cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
416
Views
0
Helpful
1
Replies

IDS 5235 not remove shunned host from PIX after Block time

fabiosarapu
Level 1
Level 1

We have a IDS-5235 running all 2004_Apr_15_15.03 Releases and 4 PIX 5X5 family.

The IDS put the shunning list in to the PIXies but not remove then after the block timeout.

1 Reply 1

jlively
Cisco Employee
Cisco Employee

I assume you meant a IDS-4235 not 5235. Are you managing more that 1 device? Did it remove the block from the other devices? From the cli do a "show stat net" and make sure that the connection to the pix is still "active" and the block is gone from the list of blocks.

Review Cisco Networking for a $25 gift card