Forum Discussion
Jinks02_309221
Nimbostratus
Dec 02, 2017Kill Active VPN Sessions Through TMSH
Software Version 13
Hi,
As part of our working policies, I need to disconnect any VPN sessions used by a certain client group, at the end of each working day.
These clients use a separate access profile, and I'm able to do this by using the GUI, by navigating to Access/Overview/Active Sessions, filtering on profile name, then selecting relevant connections and hitting the "Kill Selected Sessions" button.
But I would like to automate this by running a script that will SSH to the F5 BigIP and run a TMSH command at a specific time. but I can't seem to find the TMSH command that will actually kill the session. I have tried the following,
delete sys connection cs-server-addr ip-address-of-the-vpn-vs
but the client disconnects and reconnects immediately, where as when I use the GUI this does not happen.
I have also tried enabling MCP logging to try and capture the command sent but the log just states
Session deleted due to admin initiated termination .
Does anyone know what command is sent to the F5 BigIP by the GUI when the "Kill Selected Session" button is pressed.
Thanks In Anticipation,
Jinks
1 Reply
- Stanislas_Piro2
Cumulonimbus
Instead of doing it with tmsh, you can set timeout during policy evaluation with variable assign. Look at this article!
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects