6|Jul 29 2009|09:42:34|302016|10.70.8.77|2562|10.70.1.254|53|Teardown UDP connection 653063 for OUTSIDE:10.70.8.77/2562 to INSIDE:10.70.1.254/53 duration 0:00:00 bytes 90 (allesusb)
6|Jul 29 2009|09:42:34|302014|10.70.8.88|1892|10.70.6.200|1661|Teardown TCP connection 652998 for OUTSIDE:10.70.8.88/1892 to INSIDE:10.70.6.200/1661 duration 0:01:28 bytes 16920 TCP FINs (timbmikx)
6|Jul 29 2009|09:42:33|302013|10.70.8.77|3468|10.70.6.200|135|Built inbound TCP connection 653061 for OUTSIDE:10.70.8.77/3468 (10.70.2.24/41392) to INSIDE:10.70.6.200/135 (10.70.6.200/135) (allesusb)
4|Jul 29 2009|09:42:29|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 10942
3|Jul 29 2009|09:42:29|305005|62.253.167.57|443|||No translation group found for tcp src OUTSIDE:10.70.8.89/1513 dst OUTSIDE:62.253.167.57/443
6|Jul 29 2009|09:42:26|302015|10.70.8.89|1512|10.70.1.254|53|Built inbound UDP connection 653057 for OUTSIDE:10.70.8.89/1512 (10.70.2.24/30507) to INSIDE:10.70.1.254/53 (10.70.1.254/53) (whitgarm)
6|Jul 29 2009|09:42:26|305011|10.70.8.89|1512|10.70.2.24|30507|Built dynamic UDP translation from OUTSIDE:10.70.8.89/1512 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/30507
7|Jul 29 2009|09:42:20|715046|||||Group = GIS, Username = allesusb, IP = 69.230.178.8, constructing blank hash payload
7|Jul 29 2009|09:42:20|715036|||||Group = GIS, Username = allesusb, IP = 69.230.178.8, Sending keep-alive of type DPD R-U-THERE-ACK (seq number 0xa87f2a96)
7|Jul 29 2009|09:42:20|715075|||||Group = GIS, Username = allesusb, IP = 69.230.178.8, Received keep-alive of type DPD R-U-THERE (seq number 0xa87f2a96)
7|Jul 29 2009|09:42:20|715047|||||Group = GIS, Username = allesusb, IP = 69.230.178.8, processing hash payload
7|Jul 29 2009|09:42:20|713236|||||IP = 69.230.178.8, IKE_DECODE RECEIVED Message (msgid=fa283608) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 84
6|Jul 29 2009|09:42:20|106015|10.70.6.27|1457|10.70.2.24|443|Deny TCP (no connection) from 10.70.6.27/1457 to 10.70.2.24/443 flags FIN ACK on interface INSIDE
6|Jul 29 2009|09:42:20|305012|10.70.8.88|1896|10.70.2.24|33428|Teardown dynamic TCP translation from OUTSIDE:10.70.8.88/1896 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/33428 duration 0:00:30
6|Jul 29 2009|09:42:18|302016|10.70.8.82|2776|10.70.1.254|389|Teardown UDP connection 652968 for OUTSIDE:10.70.8.82/2776 to INSIDE:10.70.1.254/389 duration 0:02:01 bytes 327 (franoli)
4|Jul 29 2009|09:42:13|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 10933
3|Jul 29 2009|09:42:11|305005|10.60.11.190|135|||No translation group found for tcp src OUTSIDE:10.70.8.88/1899 dst OUTSIDE:10.60.11.190/135
6|Jul 29 2009|09:42:05|302014|10.70.8.88|1896|10.70.6.200|135|Teardown TCP connection 653042 for OUTSIDE:10.70.8.88/1896 to INSIDE:10.70.6.200/135 duration 0:00:15 bytes 440 TCP FINs (timbmikx)
6|Jul 29 2009|09:41:59|305012|10.70.8.77|3462|10.70.2.24|57177|Teardown dynamic TCP translation from OUTSIDE:10.70.8.77/3462 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/57177 duration 0:00:30
6|Jul 29 2009|09:41:51|302016|10.70.8.77|2562|10.70.1.254|53|Teardown UDP connection 653045 for OUTSIDE:10.70.8.77/2562 to INSIDE:10.70.1.254/53 duration 0:00:00 bytes 535 (allesusb)
4|Jul 29 2009|09:41:51|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 11036
6|Jul 29 2009|09:41:51|302015|10.70.8.77|2562|10.70.1.254|53|Built inbound UDP connection 653045 for OUTSIDE:10.70.8.77/2562 (10.70.2.24/53949) to INSIDE:10.70.1.254/53 (10.70.1.254/53) (allesusb)
3|Jul 29 2009|09:41:50|305005|10.60.11.190|135|||No translation group found for tcp src OUTSIDE:10.70.8.88/1898 dst OUTSIDE:10.60.11.190/135
6|Jul 29 2009|09:41:49|305011|10.70.8.88|1896|10.70.2.24|33428|Built dynamic TCP translation from OUTSIDE:10.70.8.88/1896 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/33428
5|Jul 29 2009|09:41:45|111008|||||User 'enable_15' executed the 'dir disk0:/dap.xml' command.
