<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic As noted in the document that in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598556#M229862</link>
    <description>&lt;P&gt;As noted in the document that Tagir shared, "&lt;SPAN style="color: rgb(0, 0, 0); font-family: arial, helvetica, sans-serif; font-size: 12px; line-height: normal;"&gt;Scanning Threat Detection can optionally react to an attack by shunning the attacker IP. This makes Scanning Threat Detection the only subset of the Threat Detection feature that can actively affect connections through the ASA.&lt;/SPAN&gt;"&lt;/P&gt;
&lt;P&gt;So we can prevent the traffic from establishing bogus connections via the syn flood method using the command:&lt;/P&gt;

&lt;PRE style="font-size: 11px; overflow: auto; max-width: 650px; min-width: 400px; height: auto; color: rgb(0, 0, 0); line-height: normal;"&gt;
threat-detection scanning-threat shun&lt;/PRE&gt;</description>
    <pubDate>Mon, 20 Oct 2014 18:23:02 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2014-10-20T18:23:02Z</dc:date>
    <item>
      <title>does the IPS on the ASA protect against syn floods etc ?</title>
      <link>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598553#M229853</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;does the IPS on the ASA protect against syn floods etc ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:57:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598553#M229853</guid>
      <dc:creator>carl_townshend</dc:creator>
      <dc:date>2019-03-12T04:57:33Z</dc:date>
    </item>
    <item>
      <title>ASA itself can protect</title>
      <link>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598554#M229855</link>
      <description>&lt;P&gt;ASA itself can protect against syn floods dos etc.&lt;/P&gt;&lt;P&gt;try google search cisco asa threat-protection&lt;/P&gt;&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/113685-asa-threat-detection.html&lt;/P&gt;</description>
      <pubDate>Mon, 20 Oct 2014 15:21:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598554#M229855</guid>
      <dc:creator>Tagir Temirgaliyev</dc:creator>
      <dc:date>2014-10-20T15:21:06Z</dc:date>
    </item>
    <item>
      <title>It says basic threat</title>
      <link>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598555#M229858</link>
      <description>&lt;P&gt;It says basic threat detection not prevention, do they not prevent ?&lt;/P&gt;</description>
      <pubDate>Mon, 20 Oct 2014 16:37:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598555#M229858</guid>
      <dc:creator>carl_townshend</dc:creator>
      <dc:date>2014-10-20T16:37:37Z</dc:date>
    </item>
    <item>
      <title>As noted in the document that</title>
      <link>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598556#M229862</link>
      <description>&lt;P&gt;As noted in the document that Tagir shared, "&lt;SPAN style="color: rgb(0, 0, 0); font-family: arial, helvetica, sans-serif; font-size: 12px; line-height: normal;"&gt;Scanning Threat Detection can optionally react to an attack by shunning the attacker IP. This makes Scanning Threat Detection the only subset of the Threat Detection feature that can actively affect connections through the ASA.&lt;/SPAN&gt;"&lt;/P&gt;
&lt;P&gt;So we can prevent the traffic from establishing bogus connections via the syn flood method using the command:&lt;/P&gt;

&lt;PRE style="font-size: 11px; overflow: auto; max-width: 650px; min-width: 400px; height: auto; color: rgb(0, 0, 0); line-height: normal;"&gt;
threat-detection scanning-threat shun&lt;/PRE&gt;</description>
      <pubDate>Mon, 20 Oct 2014 18:23:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598556#M229862</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-10-20T18:23:02Z</dc:date>
    </item>
    <item>
      <title>If I installed an ips sensor</title>
      <link>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598557#M229865</link>
      <description>&lt;P&gt;If I installed an ips sensor on the asa, would provide sun flood protection etc?&lt;/P&gt;</description>
      <pubDate>Mon, 20 Oct 2014 22:04:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598557#M229865</guid>
      <dc:creator>carl_townshend</dc:creator>
      <dc:date>2014-10-20T22:04:53Z</dc:date>
    </item>
    <item>
      <title>Assuming you mean "SYN flood"</title>
      <link>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598558#M229866</link>
      <description>&lt;P&gt;Assuming you mean "SYN&amp;nbsp;flood" then yes - the Cisco IPS sensor covers that attack type. Here is a &lt;A href="http://tools.cisco.com/security/center/viewAlert.x?alertId=76"&gt;specific link&lt;/A&gt; documenting the IPS signature that covers that attack. When you say "etc" that could mean just about anything so I can't answer that precisely.&lt;/P&gt;&lt;P&gt;Please note that the classic Cisco IPS sensor module for the older ASA 5500 series is no longer sold (&lt;A href="http://www.cisco.com/c/en/us/products/collateral/security/asa-5500-series-next-generation-firewalls/eol_C51-727284.html"&gt;since last year&lt;/A&gt;).&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cisco will sell you a classic IPS module for the new 5500-X series if you really insist on one but you would be much better served by the &lt;A href="http://www.cisco.com/c/en/us/products/collateral/security/asa-5500-series-next-generation-firewalls/datasheet-c78-732253.html"&gt;ASA with Firepower Services&lt;/A&gt;, an option when purchasing or configuring an ASA 5500-X series. That includes the superior Next Generation IPS services acquired last year when Cisco purchased Sourcefire.&lt;/P&gt;&lt;P&gt;(And, yes, the IPS license there will also prevent SYN flood attacks.)&lt;/P&gt;</description>
      <pubDate>Mon, 20 Oct 2014 22:44:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598558#M229866</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-10-20T22:44:26Z</dc:date>
    </item>
    <item>
      <title>another way ASA itself can</title>
      <link>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598559#M229868</link>
      <description>&lt;P&gt;another way ASA itself can protect against syn floods etc.&lt;/P&gt;&lt;H3 class="post-title entry-title" itemprop="name"&gt;Configuring Connection Limits on Cisco ASA Firewalls – Protect from DoS&lt;/H3&gt;&lt;P&gt;http://ccnpsecurity.blogspot.com/2011/10/configuring-connection-limits-on-cisco_20.html&lt;/P&gt;</description>
      <pubDate>Tue, 21 Oct 2014 03:43:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/does-the-ips-on-the-asa-protect-against-syn-floods-etc/m-p/2598559#M229868</guid>
      <dc:creator>Tagir Temirgaliyev</dc:creator>
      <dc:date>2014-10-21T03:43:57Z</dc:date>
    </item>
  </channel>
</rss>

