FAQs

Q1:Why would I want to use a firewall?
A1: A firewall, usually placed at strategic points in your network, lets you provide access control to devices on your network.
Q2:If I implement TCP intercept, do I need to use an ACL?
A2: Yes. TCP intercept intercepts the SYN packets sent to devices you identify. You use an extended ACL to define the devices you want to protect.
Q3:I want to use TCP intercept in my environment, but I don't want the firewall to intercept the SYN packets. Can I still use TCP intercept?
A3: Yes. You can use TCP intercept in watch mode. While TCP intercept is in this mode, it passively watches the connection requests flowing through the firewall. If a connection fails to establish in a defined period of time, the firewall ...

Get CCIE Practical Studies: Security (CCIE Self-Study) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.