<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Logging facility 23 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4459119#M1083308</link>
    <description>&lt;P&gt;seems to be ok, what syslog server other side.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;from ASA can you post show logging.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 02 Sep 2021 22:56:56 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2021-09-02T22:56:56Z</dc:date>
    <item>
      <title>Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458431#M1083271</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Im facing an issue that logs are not going into my syslog server after enabling syslog logging facility equals to 23.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can anyone help me regarding this what could be the problem&lt;/P&gt;</description>
      <pubDate>Wed, 01 Sep 2021 18:47:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458431#M1083271</guid>
      <dc:creator>sv7</dc:creator>
      <dc:date>2021-09-01T18:47:33Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458554#M1083278</link>
      <description>&lt;P&gt;what device is this ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Look at this thread :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/network-security/configure-syslog-logging-facility-is-equal-to-23/m-p/4438196" target="_blank"&gt;https://community.cisco.com/t5/network-security/configure-syslog-logging-facility-is-equal-to-23/m-p/4438196&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Sep 2021 02:20:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458554#M1083278</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-09-02T02:20:35Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458595#M1083280</link>
      <description>&lt;P&gt;Hello Balaji,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Link you have shared shows how to enable logging facility. My query is i have enable logging facility but after that Asa stops sending logs to syslog server.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Device is Asa 5585-x&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Sep 2021 05:10:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458595#M1083280</guid>
      <dc:creator>sv7</dc:creator>
      <dc:date>2021-09-02T05:10:48Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458763#M1083286</link>
      <description>&lt;P&gt;can you post the bit of Logging config (is that working before making facility change&amp;nbsp; to 23 ?)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Sep 2021 11:41:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458763#M1083286</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-09-02T11:41:18Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458982#M1083298</link>
      <description>&lt;P&gt;Hi Balaji,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yes its working before enabling facility 23. Please find below my logging configuration&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ogging enable&lt;BR /&gt;logging timestamp&lt;BR /&gt;logging standby&lt;BR /&gt;logging buffer-size 524288&lt;BR /&gt;logging buffered debugging&lt;BR /&gt;logging trap debugging&lt;BR /&gt;logging history debugging&lt;BR /&gt;logging asdm debugging&lt;BR /&gt;logging from-address xxx-security@xxx.com&lt;BR /&gt;logging recipient-address xxx@xxx.com level emergencies&lt;BR /&gt;logging facility 23&lt;BR /&gt;logging device-id hostname&lt;BR /&gt;logging host management 10.33.194.xxx&lt;BR /&gt;logging host INSIDE 10.33.194.xxx&lt;BR /&gt;logging host OUTSIDE 192.168.71.2 xx/50020&lt;/P&gt;</description>
      <pubDate>Thu, 02 Sep 2021 18:12:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4458982#M1083298</guid>
      <dc:creator>sv7</dc:creator>
      <dc:date>2021-09-02T18:12:28Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4459119#M1083308</link>
      <description>&lt;P&gt;seems to be ok, what syslog server other side.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;from ASA can you post show logging.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Sep 2021 22:56:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4459119#M1083308</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-09-02T22:56:56Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4464516#M1083588</link>
      <description>&lt;P&gt;Hello Balaji,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;will share after getting output from customer.&lt;/P&gt;</description>
      <pubDate>Mon, 13 Sep 2021 05:41:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4464516#M1083588</guid>
      <dc:creator>sv7</dc:creator>
      <dc:date>2021-09-13T05:41:06Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4465269#M1083615</link>
      <description>&lt;P&gt;Hi Balaji,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Pls find show logging output and help me if im missing anything that stops facility number 23 to stops syslogs messages to syslog server.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Note : I have reverted back to facility 20 as being facility 23 doesnt sends logs to syslog server.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ciscoasa# sh logging&lt;BR /&gt;Syslog logging: enabled&lt;BR /&gt;Facility: 20&lt;BR /&gt;Timestamp logging: enabled&lt;BR /&gt;Hide Username logging: enabled&lt;BR /&gt;Standby logging: enabled&lt;BR /&gt;Debug-trace logging: disabled&lt;BR /&gt;Console logging: disabled&lt;BR /&gt;Monitor logging: disabled&lt;BR /&gt;Buffer logging: level debugging, 3139045287 messages logged&lt;BR /&gt;Trap logging: level debugging, facility 20, 12548354674 messages logged&lt;BR /&gt;Logging to management 10.33.194.207, UDP TX:2631712&lt;BR /&gt;Logging to INSIDE 10.33.194.xxx, UDP TX:2631710&lt;BR /&gt;Logging to INSIDE 10.33.194.xxx udp/50020, UDP TX:2631708&lt;BR /&gt;Logging to TASEC_SOC 192.168.71.x udp/50020, UDP TX:2631642 errors: 18 dropped: 64&lt;BR /&gt;Logging to OUTSIDE 192.168.71.x udp/50020, UDP TX:2631704&lt;BR /&gt;Logging to INSIDE 192.168.71.x udp/50020, UDP TX:2631702&lt;BR /&gt;Global TCP syslog stats::&lt;BR /&gt;NOT_PUTABLE: 0, ALL_CHANNEL_DOWN: 0&lt;BR /&gt;CHANNEL_FLAP_CNT: 0, SYSLOG_PKT_LOSS: 0&lt;BR /&gt;PARTIAL_REWRITE_CNT: 0&lt;BR /&gt;Permit-hostdown logging: disabled&lt;BR /&gt;History logging: level debugging, 3139045287 messages logged&lt;BR /&gt;Device ID: hostname "ciscoasa"&lt;BR /&gt;Mail logging: disabled&lt;BR /&gt;ASDM logging: level informational, 3025057869 messages logged&lt;/P&gt;</description>
      <pubDate>Mon, 13 Sep 2021 18:09:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4465269#M1083615</guid>
      <dc:creator>sv7</dc:creator>
      <dc:date>2021-09-13T18:09:07Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4466128#M1083637</link>
      <description>&lt;P&gt;Any help on this please&lt;/P&gt;</description>
      <pubDate>Tue, 14 Sep 2021 13:16:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4466128#M1083637</guid>
      <dc:creator>sv7</dc:creator>
      <dc:date>2021-09-14T13:16:18Z</dc:date>
    </item>
    <item>
      <title>Re: Logging facility 23</title>
      <link>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4466280#M1083649</link>
      <description>&lt;P&gt;Looking&amp;nbsp; at the Config, Looks ok,&lt;/P&gt;
&lt;P&gt;Since default using UDP, Try using TCP when you setup Facility 23 (see if that works) - make sure syslog server also Listen on TCP.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H3 id="toc-hId--865357605"&gt;Send Logging Information to a Syslog Server&lt;/H3&gt;
&lt;PRE&gt;&lt;STRONG&gt;logging host&lt;/STRONG&gt; interface_name ip_address [tcp[/port] | udp[/port]] [format emblem]&lt;BR /&gt;&lt;STRONG&gt;logging trap&lt;/STRONG&gt; severity_level&lt;BR /&gt;&lt;STRONG&gt;logging facility&lt;/STRONG&gt; number&lt;BR /&gt;&lt;BR /&gt;&lt;/PRE&gt;</description>
      <pubDate>Tue, 14 Sep 2021 15:43:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-facility-23/m-p/4466280#M1083649</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-09-14T15:43:23Z</dc:date>
    </item>
  </channel>
</rss>

