cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
818
Views
0
Helpful
2
Replies

Monitoring SMTP on an ASA 5500

wrightsreprints
Level 1
Level 1

I have an ASA 5500 Firewall. I need to figure out how to log all events using Port 25 to determine if there are any rogue devices on our network. I was trying to figure out how to do this via the Real-Time Monitoring (filter) but have had no success. Any assistance on this would be appreciated.

2 Replies 2

Jeff Van Houten
Level 5
Level 5

How about a rule that says source inside network destination external service smtp log

Sent from Cisco Technical Support iPad App

Hi,

 

I am having a similar issue... Can you elaborate on your suggestion above please? What rule would I add to my 5510 in order to catch any SMTP logs from unauthorized mail hosts?

Thanks,

Review Cisco Networking products for a $25 gift card