Hi,
I'm not clear on the difference between the resetinbound|resetoutside options in the Service command and how I should use one in preference to the other. It would be great if someone could provide a simple explanation.
What I want to do is for the firewall to send back a TCP RST for any TCP SYNs that are rejected by ACL.
Is it possible to configure the firewall to DROP send back an ICMP reponse (e.g. ICMP DESTINATION UNREACHABLE) instead of DROP and TCP RST? Or would this be considered a security risk?
Can anyone shed some light?
Vito