cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
818
Views
0
Helpful
2
Replies

fragmenteted packet through PIX

g.rodegari
Level 1
Level 1

Hi,

my question is:

- How PIX works normally with fragmented packets? reley these, blocks, discards or reassebles?

- And what changes if I type: "sysopt security fragguard"?

THX,

Graz

2 Replies 2

yusuff
Cisco Employee
Cisco Employee

Following link explains your queries regarding default action for fragmented packets arriving on PIX.

In order to manage fragmented packets arriving on PIX which are legitimate, you need to configure the 'fragment' command on PIX.

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_62/cmdref/df.htm#xtocid15

Using the 'sysopt security fragguard' protects the PIX against IP fragment style attacks recommended in RFC 1858 against the many others: eg teardrop, land, etc.

HTH

R/Yusuf

g.rodegari
Level 1
Level 1

Thanks!

Graz.

Review Cisco Networking for a $25 gift card