- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- Check Point Setting TCP SYN
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Check Point Setting TCP SYN
Hello
In the R80.40, have any method or policy can setting tcp syn packet max-length ?
ex:
If a remote hosts send tcp syn packet length over the 100 fromt port 80, then deny it.
This is a global setting or source hosts can be specified ?
Thank you.
1 Reply
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
There is no "easy" method in SmartConsole to do this.
You can try creating a service of type other with the following in the match field: tcp, dport=80, packetlen <= 100
However, I do not know if this will work.
It might be possible through modifying .def files to achieve this result, but it's not exactly obvious how and such changes are likely unsupported.
