cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1221
Views
5
Helpful
1
Replies

Dicard Traffic invalid or untracked (ACK,FIN ) in Cisco ASA 5500-x Series syslog

pepeandcisco
Level 1
Level 1

Hello, I have one Cisco ASA-5500-X Series with a different ACLs , Actually I configurated this Cisco for Logging in External Syslog, The problem is that I receibed a lot events with a invalidad o untracked events. Similar to this ( This event is change the information for segurity)

 

2014-05-2T12:32:34+01:00 TEST : %ASA-3-106100: access-list ACL_BLOCK denied tcp TEST2/160.99.99.99(443) -> TEST2/192.168.1.100(2953) hit-cnt 1 first hit [0x97aa021a,

 

The actual ACL it's this

ALLOW COMPUTER (DYNAMIC PORT) >>>> web server (443)

DROP web server (443) >>>>> (DYNAMIC PORT) Computer (invalid or untracked traffic)

 

This problem is show a lot with Proxy traffic and web traffic.

 

How can I ignore this traffic so that it doesn't appear in the log file?

 

 

1 Reply 1

Rui Niu
Level 1
Level 1

HEY 

have you solved it? I have the same question.

Review Cisco Networking for a $25 gift card