03-06-2012 08:29 AM - edited 03-11-2019 03:38 PM
I have an ASA 5500 Firewall. I need to figure out how to log all events using Port 25 to determine if there are any rogue devices on our network. I was trying to figure out how to do this via the Real-Time Monitoring (filter) but have had no success. Any assistance on this would be appreciated.
03-06-2012 08:51 PM
How about a rule that says source inside network destination external service smtp log
Sent from Cisco Technical Support iPad App
04-16-2014 07:43 AM
Hi,
I am having a similar issue... Can you elaborate on your suggestion above please? What rule would I add to my 5510 in order to catch any SMTP logs from unauthorized mail hosts?
Thanks,
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide