04-13-2023 06:37 AM
Hello,
I have created Time range in Object Management from 08:00 until 09:00 AM and inserted into created rule from outside to inside PC allow connection for the specific time mentioned before. I`ve checked time zone and synchronization on FTD and FMC, time is the same, but establish connection on Inside PC not blocking after mentioned time, but new connections is blocking.
Where is a problem?
Thank you.
04-13-2023 06:57 AM
what version of FTD ?
if you running 6.X code look at the below alternative option :
04-13-2023 07:03 AM
Hi,
FTD version is 7.0.5
04-13-2023 07:17 AM
Hi,
You mentioned "establish connection on Inside PC not blocking after mentioned time, but new connections is blocking."
It's normal behaviour. It never worked differently.
Time-based ACLs affect new connections, not existing ones.
BR,
Octavian
04-13-2023 08:37 AM
the traffic is already UP so the traffic have conn in FW database
so even if you config time range ACL it will not effect it the traffic will bypass all ACL
how can I solve this issue? for me you can use EEM with add time range ACL
the EEM will clear local-host conn and you add time range ACL the traffic now will not bypass ACL but will hit it.
thanks
MHM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide