Enforce a standard three-way handshake to establish TCP sessions.
| Where Can I Use This? | What Do I Need? |
- NGFW (Managed by PAN-OS or Panorama)
| |
You can configure a
TCP
Split Handshake Drop in a Zone Protection profile to prevent
TCP sessions from being established unless they use the standard
three-way handshake. This task assumes that you assigned a security
zone for the interface where you want to prevent TCP split handshakes
from establishing a session.