Cisco PIX land attack

ciscocisco-pix

I am continouly getting errors log Deny IP due to Land Attack from IP to IP.

Both source and destination IP address are same.

Can any one please guide me what could be the issue and how I can fix this?

Best Answer

The Land Attack spoofs the source and destination IP to be the same basically causing the machine to continuously reply to itself causing a DOS. It's a pretty old attack and most OS's are now patched to not be vulnerable to this.

In this case I think your PIX is doing what it's supposed to and dropping the traffic. I don't think you have anything to worry about.