To prevent SYN flood attacks , the NGFW uses SYN cookies to validate legitimate session establishment.
“SYN cookies allow the firewall to verify the legitimacy of new session requests without allocating resources until the handshake is completed. This prevents SYN flood attacks from exhausting system resources.”
(Source: Flood Protection Best Practices)
SYN cookies mitigate resource exhaustion by ensuring only legitimate connections are established.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit