Shun query

Answered Question
Apr 14th, 2010

Running an ASA5520 7.0(8)

Started to experience problems with connectivity between 2 interfaces and one host.

Checking my shuns the ASA show I have an entry similar to this.

shun (net2) 4.4.4.4(server) 0.0.0.0 0 0 0

4.4.4.4 = Public address on one of our servers on Net2. This address is nated to a private IP on the host.

I would like to remove this entry.

no shun 4.4.4.4 - Does not work

How should I do this?

What is different about this shun to the usual ones on the outside public interface?

Any help much appreciated.

Phil

Correct Answer by Jennifer Halim about 6 years 10 months ago

If you haven't configured the shun manually on the ASA, then it might have been the IPS which is sending the shun towards the ASA to block that particular ip address.

To clear the host from being shun, you can issue the following command:

clear shun

Hope that helps.

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (2 ratings)
Loading.
Correct Answer
Jennifer Halim Wed, 04/14/2010 - 02:58

If you haven't configured the shun manually on the ASA, then it might have been the IPS which is sending the shun towards the ASA to block that particular ip address.

To clear the host from being shun, you can issue the following command:

clear shun

Hope that helps.

Actions

This Discussion

Related Content