<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA FDM setup syslog in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-fdm-setup-syslog/m-p/4681652#M1093184</link>
    <description>&lt;P&gt;Hi all.&lt;/P&gt;
&lt;P&gt;I have problem about setup syslog for ASA FDM.&lt;/P&gt;
&lt;P&gt;this is current topology.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SeokGeunChoi73564_1-1662425530722.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/161558i4B8689D20A4830F8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SeokGeunChoi73564_1-1662425530722.png" alt="SeokGeunChoi73564_1-1662425530722.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Each network firewall linked on Backbone SW and they can communicate.&lt;/P&gt;
&lt;P&gt;And BB can ping with each FW's outside interface, but can't inside interface.&lt;/P&gt;
&lt;P&gt;Syslog server is located inside of Svr FW.&lt;/P&gt;
&lt;P&gt;I want to get syslog data from Office FW too, especially "inside interface".&lt;/P&gt;
&lt;P&gt;How can I get syslog data from Office FW inside interface?&lt;/P&gt;</description>
    <pubDate>Tue, 06 Sep 2022 01:05:52 GMT</pubDate>
    <dc:creator>SeokGeunChoi73564</dc:creator>
    <dc:date>2022-09-06T01:05:52Z</dc:date>
    <item>
      <title>ASA FDM setup syslog</title>
      <link>https://community.cisco.com/t5/network-security/asa-fdm-setup-syslog/m-p/4681652#M1093184</link>
      <description>&lt;P&gt;Hi all.&lt;/P&gt;
&lt;P&gt;I have problem about setup syslog for ASA FDM.&lt;/P&gt;
&lt;P&gt;this is current topology.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SeokGeunChoi73564_1-1662425530722.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/161558i4B8689D20A4830F8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SeokGeunChoi73564_1-1662425530722.png" alt="SeokGeunChoi73564_1-1662425530722.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Each network firewall linked on Backbone SW and they can communicate.&lt;/P&gt;
&lt;P&gt;And BB can ping with each FW's outside interface, but can't inside interface.&lt;/P&gt;
&lt;P&gt;Syslog server is located inside of Svr FW.&lt;/P&gt;
&lt;P&gt;I want to get syslog data from Office FW too, especially "inside interface".&lt;/P&gt;
&lt;P&gt;How can I get syslog data from Office FW inside interface?&lt;/P&gt;</description>
      <pubDate>Tue, 06 Sep 2022 01:05:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-fdm-setup-syslog/m-p/4681652#M1093184</guid>
      <dc:creator>SeokGeunChoi73564</dc:creator>
      <dc:date>2022-09-06T01:05:52Z</dc:date>
    </item>
    <item>
      <title>Re: ASA FDM setup syslog</title>
      <link>https://community.cisco.com/t5/network-security/asa-fdm-setup-syslog/m-p/4681914#M1093185</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1201132"&gt;@SeokGeunChoi73564&lt;/a&gt; do you have 2 firewalls? with a FW between BB and SYSLOG? If so you can always ping the outside interface, but you CANNOT (by design) ping through the FTD (or ASA) to the FTD's inside interface - it won't work. You'd have to ping through the FTD to SYSLOG, this communication is controlled by the Access Control Policy on the FTD and will need to be explictly configured.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Sep 2022 09:04:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-fdm-setup-syslog/m-p/4681914#M1093185</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-09-06T09:04:33Z</dc:date>
    </item>
    <item>
      <title>Re: ASA FDM setup syslog</title>
      <link>https://community.cisco.com/t5/network-security/asa-fdm-setup-syslog/m-p/4682333#M1093217</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1.&amp;nbsp;&lt;SPAN&gt;do you have 2 firewalls? with a FW between BB and SYSLOG? : Yes, There is several ASA FTD firewall and one of them located between BB and SYSLOG.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;+ Syslog can gathering data from ServerFarm firewall and Main firewall too.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;+ But couldn't gather data from other firewall, because can't communicate with inside interface of each firewalls&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;2. this communication is controlled by the Access Control Policy on the FTD : I did adjust policy like this one.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SeokGeunChoi73564_0-1662508107674.png" style="width: 715px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/161648i37178EA996B74BBB/image-dimensions/715x38?v=v2" width="715" height="38" role="button" title="SeokGeunChoi73564_0-1662508107674.png" alt="SeokGeunChoi73564_0-1662508107674.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;This ACL Policy is first affected rule with allow 192.168.X.X (Sever network), and destination IP is Office FTD inside IP.&lt;/P&gt;
&lt;P&gt;Here is topology..&lt;/P&gt;
&lt;P&gt;ISP &amp;gt; Main FTD &amp;gt; BB - Office FTD - Office Middle SW&lt;/P&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;L Server FTD - Server SW - Syslog&lt;/P&gt;
&lt;P&gt;BB (10.10.220.1/29, 10.10.222.1/29)&lt;/P&gt;
&lt;P&gt;Office (Outside : 220.2/29 | Inside : 222.9/29)&lt;/P&gt;
&lt;P&gt;Server (Outside : 222.2/29 | Inside : 222.9/29)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Sep 2022 23:56:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-fdm-setup-syslog/m-p/4682333#M1093217</guid>
      <dc:creator>SeokGeunChoi73564</dc:creator>
      <dc:date>2022-09-06T23:56:24Z</dc:date>
    </item>
  </channel>
</rss>

