Do you have sflow enabled and is one of the ip' s the sflow receiver
host? Edit: Forget what I asked. I had a similar situation, but with
policy id " 0" . My log filled up with this type of log messages
3/3/icmp dst_port 771. But I also have this log...