Попробовал совсем уже формальную вещь:c3620(config)#no access-list 100
c3620(config)#access-list 100 permit ip any any log
с тем же результатом:
c3620#sh access-list 100
Extended IP access list 100
permit ip any any log (2 matches)
c3620#sh log
Syslog logging: enabled (0 messages dropped, 0 messages rate-limited, 0 flushes, 0 overruns)
Console logging: disabled
Monitor logging: level debugging, 0 messages logged
Buffer logging: level debugging, 843 messages logged
Logging Exception size (4096 bytes)
Trap logging: level informational, 974 message lines logged
Log Buffer (4096 bytes):
*Mar 3 06:26:59 CHE: %SEC-6-IPACCESSLOGP: list 100 permitted udp 94.25.10.94(0) -> 87.226.191.5(0), 1 packet
*Mar 3 06:27:56 CHE: %SEC-6-IPACCESSLOGP: list 100 permitted tcp 94.25.10.94(0) -> 218.60.133.115(0), 1 packet
Таблица трансляций НАТа какая-то странная:
c3620#sh ip nat tr
Pro Inside global Inside local Outside local Outside global
udp 94.25.10.94:123 94.25.10.94:123 87.226.191.5:123 87.226.191.5:123
tcp 94.25.10.94:39440 94.25.10.94:39440 218.60.133.115:7000 218.60.133.115:7000
Ну где я туплю? :(