Re: [c-nsp] FWSM logging problem

2009-12-17 Thread Holemans Wim
-max 4096) I'll have to live with this until I can upgrade. Wim -Original Message- From: Andrew Yourtchenko [mailto:ayour...@cisco.com] Sent: woensdag 16 december 2009 19:35 To: Holemans Wim Cc: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] FWSM logging problem On Wed, 16 Dec 2009

[c-nsp] FWSM logging problem

2009-12-16 Thread Holemans Wim
It seems our FWSM doesn't log all denied ACLs. I blocked an IP address on our FWSM and wanted to see whomever on campus is trying to access this address (Botnet CC). I added the following line in the ACL (even raised priority), you can see that the rules triggers when I tried to telnet the

Re: [c-nsp] FWSM logging problem

2009-12-16 Thread Tony Varriale
wim.holem...@ua.ac.be To: cisco-nsp@puck.nether.net Sent: Wednesday, December 16, 2009 9:44 AM Subject: [c-nsp] FWSM logging problem It seems our FWSM doesn't log all denied ACLs. I blocked an IP address on our FWSM and wanted to see whomever on campus is trying to access this address (Botnet CC

Re: [c-nsp] FWSM logging problem

2009-12-16 Thread NMaio
. Nick -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Tony Varriale Sent: Wednesday, December 16, 2009 12:31 PM To: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] FWSM logging problem What code are you on? These types

Re: [c-nsp] FWSM logging problem

2009-12-16 Thread Eric Cables
...@puck.nether.net [mailto: cisco-nsp-boun...@puck.nether.net] On Behalf Of Tony Varriale Sent: Wednesday, December 16, 2009 12:31 PM To: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] FWSM logging problem What code are you on? These types of items have been going on for a while in various

Re: [c-nsp] FWSM logging problem

2009-12-16 Thread Tony Varriale
: Wednesday, December 16, 2009 12:03 PM Subject: RE: [c-nsp] FWSM logging problem Tony, As a side note, have you had the issue of traffic blowing by an ACE? :) What you referring to here? I run both the FWSM and ACE module. We have had a plethora of problems with the ACE. The best is it just

Re: [c-nsp] FWSM logging problem

2009-12-16 Thread Andrew Yourtchenko
On Wed, 16 Dec 2009, Holemans Wim wrote: It seems our FWSM doesn't log all denied ACLs. I blocked an IP address on our FWSM and wanted to see whomever on campus is trying to access this address (Botnet CC). I added the following line in the ACL (even raised priority), you can see that the

Re: [c-nsp] FWSM logging problem

2009-12-16 Thread NMaio
...@puck.nether.net] On Behalf Of Tony Varriale Sent: Wednesday, December 16, 2009 1:34 PM To: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] FWSM logging problem Sorry...Access Control Entry in an ACL on FWSM. What code are you running on 6500 and ACE that you are having these issues? I seen

Re: [c-nsp] FWSM logging problem

2009-12-16 Thread Tony Varriale
- Original Message - From: Andrew Yourtchenko ayour...@cisco.com To: Tony Varriale tvarri...@comcast.net Cc: cisco-nsp@puck.nether.net Sent: Wednesday, December 16, 2009 12:54 PM Subject: Re: [c-nsp] FWSM logging problem That's indeed the proper thing to do. And please, after making

Re: [c-nsp] FWSM logging problem

2009-12-16 Thread Andrew Yourtchenko
On Wed, 16 Dec 2009, Tony Varriale wrote: gets the ACL exploded so much that it does not fit into the network processors anymore - then the previously compiled version is being used - but generally you get a pretty prominent warning about that. Nope...NP was fine. How we found it was the