Hello,
I have configured rate based attacks on Network Analysis to prevent a server from DoS attacks and it works fine.
Now i have to fine tune the policy and need to know how many established connections/sessions are there per source IP address. On the server i think a netstat would give that but how/where do i get on firepower how many established connections are there to the said destination(server) at peak hours.
Thanks to advise.