Question
April 17, 2008 at 07:35 PM
summers

ASA 8.0 (3) Threat Detection

by summers . Updated 18 years, 3 months ago

Hi,

My question is whether ASA actually drops potential attack packets by enabling basic threat detection.

When it reaches burst-rate or average-rate, ASA sends a system message like “[xxxx] drop rate-1 exceeded.”

Is ASA actually dropping the packet or just informing the number of potential attack reached the threshold?

Thanks in advance!

This discussion is locked

All Comments