Solved

CIsco ASA 5510 SYN attack

Posted on 2010-09-20
1
1,439 Views
Last Modified: 2013-11-16
We have recently upgraded from a PIX 515e to an ASA 5510 and am having problems with SYN attacks to 2 web servers on our DMZ which we did not have previously with the 515e.
Currently scanning attacks reads 121 and SYN attacks is saying 92

Is there anything we can do? the basic security is set.
Does anything in the ACL need changing to prevent this?


Thanks,
0
Comment
Question by:CTEC
1 Comment
 
LVL 18

Accepted Solution

by:
jmeggers earned 500 total points
Comment Utility
You can limit embryonic connections, which is usually what's done to combat syn attacks.  See http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00809763ea.shtml
0

Featured Post

Highfive Gives IT Their Time Back

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

6 Experts available now in Live!

Get 1:1 Help Now