cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
319
Views
0
Helpful
1
Replies

threat-detection scanning-threat command

CHUN FAI LAW
Level 1
Level 1

i find that ASA firewall can enable threat-detection to prevent syn flood attack, i am not sure is true or not, becuase i am not yet test this command.

If that is right, what is the result with

#threat-detection scanning-threat shun except 192.168.0.0 255.255.255.0

is it the ASA will skip the syc attack scan on subnet 192.168.0.0/24?

Moreover, is there any syc flood attack program suggestion, because i would like to have some test on firewall.
1 Reply 1

Ajay Saini
Cisco Employee
Cisco Employee

Hi,

It will skip the syn attack from subnet 192.168.0.0/24 and not on subnet 192.168.0.0/24.

Not sure about programs capable of generating syn flood attack.

-

AJ

Review Cisco Networking for a $25 gift card