<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996012#M149365</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;of course:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;show run all logging&lt;BR /&gt;logging enable&lt;BR /&gt;logging hide username&lt;BR /&gt;logging buffer-size 4096&lt;BR /&gt;logging asdm-buffer-size 100&lt;BR /&gt;logging asdm debugging&lt;BR /&gt;logging flash-minimum-free 3076&lt;BR /&gt;logging flash-maximum-allocation 1024&lt;BR /&gt;logging class vpn monitor debugging&lt;BR /&gt;logging class vpnc monitor debugging&lt;BR /&gt;logging rate-limit 1 10 message 747001&lt;BR /&gt;logging rate-limit 1 1 message 402116&lt;BR /&gt;logging rate-limit 1 10 message 620002&lt;BR /&gt;logging rate-limit 1 10 message 717015&lt;BR /&gt;logging rate-limit 1 10 message 717018&lt;BR /&gt;logging rate-limit 1 10 message 201013&lt;BR /&gt;logging rate-limit 1 10 message 201012&lt;BR /&gt;logging rate-limit 1 1 message 313009&lt;BR /&gt;logging rate-limit 100 1 message 750003&lt;BR /&gt;logging rate-limit 100 1 message 750002&lt;BR /&gt;logging rate-limit 100 1 message 750004&lt;BR /&gt;logging rate-limit 1 10 message 419003&lt;BR /&gt;logging rate-limit 1 10 message 405002&lt;BR /&gt;logging rate-limit 1 10 message 405003&lt;BR /&gt;logging rate-limit 1 10 message 421007&lt;BR /&gt;logging rate-limit 1 10 message 405001&lt;BR /&gt;logging rate-limit 1 10 message 421001&lt;BR /&gt;logging rate-limit 1 10 message 421002&lt;BR /&gt;logging rate-limit 1 10 message 337004&lt;BR /&gt;logging rate-limit 1 10 message 337005&lt;BR /&gt;logging rate-limit 1 10 message 337001&lt;BR /&gt;logging rate-limit 1 10 message 337002&lt;BR /&gt;logging rate-limit 1 60 message 199020&lt;BR /&gt;logging rate-limit 1 10 message 337003&lt;BR /&gt;logging rate-limit 2 5 message 199011&lt;BR /&gt;logging rate-limit 1 10 message 199010&lt;BR /&gt;logging rate-limit 1 10 message 337009&lt;BR /&gt;logging rate-limit 2 5 message 199012&lt;BR /&gt;logging rate-limit 1 10 message 710002&lt;BR /&gt;logging rate-limit 1 10 message 209003&lt;BR /&gt;logging rate-limit 1 10 message 209004&lt;BR /&gt;logging rate-limit 1 10 message 209005&lt;BR /&gt;logging rate-limit 1 10 message 431002&lt;BR /&gt;logging rate-limit 1 10 message 431001&lt;BR /&gt;logging rate-limit 1 1 message 447001&lt;BR /&gt;logging rate-limit 1 10 message 110003&lt;BR /&gt;logging rate-limit 1 10 message 110002&lt;BR /&gt;logging rate-limit 1 10 message 429007&lt;BR /&gt;logging rate-limit 1 10 message 216004&lt;BR /&gt;logging rate-limit 1 10 message 450001&lt;/P&gt;</description>
    <pubDate>Thu, 13 Oct 2016 14:01:05 GMT</pubDate>
    <dc:creator>roesch4alc</dc:creator>
    <dc:date>2016-10-13T14:01:05Z</dc:date>
    <item>
      <title>Cisco ASA Logging behaviour "logging class"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996008#M149361</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;can somebody explain to me, what the exact behaviour of logging class is?&amp;nbsp;In some cases, I need to log e.g. vpn related debugs to the terminal session. But&amp;nbsp;I need only this kind of debugs. So the question is, if the logging class command specifies what kind of debuglevel of&amp;nbsp;the specified class is displayed in the terminal or will my terminal be restricted to only show the configured classes and no other syslog messages?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Example:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If I am using this commands. What will it exactly do?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;logging class vpn monitor 7&lt;/P&gt;
&lt;P&gt;logging class vpnc monitor 7&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Are these commands working for their own or do I need to add the&amp;nbsp;logging monitor debug command?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Best Regards&lt;/P&gt;
&lt;P&gt;Sebastian&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:22:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996008#M149361</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2019-03-12T08:22:42Z</dc:date>
    </item>
    <item>
      <title>Sebastian,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996009#M149362</link>
      <description>&lt;P&gt;Sebastian,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Logging class helps you to segregate the logs on basis of some pre-defined classes.&lt;/P&gt;
&lt;P&gt;Yes when you configure a particular class to terminal, only log related to that will be seen.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You would be needing "logging monitor debugging" command.&lt;/P&gt;
&lt;P&gt;You can find complete details at the following link :&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa-command-reference/I-R/cmdref2/l2.html#pgfId-1793205&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;For example :&lt;/P&gt;
&lt;P&gt;logging class vpn buffered debugging &amp;nbsp; &amp;nbsp; //to log to the buffer&lt;BR /&gt;logging class vpn trap debugging &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;//to log to a syslog server&lt;BR /&gt;logging class vpnc buffered debugging &amp;nbsp; //logging for vpn client activities&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;_&lt;/P&gt;
&lt;P&gt;Pulkit&lt;/P&gt;
&lt;P&gt;Please rate helpful posts.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2016 14:00:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996009#M149362</guid>
      <dc:creator>Pulkit Saxena</dc:creator>
      <dc:date>2016-10-11T14:00:25Z</dc:date>
    </item>
    <item>
      <title>Hi Pulkit,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996010#M149363</link>
      <description>&lt;P&gt;Hi Pulkit,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I made some tests and I must disagree&amp;nbsp;to most of your statements. I was testing on an ASA 5510 with ASA Software version&amp;nbsp;9.1(7)9.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;So this&amp;nbsp;everything I configured regarding logging:&lt;/P&gt;
&lt;P&gt;logging enable&lt;BR /&gt;logging asdm debugging&lt;BR /&gt;logging class vpn monitor debugging&lt;BR /&gt;logging class vpnc monitor debugging&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Now, up to your statement, I should only see vpn related debugs in the ssh/telnet session.... But I can also issue a "debug arp" or "debug nat" and I even see this type of debug messages... So thats not working as expected I think?!&lt;/P&gt;
&lt;P&gt;Furthermore I don´t need to add "&lt;SPAN&gt;logging monitor debugging&lt;/SPAN&gt;". The debug logs will be displayed immediately after&amp;nbsp;I start a debugging, with a&amp;nbsp;"debug arp".&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;A "sh logging" displays:&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;" Monitor logging: disabled"&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;So in the moment I am not able to limit the debug output to certain facilities and do not really understand the logging class feature...&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Any ideas?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Sebastian&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2016 13:20:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996010#M149363</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2016-10-13T13:20:41Z</dc:date>
    </item>
    <item>
      <title>Sebastian,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996011#M149364</link>
      <description>&lt;P&gt;Sebastian,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;That seems a little weird, could you please share the output of "show run all logging" and only that part of "show logging" before logs start.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Pulkit&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2016 13:46:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996011#M149364</guid>
      <dc:creator>Pulkit Saxena</dc:creator>
      <dc:date>2016-10-13T13:46:30Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996012#M149365</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;of course:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;show run all logging&lt;BR /&gt;logging enable&lt;BR /&gt;logging hide username&lt;BR /&gt;logging buffer-size 4096&lt;BR /&gt;logging asdm-buffer-size 100&lt;BR /&gt;logging asdm debugging&lt;BR /&gt;logging flash-minimum-free 3076&lt;BR /&gt;logging flash-maximum-allocation 1024&lt;BR /&gt;logging class vpn monitor debugging&lt;BR /&gt;logging class vpnc monitor debugging&lt;BR /&gt;logging rate-limit 1 10 message 747001&lt;BR /&gt;logging rate-limit 1 1 message 402116&lt;BR /&gt;logging rate-limit 1 10 message 620002&lt;BR /&gt;logging rate-limit 1 10 message 717015&lt;BR /&gt;logging rate-limit 1 10 message 717018&lt;BR /&gt;logging rate-limit 1 10 message 201013&lt;BR /&gt;logging rate-limit 1 10 message 201012&lt;BR /&gt;logging rate-limit 1 1 message 313009&lt;BR /&gt;logging rate-limit 100 1 message 750003&lt;BR /&gt;logging rate-limit 100 1 message 750002&lt;BR /&gt;logging rate-limit 100 1 message 750004&lt;BR /&gt;logging rate-limit 1 10 message 419003&lt;BR /&gt;logging rate-limit 1 10 message 405002&lt;BR /&gt;logging rate-limit 1 10 message 405003&lt;BR /&gt;logging rate-limit 1 10 message 421007&lt;BR /&gt;logging rate-limit 1 10 message 405001&lt;BR /&gt;logging rate-limit 1 10 message 421001&lt;BR /&gt;logging rate-limit 1 10 message 421002&lt;BR /&gt;logging rate-limit 1 10 message 337004&lt;BR /&gt;logging rate-limit 1 10 message 337005&lt;BR /&gt;logging rate-limit 1 10 message 337001&lt;BR /&gt;logging rate-limit 1 10 message 337002&lt;BR /&gt;logging rate-limit 1 60 message 199020&lt;BR /&gt;logging rate-limit 1 10 message 337003&lt;BR /&gt;logging rate-limit 2 5 message 199011&lt;BR /&gt;logging rate-limit 1 10 message 199010&lt;BR /&gt;logging rate-limit 1 10 message 337009&lt;BR /&gt;logging rate-limit 2 5 message 199012&lt;BR /&gt;logging rate-limit 1 10 message 710002&lt;BR /&gt;logging rate-limit 1 10 message 209003&lt;BR /&gt;logging rate-limit 1 10 message 209004&lt;BR /&gt;logging rate-limit 1 10 message 209005&lt;BR /&gt;logging rate-limit 1 10 message 431002&lt;BR /&gt;logging rate-limit 1 10 message 431001&lt;BR /&gt;logging rate-limit 1 1 message 447001&lt;BR /&gt;logging rate-limit 1 10 message 110003&lt;BR /&gt;logging rate-limit 1 10 message 110002&lt;BR /&gt;logging rate-limit 1 10 message 429007&lt;BR /&gt;logging rate-limit 1 10 message 216004&lt;BR /&gt;logging rate-limit 1 10 message 450001&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2016 14:01:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996012#M149365</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2016-10-13T14:01:05Z</dc:date>
    </item>
    <item>
      <title>Sebastian,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996013#M149366</link>
      <description>&lt;P&gt;Sebastian,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I did a quick check on my lab ASA :&lt;/P&gt;
&lt;P&gt;Configuration i applied :&lt;/P&gt;
&lt;P&gt;====&lt;/P&gt;
&lt;P&gt;logging enable&lt;BR /&gt;logging buffer-size 44444&lt;BR /&gt;logging class vpn buffered debugging monitor debugging&lt;/P&gt;
&lt;P&gt;====&lt;/P&gt;
&lt;P&gt;The output of "show logging" shows as expected :&lt;/P&gt;
&lt;P&gt;====&lt;/P&gt;
&lt;P&gt;ciscoasa(config)# sh logging&lt;BR /&gt;Syslog logging: enabled&lt;BR /&gt; Facility: 20&lt;BR /&gt; Timestamp logging: disabled&lt;BR /&gt; Hide Username logging: enabled&lt;BR /&gt; Standby logging: disabled&lt;BR /&gt; Debug-trace logging: disabled&lt;BR /&gt; Console logging: disabled&lt;BR /&gt; Monitor logging: class vpn, 0 messages logged&lt;BR /&gt; Buffer logging: class vpn, 0 messages logged&lt;BR /&gt; Trap logging: disabled&lt;BR /&gt; Permit-hostdown logging: disabled&lt;BR /&gt; History logging: disabled&lt;BR /&gt; Device ID: disabled&lt;BR /&gt; Mail logging: disabled&lt;BR /&gt; ASDM logging: disabled&lt;/P&gt;
&lt;P&gt;====&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Please try and that let me know if we get he required results.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;-&lt;/P&gt;
&lt;P&gt;Pulkit&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2016 14:04:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996013#M149366</guid>
      <dc:creator>Pulkit Saxena</dc:creator>
      <dc:date>2016-10-13T14:04:45Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996014#M149367</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;this is the output from my asa:&lt;/P&gt;
&lt;P&gt;ciscoasa# sh run logging&lt;BR /&gt;logging enable&lt;BR /&gt;logging asdm debugging&lt;BR /&gt;logging class vpn buffered debugging monitor debugging&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;ciscoasa# sh logging&lt;BR /&gt;Syslog logging: enabled&lt;BR /&gt; Facility: 20&lt;BR /&gt; Timestamp logging: disabled&lt;BR /&gt; Hide Username logging: enabled&lt;BR /&gt; Standby logging: disabled&lt;BR /&gt; Debug-trace logging: disabled&lt;BR /&gt; Console logging: disabled&lt;BR /&gt; Monitor logging: class vpn, 82 messages logged&lt;BR /&gt; Buffer logging: class vpn, 0 messages logged&lt;BR /&gt; Trap logging: disabled&lt;BR /&gt; Permit-hostdown logging: disabled&lt;BR /&gt; History logging: disabled&lt;BR /&gt; Device ID: disabled&lt;BR /&gt; Mail logging: disabled&lt;BR /&gt; ASDM logging: level debugging, 103670 messages logged&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;That´s fine so far. Did I understand you right, that I should only see vpn related messages in any telnet or ssh session with this config ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;What happens with your system, when you issue and "debug arp" in the ssh/telnet&amp;nbsp;session for example? If I do that, I see all the debug messages, coming from debug arp....&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="color: #ff0000;"&gt;&lt;STRONG&gt;EDIT: Of course you should choose a type of debug, that generates at least some kind of output.... &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt; But "debug arp" should normally do that...&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Sebastian&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2016 14:31:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996014#M149367</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2016-10-13T14:31:25Z</dc:date>
    </item>
    <item>
      <title>Sebastian,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996015#M149368</link>
      <description>&lt;P&gt;Sebastian,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Glad that it worked correctly and yes i checked on my system regarding "debug arp".&lt;/P&gt;
