×

Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

How can IPv6 TCP packets be matched in a class-map without extended ACL support on Cisco ASA 8.4(3)?

Unanswered Question

We use a persistent tunnel for a remote office and have configured TCP inspection to avoid SSH session timeouts:

 

access-list No_SSH_Timeout extended permit tcp any any eq ssh

class-map ssh
 match access-list No_SSH_Timeout

 

 class ssh
  set connection timeout idle 0:00:00

 

I'm having trouble to find the right configuration to do the same thing with IPv6.  The class-map seems to demand an extended ACL, but ASA Software 8.4(3) only supports regular IPv6 ACL's, not extended.   Is there another way to do this?

 

Thanks!

 

 

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.

Actions

This Discussion

 

 

Trending Topics - Service Providers