Thread: FIN+ACK+PSH
View Single Post
  #1 (permalink)  
Old 2007-01-24
yogi_ccse yogi_ccse is offline
Member
 
Join Date: 2006-11-08
Posts: 55
Rep Power: 3
yogi_ccse has an average reputation (10+)
Default FIN+ACK+PSH

Hi All,

1. We've one web server which is accessible from outside.
Rule
Any Web Server http/https

I am seeing lot of drops by clean up rule on daily basis from the web server to internet sites. On running snoop i see when web server is sending to Internet IP's; FIN + ACK flag is set but in further few packets i see FIN+ACK+PSH which makes me in loop why its sending FIN+ACK+PSH. also why am i seeing so many drop from my web server to internet with source port as https and destinaiton port random., is the reason for those drops is FIN+ACK+PSH
Reply With Quote