05-08-2013 05:34 AM
No.001 May 1 09:28:44 - [Firewall Log-PORT SCAN] UDP Packet - 10.249.209.101 --> 93.185.235.224
No.002 May 1 09:28:44 - [Firewall Log-PORT SCAN] UDP Packet - 10.249.209.101 --> 93.185.235.224
No.003 May 1 09:28:44 - [Firewall Log-PORT SCAN] UDP Packet - 10.249.209.101 --> 93.185.235.224
No.004 May 1 09:28:44 - [Firewall Log-PORT SCAN] UDP Packet - 10.249.209.101 --> 93.185.235.224
No.005 May 1 09:28:44 - [Firewall Log-PORT SCAN] UDP Packet - 10.249.209.101 --> 93.185.235.224
No.006 May 1 09:28:44 - [Firewall Log-PORT SCAN] UDP Packet - 10.249.209.101 --> 93.185.235.224
No.007 May 3 17:57:22 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.008 May 3 17:57:22 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.009 May 3 17:57:22 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.010 May 3 17:57:22 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 192.168.220.1
No.011 May 3 17:57:22 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.012 May 3 17:57:23 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.013 May 3 17:57:23 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.014 May 3 17:57:23 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.015 May 3 17:57:23 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.016 May 3 17:57:23 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.017 May 3 17:57:24 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.018 May 3 17:57:24 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.019 May 3 17:57:24 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
No.020 May 3 17:57:24 - [Firewall Log-PORT SCAN] TCP Packet - 107.22.70.149 --> 93.185.235.224
Best,
Nadim
05-22-2013 10:58 AM
Dear Nadim,
Thank you for contacting Cisco Small Services Support Community.
Notice that the "email alert" option causes an email to be sent immediately if a DOS (Denial of Service) attack is detected that in your case is pointing to a couple IP addresses attempting to grant access your network resources and that your firewall settings denied.
Just in case it helps, I am including a link with the log settings configuration for the WRVS4400N routers;
http://sbkb.cisco.com/CiscoSB/Loginr.aspx?login=1&pid=2&app=search&vw=1&articleid=1370
Please let me know if there is any further assistance we may help you with.
Kind regards,
Jeffrey Rodriguez S.
Cisco Customer Support Engineer.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide