<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FWSM_Policy-map_removal_error in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360265#M963705</link>
    <description>Dear Bogdan&lt;BR /&gt;First off, I would like to thanks for your reply.&lt;BR /&gt;Following is the output from the FWSM:&lt;BR /&gt;&lt;BR /&gt;FWSM/admin# show ssh sessions &lt;BR /&gt;SID Client IP       Version Mode      Encryption    Hmac     State                 Username&lt;BR /&gt;1   10.125.21.4     2.0     IN          aes256-cbc   sha1     SessionStarted   SEC_TEAM&lt;BR /&gt;                                     OUT    aes256-cbc       sha1    SessionStarted   SEC_TEAM&lt;BR /&gt;FWSM/admin# &lt;BR /&gt;I believe that there is no stale or orphaned SSH connection.&lt;BR /&gt;It also worth mention that I manage the context through the Admin context.&lt;BR /&gt;&lt;BR /&gt;Thanks for your help.&lt;BR /&gt;&lt;BR /&gt;Regards</description>
    <pubDate>Wed, 04 Apr 2018 10:12:11 GMT</pubDate>
    <dc:creator>jordan.jordani1992</dc:creator>
    <dc:date>2018-04-04T10:12:11Z</dc:date>
    <item>
      <title>FWSM_Policy-map_removal_error</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360159#M963703</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have faced some sort of difficulties in configuration of an old device at my company which is FWSM. The problem is that I had created a testing policy-map called ZZZ, as well as the class-map with the same name (ZZZ). When I was about to remove to related config (class-map, policy-map), I am able to remove the class-map with the '(config)#no class-map ZZZ' command. However, I cannot remove the policy-map with the '(config)# no policy-map ZZZ' which barks an error as I paste in the following:&lt;/P&gt;
&lt;P&gt;config)# no policy-map ZZZ&lt;/P&gt;
&lt;P&gt;ERROR: policy-map ZZZ is being configured and hence cannot be removed.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;it worth to mention that this policy-map is not associated with neither service-policy, nor class-map&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;FWSM/CONTEXT_A# show running-config class-map &lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;FWSM/CONTEXT_A# show running-config policy-map &lt;BR /&gt;!&lt;BR /&gt;policy-map ZZZ&lt;BR /&gt;policy-map CSM_POLICY_MAP_global_1&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect icmp &lt;BR /&gt;&amp;nbsp; inspect icmp error &lt;BR /&gt;&amp;nbsp; inspect ftp &lt;BR /&gt;!&lt;/P&gt;
&lt;P&gt;FWSM/CONTEXT_A# show running-config service-policy &lt;BR /&gt;service-policy CSM_POLICY_MAP_global_1 global&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;any idea?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:35:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360159#M963703</guid>
      <dc:creator>jordan.jordani1992</dc:creator>
      <dc:date>2020-02-21T15:35:44Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM_Policy-map_removal_error</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360253#M963704</link>
      <description>&lt;P&gt;I've similar issues on the fwsm when a ssh session is stuck in config mode.&lt;/P&gt;
&lt;P&gt;Can you try&amp;nbsp;'show ssh sessions' to see active sessions and&amp;nbsp;then issue 'ssh disconnect' to&amp;nbsp;disconnect the unused sessions ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;
&lt;P&gt;Bogdan&lt;/P&gt;</description>
      <pubDate>Wed, 04 Apr 2018 09:51:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360253#M963704</guid>
      <dc:creator>Bogdan Nita</dc:creator>
      <dc:date>2018-04-04T09:51:39Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM_Policy-map_removal_error</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360265#M963705</link>
      <description>Dear Bogdan&lt;BR /&gt;First off, I would like to thanks for your reply.&lt;BR /&gt;Following is the output from the FWSM:&lt;BR /&gt;&lt;BR /&gt;FWSM/admin# show ssh sessions &lt;BR /&gt;SID Client IP       Version Mode      Encryption    Hmac     State                 Username&lt;BR /&gt;1   10.125.21.4     2.0     IN          aes256-cbc   sha1     SessionStarted   SEC_TEAM&lt;BR /&gt;                                     OUT    aes256-cbc       sha1    SessionStarted   SEC_TEAM&lt;BR /&gt;FWSM/admin# &lt;BR /&gt;I believe that there is no stale or orphaned SSH connection.&lt;BR /&gt;It also worth mention that I manage the context through the Admin context.&lt;BR /&gt;&lt;BR /&gt;Thanks for your help.&lt;BR /&gt;&lt;BR /&gt;Regards</description>
      <pubDate>Wed, 04 Apr 2018 10:12:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360265#M963705</guid>
      <dc:creator>jordan.jordani1992</dc:creator>
      <dc:date>2018-04-04T10:12:11Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM_Policy-map_removal_error</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360518#M963753</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/490556"&gt;@jordan.jordani1992&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Sorry to hear that didn't work.&lt;/P&gt;
&lt;P&gt;I have another idea , but it is a little bit far fetched for removing configuration that actually has no impact.&lt;/P&gt;
&lt;P&gt;You can try removing the policy map after a reboot or failover.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Apr 2018 15:38:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3360518#M963753</guid>
      <dc:creator>Bogdan Nita</dc:creator>
      <dc:date>2018-04-04T15:38:42Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM_Policy-map_removal_error</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3362139#M963755</link>
      <description>&lt;P&gt;thanks for your help.&lt;/P&gt;</description>
      <pubDate>Sat, 07 Apr 2018 06:27:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-policy-map-removal-error/m-p/3362139#M963755</guid>
      <dc:creator>jordan.jordani1992</dc:creator>
      <dc:date>2018-04-07T06:27:42Z</dc:date>
    </item>
  </channel>
</rss>

