<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Thanks, after looking at the in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633179#M197477</link>
    <description>&lt;P&gt;Thanks, after looking at the Kiwi setup again, I did see where to actually define the sources. I appreciate the help!&lt;/P&gt;</description>
    <pubDate>Tue, 03 Feb 2015 14:52:46 GMT</pubDate>
    <dc:creator>Shaun Michelson</dc:creator>
    <dc:date>2015-02-03T14:52:46Z</dc:date>
    <item>
      <title>Send ASA5505 logs to Kiwi syslog server</title>
      <link>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633173#M197471</link>
      <description>&lt;P&gt;I'm trying to set this up but can't get it to work. Here is my config on the ASA:&lt;/P&gt;&lt;P&gt;logging enable&lt;BR /&gt;logging trap informational&lt;BR /&gt;logging asdm informational&lt;BR /&gt;logging host inside &amp;lt;ip address of syslog server&amp;gt;&lt;BR /&gt;logging permit-hostdown&lt;/P&gt;&lt;P&gt;My syslog server is reachable from the ASA, the syslog service is running and listening for UDP packets on port 514. Firewall is disabled on that port. Anyone know what I'm missing?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;lt;Update&amp;gt;&lt;/P&gt;&lt;P&gt;I tried using Wireshark to see if the data was actually arriving, and it is, but it's being sent from the ASA using TLSv1, even though I've specified UDP in ASDM. Is there a way I can force it to use UDP using the command line?&lt;/P&gt;&lt;P&gt;Thanks,&lt;BR /&gt;Shaun&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:25:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633173#M197471</guid>
      <dc:creator>Shaun Michelson</dc:creator>
      <dc:date>2019-03-12T05:25:24Z</dc:date>
    </item>
    <item>
      <title>That looks all OK.Can you</title>
      <link>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633174#M197472</link>
      <description>&lt;P&gt;That looks all OK.&lt;/P&gt;&lt;P&gt;Can you check a packet capture on the ASA filtering on traffic to your syslog server at the inside interface and confirm that messages are not being sent out from the ASA?&lt;/P&gt;</description>
      <pubDate>Fri, 30 Jan 2015 20:18:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633174#M197472</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-01-30T20:18:22Z</dc:date>
    </item>
    <item>
      <title>Hi Shaun,Can you paste the</title>
      <link>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633175#M197473</link>
      <description>&lt;P&gt;Hi Shaun,&lt;/P&gt;&lt;P&gt;Can you paste the output of "show run logging"?&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;P&gt;__ __&lt;/P&gt;&lt;P&gt;Pablo&lt;/P&gt;</description>
      <pubDate>Fri, 30 Jan 2015 22:30:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633175#M197473</guid>
      <dc:creator>Pablo</dc:creator>
      <dc:date>2015-01-30T22:30:05Z</dc:date>
    </item>
    <item>
      <title>The output of sho run logging</title>
      <link>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633176#M197474</link>
      <description>&lt;P&gt;The output of sho run logging is in the first thread posting.&lt;/P&gt;</description>
      <pubDate>Mon, 02 Feb 2015 20:07:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633176#M197474</guid>
      <dc:creator>Shaun Michelson</dc:creator>
      <dc:date>2015-02-02T20:07:00Z</dc:date>
    </item>
    <item>
      <title>Here is a sample of the</title>
      <link>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633177#M197475</link>
      <description>&lt;P&gt;Sorry, I'm an idiot. The TLS traffic is from the ASDM and/or the SSH session I had open on the firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I do see the syslog packets coming in from the ASA to my syslog server when running wireshark on the syslog server. But nothing is registering in the Kiwi syslog server application. Sounds like I need to consult that community (SolarWinds) instead. Unless anyone else has any helpful insights?&lt;/P&gt;</description>
      <pubDate>Mon, 02 Feb 2015 21:08:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633177#M197475</guid>
      <dc:creator>Shaun Michelson</dc:creator>
      <dc:date>2015-02-02T21:08:22Z</dc:date>
    </item>
    <item>
      <title>I've had an instance where</title>
      <link>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633178#M197476</link>
      <description>&lt;P&gt;I've had an instance where the ASA was correctly configured and Kiwi not displaying the received packets.&lt;/P&gt;&lt;P&gt;Deleting and re-adding the ASA as a configured source cleared it up.&amp;nbsp;(You know you do need to define the sources and are limited &amp;nbsp;(to 5 IIRC) with the free Kiwi version - right?)&lt;/P&gt;</description>
      <pubDate>Tue, 03 Feb 2015 03:53:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633178#M197476</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-02-03T03:53:30Z</dc:date>
    </item>
    <item>
      <title>Thanks, after looking at the</title>
      <link>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633179#M197477</link>
      <description>&lt;P&gt;Thanks, after looking at the Kiwi setup again, I did see where to actually define the sources. I appreciate the help!&lt;/P&gt;</description>
      <pubDate>Tue, 03 Feb 2015 14:52:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/send-asa5505-logs-to-kiwi-syslog-server/m-p/2633179#M197477</guid>
      <dc:creator>Shaun Michelson</dc:creator>
      <dc:date>2015-02-03T14:52:46Z</dc:date>
    </item>
  </channel>
</rss>

