<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5512 log function or something in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098001#M133595</link>
    <description>&lt;P&gt;We want to check what caused the server behind 5512 cannot be accessed from outside occationally.&lt;/P&gt;
&lt;P&gt;If we can check some log like NAT traffic?&lt;/P&gt;
&lt;P&gt;If we can set some monitoring?&lt;/P&gt;
&lt;P&gt;Other way to do this?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 09:46:03 GMT</pubDate>
    <dc:creator>jet.chuk</dc:creator>
    <dc:date>2019-03-12T09:46:03Z</dc:date>
    <item>
      <title>ASA 5512 log function or something</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098001#M133595</link>
      <description>&lt;P&gt;We want to check what caused the server behind 5512 cannot be accessed from outside occationally.&lt;/P&gt;
&lt;P&gt;If we can check some log like NAT traffic?&lt;/P&gt;
&lt;P&gt;If we can set some monitoring?&lt;/P&gt;
&lt;P&gt;Other way to do this?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 09:46:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098001#M133595</guid>
      <dc:creator>jet.chuk</dc:creator>
      <dc:date>2019-03-12T09:46:03Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098002#M133597</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;You can check the following things on the ASA:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;show logging | in &amp;lt;server ip&amp;gt;--- Only if logging is enabled&amp;nbsp;on the ASA&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;show conn | in &amp;lt;server ip&amp;gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;show &lt;G class="gr_ gr_120 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling ins-del multiReplace" id="120" data-gr-id="120"&gt;xlate&lt;/G&gt; | in &amp;lt;server ip&amp;gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Aditya&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Please rate helpful and mark correct answers&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Aug 2017 04:01:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098002#M133597</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2017-08-02T04:01:39Z</dc:date>
    </item>
    <item>
      <title>Thanks Aditya,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098003#M133598</link>
      <description>&lt;P&gt;Thanks Aditya,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;How many (period) logging&amp;nbsp;I can check if it is enalbed on ASA?&lt;/P&gt;
&lt;P&gt;Will the logging be overwrite/cut if I go to check it not quickly&amp;nbsp;enough?&lt;/P&gt;
&lt;P&gt;Can I send log to a server to extend the period of logging if the answer of second question is yes?&lt;/P&gt;</description>
      <pubDate>Wed, 02 Aug 2017 04:22:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098003#M133598</guid>
      <dc:creator>jet.chuk</dc:creator>
      <dc:date>2017-08-02T04:22:52Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098004#M133600</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Yes,&amp;nbsp;you can send the &lt;G class="gr_ gr_33 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling ins-del multiReplace" id="33" data-gr-id="33"&gt;syslogs&lt;/G&gt; to a server.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;And it can be overwritten depending on the size of buffer set and the log level you set.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Use the following config:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/63884-config-asa-00.html#anc6&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;https://supportforums.cisco.com/discussion/13028651/cisco-asa-syslog-forward-all-logs-syslog-server&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Aditya&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Please rate helpful and mark correct answers&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Aug 2017 05:27:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5512-log-function-or-something/m-p/3098004#M133600</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2017-08-02T05:27:15Z</dc:date>
    </item>
  </channel>
</rss>

