cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4573
Views
0
Helpful
2
Replies

ASA - [ Scanning] drop rate-2 exceeded

yong khang NG
Level 5
Level 5

Hi Forumers'

is anyone can explain what this log message mean?

[ Scanning] drop rate-2 exceeded. Current burst rate is 1 per second, max configured rate is 8; Current average rate is 16 per second, max configured rate is 4; Cumulative total count is 58000

thanks

Noel

2 Replies 2

Maykol Rojas
Cisco Employee
Cisco Employee

Noel,

That log is triggered when a threat detection is triggered. You will need to analyze your threat detection values to see if it is normal.

Check the following

http://www.cisco.com/en/US/docs/security/asa/asa82/system/message/logmsgs.html#wp4963969

Mike

Mike

Hi mike,

thanks for reply.

can i say this is a reconnaisance on the other peer end scanning on my network?

this detection is detect by ASA or the AIP-SSM?

what action can i do to stop this?

thanks

Noel


Review Cisco Networking for a $25 gift card