<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5520 logs: UDP request discarded in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5520-logs-udp-request-discarded/m-p/1725890#M535415</link>
    <description>&lt;P&gt;&amp;nbsp; Just working through a newly configured 5520 and turned on debugging to try and debug some traffic.&amp;nbsp; Still working through the original problem, but noticed a stream (3 to 6 at a time) of the following message:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;UDP request discarded from 0.0.0.0/68 to MANAGEMENT:255.255.255.255/67&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; I have an INSIDE, OUTSIDE, and MANAGEMENT port, each assigned an IP address.&amp;nbsp; My question is twofold:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; - Why is the firewall trying to get an IP address (since the MANAGEMENT port already has one)?&lt;/P&gt;&lt;P&gt;&amp;nbsp; - How do I turn this behavior off?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 21:01:36 GMT</pubDate>
    <dc:creator>Scrum9cubed</dc:creator>
    <dc:date>2019-03-11T21:01:36Z</dc:date>
    <item>
      <title>ASA 5520 logs: UDP request discarded</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-logs-udp-request-discarded/m-p/1725890#M535415</link>
      <description>&lt;P&gt;&amp;nbsp; Just working through a newly configured 5520 and turned on debugging to try and debug some traffic.&amp;nbsp; Still working through the original problem, but noticed a stream (3 to 6 at a time) of the following message:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;UDP request discarded from 0.0.0.0/68 to MANAGEMENT:255.255.255.255/67&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; I have an INSIDE, OUTSIDE, and MANAGEMENT port, each assigned an IP address.&amp;nbsp; My question is twofold:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; - Why is the firewall trying to get an IP address (since the MANAGEMENT port already has one)?&lt;/P&gt;&lt;P&gt;&amp;nbsp; - How do I turn this behavior off?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:01:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-logs-udp-request-discarded/m-p/1725890#M535415</guid>
      <dc:creator>Scrum9cubed</dc:creator>
      <dc:date>2019-03-11T21:01:36Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5520 logs: UDP request discarded</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-logs-udp-request-discarded/m-p/1725891#M535423</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: verdana,geneva;"&gt;Hi Owen,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE&gt;&lt;SPAN style="font-family: verdana,geneva;"&gt;You are seeing a standard bootpc and bootps messages. This part of DHCP operation. When a host
starts up on the network, it requests an address by broadcasting a request to port 67 (this is 255.255.255.255:67). &lt;BR /&gt;It broadcasts this from 0.0.0.0:68. The ip address is 0.0.0.0 since it currently does know its own IP (hence the request). 

The DHCP server then responds with broadcast from the IP it wants to assign at port 67, to a broadcast address of &lt;BR /&gt;255.255.255.255 with a port of 68.

Judging by the message you see:

%ASA-7-710005 udp request from 0.0.0.0/68 to management 255.255.255.255/67

Indicates that there is something on that management network which is trying to find a DHCP ip address.&lt;BR /&gt;&lt;BR /&gt;You may check if there is any dhcp client misconfigured.&lt;BR /&gt;&lt;BR /&gt;Hope this helps,&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;Varun&lt;/SPAN&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Jul 2011 14:09:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-logs-udp-request-discarded/m-p/1725891#M535423</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-21T14:09:39Z</dc:date>
    </item>
  </channel>
</rss>