&lt;P&gt;No matter what change i made, the debug messages still came on the terminal. I think it is a default behavior, to ensure that critical debugs are turned off if not required, as i even tried disabling logging but was still able to see the debug messages.&lt;/P&gt;
&lt;P&gt;I will try to look further into it tomorrow and will update you if possible.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However, I hope your main query was answered.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;-&lt;/P&gt;
&lt;P&gt;Pulkit&lt;/P&gt;
&lt;P&gt;Please rate helpful posts.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2016 14:54:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996015#M149368</guid>
      <dc:creator>Pulkit Saxena</dc:creator>
      <dc:date>2016-10-13T14:54:54Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996016#M149369</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;at first, thanks for your help.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;But I don´t think it is working correctly, it is displaying messages, it shouldn´t ?! One of your first statements was:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;Yes when you configure a particular class to terminal, only log related to that will be seen.&amp;nbsp;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;It doesn´t apply to this behaviour, what we can see in reality. So the question is, do we have a bug or where is the problem here?! A "debug arp" shouldn´t be displayed, but it is....&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Sorry, but I don´t understand this statement, can you explain it to me? For me it seems unlogical:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;SPAN&gt;I think it is a default behavior, to ensure that critical debugs are turned off if not required, as i even tried disabling logging but was still able to see the debug messages.&lt;/SPAN&gt;&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;If the possibility of configuring the log level for the terminal for example doesn´t take affect, the function is either not working&amp;nbsp;and we have a bug or I completely don´t understand the&amp;nbsp;configuration options for the logging in the asa....&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Best Regards&lt;/P&gt;
&lt;P&gt;Sebastian&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Oct 2016 09:12:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996016#M149369</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2016-10-14T09:12:35Z</dc:date>
    </item>
    <item>
      <title>Sebastian,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996017#M149370</link>
      <description>&lt;P&gt;Sebastian,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;As per my understanding if you configure a class, it should show logs for that class only. I was not aware of debug functionality. I really don't think of it as a caveat.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I believe after configuring the vpn class, you are receiving VPN logs and debug logs, like debug arp. I will try and check more on that.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;-&lt;/P&gt;
&lt;P&gt;Pulkit&lt;/P&gt;</description>
      <pubDate>Fri, 14 Oct 2016 09:38:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996017#M149370</guid>
      <dc:creator>Pulkit Saxena</dc:creator>
      <dc:date>2016-10-14T09:38:24Z</dc:date>
    </item>
    <item>
      <title>As per my understanding if</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996018#M149371</link>
      <description>&lt;P&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;As per my understanding if you configure a class, it should show logs for that class only. I was not aware of debug functionality. I really don't think of it as a caveat.&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;Yes, thats´exactly, what I expect from this command. But in fact, it doesn´t work. So I in that case, I think it must be a bug.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;I believe after configuring the vpn class, you are receiving VPN logs and debug logs, like debug arp.&lt;/P&gt;
&lt;/BLOCKQUOTE&gt;
&lt;P&gt;No, thats wrong, I testet it.&amp;nbsp;The terminal window shows vpn debug messages, only directly after I entered "debug cry ikev1 128". And therefore I don´t need to configure a vpn class for the monitor like "logging class vpn monitor"....&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;While when only issuing "&lt;SPAN&gt;logging class vpn monitor" (without typing "debug cry ikev1 128"), there are no vpn debug messages displayed.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;So up to know, this feature doesn´t work for me..,.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Sebastian&lt;/P&gt;</description>
      <pubDate>Fri, 14 Oct 2016 10:22:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996018#M149371</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2016-10-14T10:22:55Z</dc:date>
