313009: Denied invalid ICMP code
Cisco ASA is a security device that provides the combined capabilities of a firewall, an antivirus, and an intrusion prevention system. It also facilitates virtual private network (VPN) connections. It helps to detect threats and stop attacks before they spread through the network.
Message: %ASA-4-313009: Denied invalid ICMP code icmp-code, for src-ifc: src-address /src-port (mapped-src-address/mapped-src-port) to dest-ifc :dest-address/dest-port (mapped-dest-address/mapped-dest-port) [user ], ICMP id icmp-id, ICMP type icmp-type.
Event 313009 is generated when an ICMP echo request/reply packet is received with a malformed code (non-zero).
How could you resolve this situation?
If it is an intermittent event, no action is required. If the cause is an attack, the host can be denied by using ACLs.