator>
    <dc:date>2013-10-01T10:34:35Z</dc:date>
    <item>
      <title>Time based ACL issue</title>
      <link>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288185#M342358</link>
      <description>&lt;P&gt;In my office network i have a cisco asa 5510. I configured a time based acl to drop all connections for specific time range. I realize that the acl will only block new connections, and it will continue the connections that are already exist. for example if I do a countinus ping to a pc, it will countinue the icmp traffic flow even after the ACL applied to the interface. I can use "clear conn all" command to drop all connections, but its not practical. please tell me how to drop connections or the interface to a specific time range.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 02:45:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288185#M342358</guid>
      <dc:creator>CSCO12059485</dc:creator>
      <dc:date>2019-03-12T02:45:02Z</dc:date>
    </item>
    <item>
      <title>Time based ACL issue</title>
      <link>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288186#M342360</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;from where are you doing this ping ? if it is from the ASA then the ACL will never get hit as ACLs are only for transit traffic on the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't forget to rate helpful posts.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Oct 2013 08:30:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288186#M342360</guid>
      <dc:creator>cadet alain</dc:creator>
      <dc:date>2013-10-01T08:30:03Z</dc:date>
    </item>
    <item>
      <title>Time based ACL issue</title>
      <link>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288187#M342361</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for your time Dear Alain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Im sending ping from a host that is in the INSIDE network to a pc in OUTSIDE. The Acl is applied to OUTSIDE interface in inbound direction.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Oct 2013 09:26:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288187#M342361</guid>
      <dc:creator>CSCO12059485</dc:creator>
      <dc:date>2013-10-01T09:26:40Z</dc:date>
    </item>
    <item>
      <title>Time based ACL issue</title>
      <link>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288188#M342362</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;are you inspecting ICMP ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't forget to rate helpful posts.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Oct 2013 09:43:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288188#M342362</guid>
      <dc:creator>cadet alain</dc:creator>
      <dc:date>2013-10-01T09:43:25Z</dc:date>
    </item>
    <item>
      <title>Time based ACL issue</title>
      <link>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288189#M342365</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No, im not inspecting any traffic. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if I use "show conn" command when the acl applied to the interface, it will show the icmp connection on the asa. if I use "clear conn all" command the ping will be droped and will not be able to start a new ping.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Oct 2013 10:34:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/time-based-acl-issue/m-p/2288189#M342365</guid>
      <dc:creator>CSCO12059485</dc:creator>
      <dc:date>2013-10-01T10:34:35Z</dc:date>
    </item>
  </channel>
</rss>

