cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
321
Views
0
Helpful
1
Replies

URL limit connection

Hello,

With a ASA + AIP-SSM can i limit the number of connection to one URL?, i can not limit by ip because in the same ip i have various IP.

Regards.

1 Reply 1

b.hsu
Level 5
Level 5

You can limit TCP and UDP connections and embryonic connections. Limiting the number of connections and embryonic connections protects you from a DoS attack. The security appliance uses the embryonic limit to trigger TCP Intercept, which protects inside systems from a DoS attack perpetrated by flooding an interface with TCP SYN packets. An embryonic connection is a connection request that has not finished the necessary handshake between source and destination.

TCP normalization is a feature consisting of advanced TCP connection settings designed to drop packets that do not appear normal.

http://www.cisco.com/en/US/products/ps6120/products_configuration_guide_chapter09186a0080450bf6.html