Cisco Cisco Packet Data Gateway (PDG)
PSF Changes in Release 16
PSF Enhancements for 16.0 ▀
Release Change Reference, StarOS Release 16 ▄
317
CSCue95313 - ASR5k port-scan request timeout should range from 1 to 30
secs
Applicable Products: GGSN, HA, IPSG, PDSN, P-GW
Feature Changes
Port scan Request Timeout
The range for the
response-timeout
CLI command has been changed to provide the least configurable TCP/UDP
request timeout to be 1 second. Port scan detection can now happen in less time, and ensures detection at less number of
SYN packets.
SYN packets.
Previous Behavior: The
firewall port-scan protocol { tcp | udp } response-timeout
CLI command
allowed for a range of 3 to 30 seconds.
New Behavior: The
firewall port-scan protocol { tcp | udp } response-timeout
CLI command
allows for a range of 1 to 30 seconds.
Customer Impact: The customer will be able to configure TCP/UDP response timeout as low as 1 second.