Guest

Preview Tool

Cisco Bug: CSCvi88556 - A service-policy using only connection conn-max 0 disappears after reloading an ASA

Last Modified

May 16, 2018

Products (1)

  • Cisco ASA 5500-X Series Firewalls

Known Affected Releases

9.6(3.1) 9.8(2)

Description (partial)

Symptom:
A service-policy using only the 'set connection conn-max 0' command will disappear from " show service-policy " after reloading the ASA.

For example:
ciscoasa(config-pmap-c)# policy-map global_policy
ciscoasa(config-pmap)# class test1
ciscoasa(config-pmap-c)# set connection conn-max 0
ciscoasa(config-pmap-c)# show service-policy
Class-map: test1
Set connection policy: 
current conns 1, drop 0

When configuring policy-map in this way, after reloading the ASA, "Class-map: test1" will disappear from the "show service-policy" output.

Conditions:
When configuring policy-map as below and reloading ASA.

ciscoasa(config-pmap-c)# policy-map global_policy
ciscoasa(config-pmap)# class test1
ciscoasa(config-pmap-c)# set connection conn-max 0
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.