6|Jul 29 2009|09:41:43|606001|10.70.6.27||||ASDM session number 1 from 10.70.6.27 started
6|Jul 29 2009|09:41:41|606003|10.70.6.27||||ASDM logging session number 1 from 10.70.6.27 started
6|Jul 29 2009|09:41:41|106015|10.70.6.27|1447|10.70.2.24|443|Deny TCP (no connection) from 10.70.6.27/1447 to 10.70.2.24/443 flags FIN ACK on interface INSIDE
6|Jul 29 2009|09:41:41|302014|10.70.6.27|1447|10.70.2.24|443|Teardown TCP connection 653031 for INSIDE:10.70.6.27/1447 to identity:10.70.2.24/443 duration 0:00:00 bytes 605 TCP Reset-O
6|Jul 29 2009|09:41:38|605005|10.70.6.27|1445|10.70.2.24|https|Login permitted from 10.70.6.27/1445 to INSIDE:10.70.2.24/https for user "enable_15"
6|Jul 29 2009|09:41:38|725003|10.70.6.27|1445|||SSL client INSIDE:10.70.6.27/1445 request to resume previous session.
6|Jul 29 2009|09:41:38|302013|10.70.6.27|1445|10.70.2.24|443|Built inbound TCP connection 653028 for INSIDE:10.70.6.27/1445 (10.70.6.27/1445) to identity:10.70.2.24/443 (10.70.2.24/443)
6|Jul 29 2009|09:41:38|725007|10.70.6.27|1444|||SSL session with client INSIDE:10.70.6.27/1444 terminated.
6|Jul 29 2009|09:41:37|305012|10.70.8.77|3457|10.70.2.24|27143|Teardown dynamic TCP translation from OUTSIDE:10.70.8.77/3457 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/27143 duration 0:00:30
6|Jul 29 2009|09:41:36|725002|10.70.6.27|1444|||Device completed SSL handshake with client INSIDE:10.70.6.27/1444
6|Jul 29 2009|09:41:36|725001|10.70.6.27|1444|||Starting SSL handshake with client INSIDE:10.70.6.27/1444 for TLSv1 session.
4|Jul 29 2009|09:41:32|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 10947
6|Jul 29 2009|09:41:29|305011|10.70.8.77|3462|10.70.2.24|57177|Built dynamic TCP translation from OUTSIDE:10.70.8.77/3462 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/57177
3|Jul 29 2009|09:41:28|305005|10.25.2.186|135|||No translation group found for tcp src OUTSIDE:10.70.8.88/1895 dst OUTSIDE:10.25.2.186/135
5|Jul 29 2009|09:41:27|111008|||||User 'enable_15' executed the 'perfmon interval 10' command.
6|Jul 29 2009|09:41:26|106015|10.70.6.27|1439|10.70.2.24|443|Deny TCP (no connection) from 10.70.6.27/1439 to 10.70.2.24/443 flags FIN ACK on interface INSIDE
6|Jul 29 2009|09:41:26|302014|10.70.6.27|1439|10.70.2.24|443|Teardown TCP connection 653015 for INSIDE:10.70.6.27/1439 to identity:10.70.2.24/443 duration 0:00:00 bytes 277 TCP Reset-O
6|Jul 29 2009|09:41:22|725003|10.70.6.27|1437|||SSL client INSIDE:10.70.6.27/1437 request to resume previous session.
6|Jul 29 2009|09:41:22|302013|10.70.6.27|1437|10.70.2.24|443|Built inbound TCP connection 653014 for INSIDE:10.70.6.27/1437 (10.70.6.27/1437) to identity:10.70.2.24/443 (10.70.2.24/443)
6|Jul 29 2009|09:41:22|725007|10.70.6.27|1436|||SSL session with client INSIDE:10.70.6.27/1436 terminated.
6|Jul 29 2009|09:41:22|605005|10.70.6.27|1436|10.70.2.24|https|Login permitted from 10.70.6.27/1436 to INSIDE:10.70.2.24/https for user "enable_15"
6|Jul 29 2009|09:41:21|725002|10.70.6.27|1436|||Device completed SSL handshake with client INSIDE:10.70.6.27/1436
6|Jul 29 2009|09:41:21|725001|10.70.6.27|1436|||Starting SSL handshake with client INSIDE:10.70.6.27/1436 for TLSv1 session.
7|Jul 29 2009|09:41:18|715046|||||Group = GIS, Username = allesusb, IP = 69.230.178.8, constructing blank hash payload
7|Jul 29 2009|09:41:18|715036|||||Group = GIS, Username = allesusb, IP = 69.230.178.8, Sending keep-alive of type DPD R-U-THERE-ACK (seq number 0xa87f2a95)
7|Jul 29 2009|09:41:18|715075|||||Group = GIS, Username = allesusb, IP = 69.230.178.8, Received keep-alive of type DPD R-U-THERE (seq number 0xa87f2a95)
7|Jul 29 2009|09:41:18|715047|||||Group = GIS, Username = allesusb, IP = 69.230.178.8, processing hash payload
7|Jul 29 2009|09:41:18|713236|||||IP = 69.230.178.8, IKE_DECODE RECEIVED Message (msgid=e695bbaa) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 84
4|Jul 29 2009|09:41:10|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 11026
6|Jul 29 2009|09:41:08|302016|10.70.8.77|2562|10.70.1.254|53|Teardown UDP connection 653001 for OUTSIDE:10.70.8.77/2562 to INSIDE:10.70.1.254/53 duration 0:00:00 bytes 94 (allesusb)
6|Jul 29 2009|09:41:07|302014|10.70.8.88|1893|10.70.6.200|1051|Teardown TCP connection 653002 for OUTSIDE:10.70.8.88/1893 to INSIDE:10.70.6.200/1051 duration 0:00:00 bytes 2229 TCP FINs (timbmikx)
6|Jul 29 2009|09:41:07|302015|10.70.8.77|2562|10.70.1.254|53|Built inbound UDP connection 653001 for OUTSIDE:10.70.8.77/2562 (10.70.2.24/14868) to INSIDE:10.70.1.254/53 (10.70.1.254/53) (allesusb)
3|Jul 29 2009|09:41:06|305005|10.70.8.88|1821|||No translation group found for udp src INSIDE:10.70.6.204/3311 dst OUTSIDE:10.70.8.88/1821
6|Jul 29 2009|09:41:05|302013|10.70.8.88|1891|10.70.6.200|135|Built inbound TCP connection 652995 for OUTSIDE:10.70.8.88/1891 (10.70.2.24/48324) to INSIDE:10.70.6.200/135 (10.70.6.200/135) (timbmikx)
6|Jul 29 2009|09:41:05|305011|10.70.8.88|1891|10.70.2.24|48324|Built dynamic TCP translation from OUTSIDE:10.70.8.88/1891 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/48324
6|Jul 29 2009|09:41:02|305012|10.70.8.82|2792|10.70.2.24|59798|Teardown dynamic TCP translation from OUTSIDE:10.70.8.82/2792 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/59798 duration 0:00:30
4|Jul 29 2009|09:40:54|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 10945
4|Jul 29 2009|09:40:52|418001|10.70.1.254|1469|10.70.8.82|139|Through-the-device packet to/from management-only network is denied: tcp src management:10.70.1.254/1469 dst OUTSIDE:10.70.8.82/139
3|Jul 29 2009|09:40:49|305005|10.70.8.82|139|||No translation group found for tcp src INSIDE:10.70.1.254/1469 dst OUTSIDE:10.70.8.82/139
6|Jul 29 2009|09:40:47|106015|10.70.8.82|2787|10.70.1.254|445|Deny TCP (no connection) from 10.70.8.82/2787 to 10.70.1.254/445 flags RST on interface OUTSIDE
6|Jul 29 2009|09:40:46|305012|10.70.8.77|138|10.70.2.24|442|Teardown dynamic UDP translation from OUTSIDE:10.70.8.77/138 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/442 duration 0:02:30
6|Jul 29 2009|09:40:39|302015|10.70.8.89|138|10.70.15.255|138|Built inbound UDP connection 652992 for OUTSIDE:10.70.8.89/138 (10.70.2.24/371) to INSIDE:10.70.15.255/138 (10.70.15.255/138) (whitgarm)
6|Jul 29 2009|09:40:39|305011|10.70.8.89|138|10.70.2.24|371|Built dynamic UDP translation from OUTSIDE:10.70.8.89/138 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/371
6|Jul 29 2009|09:40:35|302014|10.70.8.82|2793|10.70.1.254|139|Teardown TCP connection 652988 for OUTSIDE:10.70.8.82/2793 to INSIDE:10.70.1.254/139 duration 0:00:03 bytes 4716 TCP FINs (franoli)
4|Jul 29 2009|09:40:31|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 11081
6|Jul 29 2009|09:40:30|106015|10.70.8.82|2785|10.70.1.254|139|Deny TCP (no connection) from 10.70.8.82/2785 to 10.70.1.254/139 flags RST on interface OUTSIDE
6|Jul 29 2009|09:40:25|305012|10.70.8.77|1044|10.70.2.24|45361|Teardown dynamic UDP translation from OUTSIDE:10.70.8.77/1044 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/45361 duration 0:02:30
6|Jul 29 2009|09:40:21|302015|10.70.8.82|137|10.70.1.1|137|Built inbound UDP connection 652974 for OUTSIDE:10.70.8.82/137 (10.70.2.24/506) to INSIDE:10.70.1.1/137 (10.70.1.1/137) (franoli)
6|Jul 29 2009|09:40:19|302021|10.70.8.82|1280|10.70.1.254|0|Teardown ICMP connection for faddr 10.70.8.82/1280 gaddr 10.70.1.254/0 laddr 10.70.1.254/0 (franoli)
6|Jul 29 2009|09:40:19|302014|10.70.8.82|2780|10.70.1.254|88|Teardown TCP connection 652972 for OUTSIDE:10.70.8.82/2780 to INSIDE:10.70.1.254/88 duration 0:00:00 bytes 2516 TCP FINs (franoli)
6|Jul 29 2009|09:40:18|305011|10.70.8.82|2780|10.70.2.24|27731|Built dynamic TCP translation from OUTSIDE:10.70.8.82/2780 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/27731
6|Jul 29 2009|09:40:17|302016|10.70.8.77|138|10.70.15.255|138|Teardown UDP connection 652948 for OUTSIDE:10.70.8.77/138 to INSIDE:10.70.15.255/138 duration 0:02:02 bytes 212 (allesusb)
6|Jul 29 2009|09:40:17|302013|10.70.8.82|2777|10.70.1.254|135|Built inbound TCP connection 652969 for OUTSIDE:10.70.8.82/2777 (10.70.2.24/47826) to INSIDE:10.70.1.254/135 (10.70.1.254/135) (franoli)
6|Jul 29 2009|09:40:15|302020|10.70.8.82|1280|10.70.1.254|0|Built inbound ICMP connection for faddr 10.70.8.82/1280 gaddr 10.70.1.254/0 laddr 10.70.1.254/0 (franoli)
4|Jul 29 2009|09:40:11|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 10943
3|Jul 29 2009|09:40:02|305005|62.253.167.57|443|||No translation group found for tcp src OUTSIDE:10.70.8.89/1510 dst OUTSIDE:62.253.167.57/443
6|Jul 29 2009|09:40:02|302015|10.70.8.89|1509|10.70.1.254|53|Built inbound UDP connection 652959 for OUTSIDE:10.70.8.89/1509 (10.70.2.24/47189) to INSIDE:10.70.1.254/53 (10.70.1.254/53) (whitgarm)
6|Jul 29 2009|09:40:02|305011|10.70.8.89|1509|10.70.2.24|47189|Built dynamic UDP translation from OUTSIDE:10.70.8.89/1509 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/47189
6|Jul 29 2009|09:39:57|302016|10.70.8.77|1044|10.70.60.22|161|Teardown UDP connection 652944 for OUTSIDE:10.70.8.77/1044 to INSIDE:10.70.60.22/161 duration 0:02:01 bytes 159 (allesusb)
4|Jul 29 2009|09:39:51|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 11015
6|Jul 29 2009|09:39:36|302010|||||20 in use, 168 most used
6|Jul 29 2009|09:39:27|302015|98.198.203.96|1793|63.68.***.***|4500|Built inbound UDP connection 652958 for OUTSIDE:98.198.203.96/1793 (98.198.203.96/1793) to identity:63.68.***.***/4500 (63.68.***.***/4500)
4|Jul 29 2009|09:39:26|733100|||||[ Scanning] drop rate-2 exceeded. Current burst rate is 8 per second, max configured rate is 8; Current average rate is 18 per second, max configured rate is 4; Cumulative total count is 66403
6|Jul 29 2009|09:39:23|302016|69.230.178.8|2092|63.68.***.***|500|Teardown UDP connection 652916 for OUTSIDE:69.230.178.8/2092 to identity:63.68.***.***/500 duration 0:02:50 bytes 672
6|Jul 29 2009|09:38:59|305012|10.70.8.82|2774|10.70.2.24|25039|Teardown dynamic UDP translation from OUTSIDE:10.70.8.82/2774 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/25039 duration 0:00:30
4|Jul 29 2009|09:38:58|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 11013
4|Jul 29 2009|09:38:42|733100|||||[ Scanning] drop rate-1 exceeded. Current burst rate is 10 per second, max configured rate is 10; Current average rate is 18 per second, max configured rate is 5; Cumulative total count is 11034
6|Jul 29 2009|09:38:40|305012|10.70.8.88|138|10.70.2.24|504|Teardown dynamic UDP translation from OUTSIDE:10.70.8.88/138 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/504 duration 0:02:30
6|Jul 29 2009|09:38:29|302016|10.70.8.82|2774|10.70.1.254|53|Teardown UDP connection 652954 for OUTSIDE:10.70.8.82/2774 to INSIDE:10.70.1.254/53 duration 0:00:00 bytes 162 (franoli)
6|Jul 29 2009|09:38:21|302021|10.70.8.82|1280|10.70.1.254|0|Teardown ICMP connection for faddr 10.70.8.82/1280 gaddr 10.70.1.254/0 laddr 10.70.1.254/0 (franoli)
4|Jul 29 2009|09:38:20|733100|||||[ Scanning] drop rate-2 exceeded. Current burst rate is 8 per second, max configured rate is 8; Current average rate is 18 per second, max configured rate is 4; Cumulative total count is 66465
6|Jul 29 2009|09:38:17|302020|10.70.8.82|1280|10.70.1.254|0|Built inbound ICMP connection for faddr 10.70.8.82/1280 gaddr 10.70.1.254/0 laddr 10.70.1.254/0 (franoli)
6|Jul 29 2009|09:38:16|305012|10.70.8.77|3450|10.70.2.24|2786|Teardown dynamic TCP translation from OUTSIDE:10.70.8.77/3450 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/2786 duration 0:00:30
6|Jul 29 2009|09:38:15|302015|10.70.8.77|138|10.70.15.255|138|Built inbound UDP connection 652948 for OUTSIDE:10.70.8.77/138 (10.70.2.24/442) to INSIDE:10.70.15.255/138 (10.70.15.255/138) (allesusb)
6|Jul 29 2009|09:38:15|305011|10.70.8.77|138|10.70.2.24|442|Built dynamic UDP translation from OUTSIDE:10.70.8.77/138 to INSIDE(OUTSIDE_nat_outbound):10.70.2.24/442