06-08-2023 12:20 PM
What would be recommended? How do I adjust this?
4 | Jun 08 2023 | 06:22:33 | 733100 | [ Scanning] drop rate-1 exceeded. Current burst rate is 61 per second, max configured rate is 10; Current average rate is 133 per second, max configured rate is 5; Cumulative total count is 80313 |
06-08-2023 12:22 PM
Does this have a effect on CPU? We are running 97% constantly. I do not see a Dos attack happening, it all looks like legit traffic.
06-15-2023 12:53 PM - edited 06-15-2023 12:54 PM
I don't believe that log is related to a DoS attack, however, it seems to be triggered by the scanning threat detection configs you have applied. I'm not a big fan of the treat detection feature on the ASA excatly because I tink it could really impact the device performance by consuming bunch of the CPU resources. If you believe that log was generated without any actual attack traffic, then maybe you can higher the trigger values.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide