cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
768
Views
0
Helpful
1
Replies

Useful logging for IOS Firewall

emphillips00
Level 1
Level 1

Hi Everyone,

We have a Cisco 2821 configured with CBAC as our firewall. We have been asked to set up logging on it with the intended purpose of being able to tell management something if we ever get hacked.

I have set up SNMP trapping for most everything, but making any sense out of those logs is nearly impossible.

Can anyone help tell me how they are logging their IOS firewall traffic? Do you use any tools? Is anyone logging without using any parsing tools? Do you have any tips on how to get some useful information out of the logs?

Thanks,

Eric

1 Reply 1

htarra
Level 4
Level 4

Turn on logging to provide a record of network access through the firewall, including illegitimate access attempts, SNMP and inbound and outbound services. To configure logging please click following URL:

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fsecur_c/ftrafwl/scfcbac.htm#wp1006845