Re: dynamic acl (absolute timeout)

From: Dave Temkin (dave@ordinaryworld.com)
Date: Sun Oct 30 2005 - 19:58:31 GMT-3


The timeout specified on the username blah access-enable is the absolute
timeout.

You then specify an idle timeout on the dynamic test2 pemrit any any
timeout (it defaults to 300 seconds)

-Dave

On Sun, 30 Oct 2005, George Cosmo wrote:

> Router(config)#access-list 184 dynamic test2 timeout ?
> *<1-9999> Maximum time to live* -------->* is this in minutes . as per
> explanation *
>
> then how do i read this:
>
> Router#sh access-lists 184
> Extended IP access list 184
> permit tcp any host x.x.x.x eq telnet (80 matches)
> Dynamic test2 permit ip any any
> *permit ip any any (40 matches) (time left 277) --> i have noticed it always
> starts at 300 ( what is this value)*
>
> is the time left in seconds? or is it is seconds, i should see this start at
> 600 sec, as I have set asboulte timeoute to 10 min.
>
> any ideas??
>
> thanks in advance !!!!
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Sun Nov 06 2005 - 22:00:55 GMT-3