No we just want to let the SYN Proxy work. It passes the spoof syn traffic.
In the past we were using netscaler for syn proxy it was answering 100mbit syn traffic with 100mbit ack.
SRX never do that and accept all spoof connections and we are trying to resolve the problem