Firewall or Router Logging Options

Unanswered Question
May 2nd, 2008

I want to configure a syslog server to monitor the activities. Kindly let me know the varies logging catagrious and the most efficient way

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
jreekers Fri, 05/02/2008 - 09:15

Setting up syslog server only require 3 basic commands:

logging on

logging trap severity_level

logging host interface ip_address

where:

Severity level could be:

0 emergency

1 alert

2 critical

3 error

4 warning

5 notification

6 informational

7 debug

zzzzzzzzzzzzzzzzzzzzzzz

logging trap debugging

zzzzzzzzzzzzzzzzzzzzzzz

interface:

interface where the syslog server is going to be installed (inside, outside, dmz)

ip address:

ip address of the host with the syslog server

zzzzzzzzzzzzzzzzzzzzzzzzzzz

logging host inside 10.0.0.3

zzzzzzzzzzzzzzzzzzzzzzzzzzz

Remember that you need to have the syslog server opened and there has to be connecivity

between server host and firewall

On this link you will find further information on setting up syslog server:

http://www.cisco.com/en/US/docs/security/pix/pix42/system/message/pixemint.html#wp4275

Hope this helps.

-Joe

Actions

This Discussion