02-10-2010 05:02 PM - edited 03-11-2019 10:07 AM
Hi gurus!
Can anyone please shed me some light on this error our client receives on their production ASA5510 firewall?
The syslog error ID is 216001 and it says exactly what I wrote in the title: internal error in es_PostEvent: event argument tag is unknown. There are lots of this errors and they overload the syslog. I can of course stop them sent to syslog but I really would like to know the reason.
Eugene
02-10-2010 06:17 PM
Here is the link for that syslog message:
http://www.cisco.com/en/US/docs/security/asa/asa72/system/message/logmsgs.html#wp3457118
CSCsh88405
ASA Syslog:
%ASA-3-216001: internal error in es_PostEvent: invalid descriptor
Conditions:
This bug should only affect ASAs that are configured for VPN. This instance of the 216001 syslog indicates a software error when generating a ISAKMP syslog or debug. The logger is looking up the text for an event and no text is defined.
Workaround:
None. This bug only cosmetic and does not affect performance.
http://tools.cisco.com/Support/BugToolKit/
you can go to the above link login with your CCO ID and then key in this defect ID CSCsh88405
and find out the code it is resolved in.
-KS
02-10-2010 06:36 PM
Thanks, pal.
The ASA indeed runs version 7.x and it terminates a lot of tunnels.
Will this error go away if it is upgraded to 8.x code ?
Eugene
02-10-2010 06:53 PM
If you run a code where this cosmetic bug is fixed yes, you won't see this message anymore.
-KS
02-11-2010 08:34 AM
Thanks a lot, KS.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide