04-20-2010 02:46 AM - edited 03-06-2019 10:41 AM
Hi Guys
I have configured the 6509 with the syslog setting but I am only getting logs saying "configured from console" and nothing else.
can anyone help me out there.
04-20-2010 03:05 AM
Hi,
With show logging you can see the syslog levels are being used for logging to various destinations like console, buffer, server.
You can adjust the buffer logging with logging buffered
Can you paste the "show logging" (only the settings part)?
Hope this helps, rate if does.
Krisztian
04-20-2010 03:42 AM
I understand you completely and this is what I have in my setting, but still I am not receving traffic logs only configured from console
Syslog logging: enabled (0 messages dropped, 0 messages rate-limited, 0 flushes, 0 overruns, xml disabled, filtering disabled)
Console logging: disabled
Monitor logging: disabled
Buffer logging: level informational, 0 messages logged, xml disabled,
filtering disabled Exception Logging: size (4096 bytes)
Count and timestamp logging messages: enabled
Trap logging: level informational, 406 message lines logged
Logging to 1.2.3.4, 13 message lines logged, xml disabled,
filtering disabled
Logging to 1.2.3.6, 9 message lines logged, xml disabled,
filtering disabled
04-20-2010 03:13 AM
Specifiy the below:-
logging trap <
logging source-interface <
04-20-2010 03:50 AM
which source-interface
04-20-2010 04:07 AM
The Layer3 IP interface that can connect to the syslog server ip address.
04-20-2010 04:16 AM
i did that..nothing happening
04-20-2010 04:18 AM
What syslog server are using? Confim it is lisening on UDP 514, confirm you are not blocking syslog messages to the server.
04-20-2010 04:30 AM
Hi
Kiwi syslog and symantec central log management application SIM, and both a listening on UDP port 514
@ the moment i am getting only 2 types of message on syslog server
1. configured from console by me on vty 0 (ip address)
2. linkproto-sp-5-updown: line protocol on interface xx , change state to up
nothing else is shown. where as i want to see all traffic just like when i enable syslog on ASA with trap informational I start getting all traffic including alot of other information.
04-20-2010 06:28 AM
Hi,
I'm afraid you will not be able to see all the traffic flowing through the switch like you see in ASA.
Only certain conditions will trigger syslog messages but the normal data flow will not be logged.
The other option is what I would not use is to set up acl with log option on the required interface/vlan and if the acl is hit syslog message is being sent, but that impacts the throughput of the device and can cause high CPU utilization.
Hope this helps
Krisztian
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: