cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
556
Views
0
Helpful
6
Replies

Can I drop an inbound to outside interface connection to my ASA 5520

whiteford
Level 1
Level 1

Hi,

From Netflow Analyazer I can see a connection from an external IP to my ASA's outside interface that's been going for 2 hours and downloaded 3GB of data so far, how can I kill this conenction? It's a http connection.

Thanks

6 Replies 6

cisco24x7
Level 6
Level 6

you can shun the connection or perform a "clear

xlate" on that connection

Thanks, would do I type after "clear xlate"? if the IP I need to drop is 1.2.3.4?

Thanks

clear local-host is good for this also.

Thanks, will this drop that single external IP that's comming inbound? I don't want to drop all connections.

Thanks

that will drop all active network connections by whichever address you specify:

http://www.cisco.com/en/US/docs/security/asa/asa72/command/reference/c3_72.html#wp2046006

Brent Rockburn
Level 2
Level 2

Why don't you just put up an ACL blocking that IP on the outside interface?

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card