<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX 515E SYS LOG ID 313005 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040391#M914047</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Chad,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can use the 'no logging message 313005' command to stop the firewall from generating these messages.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 29 Aug 2008 19:58:06 GMT</pubDate>
    <dc:creator>robertson.michael</dc:creator>
    <dc:date>2008-08-29T19:58:06Z</dc:date>
    <item>
      <title>PIX 515E SYS LOG ID 313005</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040384#M914028</link>
      <description>&lt;P&gt;Currntly receiving this sys log message on an intermittent basis.  Needs some help as to what it means.  &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:35:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040384#M914028</guid>
      <dc:creator>teddymoosh</dc:creator>
      <dc:date>2019-03-11T13:35:13Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E SYS LOG ID 313005</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040385#M914031</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;313005&lt;/P&gt;&lt;P&gt;Error Message %PIX|ASA-4-313005: No matching connection for ICMP error message: icmp_msg_info on interface_name interface. Original IP payload: embedded_frame_info icmp_msg_info = icmp src src_interface_name:src_address dst dest_interface_name:dest_address (type icmp_type, code icmp_code) embedded_frame_info = prot src source_address/source_port dst dest_address/dest_port&lt;/P&gt;&lt;P&gt;Explanation ICMP error packets were dropped by the security appliance because the ICMP error messages are not related to any session already established in the security appliance.&lt;/P&gt;&lt;P&gt;Recommended Action If the cause is an attack, you can deny the host by using ACLs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have icmp inspection turned on in your policy-map?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 24 Aug 2008 21:14:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040385#M914031</guid>
      <dc:creator>Frederick Reimer</dc:creator>
      <dc:date>2008-08-24T21:14:35Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E SYS LOG ID 313005</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040386#M914034</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No I don't.  I am a little concerned about this particular sys log id.  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 25 Aug 2008 00:53:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040386#M914034</guid>
      <dc:creator>teddymoosh</dc:creator>
      <dc:date>2008-08-25T00:53:31Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E SYS LOG ID 313005</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040387#M914037</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you don't have icmp inspect enabled then icmp is not stateful, and no icmp will pass through the firewall...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 25 Aug 2008 06:53:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040387#M914037</guid>
      <dc:creator>Frederick Reimer</dc:creator>
      <dc:date>2008-08-25T06:53:24Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E SYS LOG ID 313005</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040388#M914040</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I don't want to enable it because I don't want ICMP to pass through the firewall, i.e. I don't want anyone to be able to ping or traceroute the firewall, at all.  Is this sys log ID something that I should be worried about?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 25 Aug 2008 14:01:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040388#M914040</guid>
      <dc:creator>teddymoosh</dc:creator>
      <dc:date>2008-08-25T14:01:14Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E SYS LOG ID 313005</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040389#M914042</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Chad,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you don't want ICMP to be passing through the firewall, then no you don't have worry about these messages. They are simply indicating that the firewall is doing its job correctly. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As the syslog documentation says, you can block ICMP on your inbound ACLs and this will prevent the firewall from processing the packets and generating these messages (though you may then see messages indicating the traffic was dropped to an ACL rule depending on your logging level).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 28 Aug 2008 19:16:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040389#M914042</guid>
      <dc:creator>robertson.michael</dc:creator>
      <dc:date>2008-08-28T19:16:06Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E SYS LOG ID 313005</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040390#M914045</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for your response.  How do I get rid of this message?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 Aug 2008 19:48:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040390#M914045</guid>
      <dc:creator>teddymoosh</dc:creator>
      <dc:date>2008-08-29T19:48:03Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E SYS LOG ID 313005</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040391#M914047</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Chad,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can use the 'no logging message 313005' command to stop the firewall from generating these messages.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 Aug 2008 19:58:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-sys-log-id-313005/m-p/1040391#M914047</guid>
      <dc:creator>robertson.michael</dc:creator>
      <dc:date>2008-08-29T19:58:06Z</dc:date>
    </item>
  </channel>
</rss>

