cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1103
Views
0
Helpful
2
Replies

SYN flood ASA

michelerossi
Level 1
Level 1

Hi,

Could I Disabled the "SYN flood" control in the ASA version 8.03 ?

The IDS Module is disbled.

Is it posssible ?

Thanks

2 Replies 2

ebreniz
Level 6
Level 6

Yes you can Disabled the "SYN flood. It is the normalizer that detects the Syn Flood and, and can do syn cookies for protection of the Syn Flood. But as the ASA does the normalization, the normalizer is not running on the AIP-SSM and will not detect the Syn Flood on the AIP-SSM. So you need to rely on the ASA's Syn Flood protection (the ASA itself does Syn Cookies).

If this were an Appliance then the Appliance does run the Normalizer and is able to detect the Syn Flood and use Syn Cookies for protection (to turn on the Syn Cookie protection configure modify-packet-inline on sig 3050).

Have you got an example config of the Asa to do This ?

Thanks.

Review Cisco Networking products for a $25 gift card