What on earth is this? I didn't type those crypto commands!!

Discussion in 'Cisco' started by Alec Waters, Apr 5, 2005.

  1. Alec Waters

    Alec Waters Guest


    I've got a pair of 3845s running 12.3(14)T. When they reload, the
    following appears in the log:

    R3845-1#sh logg | i PARSER
    000022: *Apr 5 13:15:31.515 BST: %PARSER-5-CFGLOG_LOGGEDCMD:
    User:console logged command:access-list 199 permit icmp host host
    000023: *Apr 5 13:15:31.515 BST: %PARSER-5-CFGLOG_LOGGEDCMD:
    User:console logged command:crypto map NiStTeSt1 10 ipsec-manual
    000024: *Apr 5 13:15:31.515 BST: %PARSER-5-CFGLOG_LOGGEDCMD:
    User:console logged command:match address 199
    000025: *Apr 5 13:15:31.515 BST: %PARSER-5-CFGLOG_LOGGEDCMD:
    User:console logged command:set peer
    000026: *Apr 5 13:15:31.519 BST: %PARSER-5-CFGLOG_LOGGEDCMD:
    User:console logged command:exit
    000030: *Apr 5 13:15:31.887 BST: %PARSER-5-CFGLOG_LOGGEDCMD:
    User:console logged command:no access-list 199
    000031: *Apr 5 13:15:31.891 BST: %PARSER-5-CFGLOG_LOGGEDCMD:
    User:console logged command:no crypto map NiStTeSt1

    Needless to say, none of this is in my startup config, and I've never
    entered any of those commands in my life.

    What's going on?

    Alec Waters, Apr 5, 2005
  2. Alec Waters

    Anthony Guest

    Do you see this same behavior on both routers? Please send me the
    output of a "show log" and a "show tech" in txt format or post to this

    Anthony, Apr 6, 2005
  3. Alec Waters


    Jun 12, 2007
    Likes Received:
    I donĀ“t know.. but i see the same on my router..

    CISCO_CME uptime is 1 day, 1 hour, 5 minutes
    System returned to ROM by power-on
    System restarted at 09:37:17 CET Mon Jun 11 2007
    System image file is "flash:c2600-advipservicesk9-mz.124-11.T2.bin"

    it have been reload yesterday, so there is not many changes... But see this.
    - Maby it is some thing in the startup sequence in IOS.........(bug)
    - It says that it is made from console, and i have not used the console for a long time...

    CISCO_CME#show archive log config all
    idx sess [email protected] Logged command
    1 1 [email protected] |access-list 199 permit icmp host host
    2 1 [email protected] |crypto map NiStTeSt1 10 ipsec-manual
    3 1 [email protected] |match address 199

    4 1 [email protected] |set peer

    5 1 [email protected] |exit
    6 1 [email protected] |no access-list 199
    7 1 [email protected] |no crypto map NiStTeSt1
    8 2 [email protected] |access-list dynamic-extended
    Last edited: Jun 12, 2007
    Henrik, Jun 12, 2007
  4. Alec Waters


    Mar 5, 2009
    Likes Received:
    No need to worry, Those commands are part of the routers crypto engine boot test.

    It will occur every time the router boots.
    ajlaff, Mar 5, 2009
