<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: TCP reset in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081890#M78910</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please see the span configuraiton, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;monitor session 1 source interface Gi1/0/1&lt;/P&gt;&lt;P&gt;monitor session 1 destination interface Gi1/0/5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;now when i try to give the ingress keyword it gave me error of incomplete command error.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; dot1q     ingress forwarding using dot1q encapsulation&lt;/P&gt;&lt;P&gt; isl       ingress forwarding using isl encapsulation&lt;/P&gt;&lt;P&gt; untagged  ingress forwarding using untagged encapsulation&lt;/P&gt;&lt;P&gt; vlan      Set default VLAN for untagged ingress traffic&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have only one VLN 1 and 13 as native VLAN on my switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All switch ports are member of VLAN 1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Switch is trunk with other switch&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PDC-OUT-3750-1#sh interfaces trun&lt;/P&gt;&lt;P&gt;PDC-OUT-3750-1#sh interfaces trunk&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port        Mode         Encapsulation  Status        Native vlan&lt;/P&gt;&lt;P&gt;Po1         on           802.1q         trunking      13&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port        Vlans allowed on trunk&lt;/P&gt;&lt;P&gt;Po1         1-4094&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port        Vlans allowed and active in management domain&lt;/P&gt;&lt;P&gt;Po1         1,13&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port        Vlans in spanning tree forwarding state and not pruned&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please let me know which option to select after ingress.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will be very greatful to you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 30 Aug 2008 13:24:25 GMT</pubDate>
    <dc:creator>wasiimcisco</dc:creator>
    <dc:date>2008-08-30T13:24:25Z</dc:date>
    <item>
      <title>TCP reset</title>
      <link>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081888#M78906</link>
      <description>&lt;P&gt;I am unable to configure the TCP Reset on my IPS 4255 in Promiscous mode.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have declare one interface of 0/0 IPS as tcp reset, for interface gig 0/1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;but still not working. Please tell me how to configure and how to verify the configuration. &lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 11:16:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081888#M78906</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2019-03-10T11:16:43Z</dc:date>
    </item>
    <item>
      <title>Re: TCP reset</title>
      <link>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081889#M78908</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Did you add the ingress keyword on the switch? Can you post your SPAN configs?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 Aug 2008 19:02:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081889#M78908</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2008-08-29T19:02:07Z</dc:date>
    </item>
    <item>
      <title>Re: TCP reset</title>
      <link>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081890#M78910</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please see the span configuraiton, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;monitor session 1 source interface Gi1/0/1&lt;/P&gt;&lt;P&gt;monitor session 1 destination interface Gi1/0/5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;now when i try to give the ingress keyword it gave me error of incomplete command error.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; dot1q     ingress forwarding using dot1q encapsulation&lt;/P&gt;&lt;P&gt; isl       ingress forwarding using isl encapsulation&lt;/P&gt;&lt;P&gt; untagged  ingress forwarding using untagged encapsulation&lt;/P&gt;&lt;P&gt; vlan      Set default VLAN for untagged ingress traffic&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have only one VLN 1 and 13 as native VLAN on my switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All switch ports are member of VLAN 1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Switch is trunk with other switch&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PDC-OUT-3750-1#sh interfaces trun&lt;/P&gt;&lt;P&gt;PDC-OUT-3750-1#sh interfaces trunk&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port        Mode         Encapsulation  Status        Native vlan&lt;/P&gt;&lt;P&gt;Po1         on           802.1q         trunking      13&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port        Vlans allowed on trunk&lt;/P&gt;&lt;P&gt;Po1         1-4094&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port        Vlans allowed and active in management domain&lt;/P&gt;&lt;P&gt;Po1         1,13&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port        Vlans in spanning tree forwarding state and not pruned&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please let me know which option to select after ingress.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will be very greatful to you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 30 Aug 2008 13:24:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081890#M78910</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2008-08-30T13:24:25Z</dc:date>
    </item>
    <item>
      <title>Re: TCP reset</title>
      <link>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081891#M78912</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ingress vlan 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 30 Aug 2008 15:03:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081891#M78912</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2008-08-30T15:03:05Z</dc:date>
    </item>
    <item>
      <title>Re: TCP reset</title>
      <link>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081892#M78914</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the reply, but please let me know how the verify that the tcp reset is working. I have signature that has action configured to rest tcp connection. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;but how can i verify that tcp rest is working. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 30 Aug 2008 17:02:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081892#M78914</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2008-08-30T17:02:31Z</dc:date>
    </item>
    <item>
      <title>Re: TCP reset</title>
      <link>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081893#M78916</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Make a custom STRING TCP signature direction 'to server' for Telnet (Port 23). Match on any string like 'abcd'. Now telnet on the SPANNED vlan, and then try to type abcd. as soon as you type 'd' (the last letter) your telnet connection will get stuck &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 30 Aug 2008 17:16:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tcp-reset/m-p/1081893#M78916</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2008-08-30T17:16:48Z</dc:date>
    </item>
  </channel>
</rss>

