Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

VPN3030: syslog sends all events

I have a VPN Concentrator 3030 running 4.1.7H. I have the device configured to only send events 1-3 to syslog, but it appears that my syslog is receiving all the events from the Concentrator. I'm seeing the following types of messages:

2005-12-07 14:04:07 Local7.Info 10.5.60.3 56341 12/07/2005 14:04:07.220 SEV=6 IKE/121 RPT=160 12.xxx.xxx.227 Keep-alive type for this connection: None

2005-12-07 14:04:07 Local7.Notice 10.5.60.3 56358 12/07/2005 14:04:07.350 SEV=4 IKE/120 RPT=432 12.xxx.xxx.227 Group [RTIvpn] User [xxxx] PHASE 2 COMPLETED (msgid=382db687)

2005-12-07 14:04:07 Local7.Debug 10.5.60.3 56360 12/07/2005 14:04:07.460 SEV=7 AUTH/13 RPT=567 Authentication session closed: handle = 566

My concentrator is 10.5.60.3, so I'm sure the messages are coming from it, but the Debug messages certainly shouldn't be in the 1-3 range of severities. Any ideas?

1 REPLY
Hall of Fame Super Silver

Re: VPN3030: syslog sends all events

Burton

For What It Is Worth: at a customer site we upgraded to 4.1.7.H a week ago. We are not seeing any change in the log messages. Perhaps you could check the settings in the concentrator configuration.

HTH

Rick

98
Views
0
Helpful
1
Replies