<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASDM may show no ACL hitcounts for active access-lists in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489272#M662003</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, deleteing and re-creating the rule causes the hit count to function properly.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 05 Jan 2011 22:26:35 GMT</pubDate>
    <dc:creator>russellmiles64</dc:creator>
    <dc:date>2011-01-05T22:26:35Z</dc:date>
    <item>
      <title>ASDM may show no ACL hitcounts for active access-lists</title>
      <link>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489266#M661949</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hoping someone may be able to help with a frustrating issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have a pair of ASA's with IPS modules &amp;amp; we are running ASA software 8.3.1 and ASDM 6.3.1.&amp;nbsp; The problem I am seeing is that ASDM is showing a zero hit count for active rules.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Using the log viewer there are hits that should be matching the rules and if I issue the show access-list command for the list the hit counts are incrementing correctly. Also if I disable the rules in the firewall config screen the traffic is then blocked so I know the rule's active but the hit count remains stubbornly '0'.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I try to view the rule from the syslog viewer line by right clicking and selecting 'Show Access Rule' I get an error message about not being able to find the rule 'The hash code that identifies the rule can not be found'.&amp;nbsp; If I right click the rule on the firewall config page and select 'show log'&amp;nbsp; the filter that's created uses a different hash code to that shown in the CLI for the access list entry.&amp;nbsp; If I search the CLI output for the hash code ASDM uses it doesn't exist.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I there anyway of refreshing the hash codes in ASDM?&amp;nbsp; I've tried clearing the cache and reload ASDM on my PC but to no avail.&amp;nbsp; There are several rules displaying this behaviour and means we have to trawl through hundreds of lines of 'show access-list' output to find any obsolete rules or troubleshoot as we can't rely on the ASDM hit count.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The only references to this I can find on the Cisco website are for CSCsl15055 which is a 'resolved caveat' and only applies to ASDM 6.0.2 which we don't have.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Zac&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:08:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489266#M661949</guid>
      <dc:creator>zac.quinn</dc:creator>
      <dc:date>2019-03-11T18:08:59Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM may show no ACL hitcounts for active access-lists</title>
      <link>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489267#M661954</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Zac,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You may be hitting bug ID CSCtg95077.&amp;nbsp; You can reference the details of this bug here:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://tools.cisco.com/Support/BugToolKit/action.do?hdnAction=searchBugs"&gt;http://tools.cisco.com/Support/BugToolKit/action.do?hdnAction=searchBugs&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Seemingly, this bug should be resolved in 8.3(1)8.&amp;nbsp; Let me know if this is indeed a match and mark this post as answered.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;&lt;P&gt;Kevin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Jul 2010 18:46:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489267#M661954</guid>
      <dc:creator>Kevin Redmon</dc:creator>
      <dc:date>2010-07-08T18:46:31Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM may show no ACL hitcounts for active access-lists</title>
      <link>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489268#M661962</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Many thanks Kevin.&amp;nbsp; It would appear to be a match so lets hope it is fixed in 8.3(1)8.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Zac&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Jul 2010 08:18:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489268#M661962</guid>
      <dc:creator>zac.quinn</dc:creator>
      <dc:date>2010-07-09T08:18:10Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM may show no ACL hitcounts for active access-lists</title>
      <link>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489269#M661970</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I seem to be having the same problem.&amp;nbsp; The bug ID you mentioned claims to be fixed in 8.3(2), which is the ASA version I'm using along with ASDM 6.3(4).&amp;nbsp; Also, I'm seeing many hit counts sitting at zero (that I know should be increasing), but there are just as many that are incrementing as expected.&amp;nbsp; Any ideas?&amp;nbsp; Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Jan 2011 23:38:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489269#M661970</guid>
      <dc:creator>russellmiles64</dc:creator>
      <dc:date>2011-01-03T23:38:46Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM may show no ACL hitcounts for active access-lists</title>
      <link>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489270#M661976</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"I seem to be having the same problem.&amp;nbsp; The bug ID you mentioned claims to be fixed in 8.3(2), which is the ASA version I'm using along with ASDM 6.3(4).&amp;nbsp; Also, I'm seeing many hit counts sitting at zero (that I know should be increasing), but there are just as many that are incrementing as expected.&amp;nbsp; Any ideas?&amp;nbsp; Thanks."&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hello Russell,&lt;/P&gt;&lt;P&gt;I have faced similar problem in past, what I did is, I deleted the access line rule for which I am not getting any hit counts, and below to that I created new access rule and enabled logging on that. after rule push, it apprears that I can see hitting counter increment.&lt;/P&gt;&lt;P&gt;can you perform same step and let us know your results?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jigar&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Jan 2011 02:11:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489270#M661976</guid>
      <dc:creator>Jigar Dave</dc:creator>
      <dc:date>2011-01-04T02:11:11Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM may show no ACL hitcounts for active access-lists</title>
      <link>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489271#M661982</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We upgraded to 8.3(2) &amp;amp; ASDM 6.3(3) and the issue was solved.&amp;nbsp; We haven't tried ASDM 6.3(4) so can't comment on that but I have noticed that 6.3(5) is now available&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Jan 2011 09:38:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489271#M661982</guid>
      <dc:creator>zac.quinn</dc:creator>
      <dc:date>2011-01-04T09:38:41Z</dc:date>
    </item>
    <item>
      <title>Re: ASDM may show no ACL hitcounts for active access-lists</title>
      <link>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489272#M662003</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, deleteing and re-creating the rule causes the hit count to function properly.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Jan 2011 22:26:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asdm-may-show-no-acl-hitcounts-for-active-access-lists/m-p/1489272#M662003</guid>
      <dc:creator>russellmiles64</dc:creator>
      <dc:date>2011-01-05T22:26:35Z</dc:date>
    </item>
  </channel>
</rss>

