cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
334
Views
5
Helpful
3
Replies

Is PIX 515E with IOS ver 6.1(2) able to block Half-open Sync Attack

sakirs
Level 1
Level 1

Hi All,

Is there any way to block Half-open Sync attack through PIX 515E with version 6.1 (2).

Thanks

3 Replies 3

aacole
Level 5
Level 5

Yes, the feature is known as the Flood Defender. Its enabled by either the `max_conn' and the `emb_limit' options on either the static or nat commands.

Its an option you need to tune to your particular requirement, setting the values too low will limit the number of connections leigitment users can make.

Have a look at the configuration options for these commands.

Thanks Andy for your quick and perfect response.

Sinan

sakirs
Level 1
Level 1

Thanks Andy for your quick and perfect response.

Sinan

Review Cisco Networking products for a $25 gift card