<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi, The message you have in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537896#M236343</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The message you have copied does not include the Syslog ID number for the message but it seems to me that it is 733100&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can disable the log message ID with the following command&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;logging message 733100&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To my understanding the purpose of this message is to tell you that there is traffic destined through the ASA that is blocked and rate at which this traffic is blocked has gone over a specified treshold and therefore reported with a log message.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can view the Cisco document related to this log message in the following page:&lt;/P&gt;&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/syslog-guide/syslogs/logmsgs.html#pgfId-4963969&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope this helps &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;</description>
    <pubDate>Tue, 22 Jul 2014 06:24:21 GMT</pubDate>
    <dc:creator>Jouni Forss</dc:creator>
    <dc:date>2014-07-22T06:24:21Z</dc:date>
    <item>
      <title>Syslog message</title>
      <link>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537894#M236338</link>
      <description>&lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;&lt;TD&gt;&lt;P&gt;[ Scanning] drop rate-1 exceeded. Current burst rate is 4 per second, max configured rate is 10; Current average rate is 7 per second, max configured rate is 5; Cumulative total count is 4424&lt;/P&gt;&lt;P&gt;Hi team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am using cisco ASA 5540.I have monitored my firewall through ASDM. In syslog message, I am getting the above mentioned message. So I want to remove the particular syslog message. How I remove above syslog message? what is&amp;nbsp;purpose of getting this message?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Mohamed kabeer&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:30:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537894#M236338</guid>
      <dc:creator>Mohamed Kabeer S</dc:creator>
      <dc:date>2019-03-12T04:30:52Z</dc:date>
    </item>
    <item>
      <title>Hi Kabeer, You would have</title>
      <link>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537895#M236339</link>
      <description>&lt;P&gt;Hi Kabeer,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You would have enabled threat detection in your cisco asa if am not wrong. You can disable threat detection to avoid this message in syslog.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Karthik&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jul 2014 06:23:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537895#M236339</guid>
      <dc:creator>nkarthikeyan</dc:creator>
      <dc:date>2014-07-22T06:23:27Z</dc:date>
    </item>
    <item>
      <title>Hi, The message you have</title>
      <link>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537896#M236343</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The message you have copied does not include the Syslog ID number for the message but it seems to me that it is 733100&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can disable the log message ID with the following command&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;logging message 733100&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To my understanding the purpose of this message is to tell you that there is traffic destined through the ASA that is blocked and rate at which this traffic is blocked has gone over a specified treshold and therefore reported with a log message.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can view the Cisco document related to this log message in the following page:&lt;/P&gt;&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/syslog-guide/syslogs/logmsgs.html#pgfId-4963969&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope this helps &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jul 2014 06:24:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537896#M236343</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2014-07-22T06:24:21Z</dc:date>
    </item>
    <item>
      <title>Hi Karthik, Thanks for your</title>
      <link>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537897#M236344</link>
      <description>&lt;P&gt;Hi Karthik,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your response.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How I disable the threat detection in ASA. Can you please mention the CLI cmd? If I disable the syslog message. It will anything.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Mohamed kabeer.s&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jul 2014 09:28:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537897#M236344</guid>
      <dc:creator>Mohamed Kabeer S</dc:creator>
      <dc:date>2014-07-22T09:28:02Z</dc:date>
    </item>
    <item>
      <title>Hi, no threat-detection &lt;your</title>
      <link>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537898#M236345</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;no threat-detection &amp;lt;your settings&amp;gt; what you have set in your firewall. This error you get because of many reasons.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;or else you can disable the specific message as said by jouni to stop receiving such logs in to syslog.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;so either you can tweak your configs or remove the threat-detection or that log message... option is yours....&lt;/P&gt;&lt;P&gt;Refer the below mentioned forum and cisco link for more idea....&lt;/P&gt;&lt;P&gt;https://supportforums.cisco.com/discussion/10724351/scanning-drop-rate-1-exceeded-messages&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;http://www.google.com/url?sa=t&amp;amp;rct=j&amp;amp;q=&amp;amp;esrc=s&amp;amp;source=web&amp;amp;cd=2&amp;amp;cad=rja&amp;amp;uact=8&amp;amp;ved=0CCoQFjAB&amp;amp;url=http%3A%2F%2Fwww.cisco.com%2Fc%2Fen%2Fus%2Fsupport%2Fdocs%2Fsecurity%2Fasa-5500-x-series-next-generation-firewalls%2F113685-asa-threat-detection.html&amp;amp;ei=SDLOU4aqI9K3yASZ_YKQDA&amp;amp;usg=AFQjCNG3eYp-vwWZHgsW8dPnnrhoVTeG2w&amp;amp;bvm=bv.71198958,d.aWw&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Karthik&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jul 2014 09:46:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-message/m-p/2537898#M236345</guid>
      <dc:creator>nkarthikeyan</dc:creator>
      <dc:date>2014-07-22T09:46:46Z</dc:date>
    </item>
  </channel>
</rss>

