cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
257
Views
0
Helpful
1
Replies

IKE resource exhaustion DoS

ostewart
Level 1
Level 1

Has anyone come up with any possible way of mitigating the recent IKE DoS discovered by NTA at the perimeter of the network before it compromise any IKE devices, especially RA and Site-to-Site VPNs? Cisco response doesn't identify any workaround at this time.

http://www.nta-monitor.com/posts/2006/07/cisco-concentrator-dos.html

http://www.cisco.com/en/US/tech/tk583/tk372/tsd_technology_security_response09186a00806f33d4.html

1 Reply 1

bwalchez
Level 4
Level 4

I don't think there are any workarounds as of now. However, there is bug tracking this issue:CSCse70811

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: