Last week, my ASA log was filled with following type of syslog message:
%ASA-3-722035: Group User IP <208.79.108.41> Received large packet 1374 (threshold 1280)
It appears all of them are from the same user. I talked to the user and the user didn't express any VPN connectivity issue.
The user mentioned that he was using MiFi card to get Internet (and VPN) service.
My question is what I should do with this syslog message. Shall I disable this syslog, and change the severity to "informaitonal"? Or, is it wise to adjust the MTU packet size threshold?
Thanks for any advise.