    </item>
    <item>
      <title>Hi Pulkit,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996019#M149372</link>
      <description>&lt;P&gt;Hi Pulkit,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;did you find something on this? I couldn´t solve this problem until today.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Sebastian&lt;/P&gt;</description>
      <pubDate>Wed, 14 Dec 2016 09:04:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996019#M149372</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2016-12-14T09:04:56Z</dc:date>
    </item>
    <item>
      <title>Hi Sebastian,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996020#M149374</link>
      <description>&lt;P&gt;Hi Sebastian,&lt;/P&gt;
&lt;P&gt;Apologies for too much delay here. I was kind of out of touch here.&lt;BR /&gt;So I did check further in regards to our query, and I think we need to go through :&lt;BR /&gt;http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-firewalls/200365-Differences-Between-Logs-and-Debugs-on-A.html&lt;/P&gt;
&lt;P&gt;This document clearly says that, by default all debug messages are displayed on screen when you are connected either through&lt;BR /&gt;console or ssh/telnet session. That is why, even though we have "logigng class defined" but as soon as we enable "debug arp",&lt;BR /&gt;it is seen on the screen as well.&lt;/P&gt;
&lt;P&gt;Please let me know if you have any query on this.&lt;/P&gt;
&lt;P&gt;-&lt;BR /&gt;Pulkit&lt;BR /&gt;Please rate helpful posts.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Jan 2017 11:44:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996020#M149374</guid>
      <dc:creator>Pulkit Saxena</dc:creator>
      <dc:date>2017-01-27T11:44:40Z</dc:date>
    </item>
    <item>
      <title>Hi Pulkit,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996021#M149375</link>
      <description>&lt;P&gt;Hi Pulkit,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;thank you, that document is really useful to understand the difference between debug and log and makes it more clear to me.&lt;/P&gt;
&lt;P&gt;Now after reading this, I have a next question. If debugs are always displayed immediately, for what reason I can configure "&lt;SPAN&gt;logging class vpn monitor debugging" or "logging monitor 7". If debugs are always displayed, this settings are obsolete or is there something&amp;nbsp;I missed?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Sebastian&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 30 Jan 2017 08:59:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996021#M149375</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2017-01-30T08:59:33Z</dc:date>
    </item>
    <item>
      <title>I try to describe it in</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996022#M149376</link>
      <description>&lt;P&gt;I try to describe it in another way: For example: To enable&amp;nbsp;logging monitor 7 makes no sense, as this messages will only be triggered, after a debug command is issued. If you&amp;nbsp;are connected via ssh for example, independet from the logging configuration, debug commands should&amp;nbsp;automatically be displayed to the ssh session.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;But I must say, that if I&amp;nbsp;enable debugging for icmp "debug icmp trace" for example,&amp;nbsp;debug messages are displayed immediately. When I now add the logging monitor 7 command, no additional syslog level 7 messages will be displayed.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I think I still don´t fully understand, how it works...&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;BR&lt;BR /&gt;Sebastian&lt;/P&gt;</description>
      <pubDate>Mon, 30 Jan 2017 09:14:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996022#M149376</guid>
      <dc:creator>roesch4alc</dc:creator>
      <dc:date>2017-01-30T09:14:03Z</dc:date>
    </item>
    <item>
      <title>Sebastian,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996023#M149377</link>
      <description>&lt;P&gt;Sebastian,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Yes, you are right by saying that messages will only be triggered after a debug command is issued.&lt;/P&gt;
&lt;P&gt;So basically, you need to enable the debug for that.&lt;/P&gt;
&lt;P&gt;In regards to "logging class" and logging features, I would suggest please go through the following link :&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa91/configuration/general/asa_91_general_config/monitor_syslog.html#97583&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;-&lt;/P&gt;
&lt;P&gt;Pulkit&lt;/P&gt;</description>
      <pubDate>Mon, 30 Jan 2017 14:23:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-logging-behaviour-quot-logging-class-quot/m-p/2996023#M149377</guid>
      <dc:creator>Pulkit Saxena</dc:creator>
      <dc:date>2017-01-30T14:23:49Z</dc:date>
    </item>
  </channel>
</rss>

