I have a lan with many PCs, i want to log all internet access so i have installed a syslog server. My router is a Cisco RVS4000 which have syslog possibilities.
Some PCs have fixed IP adress but others are in DHCP.
I activate log into the RVS4000 and i collect all informations (level 0 to 7) concerning the outgoing traffic but i have only the IP adress source in the log.
My problem is that if an user change is IP adress, i can't make the relation between the PCs of the lan and the informations in the log.
My idea is to collect the mac adress in the log to etablish this link between log and computer, how can I collect the mac adress in the log?