<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic DISA STIG NET0965 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/disa-stig-net0965/m-p/2212526#M349524</link>
    <description>&lt;P&gt;I have a ASA-5510 (9.11-4-K8) monitoring a network that is required to use the DISA STIGs for certain security settings. there is a requirement (STIG ID NET0965) that requires the following:&lt;/P&gt;&lt;P&gt;The network device must be configured with a maximum wait time of 10 seconds or less to allow a host to establish a TCP connection.&lt;/P&gt;&lt;P&gt;Configure the maximum wait time for TCP connections to be established with the device to 10 seconds or less.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this is possible on a router or switch but can this be configured on the ASA?&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 01:46:55 GMT</pubDate>
    <dc:creator>joedansereau</dc:creator>
    <dc:date>2019-03-12T01:46:55Z</dc:date>
    <item>
      <title>DISA STIG NET0965</title>
      <link>https://community.cisco.com/t5/network-security/disa-stig-net0965/m-p/2212526#M349524</link>
      <description>&lt;P&gt;I have a ASA-5510 (9.11-4-K8) monitoring a network that is required to use the DISA STIGs for certain security settings. there is a requirement (STIG ID NET0965) that requires the following:&lt;/P&gt;&lt;P&gt;The network device must be configured with a maximum wait time of 10 seconds or less to allow a host to establish a TCP connection.&lt;/P&gt;&lt;P&gt;Configure the maximum wait time for TCP connections to be established with the device to 10 seconds or less.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this is possible on a router or switch but can this be configured on the ASA?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 01:46:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disa-stig-net0965/m-p/2212526#M349524</guid>
      <dc:creator>joedansereau</dc:creator>
      <dc:date>2019-03-12T01:46:55Z</dc:date>
    </item>
    <item>
      <title>DISA STIG NET0965</title>
      <link>https://community.cisco.com/t5/network-security/disa-stig-net0965/m-p/2212527#M349526</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Joe,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You mean traffic to the box or through the box?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 May 2013 23:33:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disa-stig-net0965/m-p/2212527#M349526</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2013-05-21T23:33:28Z</dc:date>
    </item>
    <item>
      <title>Re: DISA STIG NET0965</title>
      <link>https://community.cisco.com/t5/network-security/disa-stig-net0965/m-p/2212528#M349527</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This particular requirment NET0965 is for communications from a client to the ASA. IE: ssh, asdm, bgp, scp etc....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I found how to do it on the IOS ISR platform, but not on the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;also on the IOS ISR platform: use:&amp;nbsp; ip tcp synwait-time 10&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;A href="https://tools.cisco.com/Support/CLILookup/cltSearchAction.do" rel="nofollow"&gt;https://tools.cisco.com/Support/CLILookup/cltSearchAction.do&lt;/A&gt; login&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 Oct 2013 22:47:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disa-stig-net0965/m-p/2212528#M349527</guid>
      <dc:creator>Oscar Quinonez</dc:creator>
      <dc:date>2013-10-04T22:47:05Z</dc:date>
    </item>
  </channel>
</rss>

