ASA and logs ...

Answered Question
Sep 8th, 2010


Hi,


I am pretty new with ASA and have the following questions :-


1. What is the way to see logs via the ASDM ? and how do we create a filter to view the logs filtering it via IP address ?


2. If the logs were to be viewed on the CLI, what is the way to view the logs and to filter the IP  based on IP address ?


Any good URLs would be appreciated.


Thank you,


Cheers,

- SN -

Correct Answer by abinjola about 6 years 5 months ago

1. What is the way to see logs via the ASDM ? and how do we create a filter to view the logs filtering it via IP address ?

>>Open ASDM---goto-->Monitoring----Under Logging go to Real Time Log viewer/Log Buffer----->Filter By IP address


For details: http://www.cisco.com/en/US/docs/security/asa/asa80/asdm60/user/guide/cfglog.html


>> If the logs were to be viewed on the CLI, what is the way to view the logs and to filter the IP  based on IP address ?


Enable logging on buffer and then search for specific logg, example

logging on

logging buffered 7

ASA2(config)# sh logg | inc 192.168.165.3

Sep 09 2010 12:29:08: %ASA-6-302020: Built inbound ICMP connection for faddr 10.78.167.123/512 gaddr 192.168.165.3/0 laddr 192.168.165.3/0


hope this helps

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Correct Answer
abinjola Wed, 09/08/2010 - 23:59

1. What is the way to see logs via the ASDM ? and how do we create a filter to view the logs filtering it via IP address ?

>>Open ASDM---goto-->Monitoring----Under Logging go to Real Time Log viewer/Log Buffer----->Filter By IP address


For details: http://www.cisco.com/en/US/docs/security/asa/asa80/asdm60/user/guide/cfglog.html


>> If the logs were to be viewed on the CLI, what is the way to view the logs and to filter the IP  based on IP address ?


Enable logging on buffer and then search for specific logg, example

logging on

logging buffered 7

ASA2(config)# sh logg | inc 192.168.165.3

Sep 09 2010 12:29:08: %ASA-6-302020: Built inbound ICMP connection for faddr 10.78.167.123/512 gaddr 192.168.165.3/0 laddr 192.168.165.3/0


hope this helps

Actions

This Discussion