Guest

Preview Tool

Cisco Bug: CSCvs71783 - FMC: Audit - unknown users with unauthorized action after the session timed out

Last Modified

Aug 24, 2020

Products (1)

  • Sourcefire Defense Center

Known Affected Releases

6.2.3.4 6.4.0.6 6.7.0

Description (partial)

Symptom:
vFMC version - 6.2.3 and 6.4.0.6 - Have configured the FMC GUI to timeout. - 
After a session timeout, its getting logged out. and in the audit logs we can see an unknown user with unauthorized action. 
This happens if we edit the access control policy and wait unit we reached the timeout value.

Conditions:
*Edit access control policy  "Policies > Access Control > Access Control > Firewall Policy Editor"

*Wait until it's timed out.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.