07-06-2011 11:00 AM - edited 02-21-2020 05:26 PM
Hi
2 x ASA5520 with SSM20 .
using AnyConnect 3 ,
users are not getting disconnected from ASA even after the vpn client is closed . Users would not be able to login from the same ip until the session is active. Manual clearing of the session enable the user to log back in .
is this is a bug or is there a solution for this please.
regards
iyer
Solved! Go to Solution.
07-11-2011 02:01 AM
Hi
if the client disconnects gracefully (i.e. the user clicks disconnect and waits for the disconnect to finish before doing a shut down/sleep/unplug) and the ASA still sees it as connected, then this would be a bug.
To detect that clients have disconnected 'ungracefully' you can enable DPD:
http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/svc.html#wp1045952
hth
Herbert
07-11-2011 02:01 AM
Hi
if the client disconnects gracefully (i.e. the user clicks disconnect and waits for the disconnect to finish before doing a shut down/sleep/unplug) and the ASA still sees it as connected, then this would be a bug.
To detect that clients have disconnected 'ungracefully' you can enable DPD:
http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/svc.html#wp1045952
hth
Herbert
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide