Home > Archive > Cisco Security exams > May 2003 > Dropping bad traffic





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author Dropping bad traffic
spoofy

2003-05-17, 11:18 am

Anyone have any suggestions on how to drop packets with invalid options or flag combinations on a pix or on IOS?

for example if a packet has both SYn+RST flags set or if a packet has both the more fragments flag and Dont'fragmet flags set at the same time?
mtoka

2003-05-20, 11:32 am

Sounds more like IDS ?!
anchor40

2003-05-20, 12:16 pm

I agree - you'd need the new Advanced Security IOS Package that includes the IDS functionality.

Sponsored Links





Free Braindumps | MCSE braindumps software forum

Copyright 2003 - 2008 examnotes.net