07-18-2017 07:19 AM - edited 03-12-2019 02:42 AM
Hello
When i change something in the ASDM on the Access Rules and click on apply the changes did not work. When i write on the cli "clear conn" then the changes were made. (permit or deny any ip or port)
Are there some timeouts when the asa will change the access rules? How can i see on the ASDM when the changes were made?
Thanks
07-18-2017 07:26 AM
Hi Raimund,
That is an expected behavior.
If you make changes on the ASA it would not affect the existing connections until and unless you either clear them or initiate a new connection.
Regards,
Aditya
Please rate helpful and mark correct answers
07-21-2017 04:00 AM
okay
But when did the changes work when i click on apply on the asdm? Is there any time when it clears all connections?
After some time ago it works but not immediately.
I will change the time so that when i click appy on the asdm the changes are installed and work,
Thanks
07-21-2017 09:34 AM
I believe the connections will only automatically clear if they reach the idle timeout limit of which when the connection is reestablished, they will then use the new policy. The default for timeout conn is 1 hour.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide