Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,
I'm trying to figure out why does my ASA have a ICMP timeout of 1 hour instead of default 2 seconds as stated in the documentation and cli.
fw-asa(config)# timeout icmp ?
configure mode commands/options:<0:0:2> - <1193:0:0> Idle timeout for icm...
Hi Akshay & Rishabh
Thank you for your replies.
I had an class-default map configured to decrement ttl and disable tcp state check.
Also, I configured (from ASDM) tcp reset before idle and that caused a line 'set connection timeout idle 1:00:00 reset...
Hi,
There is currently no timeout icmp set, so it should default to 2 seconds. Either way, even if I set this to any value, timeout seen in the output of sh conn detail command remains 1h, and the connection table builds up.