[c-nsp] Shunning Traffic on ASA's

Jeff Kell jeff-kell at utc.edu
Mon Feb 11 10:01:50 EST 2008


Brandon Price wrote:
> Used it many times for keeping the BOZOS out..
>
> Works great!

Two caveats: 

(1) It only blocks traffic *sourced* from the IP you shun, and
(2) In early software versions in the 7.x train, a shun does *not* 
affect established connections

Jeff



More information about the cisco-nsp mailing list