<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic What does this Syslog entry mean? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369540#M759575</link>
    <description>&lt;P&gt;All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can somebody educate me as to what the below syslog entries mean?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;=================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;017842: Apr&amp;nbsp; 3 22:31:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017846: Apr&amp;nbsp; 3 22:32:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017851: Apr&amp;nbsp; 3 22:33:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017855: Apr&amp;nbsp; 3 22:34:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 9 packets&lt;/P&gt;&lt;P&gt;017990: Apr&amp;nbsp; 3 23:02:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 10 packets&lt;BR /&gt;017994: Apr&amp;nbsp; 3 23:03:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;/P&gt;&lt;P&gt;018004: Apr&amp;nbsp; 3 23:05:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 8 packets&lt;BR /&gt;018008: Apr&amp;nbsp; 3 23:06:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 8 packets&lt;BR /&gt;018012: Apr&amp;nbsp; 3 23:07:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 5 packets&lt;BR /&gt;018016: Apr&amp;nbsp; 3 23:08:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;/P&gt;&lt;P&gt;=================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd like to know if this may be affected outbound traffic from my Ethernet to my Dialer1 interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James E&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 17:28:56 GMT</pubDate>
    <dc:creator>jaesposito</dc:creator>
    <dc:date>2019-03-11T17:28:56Z</dc:date>
    <item>
      <title>What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369540#M759575</link>
      <description>&lt;P&gt;All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can somebody educate me as to what the below syslog entries mean?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;=================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;017842: Apr&amp;nbsp; 3 22:31:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017846: Apr&amp;nbsp; 3 22:32:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017851: Apr&amp;nbsp; 3 22:33:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017855: Apr&amp;nbsp; 3 22:34:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 9 packets&lt;/P&gt;&lt;P&gt;017990: Apr&amp;nbsp; 3 23:02:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 10 packets&lt;BR /&gt;017994: Apr&amp;nbsp; 3 23:03:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;/P&gt;&lt;P&gt;018004: Apr&amp;nbsp; 3 23:05:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 8 packets&lt;BR /&gt;018008: Apr&amp;nbsp; 3 23:06:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 8 packets&lt;BR /&gt;018012: Apr&amp;nbsp; 3 23:07:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 5 packets&lt;BR /&gt;018016: Apr&amp;nbsp; 3 23:08:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;/P&gt;&lt;P&gt;=================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd like to know if this may be affected outbound traffic from my Ethernet to my Dialer1 interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James E&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 17:28:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369540#M759575</guid>
      <dc:creator>jaesposito</dc:creator>
      <dc:date>2019-03-11T17:28:56Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369541#M759576</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Explanation for the syslog message:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Some packet-matching logs were missed because the access list log messages were rate limited, or no access list log buffers were available.&lt;/P&gt;&lt;P&gt;Most likely, you have logging enabled for the ACL and there were more matches that the log can handle or the buffers were full at that moment.