I'm curious to know what others are doing in this instance, but I (like many others) am noticing that interfaces on our ASA firewalls are showing high discards hour after hour. This behavior is expected, as discarding packets is what firewalls are supposed to do (duh). My issue is that these high discards are causing the interface to reflect a "critical" status, which is then causing the node itself to show as "critical."
I'd like to find the best way to prevent my firewall from showing "critical" in these instances without affecting global polling thresholds, if possible (as this issue doesn't exist on monitored switches, routers, non-ASA firewalls). I'm curious to know how others in similar situations have resolved this in their deployments. Any advice?
Thanks in advance for any assistance!