cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
369
Views
0
Helpful
1
Replies

Flow-Timeout on Group with ACL

Sbutzek
Level 1
Level 1

Hello,

we have a ACL and associate a group to it.

So we can control, which traffic is allowed to go out of our DMZ and how the source ip will be translated.

Also, we got a new Application, whichs sends Data on a TCP Connection about every 5 minutes. (Its a heartbeat)

This can't be changed to a smaller value.

So we tried to set the flow-timeout multiplier on the group, to modify the timeout to a greater value.

But with the debug commands, we saw that new Flows get timeout values of 16 seconds.

Is the time-out multiplier not supportet for groups associated with ACL, or can this be a bug in 7.20 405?

We can not use the flow permamant command, because the Port is 443, which is heavily used in our enviroment.

I hope anyone can give me a note, what i can do.

Best Regards

Sven Butzek

1 Reply 1

sbilgi
Level 5
Level 5

Looks like you are hitting the bug CSCea86089

Review Cisco Networking for a $25 gift card