&lt;/P&gt;&lt;P&gt;In theory, this should not affect traffic. It is just telling you that at that moment, the ASA was not able to log the packets from the access-list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check your configuration to see if you have logging enabled for all the ACLs, and the size of the buffer for the logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 21:45:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369541#M759576</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-04T21:45:29Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369542#M759577</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;jaesposito wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can somebody educate me as to what the below syslog entries mean?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;=================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;017842: Apr&amp;nbsp; 3 22:31:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017846: Apr&amp;nbsp; 3 22:32:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017851: Apr&amp;nbsp; 3 22:33:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;BR /&gt;017855: Apr&amp;nbsp; 3 22:34:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 9 packets&lt;/P&gt;&lt;P&gt;017990: Apr&amp;nbsp; 3 23:02:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 10 packets&lt;BR /&gt;017994: Apr&amp;nbsp; 3 23:03:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;/P&gt;&lt;P&gt;018004: Apr&amp;nbsp; 3 23:05:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 8 packets&lt;BR /&gt;018008: Apr&amp;nbsp; 3 23:06:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 8 packets&lt;BR /&gt;018012: Apr&amp;nbsp; 3 23:07:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 5 packets&lt;BR /&gt;018016: Apr&amp;nbsp; 3 23:08:17: %SEC-6-IPACCESSLOGRL: access-list logging rate-limited or missed 4 packets&lt;/P&gt;&lt;P&gt;=================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd like to know if this may be affected outbound traffic from my Ethernet to my Dialer1 interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James E&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is simply to do with logging ie. it has nothing to do with the actual traffic passing through the router -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="active_link" href="http://www.cisco.com/cgi-bin/Support/Errordecoder/index.cgi?action=search&amp;amp;index=all&amp;amp;locale=en&amp;amp;query=SEC-6-IPACCESSLOGRL&amp;amp;counter=0&amp;amp;paging=5&amp;amp;links=reference&amp;amp;sa=Submit"&gt;Error message decoder &lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Cisco are currently donating money to the Haiti earthquake appeal for every rating so please consider rating all helpful posts.&lt;/EM&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 21:46:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369542#M759577</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2010-04-04T21:46:29Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369543#M759578</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'd like to increase the buffers so I can log those matches (as opposed to receiving the rate-limiting messages).&amp;nbsp; Can you help me tweak my configuration to capture these matches in syslog? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is my config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;=============================================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;version 12.4&lt;BR /&gt;no service pad&lt;BR /&gt;service tcp-keepalives-in&lt;BR /&gt;service tcp-keepalives-out&lt;BR /&gt;service timestamps debug datetime&lt;BR /&gt;service timestamps log datetime localtime&lt;BR /&gt;service password-encryption&lt;BR /&gt;service sequence-numbers&lt;BR /&gt;!&lt;BR /&gt;hostname Router&lt;BR /&gt;!&lt;BR /&gt;boot-start-marker&lt;BR /&gt;boot-end-marker&lt;BR /&gt;!&lt;BR /&gt;memory-size iomem 5&lt;BR /&gt;logging userinfo&lt;BR /&gt;logging buffered 1048576 informational&lt;BR /&gt;no logging console&lt;BR /&gt;enable secret 5 XXXXXXXXXXXXXXXXXX&lt;BR /&gt;!&lt;BR /&gt;aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa authentication login default local enable&lt;BR /&gt;aaa authentication login userauthen local&lt;BR /&gt;aaa authorization exec default local if-authenticated&lt;BR /&gt;aaa authorization commands 15 default local if-authenticated&lt;BR /&gt;aaa authorization network default local if-authenticated&lt;BR /&gt;aaa authorization network groupauthor local if-authenticated&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;clock timezone EST -5&lt;BR /&gt;clock summer-time EST recurring&lt;BR /&gt;no ip source-route&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;no ip dhcp use vrf connected&lt;BR /&gt;ip dhcp excluded-address 10.10.10.1&lt;BR /&gt;!