How to completely disable SHUN?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-14-2013 09:06 PM - edited 03-11-2019 07:12 PM
Hi there,
I have an ASA5510 running Software Version 8.4(4)5. I notice that my users complain that they lose connection to a particular server behind the firewall for about an hour and then they're able to connect normally.
I did some checking and i found out that the server gets shunned for about an hour, prevent access to it.
Is there a way to completely disable the shun 'feature' on the ASA?
Thanks in advanced
- Labels:
-
NGFW Firewalls
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-14-2013 11:58 PM
Hello Ja,
This is due to treath detection as this is done dinamically,
So you will need to disable scanning and treath detection
U could use the following command to do a filter :
threat-detection scanning-threat shun except ip-address 10.1.1.0 255.255.255
But if u really want to remove it just add a no in front of the treath detection scanning-threath config,
For Networking Posts check my blog at http://laguiadelnetworking.com/
Cheers,
Julio Carvajal Segura
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-15-2013 01:30 AM
Hi! Thanks, i'll test it out and respond here.
