IPS device in a single interface VLAN-pairing mode

When an IPS device in a single interface VLAN-pairing mode fires a signature from the normalizer engine and TCP based packets are dropped:

  • There was no information in the IPS state table for the connection
  • There was a valid SYN ACK in the state teble but subsequent packets were fragmented and did not constitute a valid flow.

Would case a problem

Leave a Reply