<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Allow Land attack in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/allow-land-attack/m-p/614469#M92084</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a Cisco ASA 5510 and couple of webservers behind it. For some specific applications, those webservers call the  website hosted on the same box. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The appliance sees that as a Land Attack and gives the following error:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Deny IP due to Land Attack from a.b.c.d to a.b.c.d&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any way I can disable this? I tried disabling Anti-spoofing in ASDM but no luck.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your inputs greatly appreciated.&lt;/P&gt;&lt;P&gt;Thx in advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Janakan&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 10:17:01 GMT</pubDate>
    <dc:creator>rjanakan</dc:creator>
    <dc:date>2019-03-10T10:17:01Z</dc:date>
    <item>
      <title>Allow Land attack</title>
      <link>https://community.cisco.com/t5/network-security/allow-land-attack/m-p/614469#M92084</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a Cisco ASA 5510 and couple of webservers behind it. For some specific applications, those webservers call the  website hosted on the same box. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The appliance sees that as a Land Attack and gives the following error:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Deny IP due to Land Attack from a.b.c.d to a.b.c.d&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any way I can disable this? I tried disabling Anti-spoofing in ASDM but no luck.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your inputs greatly appreciated.&lt;/P&gt;&lt;P&gt;Thx in advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Janakan&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 10:17:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allow-land-attack/m-p/614469#M92084</guid>
      <dc:creator>rjanakan</dc:creator>
      <dc:date>2019-03-10T10:17:01Z</dc:date>
    </item>
    <item>
      <title>Re: Allow Land attack</title>
      <link>https://community.cisco.com/t5/network-security/allow-land-attack/m-p/614470#M92088</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This message appears when the firewall receives a packet with the IP source address equal to the IP destination, and the &lt;/P&gt;&lt;P&gt;destination port equal to the source port.It is due to spoofing.Use Access-lists to prevent from and to the same address.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 20 Oct 2006 20:49:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allow-land-attack/m-p/614470#M92088</guid>
      <dc:creator>irisrios</dc:creator>
      <dc:date>2006-10-20T20:49:14Z</dc:date>
    </item>
    <item>
      <title>Re: Allow Land attack</title>
      <link>https://community.cisco.com/t5/network-security/allow-land-attack/m-p/614471#M92091</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the reply. Well, yea I'm receiving Land Attack because the application I run on my webserver calls it's own URL.(There is a work around by changing the URL with localhost or giving private IP). However, it would take sometime to make the code change. So, for timebeing I'd like to disable land attack and would liek to allow the traffic from a packet whose source/destination IP and port numbers are same.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Janakan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 21 Oct 2006 10:19:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/allow-land-attack/m-p/614471#M92091</guid>
      <dc:creator>rjanakan</dc:creator>
      <dc:date>2006-10-21T10:19:30Z</dc:date>
    </item>
  </channel>
</rss>

