cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
779
Views
5
Helpful
1
Replies

Shun query

dsc_tech_1
Level 1
Level 1

Running an ASA5520 7.0(8)

Started to experience problems with connectivity between 2 interfaces and one host.

Checking my shuns the ASA show I have an entry similar to this.

shun (net2) 4.4.4.4(server) 0.0.0.0 0 0 0

4.4.4.4 = Public address on one of our servers on Net2. This address is nated to a private IP on the host.

I would like to remove this entry.

no shun 4.4.4.4 - Does not work

How should I do this?

What is different about this shun to the usual ones on the outside public interface?

Any help much appreciated.

Phil

1 Accepted Solution

Accepted Solutions

Jennifer Halim
Cisco Employee
Cisco Employee

If you haven't configured the shun manually on the ASA, then it might have been the IPS which is sending the shun towards the ASA to block that particular ip address.

To clear the host from being shun, you can issue the following command:

clear shun

Hope that helps.

View solution in original post

1 Reply 1

Jennifer Halim
Cisco Employee
Cisco Employee

If you haven't configured the shun manually on the ASA, then it might have been the IPS which is sending the shun towards the ASA to block that particular ip address.

To clear the host from being shun, you can issue the following command:

clear shun

Hope that helps.

Review Cisco Networking for a $25 gift card