Event ID - ASA-4-410003

Message CodeASA-4-410003
SeverityWarning
Descriptionaction_class: action DNS query_response from src_ifc:sip/sport to dest_ifc:dip/dport; further_info
ExplanationThis syslog message is generated when a DNS classification is performed on a DNS message and the specified criteria are satisfied. Then the configured action occurs.
  • action_class—The “DNS Classification” action class.
  • action—The action taken: “Dropped,” “Dropped (no TSIG),” or “Masked header flags for”
  • query_response—Either “query” or “response”
  • src_ifc—The source interface name
  • sip—The source IP address
  • sport—The source port
  • dest_ifc—The destination interface name
  • dip—The destination IP address
  • dport—The destination port
  • further_info—One of the following: “matched Class id: class_name,” “matched Class id: match_command” (for a standalone match command), or “TSIG resource record not present” (for syslog messages generated by the tsig enforced command)
User ActionNone required.
Reference Links

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.