&lt;BR /&gt;ip dhcp pool CLIENT&lt;BR /&gt;&amp;nbsp;&amp;nbsp; import all&lt;BR /&gt;&amp;nbsp;&amp;nbsp; network 10.10.10.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;&amp;nbsp; default-router 10.10.10.1&lt;BR /&gt;&amp;nbsp;&amp;nbsp; lease 0 2&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip cef&lt;BR /&gt;ip domain name Router&lt;BR /&gt;ip host Router 10.10.10.1&lt;BR /&gt;ip name-server 205.152.144.23&lt;BR /&gt;ip name-server 205.152.132.23&lt;BR /&gt;no ip bootp server&lt;BR /&gt;ip flow-cache timeout active 1&lt;BR /&gt;ip inspect name myfw cuseeme timeout 3600&lt;BR /&gt;ip inspect name myfw ftp timeout 3600&lt;BR /&gt;ip inspect name myfw rcmd timeout 3600&lt;BR /&gt;ip inspect name myfw realaudio timeout 3600&lt;BR /&gt;ip inspect name myfw smtp timeout 3600&lt;BR /&gt;ip inspect name myfw tftp timeout 30&lt;BR /&gt;ip inspect name myfw udp timeout 15&lt;BR /&gt;ip inspect name myfw tcp timeout 3600&lt;BR /&gt;ip inspect name myfw h323 timeout 3600&lt;BR /&gt;ip auth-proxy max-nodata-conns 3&lt;BR /&gt;ip admission max-nodata-conns 3&lt;BR /&gt;login block-for 60 attempts 3 within 60&lt;BR /&gt;login on-failure log&lt;BR /&gt;login on-success log&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;username YYYYYYYY password 7 XXXXXXXXXXXXXXXXXX&lt;BR /&gt;archive&lt;BR /&gt; log config&lt;BR /&gt;&amp;nbsp; logging enable&lt;BR /&gt;&amp;nbsp; notify syslog&lt;BR /&gt;&amp;nbsp; hidekeys&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip ssh time-out 60&lt;BR /&gt;ip ssh version 2&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0&lt;BR /&gt; ip address 10.10.10.1 255.255.255.0&lt;BR /&gt; ip access-group FromLAN in&lt;BR /&gt; no ip redirects&lt;BR /&gt; no ip unreachables&lt;BR /&gt; no ip proxy-arp&lt;BR /&gt; ip nat inside&lt;BR /&gt; ip virtual-reassembly&lt;BR /&gt; ip tcp adjust-mss 1452&lt;BR /&gt; hold-queue 100 out&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet2&lt;BR /&gt; no ip address&lt;BR /&gt; no ip redirects&lt;BR /&gt; no ip unreachables&lt;BR /&gt; no ip proxy-arp&lt;BR /&gt; shutdown&lt;BR /&gt; hold-queue 100 out&lt;BR /&gt;!&lt;BR /&gt;interface ATM0&lt;BR /&gt; bandwidth 384&lt;BR /&gt; no ip address&lt;BR /&gt; ip verify unicast reverse-path&lt;BR /&gt; no ip redirects&lt;BR /&gt; no ip unreachables&lt;BR /&gt; atm vc-per-vp 64&lt;BR /&gt; no atm ilmi-keepalive&lt;BR /&gt; dsl operating-mode auto&lt;BR /&gt; pvc 8/35&lt;BR /&gt;&amp;nbsp; vbr-nrt 384 384&lt;BR /&gt;&amp;nbsp; max-reserved-bandwidth 80&lt;BR /&gt;&amp;nbsp; pppoe-client dial-pool-number 1&lt;BR /&gt; !&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet1&lt;BR /&gt; duplex auto&lt;BR /&gt; speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet2&lt;BR /&gt; shutdown&lt;BR /&gt; duplex auto&lt;BR /&gt; speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet3&lt;BR /&gt; shutdown&lt;BR /&gt; duplex auto&lt;BR /&gt; speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet4&lt;BR /&gt; shutdown&lt;BR /&gt; duplex auto&lt;BR /&gt; speed auto&lt;BR /&gt;!&lt;BR /&gt;interface Dialer1&lt;BR /&gt; bandwidth 384&lt;BR /&gt; ip address negotiated&lt;BR /&gt; ip access-group FromInternet in&lt;BR /&gt; ip verify unicast reverse-path&lt;BR /&gt; ip mtu 1492&lt;BR /&gt; ip nat outside&lt;BR /&gt; ip inspect myfw out&lt;BR /&gt; ip virtual-reassembly&lt;BR /&gt; encapsulation ppp&lt;BR /&gt; ip route-cache flow&lt;BR /&gt; ip tcp adjust-mss 1452&lt;BR /&gt; dialer pool 1&lt;BR /&gt; dialer remote-name redback&lt;BR /&gt; dialer-group 1&lt;BR /&gt; no cdp enable&lt;BR /&gt; ppp authentication pap chap callin&lt;BR /&gt; ppp chap hostname XXXXXXXX&lt;/P&gt;&lt;P&gt; ppp chap password 7 XXXXXXXXXXXXXXXXXX&lt;BR /&gt; ppp pap sent-username XXXXXXXXXXXXXXXXXX password 7 XXXXXXXXXXXXXXXXXX&lt;BR /&gt; ppp ipcp dns request&lt;BR /&gt; ppp ipcp wins request&lt;BR /&gt;!&lt;BR /&gt;ip forward-protocol nd&lt;BR /&gt;no ip forward-protocol udp tftp&lt;BR /&gt;no ip forward-protocol udp nameserver&lt;BR /&gt;no ip forward-protocol udp netbios-ns&lt;BR /&gt;no ip forward-protocol udp netbios-dgm&lt;BR /&gt;no ip forward-protocol udp tacacs&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 Dialer1&lt;BR /&gt;!&lt;BR /&gt;no ip http server&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;!