12-03-2015 01:01 PM - edited 03-11-2019 11:59 PM
hello
I have ASA 5525 and i create on it access rule to permit ping from 172.16.10.10 to 172.16.20.10
im pinging 172.16.20.10 from 172.16.10.10 with -t
now i want to deny ping. i modified this access rule to deny ping.
but ping wasnot interrupted automatically.
i stopped it manually on 172.16.10.10 and when i tryed to ping 172.16.20.10 again then it was denyed.
question is how to block current session on asa to deny all unwanted traffic immediately, and no to stop it manually or without shutting down interfaces?
sorry for my english :) i am new to asa.
thank you in advance.
Solved! Go to Solution.
12-03-2015 01:29 PM
Changing the access-list doesn't delete active sessions on the ASA. You can make it work in two different ways:
12-03-2015 01:29 PM
Changing the access-list doesn't delete active sessions on the ASA. You can make it work in two different ways:
12-04-2015 12:37 AM
thank you karsten :)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide