cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1076
Views
0
Helpful
2
Replies

FWSM anti-dos option?

syjeon
Level 1
Level 1

Hi..

I have read that the fwsm has a serveral anti-dos option.

I has seached the fwsm anti-dos related document in CCO, But I can't yet.

first of all, I would like know that,

a. anti-dos feature in FWSM

b. if anti-dos in FWSM, How can I configuration?, Configuration guide

If you help me find it, I would appreciate it.

Thank you.

2 Replies 2

Jon Marshall
Hall of Fame
Hall of Fame

syjeon wrote:

Hi..

I have read that the fwsm has a serveral anti-dos option.

I has seached the fwsm anti-dos related document in CCO, But I can't yet.

first of all, I would like know that,

a. anti-dos feature in FWSM

b. if anti-dos in FWSM, How can I configuration?, Configuration guide

If you help me find it, I would appreciate it.

Thank you.

Have a look at this chapter in the configuration guide -

http://www.cisco.com/en/US/docs/security/fwsm/fwsm31/configuration/guide/protct_f.html

Jon

One example if you have a static for a server x would be that you want to have 100 conns maximum and 50 embryonics

static (mgmt,test) y x 100 50

The FWSM will proxy to verify that there is no SYN flood and that no more than 100 conns will go using that static.

Another to see a maximum number of connection for a specific traffic class is

policy-map test
class test
  set connection conn-max 100

I hope it helps.

PK

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card