<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Lore, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/send-connection-events-to-syslog-server/m-p/2962862#M1038317</link>
    <description>&lt;P&gt;Lore,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The facility and severity is more relevant to the SYSLOG server than the configuration with FMC. &amp;nbsp;Usually the default of LOCAL0 and severity of INFO is fine.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;You then need to add the SYSLOG server entry you created on each access control policy to have logging set. &amp;nbsp;Also remember to add it to the default action.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;-Ralph&lt;/P&gt;</description>
    <pubDate>Tue, 04 Oct 2016 05:02:35 GMT</pubDate>
    <dc:creator>Ralph Rye</dc:creator>
    <dc:date>2016-10-04T05:02:35Z</dc:date>
    <item>
      <title>Send Connection Events to syslog server</title>
      <link>https://community.cisco.com/t5/network-security/send-connection-events-to-syslog-server/m-p/2962861#M1038313</link>
      <description>&lt;P&gt;Hello to everybody,&lt;/P&gt;
&lt;P&gt;how can I send syslog for connection events (not Intrusion events) to an external syslog server?&lt;BR /&gt;Which facility and severity do have I set on Alerts configuration?&lt;/P&gt;
&lt;P&gt;Thanks in advance&lt;BR /&gt;Lore&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 13:08:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-connection-events-to-syslog-server/m-p/2962861#M1038313</guid>
      <dc:creator>lorenzonerimail</dc:creator>
      <dc:date>2019-03-12T13:08:58Z</dc:date>
    </item>
    <item>
      <title>Lore,</title>
      <link>https://community.cisco.com/t5/network-security/send-connection-events-to-syslog-server/m-p/2962862#M1038317</link>
      <description>&lt;P&gt;Lore,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The facility and severity is more relevant to the SYSLOG server than the configuration with FMC. &amp;nbsp;Usually the default of LOCAL0 and severity of INFO is fine.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;You then need to add the SYSLOG server entry you created on each access control policy to have logging set. &amp;nbsp;Also remember to add it to the default action.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;-Ralph&lt;/P&gt;</description>
      <pubDate>Tue, 04 Oct 2016 05:02:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-connection-events-to-syslog-server/m-p/2962862#M1038317</guid>
      <dc:creator>Ralph Rye</dc:creator>
      <dc:date>2016-10-04T05:02:35Z</dc:date>
    </item>
  </channel>
</rss>

