cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
440
Views
0
Helpful
1
Replies

SSL VPN idle timouts

DJCanuck1_2
Level 1
Level 1

I'm wondering how the ASA determines time out values for a SSL VPN connection. Specifically, what is the mechanism? If it looks at generated traffic through the connection, an end user could apply a persistant ping to keep the connection open. I thought I had read somewhere that the ASA has the ability to apply idle timeouts by checking mouse or keyboard input. Is this true? I do not want to set a max session timeout...

1 Reply 1

vmoopeung
Level 5
Level 5

To set an idle timeout for individual users behind hardware clients, clear the Inherit check box and either check the Unlimited check box to specify that there is no idle timeout or specify a specific number of minutes. If there is no communication activity by a user behind a hardware client in the idle timeout period, the security appliance terminates the client's access.

For more information:

http://www.cisco.com/en/US/docs/security/asa/asa72/asdm52/selected_procedures/asdm_grp.html#wp1135938