View Single Post
  #4 (permalink)  
Old 2007-02-20
abusharif abusharif is offline
Senior Member
 
Join Date: 2006-04-27
Location: Twillight zone
Posts: 454
Rep Power: 3
abusharif has an average reputation (10+)
Default Re: What is a resonable number of drops?

Quote:
Originally Posted by jimmo View Post
Thanks for the response. The reports I am looking at only cover the *internal* firewalls.

Perhaps I should phrase it a different way. Assume that all of the applications are configured correctly and are not trying to talk to machines they should not. In your experience, what percentage of drop can one expect from "unexplicable" things like corrupt packets? (granted packets shouldn't be corrupt)

Well smartdefense doesnt help that much so to speak :) You can expect plenty of errors if you are using microsoft sharing (nbt,nbsession etc) and also ocassional out of state packets if u restart firewalls or push policy. Its really hard to say but most of the errors u get should be those from smartdefense. Tweaking and sometimes necessarily disabling certain checks should get this down to low numbers.
Reply With Quote