I have a PIX running 6.1.4 and set the Embryonic connection limit to 50 on all the statics. We had an incident today that got me wondering if it is actually working.
The web server that sits behind a local director wih a virtual IP was showing over 7000 Syns from the "sh syn" command.
How could this be - the documentations states that the PIX should intercept any syn's over the 50 limit .
Has anyone had any experience with the embronic connection limit and how it should react?