cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
559
Views
0
Helpful
6
Replies

Can I drop an inbound to outside interface connection to my ASA 5520

whiteford
Level 1
Level 1

Hi,

From Netflow Analyazer I can see a connection from an external IP to my ASA's outside interface that's been going for 2 hours and downloaded 3GB of data so far, how can I kill this conenction? It's a http connection.

Thanks

6 Replies 6

cisco24x7
Level 6
Level 6

you can shun the connection or perform a "clear

xlate" on that connection

Thanks, would do I type after "clear xlate"? if the IP I need to drop is 1.2.3.4?

Thanks

clear local-host is good for this also.

Thanks, will this drop that single external IP that's comming inbound? I don't want to drop all connections.

Thanks

that will drop all active network connections by whichever address you specify:

http://www.cisco.com/en/US/docs/security/asa/asa72/command/reference/c3_72.html#wp2046006

Brent Rockburn
Level 2
Level 2

Why don't you just put up an ACL blocking that IP on the outside interface?

Review Cisco Networking products for a $25 gift card