Cisco ASA Audit Event: 201011

201011: Connection limit exceeded

Cisco ASA is a security device that provides the combined capabilities of a firewall, an antivirus, and an intrusion prevention system. It also facilitates virtual private network (VPN) connections.It helps to detect threats and stop attacks before they spread through the network.

Message: %ASA-3-201011:Connection limit exceeded cnt/limit for dir packet from sip/sport to dip/dport on interface if_name.

Event 201011 is generated when a new connection through the ASA results in exceeding at least one of the configured maximum connection limits. The new connection would not be allowed through the ASA until one of the existing connections is torn down, which would bring the current connection count below the configured maximum.

How could you resolve this situation?

This event does not require any action.

Cisco ASA Auditing Tool

EventLog Analyzer is a comprehensive log management software with which you can centrally collect, analyze, and manage logs from all the different log sources in your network. You also get reports and alerts on your network security, making it a power-packed IT security tool.