Ethereal-users: [Ethereal-users] PIX Floodguard Question

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: "Mark Holloway" <mholloway@xxxxxxxxxxxxxxxxxxx>
Date: Wed, 11 Jun 2003 10:08:44 -0700
After performing a sniff between one of my local server which talks to a
remote server and seeing a large amount of retransmits, I found that the
Cisco PIX firewall's "floodguard" was creating false positives.  I had
to turn off the floodguard in order to make packets flow properly, but I
am wondering if anyone is aware of enabling floodguard on particular
interfaces.  The only option I can see is to either enable or disable
floodguard and this is global for all interfaces.  The purpose of
floodguard is to prevent SYN flood attacks.  I appreciate the help and I
am sorry if anyone feels this is off-topic.



Regards,
Mark Holloway
Sr. Network Engineer - Arclight Systems
d. 702-253-3861 \\ mobile 702-349-6170