i'm using cisco zone based firewall and i'm having a problem with the audit trail logs. When i activate it, and start a nmap scan to router's interface, the cpu load goes to around 60-80%. I use a syslog server too. If a simple nmap does this, the whole network traffic will no crash the router? Is this normal?
What is a normal CPU level for this device (i.e. what is the CPU usage when the audit trail is disabled)? You mention you are logging to a syslog server as well. If you disable that temporarily do you still see the high CPU?
It would probably be best to open a TAC case for this issue so the cause for the high CPU can be identified.
What is SecureX?
Cisco SecureX is included with all Secure Endpoint (formerly AMP for Endpoints) subscriptions. SecureX is a cloud-native platform that aggregates capabilities across your security environment. It’s designed to simplify your environment, ...
Cisco ISE Secure Wired Access Prescriptive Deployment Guide
Authors: Hariprasad Holla (until June 2018), Mahesh Nagireddy (until Dec 2018)
For an offline or printed copy of this document, simply choose ⋮ Options > Printer ...
Meet the Authors Slides- SecureX and the Evolution of Security Orchestration Automation and Response
(Live event – Wednesday, 20th, 2021 at 10:00 a.m. Pacific / 1:00 p.m. Eastern / 6:00 p.m. Paris)
This event had place on Wednesday 20th, January 202...
The following guide goes over the in and out of the Cisco Endpoints Security Analytics Dashboard as an overview and faq page
For more information on the product offering, licensing, support, and how to solution (TAC) guide links and more please visit the...
Join us live on Tuesday, January 19 at 10:00 am PT (and on demand after) as we discuss the latest version of ATT&CK and the expansion of TTPs in v8.
As a security expert, you are tasked with protecting your environment. You see the value of...