logging connections

Unanswered Question
Jan 30th, 2007

I'm using syslog from a 3005 and I'd like to add log entries for login success, failure and logout/disconnects. Ideally it

would record account and ip address. Could anyone help me craft the rule for these events (or point me to some helpful exampe).

thanks

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 4 (1 ratings)
Loading.
sbilgi Mon, 02/05/2007 - 08:26

Click the Events to Syslog drop-down menu button and choose the range of event severity levels to send to a syslog server by default. The choices are: None, Severity 1, Severities 1-2, Severities 1-3, Severities 1-4, Severities 1-5 and Use Event List. The default is None. Using the default means that no events are sent to a syslog server. If you choose Use Event List, configure the Event List to specify the event types to send to the syslog server.

For more information refer the url,

http://cisco.com/en/US/products/hw/vpndevc/ps2284/products_configuration_guide_chapter09186a00801f1f99.html#1000798

srlguy Thu, 02/22/2007 - 21:24

Thanks,

I ended up using configuration/system/events/classes and added class names for auth and ike for severity 1-4 to the

syslog server. This is giving me what I needed.

thanks.

John

Actions

This Discussion