Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

TCP intercept..question

HI ALL.

TCP intercept is feature which used to prevent from Syn flood attack on router.  is the router will not under attack.if too many proxy connection will be handel by router

PLEASE REPLY

1 REPLY
New Member

TCP intercept..question

Hi mate,

Please, clarify your question.

A little bit of TCP iontercept as follows: *this is some notes from my studies)

TCP intercept

   % Prevents TCP SYN flood attacks (TCP 3 way handshake not completed)

      .SYN, ACK SYN, ACK

   % Results in half open or embryonic session

- TCP intercept tries to prevent this in TWO ways

   %Intercept mode (proxy for all connections / only connect to server after 3 way hand completes)

   %WATCH mode (passively monitor session establishment / Send TCP RST  if 3 way handshake does not complete in time)   >> The best choice <<

Waiting to hear from you.

PLease, rate useful posts !

cheers

727
Views
0
Helpful
1
Replies
CreatePlease login to create content