logging connections

Unanswered Question
Jan 30th, 2007

I'm using syslog from a 3005 and I'd like to add log entries for login success, failure and logout/disconnects. Ideally it

would record account and ip address. Could anyone help me craft the rule for these events (or point me to some helpful exampe).


I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 4 (1 ratings)
sbilgi Mon, 02/05/2007 - 08:26

Click the Events to Syslog drop-down menu button and choose the range of event severity levels to send to a syslog server by default. The choices are: None, Severity 1, Severities 1-2, Severities 1-3, Severities 1-4, Severities 1-5 and Use Event List. The default is None. Using the default means that no events are sent to a syslog server. If you choose Use Event List, configure the Event List to specify the event types to send to the syslog server.

For more information refer the url,


srlguy Thu, 02/22/2007 - 21:24


I ended up using configuration/system/events/classes and added class names for auth and ike for severity 1-4 to the

syslog server. This is giving me what I needed.




This Discussion