cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
244
Views
0
Helpful
1
Replies

Resetting a connection matched by ACL

Alex Ferenstein
Level 1
Level 1

A requirement is to send a TCP Reset (RST) without changing ASA's global setting "service".

The protocol for the connection is unknown.

My understanding is that actions such as "reset", "drop" or "drop-connection" is for an "inspect" type Policy-Map and not for "Layer 3/4" type Policy-Map.

So, how can I send a TCP Reset for an ordinary connection attempt (matched by an ACL)?

1 Reply 1

Vibhor Amrodia
Cisco Employee
Cisco Employee

Hi,

The "service" command would be the only way to RESET a connection explicitly on the ASA device.

As you correctly pointed out this will be a global setting on the ASA device.

Thanks and Regards,

Vibhor Amrodia

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card