01-28-2008 12:04 AM - edited 02-21-2020 01:52 AM
Hello,
I fund a www-site http://www.searchsecurity.de/themenkanaele/plattformsicherheit/schwachstellenmanagement/allgemein/articles/106752/ (only German). I read that it is possible to do a DoS on cisco PIX 500 series and series 5500 ASA, when the TTL is enable.
How I can check that? or resolve the Problem?
thank,
Marie
Solved! Go to Solution.
01-28-2008 12:19 AM
What version of code are you running the Pix or ASA. Refer the "Affected Products" section for details on the affected products and versions. This should point you in the right direction.
Also, listed in the URL is Workarounds and Fixed Versions that you may want to check.
Regards,
Arul
01-28-2008 12:33 AM
Yes, if you run the command "ASA#show running-config | include decrement-ttl" and do not see TTL Enabled, then you are not affected.
Regards,
Arul
01-28-2008 12:07 AM
01-28-2008 12:19 AM
What version of code are you running the Pix or ASA. Refer the "Affected Products" section for details on the affected products and versions. This should point you in the right direction.
Also, listed in the URL is Workarounds and Fixed Versions that you may want to check.
Regards,
Arul
01-28-2008 12:25 AM
I have a PIX 515 version 7.22 and ASA 5520 version 7.22.
I see that the decrement-ttl is not enable. It is Ok.
Best Regards
Marie
01-28-2008 12:33 AM
Yes, if you run the command "ASA#show running-config | include decrement-ttl" and do not see TTL Enabled, then you are not affected.
Regards,
Arul
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide