Hi,
My question is whether ASA actually drops potential attack packets by enabling basic threat detection.
When it reaches burst-rate or average-rate, ASA sends a system message like "[xxxx] drop rate-1 exceeded."
Is ASA actually dropping the packet or just informing the number of potential attack reached the threshold?
Thanks in advance!

































