You could create a global policy that is any any any deny and place that at the bottom of the policy table, then enable logging on that policy.
The other options are debug flow basic with flow filters or debug flow drop.
You could create a global policy that is any any any deny and place that at the bottom of the policy table, then enable logging on that policy.
The other options are debug flow basic with flow filters or debug flow drop.