Setting Strict SYN Checking (CLI Procedure)
With strict SYN checking enabled, the device enables the strict three-way handshake check for the TCP session. It enhances security by dropping data packets before the three-way handshake is done. TCP strict SYN checking is disabled by default.
![]() | Note: The strict-syn-check option cannot be enabled if no-syn-check or no-syn-check-in-tunnel is enabled. |
To enable strict SYN checking:
user@host#set security flow tcp-session strict-syn-check
Related Topics
- Junos OS Feature Support Reference for SRX Series and J Series Devices
Hide Navigation Pane
Show Navigation Pane
Download
SHA1
