I have a task to configure syslog server and send only the audit logs to it instead of everything. currently i have 2 syslog servers which are configured to get all logs, but the new server has to receive only the audit logs. How do i do this?
ASA has options to specify the logging options to get logged in syslog server..... But if you say audit logs... what kind of logs you want to get with.... based on that option can be chosen or through the severity level.... logging message <syslog code>
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...