cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
525
Views
0
Helpful
2
Replies

4 Jun 08 2023 06:22:33 733100 [ Scanning] drop rate-1 exceeded. Cu

jroy777
Level 1
Level 1

What would be recommended? How do I adjust this?

 

4Jun 08 202306:22:33733100    [ Scanning] drop rate-1 exceeded. Current burst rate is 61 per second, max configured rate is 10; Current average rate is 133 per second, max configured rate is 5; Cumulative total count is 80313
2 Replies 2

jroy777
Level 1
Level 1

Does this have a effect on CPU? We are running 97% constantly. I do not see a Dos attack happening, it all looks like legit traffic.

I don't believe that log is related to a DoS attack, however, it seems to be triggered by the scanning threat detection configs you have applied. I'm not a big fan of the treat detection feature on the ASA excatly because I tink it could really impact the device performance by consuming bunch of the CPU resources. If you believe that log was generated without any actual attack traffic, then maybe you can higher the trigger values.

Review Cisco Networking for a $25 gift card