<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC does not log HTTP/HTTPS Connection Events in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311734#M1121914</link>
    <description>&lt;P&gt;Points to check&lt;/P&gt;
&lt;P&gt;1- trust don't have log function, change action to allow (permit)&lt;/P&gt;
&lt;P&gt;2- some traffic need to config with log at beginning&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
    <pubDate>Mon, 21 Jul 2025 09:58:43 GMT</pubDate>
    <dc:creator>MHM Cisco World</dc:creator>
    <dc:date>2025-07-21T09:58:43Z</dc:date>
    <item>
      <title>FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311704#M1121911</link>
      <description>&lt;P&gt;Hi everybody;&lt;/P&gt;
&lt;P&gt;My lab consists one &lt;STRONG&gt;FMCv&lt;/STRONG&gt; with version &lt;STRONG&gt;7.4.2.3&lt;/STRONG&gt; and one &lt;STRONG&gt;FTDv&lt;/STRONG&gt; in &lt;STRONG&gt;Routed mode&lt;/STRONG&gt; with version &lt;STRONG&gt;7.4.2.3&lt;/STRONG&gt;. I have created an Access Control Rule with the following conditions:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="1.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/248658i791B03A9D48C0B8F/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have also configured the logging operation as follows:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="2.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/248659i3D1806ABD2BB9CDB/image-size/large?v=v2&amp;amp;px=999" role="button" title="2.png" alt="2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Now when a user with IP address 192.168.10.10 tries to open a web site published on a Windows Server behind FTDv, FMC does not log any Connection Events. Every other network access to the server is logged correctly and successfully.&lt;/P&gt;
&lt;P&gt;Any ideas?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 09:18:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311704#M1121911</guid>
      <dc:creator>rezaalikhani</dc:creator>
      <dc:date>2025-07-21T09:18:49Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311711#M1121912</link>
      <description>&lt;P&gt;Use packet tracer feature of fmc&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Check if traffic hit the correct ACL or not&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 09:31:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311711#M1121912</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2025-07-21T09:31:55Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311729#M1121913</link>
      <description>&lt;P&gt;Thanks. Using the &lt;STRONG&gt;Packet Tracer&lt;/STRONG&gt; functionality, it matches the correct ACL.&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="1.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/248676i0F04DC3156FE22A8/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 09:52:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311729#M1121913</guid>
      <dc:creator>rezaalikhani</dc:creator>
      <dc:date>2025-07-21T09:52:37Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311734#M1121914</link>
      <description>&lt;P&gt;Points to check&lt;/P&gt;
&lt;P&gt;1- trust don't have log function, change action to allow (permit)&lt;/P&gt;
&lt;P&gt;2- some traffic need to config with log at beginning&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 09:58:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311734#M1121914</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2025-07-21T09:58:43Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311846#M1121919</link>
      <description>&lt;P&gt;Good points&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;.&lt;/P&gt;
&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/146869"&gt;@rezaalikhani&lt;/a&gt;&amp;nbsp;also note that "log at end of connection" only triggers for a Permit rule where the connection closes gracefully with a TCP FIN&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 12:31:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311846#M1121919</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2025-07-21T12:31:26Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311873#M1121920</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;So, the &lt;STRONG&gt;Trust&lt;/STRONG&gt; action does not trigger a log even if I have selected the "&lt;STRONG&gt;Log at end of connection&lt;/STRONG&gt;" option in the &lt;STRONG&gt;Logging&lt;/STRONG&gt; session?&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 13:25:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311873#M1121920</guid>
      <dc:creator>rezaalikhani</dc:creator>
      <dc:date>2025-07-21T13:25:42Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311874#M1121921</link>
      <description>&lt;P&gt;Yes&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 13:27:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311874#M1121921</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2025-07-21T13:27:00Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311941#M1121922</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;The funny thing is that, if you use &lt;STRONG&gt;Packet Tracer&lt;/STRONG&gt;, it generates an event, even if you select &lt;STRONG&gt;Trust&lt;/STRONG&gt; action. Any ideas?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="1.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/248745iD6453F998E5D66FB/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 16:02:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311941#M1121922</guid>
      <dc:creator>rezaalikhani</dc:creator>
      <dc:date>2025-07-21T16:02:07Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311944#M1121923</link>
      <description>&lt;P&gt;How you config packet tracer?&lt;/P&gt;
&lt;P&gt;Are you use correct interface as ingress interface&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are you use real Ip or map ip (if you use NAT)&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jul 2025 16:10:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5311944#M1121923</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2025-07-21T16:10:02Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5312431#M1121950</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="1.png" style="width: 931px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/248801i7988F95C72651E21/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jul 2025 15:17:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5312431#M1121950</guid>
      <dc:creator>rezaalikhani</dc:creator>
      <dc:date>2025-07-22T15:17:04Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5312443#M1121951</link>
      <description>&lt;P&gt;I see ingress interface is different between two packet tracer?&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jul 2025 16:07:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5312443#M1121951</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2025-07-22T16:07:35Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5314503#M1121994</link>
      <description>&lt;P&gt;Any update&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Sun, 27 Jul 2025 13:00:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5314503#M1121994</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2025-07-27T13:00:51Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5316677#M1122064</link>
      <description>&lt;P&gt;Thanks for your follow up...&lt;/P&gt;
&lt;P&gt;Please consider my configuration:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="1.png" style="width: 892px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/249590i539D2A8D4E3F9DA7/image-size/large?v=v2&amp;amp;px=999" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Now, the client opens an SSH session to the target device and then closes the session. As you can see below, FMC correctly triggers a&amp;nbsp;&lt;STRONG&gt;Trust&lt;/STRONG&gt; connection event:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="2.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/249591i6D4A17E8981930BD/image-size/large?v=v2&amp;amp;px=999" role="button" title="2.png" alt="2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any ideas?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 02 Aug 2025 05:57:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5316677#M1122064</guid>
      <dc:creator>rezaalikhani</dc:creator>
      <dc:date>2025-08-02T05:57:04Z</dc:date>
    </item>
    <item>
      <title>Re: FMC does not log HTTP/HTTPS Connection Events</title>
      <link>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5316795#M1122071</link>
      <description>&lt;P&gt;Sorry can you elaborate I dont get your last comment&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Sat, 02 Aug 2025 17:23:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-does-not-log-http-https-connection-events/m-p/5316795#M1122071</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2025-08-02T17:23:18Z</dc:date>
    </item>
  </channel>
</rss>

