Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

TCP:C2S:AMBIG:SYN-RTNS--BADSACK

Severity

Info

Recommended

No

Recommended Action

Drop Packet

Category

TCP

Release Date

2003/08/27

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

TCP: C2S Ambiguity Mismatching SACK Opt in SYN Retrans


This protocol anomaly triggers when it detects a TCP SYN retransmission where the SACK option differs from the one specified with the original SYN. Because it is unknown if the server received the first SYN, IDP cannot determine if SACK is permitted.

Extended Description

None

References

  • URL: http://www.opalsoft.net/qos/TCP-90.htm
  • URL: http://www.networksorcery.com/enp/protocol/tcp/option005.htm

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out