01-24-2007 11:47 AM - edited 03-11-2019 02:24 AM
I am trying to enable sylog logging to a Windows server thru my inside interface to beable to capture my VPN traffic. Everytime I enable logging my inside interface drops until I Disable logging. Please help, I'd like to be able to review all of my logs but I am required to at least get my VPN traffic.
01-24-2007 06:17 PM
Is the whole PIX not responding or only the inside interface ?? How is the CPU usage after enabling logging ? which code of PIX are you running ? alternately, you can span the switchport connecting to inside interface and log all the events necessary...
Raj
01-25-2007 10:58 AM
05-21-2007 07:54 AM
None of the interfaces are passing traffic. CPU usage is normal I am running ver. 7.0(1)
05-21-2007 11:12 AM
Hi,
make sure it is necessary to use TCP for sending your logs. If your logging host goes down your firewall will stop when TCP is used till your logging host is back online. If this is not the desired behaviour rather use UDP.
Hope this helps.
Cheers.
05-24-2007 04:40 AM
how do I specify just using UDP vs using both? I am using PIX Firewall Syslog server ver 5.12 on a windows 2003 server.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide