i find that ASA firewall can enable threat-detection to prevent syn flood attack, i am not sure is true or not, becuase i am not yet test this command.
If that is right, what is the result with
#threat-detection scanning-threat shun except 192.168.0.0 255.255.255.0
is it the ASA will skip the syc attack scan on subnet 192.168.0.0/24?
Moreover, is there any syc flood attack program suggestion, because i would like to have some test on firewall.