各位同学,最近发现好多台思科防火墙有自发的日志,并且记录这些日志时会造成短暂的断网现象,这些以前从未发现。
有人知道,这个日志从哪里来,要到哪里去么?影响很大,断网和占用日志空间。
日志部分举例如下或如图:
Jul 24 2020 02:02:54: %ASA-5-111010: User 'Config', running 'N/A' from IP 0.0.0.0, executed 'ikev1 pre-shared-key *'
Jul 24 2020 02:02:54: %ASA-5-111008: User 'Config' executed the 'class-map ipsecout' command.
Jul 24 2020 02:02:54: %ASA-5-111010: User 'Config', running 'N/A' from IP 0.0.0.0, executed 'class-map ipsecout'
Jul 24 2020 02:02:54: %ASA-5-111008: User 'Config' executed the 'match access-list no_nat' command.
Jul 24 2020 02:02:54: %ASA-5-111010: User 'Config', running 'N/A' from IP 0.0.0.0, executed 'match access-list no_nat'
Jul 24 2020 02:02:54: %ASA-5-111008: User 'Config' executed the 'class-map inspection_default' command.
Jul 24 2020 02:02:54: %ASA-5-111010: User 'Config', running 'N/A' from IP 0.0.0.0, executed 'class-map inspection_default'
Jul 24 2020 02:02:54: %ASA-5-111008: User 'Config' executed the 'match default-inspection-traffic' command.