cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
434
Views
0
Helpful
5
Replies

ASA Captures

manningjt07
Level 1
Level 1

How do I configure a wireshark capture on the ASA?

5 Replies 5

teatrodelsogno
Level 1
Level 1

Wireshark?!?

Isn't enough the logging on the ASA?

 

Or in case, you can send the logs to an external syslog for further analyzing on it (also wireshar). But this is depending of which tools on syslog you're using.

 

regards

rakeshvelagala
Level 3
Level 3

What is the issue and what are you trying to check?

Hi,

 

You can use this link to set up captures then, export them and analyze them on Wireshark:

https://supportforums.cisco.com/document/69281/asa-using-packet-capture-troubleshoot-asa-firewall-configuration-and-scenarios

 

Please don't forget to rate and mark as correct the helpful Post!

 

David Castro,

Regards,

brianwilliams99
Level 1
Level 1

Use the Packet Capture wizard. After you stop your capture, there is a button to "Save Captures" that will bring up another box asking for the save type as "Text" or "PCAP". Save it as a PCAP then open it with Wireshark.

 

If this is not what you are wanting, let us know.

 

Also, See this link, it may help.

http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/118097-configure-asa-00.html

 

Please don't forget to rate and mark as correct the helpful Post!

 

Thanks

Brian W

Ifrederick313
Level 1
Level 1

Create your capture

enter the following command...

https://X.X.X.X/capture/testcap/pcap

Where X is the IP Address of the inside interface

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card