<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CBAC for DoS/Worm attack mitigation in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cbac-for-dos-worm-attack-mitigation/m-p/1242128#M876200</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Thank you for your reply. I finally did the ios firewall lab succesfully with gns3 for outbound traffic. As you said , the inspection DoS attack rule can be applied both direction. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 25 Feb 2009 06:35:50 GMT</pubDate>
    <dc:creator>burakdinci</dc:creator>
    <dc:date>2009-02-25T06:35:50Z</dc:date>
    <item>
      <title>CBAC for DoS/Worm attack mitigation</title>
      <link>https://community.cisco.com/t5/network-security/cbac-for-dos-worm-attack-mitigation/m-p/1242126#M876195</link>
      <description>&lt;P&gt;  Hello , &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; I wonder , is it possible to make a defence with CBAC for DoS attack and Worm traffic which is generating from the inside part of the network ? I want to protect router's WAN connection from these kind of unwanted traffic which is generated from the inside. ( the traffic source is not located outside of the network as i said.) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind Regards.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:52:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cbac-for-dos-worm-attack-mitigation/m-p/1242126#M876195</guid>
      <dc:creator>burakdinci</dc:creator>
      <dc:date>2019-03-11T14:52:16Z</dc:date>
    </item>
    <item>
      <title>Re: CBAC for DoS/Worm attack mitigation</title>
      <link>https://community.cisco.com/t5/network-security/cbac-for-dos-worm-attack-mitigation/m-p/1242127#M876198</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The classic Cisco IOS Firewall maintains a global set of DoS counters for the router, and all firewall sessions for all firewall policies on all interfaces are applied to the global set of firewall counters.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco IOS Classic Firewall Inspection provides protection from DoS attack by default when a Classic Firewall is applied. DoS protection is enabled on all interfaces where inspection is applied, in the direction in which the firewall is applied, for each service or protocol that the firewall policy is configured to inspect. Classic Firewall provides several adjustable values to protect against DoS attacks. The legacy default settings (from software images prior to Release 12.4(11)T) shown in Table 1 can interfere with proper network operation if they are not configured for the appropriate level of network activity in networks where connection rates exceed the defaults. The DoS settings can be viewed with the exec command show ip inspect config, and the settings are included with the output of sh ip inspect all.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Feb 2009 02:21:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cbac-for-dos-worm-attack-mitigation/m-p/1242127#M876198</guid>
      <dc:creator />
      <dc:date>2009-02-25T02:21:28Z</dc:date>
    </item>
    <item>
      <title>Re: CBAC for DoS/Worm attack mitigation</title>
      <link>https://community.cisco.com/t5/network-security/cbac-for-dos-worm-attack-mitigation/m-p/1242128#M876200</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Thank you for your reply. I finally did the ios firewall lab succesfully with gns3 for outbound traffic. As you said , the inspection DoS attack rule can be applied both direction. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Feb 2009 06:35:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cbac-for-dos-worm-attack-mitigation/m-p/1242128#M876200</guid>
      <dc:creator>burakdinci</dc:creator>
      <dc:date>2009-02-25T06:35:50Z</dc:date>
    </item>
  </channel>
</rss>

