Configuring a Connection Parameter Map for TCP/IP Normalization and Termination
Configuring the Connection Inactivity Timeout
Setting How the ACE Applies TCP Optimizations to Packets
Cisco 4700 Series Application Control Engine Appliance Security Configuration Guide
4-16
Chapter 4
The ACE uses the connection inactivity timer to disconnect established TCP/IP,
UDP, and ICMP connections that have remained idle for the duration of the
specified timeout period. To configure the connection inactivity timer, use the set
timeout inactivity command in parameter map connection configuration mode.
The syntax of this command is as follows:
set timeout inactivity seconds
The seconds argument is the time period after which the ACE disconnects idle
established connections. Enter an integer from 0 to 1638050 seconds. The defaults
are as follows:
ICMP—2 seconds
•
TCP—3600 seconds (1 hour)
•
UDP—120 seconds (2 minutes)
•
A value of 0 specifies that the ACE does not time out a TCP connection. The ACE
rounds up the value that you enter to the nearest 30-second interval.
For example, to set the connection inactivity timeout to 2400 seconds
(40 minutes), enter:
host1/C1(config-parammap-conn)# set timeout inactivity 2400
To reset the connection inactivity timeout to the default values, enter:
host1/C1(config-parammap-conn)# no set timeout inactivity
You can control how the ACE applies TCP optimizations to packets on a
connection associated with a Layer 7 policy map using a round-trip time (RTT)
value by using the set tcp wan-optimization rtt command in parameter map
connection configuration mode.
TCP optimizations include the following connection parameter-map
configuration mode operations:
Nagle optimization algorithm (see the
•
Slow-start connection behavior (see the
•
Algorithm"
section)
Configuring TCP/IP Normalization and IP Reassembly Parameters
"Enabling Nagle's Algorithm"
"Enabling the TCP Slow Start
section)
OL-16202-01