rockysam39
Newbie

Posts: 16
|
 |
« on: May 22, 2008, 08:00:46 AM » |
|
I have been getting a lot of dropped packets which are not getting dropped by any rule, but the Information states - "TCP packet out of state: First packet isn't SYN tcp_flags: SYN-ACK".
I searched on various other Forums where it says - "allow such packets to go through (and thus reduce your security level) go to Global Properties, Stateful Inspection and then remove the tick mark next to "Drop out of state TCP packets", install the policy."
Can this be done? What are the security risk involved if this is done? N.B.:- We are running a Resilience Ndurant 20 Box.
I would really appreiciate if anyone can advise.
|