cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Who Me Too'd this topic

Firepower 6.2 - action block but SYN - SYN/ACK goes through

gthjohansson
Level 4
Level 4

Hello

Though traffic gets blocked we still see SYN-SYN/AVK-ACK go through the Firewall but data did not seem to pass after that

 we tried to put a block/block with reset rule at the bottom and to have default action as block all traffic

We took all Application configuration out of access-policy rules

This means that though everything is blocked TCP reconaissance is still possible from the internet 

Does anyone have an idea of how to solve this ?

regards

Gudmundur

Who Me Too'd this topic