cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
482
Views
0
Helpful
7
Replies

How can i check deny log for a particular IP in PIX

vintan1801
Level 1
Level 1

How can i check deny log for a particular IP in PIX?

bit urgent request

thanks to everyone in advance

Vin

1 Accepted Solution

Accepted Solutions

With high traffic flow it's very hard to see.

View solution in original post

7 Replies 7

Collin Clark
VIP Alumni
VIP Alumni

Assuming your looking in the log buffer,

show log | i [ip address]

as internal buffer size is not very big in PIX- it might not be having it. Is there any other way i can check the deny logs?

You really have two options-

Make the buffer larger (still have a chance of missing it though).

logging buffer 16000

Or send the logs to syslog and review them off the server (preferred method)

logging host [ip address of syslog server]

Hope that helps.

Good option. so it means that definitely i might not be able to see any deny entry for a particular IP (i.e, if the traffic flow is very good on the firewall and buffer size set was to low)??

With high traffic flow it's very hard to see.

Thank you for your advice - very informative and quick.appreciate it. if i need to give you rating how can i do?

Looks like you already did, thanks for that, we appreciate it.

Review Cisco Networking products for a $25 gift card