Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Getting aggressive count errors:

Hi,

I am getting following errors on the router :

000040: Nov 10 15:37:28.000: %FW-4-ALERT_ON: getting aggressive, count (4/3000) current 1-min rate: 501
000041: Nov 10 15:37:52.901: %FW-4-ALERT_OFF: calming down, count (0/2500) current 1-min rate: 342

Here is the ip traffic output;

IP statistics:
  Rcvd:  7258839 total, 12187 local destination
         0 format errors, 0 checksum errors, 1993 bad hop count
         0 unknown protocol, 253 not a gateway
         0 security failures, 0 bad options, 398 with options
  Opts:  0 end, 0 nop, 0 basic security, 0 loose source route
         0 timestamp, 0 extended security, 0 record route
         0 stream ID, 0 strict source route, 398 alert, 0 cipso, 0 ump
         0 other
  Frags: 0 reassembled, 0 timeouts, 0 couldn't reassemble
         0 fragmented, 2 couldn't fragment
  Bcast: 6048 received, 0 sent
  Mcast: 0 received, 0 sent
  Sent:  35522 generated, 3629524 forwarded
  Drop:  121 encapsulation failed, 10 unresolved, 0 no adjacency
         27 no route, 27 unicast RPF, 197 forced drop
         0 options denied
  Drop:  0 packets with source IP address zero
  Drop:  0 packets with internal loop back IP address

ICMP statistics:
  Rcvd: 0 format errors, 0 checksum errors, 0 redirects, 0 unreachable
        742 echo, 0 echo reply, 0 mask requests, 0 mask replies, 0 quench
        0 parameter, 0 timestamp, 0 info request, 0 other
        0 irdp solicitations, 0 irdp advertisements
  Sent: 0 redirects, 10 unreachable, 0 echo, 745 echo reply
        0 mask requests, 0 mask replies, 0 quench, 0 timestamp
        0 info reply, 7 time exceeded, 0 parameter problem
        0 irdp solicitations, 0 irdp advertisements

TCP statistics:
  Rcvd: 5376 total, 0 checksum errors, 4695 no port
  Sent: 34910 total

PIMv2 statistics: Sent/Received
  Total: 0/0, 0 checksum errors, 0 format errors
  Registers: 0/0 (0 non-rp, 0 non-sm-group), Register Stops: 0/0,  Hellos: 0/0
  Join/Prunes: 0/0, Asserts: 0/0, grafts: 0/0
  Bootstraps: 0/0, Candidate_RP_Advertisements: 0/0
  Queue drops: 0
  State-Refresh: 0/0

IGMP statistics: Sent/Received
  Total: 0/0, Format errors: 0/0, Checksum errors: 0/0
  Host Queries: 0/0, Host Reports: 0/0, Host Leaves: 0/0
  DVMRP: 0/0, PIM: 0/0
  Queue drops: 0

UDP statistics:
  Rcvd: 6142 total, 0 checksum errors, 5990 no port
  Sent: 61 total, 0 forwarded broadcasts

OSPF statistics:
  Rcvd: 0 total, 0 checksum errors
        0 hello, 0 database desc, 0 link state req
        0 link state updates, 0 link state acks

  Sent: 0 total
        0 hello, 0 database desc, 0 link state req
        0 link state updates, 0 link state acks

ARP statistics:
  Rcvd: 7608 requests, 25 replies, 0 reverse, 0 other
  Sent: 37 requests, 2397 replies (17 proxy), 0 reverse

On the output it shows lot of bad hop count. Anybody has any idea by seeing this output what could be the problem?

Thanks.

1 REPLY
Hall of Fame Super Gold

Re: Getting aggressive count errors:

These are firewall alerts, possibly unwarranted.

These have nothing to do with routing.

Bad hop counts are actually an indication of how many traceoutes the router has seen.

403
Views
0
Helpful
1
Replies