&lt;BR /&gt;ip nat inside source list 23 interface Dialer1 overload&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip access-list extended FromInternet&lt;BR /&gt; permit ip 66.175.107.192 0.0.0.31 any log&lt;BR /&gt; permit ip host 74.233.236.14 any log&lt;BR /&gt;&amp;nbsp; permit ip host 205.152.144.23 any log&lt;BR /&gt; permit ip host 204.152.132.23 any log&lt;BR /&gt;&amp;nbsp; permit ip 65.25.8.224 0.0.0.31 any log&lt;BR /&gt; permit ip 69.25.240.224 0.0.0.31 any log&lt;BR /&gt; permit ip host 66.165.74.175 any log&lt;BR /&gt;&amp;nbsp; permit ip host 67.51.255.195 any log&lt;BR /&gt; permit ip host 66.165.74.195 any log&lt;BR /&gt; permit ip host 204.245.225.195 any log&lt;BR /&gt;&amp;nbsp; permit ip host 204.245.227.39 any log&lt;BR /&gt;&amp;nbsp; permit ip 65.215.93.0 0.0.0.255 any log&lt;BR /&gt; permit ip host 192.92.91.53 any log&lt;BR /&gt;&amp;nbsp; permit ip 67.151.126.192 0.0.0.31 any log&lt;BR /&gt; permit ip host 66.38.151.217 any log&lt;BR /&gt;&amp;nbsp; permit ip host 93.184.71.27 any log&lt;BR /&gt; permit ip 89.202.149.32 0.0.0.31 any log&lt;BR /&gt; permit ip 89.202.157.224 0.0.0.31 any log&lt;BR /&gt; permit ip 89.202.157.192 0.0.0.31 any log&lt;BR /&gt; permit ip host 90.183.101.10 any log&lt;BR /&gt; permit ip 62.67.184.64 0.0.0.31 any log&lt;BR /&gt; permit ip host 93.184.71.10 any log&lt;BR /&gt; permit ip host 93.184.71.21 any log&lt;BR /&gt;&amp;nbsp; permit tcp host 69.173.64.15 any eq 123 log&lt;BR /&gt; permit udp host 69.173.64.15 any eq ntp log&lt;BR /&gt; permit tcp host 66.254.57.165 any eq 123 log&lt;BR /&gt; permit udp host 66.254.57.165 any eq ntp log&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; ip host 0.0.0.0 any log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip 10.0.0.0 0.255.255.255 any&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip 127.0.0.0 0.255.255.255 any&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip 172.16.0.0 0.15.255.255 any&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip 192.168.0.0 0.0.255.255 any&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip 224.0.0.0 31.255.255.255 any&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip 169.254.0.0 0.0.255.255 any&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip 66.252.232.0 0.0.1.255 any&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip 216.89.237.0 0.0.0.255 any&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; udp any any eq netbios-ns log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; udp any any eq netbios-dgm log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; tcp any any eq 135 log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; tcp any any eq 139 log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; tcp any any eq 443 log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; tcp any any eq 445 log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; udp any any eq 1434 log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; tcp any any eq 3389 log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; tcp any any eq 4444 log-input&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; tcp any any eq telnet log-input&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; tcp any any eq www log-input&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; icmp any any echo log-input&lt;BR /&gt;&amp;nbsp; permit icmp any any echo-reply&lt;BR /&gt; permit icmp any any unreachable&lt;BR /&gt; permit icmp any any time-exceeded&lt;BR /&gt; permit icmp any any source-quench&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; ip any any&lt;BR /&gt;ip access-list extended FromLAN&lt;BR /&gt;&amp;nbsp; permit udp any host 205.152.144.23 eq domain&lt;BR /&gt; permit udp any host 204.152.132.23 eq domain&lt;BR /&gt; permit udp any host 10.10.10.1 eq domain&lt;BR /&gt; permit tcp any host 205.152.144.23 eq domain&lt;BR /&gt; permit tcp any host 204.152.132.23 eq domain&lt;BR /&gt; permit tcp any host 10.10.10.1 eq domain&lt;BR /&gt;&amp;nbsp; permit ip any 65.25.8.224 0.0.0.31 log&lt;BR /&gt; permit ip any 69.25.240.224 0.0.0.31 log&lt;BR /&gt; permit ip any host 66.165.74.175 log&lt;BR /&gt;&amp;nbsp; permit ip any host 67.51.255.195 log&lt;BR /&gt; permit ip any host 66.165.74.195 log&lt;BR /&gt; permit ip any host 204.245.225.195 log&lt;BR /&gt;&amp;nbsp; permit ip any host 204.245.227.39 log&lt;BR /&gt;&amp;nbsp; permit ip any 67.151.126.192 0.0.0.31 log&lt;BR /&gt; permit ip any host 66.38.151.217 log&lt;BR /&gt;&amp;nbsp; permit ip any 65.215.93.0 0.0.0.255 log&lt;BR /&gt; permit ip any host 192.92.91.53 log&lt;BR /&gt;&amp;nbsp; permit ip any host 66.165.171.186 log&lt;BR /&gt;&amp;nbsp; permit ip any host 93.184.71.27 log&lt;BR /&gt; permit ip any 89.202.149.32 0.0.0.31 log&lt;BR /&gt; permit ip any 89.202.157.192 0.0.0.31 log&lt;BR /&gt; permit ip any 89.202.157.224 0.0.0.31 log&lt;BR /&gt; permit ip any host 90.183.101.10 log&lt;BR /&gt; permit ip any 62.67.184.64 0.0.0.31 log&lt;BR /&gt; permit ip any host 93.184.71.10 log&lt;BR /&gt; permit ip any host 93.184.71.21 log&lt;BR /&gt;&amp;nbsp; permit ip any host 72.3.254.86 log&lt;BR /&gt;&amp;nbsp; permit ip any host 12.34.65.180 log&lt;BR /&gt; permit ip any 64.28.78.160 0.0.0.31 log&lt;BR /&gt; permit ip any host 198.171.138.207 log&lt;BR /&gt; permit ip any host 209.161.16.30 log&lt;BR /&gt; permit ip any host 82.165.61.145 log&lt;BR /&gt;&amp;nbsp; permit ip any 12.34.65.0 0.0.0.255 log&lt;BR /&gt;&amp;nbsp; permit udp any any eq bootps bootpc&lt;BR /&gt; permit udp any any eq bootps bootps&lt;BR /&gt;&amp;nbsp; permit ip any 171.128.0.0 0.63.255.255 log&lt;BR /&gt; permit ip any 171.192.0.0 0.7.255.255 log&lt;BR /&gt; permit ip any 171.200.0.0 0.3.255.255 log&lt;BR /&gt; permit ip any 171.204.0.0 0.1.255.255 log&lt;BR /&gt; permit ip any 171.206.0.0 0.1.255.255 log&lt;BR /&gt;&amp;nbsp; permit ip any 66.175.107.192 0.0.0.31 log&lt;BR /&gt;&amp;nbsp; permit tcp any host 140.239.191.10 log&lt;BR /&gt; permit udp any host 140.239.191.10 log&lt;BR /&gt;&amp;nbsp; permit tcp any host 12.148.220.160 log&lt;BR /&gt; permit udp any host 12.148.220.160 log&lt;BR /&gt;&amp;nbsp; permit tcp any 209.46.44.0 0.0.0.255 log&lt;BR /&gt; permit udp any 209.46.44.0 0.0.0.255 log&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; ip any host 64.4.20.174 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 64.4.20.169 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 64.4.20.184 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 64.4.20.186 log&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; ip any host 80.12.96.17 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 80.12.96.64 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 192.204.11.25 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 192.204.11.35 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 192.204.11.49 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 192.204.11.80 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 198.64.174.41 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 198.64.174.64 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 209.107.220.27 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 209.107.220.35 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 209.107.220.59 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 209.107.220.82 log&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.165.136 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.165.137 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.165.175 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.165.177 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.186.17 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.186.19 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.186.47 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.186.49 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.186.77 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.186.79 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.186.107 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.54.186.109 log&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; ip any host 65.55.17.25 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.55.17.26 log&lt;BR /&gt; deny&amp;nbsp;&amp;nbsp; ip any host 65.55.17.27 log&lt;BR /&gt;&amp;nbsp; permit tcp any 62.67.184.64 0.0.0.31 eq www 443 log&lt;BR /&gt; permit tcp any 64.0.0.0 0.0.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 64.4.0.0 0.0.63.255 eq www 443 log&lt;BR /&gt; permit tcp any 64.94.0.0 0.1.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 64.142.64.0 0.0.63.255 eq www 443 log&lt;BR /&gt; permit tcp any 64.158.0.0 0.0.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 64.211.0.0 0.0.127.255 eq www 443 log&lt;BR /&gt; permit tcp any 64.211.128.0 0.0.63.255 eq www 443 log&lt;BR /&gt; permit tcp any 64.211.192.0 0.0.31.255 eq www 443 log&lt;BR /&gt; permit tcp any 64.212.0.0 0.3.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 65.48.0.0 0.7.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 65.59.0.0 0.0.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 68.142.64.0 0.0.63.255 eq www 443 log&lt;BR /&gt; permit tcp any 207.46.0.0 0.0.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 207.138.0.0 0.0.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 208.73.208.0 0.0.7.255 eq www 443 log&lt;BR /&gt; permit tcp any 208.172.0.0 0.0.255.255 eq www 443 log&lt;BR /&gt; permit tcp any 213.138.128.0 0.0.31.255 eq www 443 log&lt;BR /&gt;&amp;nbsp; permit ip any host 74.233.55.33 log&lt;BR /&gt;&amp;nbsp; deny&amp;nbsp;&amp;nbsp; ip any any&lt;BR /&gt;logging history debugging&lt;BR /&gt;logging trap debugging&lt;BR /&gt;logging origin-id hostname&lt;BR /&gt;logging source-interface Dialer1&lt;BR /&gt;logging 74.233.236.14&lt;BR /&gt;access-list 23 permit 10.10.10.0 0.0.0.255 log&lt;BR /&gt;access-list 23 deny&amp;nbsp;&amp;nbsp; any log&lt;BR /&gt;access-list 25 permit 74.233.236.14 log&lt;BR /&gt;access-list 25 permit 66.175.107.192 0.0.0.31 log&lt;BR /&gt;access-list 25 deny&amp;nbsp;&amp;nbsp; any log&lt;BR /&gt;dialer-list 1 protocol ip permit&lt;BR /&gt;no cdp run&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;!&lt;BR /&gt;banner motd ^CCC&lt;BR /&gt;*** Unauthorized access is strictly prohibited.&amp;nbsp; ALL connections are monitored.&lt;BR /&gt;***^C&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt; exec-timeout 15 0&lt;BR /&gt; no modem enable&lt;BR /&gt; stopbits 1&lt;BR /&gt;line aux 0&lt;BR /&gt; exec-timeout 15 0&lt;BR /&gt; stopbits 1&lt;BR /&gt;line vty 0 4&lt;BR /&gt; access-class 25 in&lt;BR /&gt; exec-timeout 120 0&lt;BR /&gt; password 7 XXXXXXXXXXXXXXXXXX&lt;BR /&gt; length 0&lt;BR /&gt; transport input ssh&lt;BR /&gt;!&lt;BR /&gt;scheduler max-task-time 5000&lt;BR /&gt;ntp logging&lt;BR /&gt;ntp authenticate&lt;BR /&gt;ntp clock-period 17179494&lt;BR /&gt;ntp source Dialer1&lt;BR /&gt;ntp server 69.173.64.15&lt;BR /&gt;ntp server 66.254.57.165&lt;BR /&gt;end&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 22:05:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369543#M759578</guid>
      <dc:creator>jaesposito</dc:creator>
      <dc:date>2010-04-04T22:05:30Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369544#M759579</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;James&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You may not necessarily want to do this as it can consume too many router processes. Increasing the buffer size takes more memory away from other processes. You may want to look at sending your messages to a syslog server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rate-limiting can also be turned off but again it can impact on the router performance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A lot does depend on how much spare resource ie. CPU/memory you have on your router currently. Have a look at the command reference covering logging and decide if you want to do this -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/customer/docs/ios/netmgmt/command/reference/nm_09.html"&gt;http://www.cisco.com/en/US/customer/docs/ios/netmgmt/command/reference/nm_09.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 22:13:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369544#M759579</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2010-04-04T22:13:52Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369545#M759580</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can use the ''logging size'' command to change the logger configuration size. This specifies the &lt;BR /&gt;maximum number of entries retained in the configuration log. (1-1000). Default is 100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To control how much system memory may be used for queued messages, use the ''logging queue-limit'' command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To adjust the limit of messages logged per second, use the ''logging rate-limit'' command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can set the buffer size for logs, using the command ''logging buffer buffer-size''&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 22:14:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369545#M759580</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-04T22:14:56Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369546#M759581</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Take a peak at my config.  I am sending the syslog messages to a server.  However, I'm also keeping them in the buffer as well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 23:06:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369546#M759581</guid>
