04-25-2008 06:09 AM
Hi,
We use an acl bypass on a CSS11501 to send client connections on specific ports to a database server behind the CSS.
The customer is reporting timeouts on the connection and I'm trying to find out whether the same flow timeouts used on content rules apply for connections that use a bypass acl entry.
If the same timeouts apply, is it possible to change the timeout value? My understanding is that timeouts can only be changed on a content rule and as we're using a bypass acl we don't have one!
We're using 08.10 software.
Solved! Go to Solution.
04-25-2008 07:10 AM
the same timeout applies to all connections going through the CSS.
But you can't change the timeout for traffic not hitting a content rule or a group.
What you can do is disable the flow timeout for a particular tcp port with the command 'flow permanent port1
Gilles.
04-25-2008 07:10 AM
the same timeout applies to all connections going through the CSS.
But you can't change the timeout for traffic not hitting a content rule or a group.
What you can do is disable the flow timeout for a particular tcp port with the command 'flow permanent port1
Gilles.
04-25-2008 07:34 AM
Thanks Giles, I'll try that.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide