Event ID - ASA-6-410004

Message CodeASA-6-410004
SeverityWarning
Descriptionaction_class: action DNS query_response from src_ifc:sip/sport to dest_ifc:dip/dport; further_info
ExplanationThis event is generated when a DNS classification is performed on a DNS message and the specified criteria are satisfied.
  • action_class—The “DNS Classification” action class
  • action—The action taken: “Received” or “Received (no TSIG)”
  • query_response—Either “query” or “response”
  • src_ifc—The source interface name
  • sip—The source IP address
  • sport—The source port
  • dest_ifc—The destination interface name
  • dip—The destination IP address
  • dport—The destination port
  • further_info—One of the following: “matched Class id: class_name,” “matched Class id: match_command” (for a standalone match command), or “TSIG resource record not present” (for syslog messages generated by the tsig enforced command).
User ActionNone required.
Reference Links

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.