12-23-2016 09:08 AM - edited 03-12-2019 01:42 AM
I need help in knowing If through "CISCO ANY CONNECT" client MAC address information would be send in syslog payload. We are building a security monitoring use-case with a client, where we plan to whitelist MAC's and detect unauthorized access from Machines using MAC address from CISCO VPN logs generated by use of CISCO ANY connect. Could this be done?
12-23-2016 10:06 AM
You can get ip address for sure, Other than that please check the tshoot guide below, which might give you some help, Also let me know do you need help with MAC IDs of client connected in VPN logs.
12-23-2016 11:07 AM
Thanks a lot Farhan, but I want to know If MAC address is part of syslog messages for CISCO ANY CONNECT? How can you help? and i don't see attach tshoot guide.
12-23-2016 11:48 AM
Please see the link below, I am still searching for that exact answer and i will get back shortly:-
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: