Quantcast
Channel: Sophos User Bulletin Board
Viewing all articles
Browse latest Browse all 14361

Suspicious TCP state ?

$
0
0
How do you know if Suspicious TCP state are being reject or Drop

I am seeing a lot the logs

09:48:58 Suspicious TCP state TCP 174.36.179.119 : 6005 ?
209.200.9.78 : 3584 [ACK SYN] len=40 ttl=105 tos=0x00


08:52:14 Suspicious TCP state TCP 74.208.172.18 : 80 ? 209.200.9.78 : 1234 [ACK RST] len=40 ttl=52 tos=0x00

how would i know if they were drop, reject or do UTM9 just let them pass

Viewing all articles
Browse latest Browse all 14361

Trending Articles