cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
419
Views
0
Helpful
1
Replies

Disable IP Audit Signature still generating alert on ASA

cbeswick
Level 1
Level 1

Hi,

We have a pair of ASA 5540's in a failover configuration.

We have upgraded the primary active unit to v8.2(1) and have left the standby in 7.4(2). Although we get warning messages, failover works so I am leaving the standby unit on 7.4 for a week incase we experience any major issues with v8.2(1).

We are currently experiencing alot of false positive IP Audit alerts from sig 1103 (IP Teardrop). I have disabled this signature in the IP Audit settings within ASDM (v6.2(1)) yet the alert is still being generated.

I have tried removing the entire IP Audit policy and re-applying, yet the alert messages still get generated.

Has anyone else epxerienced this on v8.2 or have a solution for my problem ?

Thanks in advance.

Chris.

1 Reply 1

Pravin Phadte
Level 5
Level 5

would suggest to updage both the firewalls to 8.0(4) version

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card