Get count of half open tcp sessions
Hi :)
Recently a syn flood hit us and we want to protect us in the best way possible for the next time.
I found out that FortiADC can deal with it by using syn cookies. As we only have FortiGates... Can a Fortigate do something like this?
The only protection I found is the DoS protection policy's. But it seems to be less smart with a fixed threshold of pps.
If I set a threshold and we have a legitimate spike in our requests, connections from our customers would slow down or time out.
Any hints how to configure this the smartest way?
Can I somehow get the count of half opened connections from the fortigate?
Thank you!