      <dc:creator>jaesposito</dc:creator>
      <dc:date>2010-04-04T23:06:58Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369547#M759582</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Federico,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What are the default values for all of those configuration parameters?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 23:07:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369547#M759582</guid>
      <dc:creator>jaesposito</dc:creator>
      <dc:date>2010-04-04T23:07:58Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369548#M759583</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;James&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Oops, sorry didn't look at the config &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are logging to a syslog server then i wouldn't worry too much about increasing your buffer but you may want to turn off rate-limiting. It depends on just how much logging is happening ie. how often the acl is hit. Rate-limiting and having a buffer limit are there to protect the router and if the acl is hit a log that would generate a lot of logging and network traffic if you are logging to a syslog server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 23:16:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369548#M759583</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2010-04-04T23:16:22Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369549#M759584</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Jon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How can I turn off rate-limiting?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, should I be more concerned with memory or CPU usage when turning off rate-limiting?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 23:18:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369549#M759584</guid>
      <dc:creator>jaesposito</dc:creator>
      <dc:date>2010-04-04T23:18:58Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369550#M759585</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;jaesposito wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How can I turn off rate-limiting?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, should I be more concerned with memory or CPU usage when turning off rate-limiting?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;James&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That was why i sent you the link to the command reference for logging &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt; It covers a lot of what you are asking&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/customer/docs/ios/netmgmt/command/reference/nm_09.html#wp1014866"&gt;rate-limiting&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As far as i know rate-limiting is more of a CPU thing but it does depend as i said on what the current usage of both are at the moment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Apr 2010 23:32:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369550#M759585</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2010-04-04T23:32:16Z</dc:date>
    </item>
    <item>
      <title>Re: What does this Syslog entry mean?</title>
      <link>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369551#M759586</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Default values:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;logging size = 100&lt;BR /&gt;logging queue-limit = 100&lt;BR /&gt;logging rate-limit = 10&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Caution with the ''logging rate-limit'' command as it specifies the number of messages to be logged per second and &lt;BR /&gt;as Jon said, it could cause performance issues if you modify this setting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The default value for logging buffer buffer-size is platform dependent.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Federico.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 05 Apr 2010 01:35:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/what-does-this-syslog-entry-mean/m-p/1369551#M759586</guid>
      <dc:creator>Federico Coto Fajardo</dc:creator>
      <dc:date>2010-04-05T01:35:29Z</dc:date>
    </item>
  </channel>
</rss>

