<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic SNMP Trap for ASA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113364#M394994</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Pawel,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I actually I followed the first document you send me and I am still not recieving any SNMP traps from the ASA to my NMS server. Can you please send me the exact commands to verfiy it on my end.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Hesham&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 11 Dec 2012 11:45:47 GMT</pubDate>
    <dc:creator>helsayed78</dc:creator>
    <dc:date>2012-12-11T11:45:47Z</dc:date>
    <item>
      <title>SNMP Trap for ASA</title>
      <link>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113362#M394989</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to generate and SNMP trap for any configuration changes done on a Cisco ASA , however I am not able to achieve that .... Can anyone help me out ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Hesham&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:29:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113362#M394989</guid>
      <dc:creator>helsayed78</dc:creator>
      <dc:date>2019-03-12T00:29:36Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP Trap for ASA</title>
      <link>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113363#M394991</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Hesham,&lt;/P&gt;&lt;P&gt;It depends what kind of information level you want to get. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- If you only want know that configuration was changed, but without details about what exact change was done, you can easily use logging to syslog server.&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00805a2e04.shtml#maintask1"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00805a2e04.shtml#maintask1&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- If you want to know what particular change was done, then you can use TACACS+ accouting on ASA in cooperation with AAA server, e.g. ACS.&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa82/command/reference/a1.html#wp1554939"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/command/reference/a1.html#wp1554939&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards,&lt;/P&gt;&lt;P&gt;Pawel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 28 Nov 2012 21:08:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113363#M394991</guid>
      <dc:creator>ptrynisz</dc:creator>
      <dc:date>2012-11-28T21:08:53Z</dc:date>
    </item>
    <item>
      <title>SNMP Trap for ASA</title>
      <link>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113364#M394994</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Pawel,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I actually I followed the first document you send me and I am still not recieving any SNMP traps from the ASA to my NMS server. Can you please send me the exact commands to verfiy it on my end.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Hesham&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Dec 2012 11:45:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113364#M394994</guid>
      <dc:creator>helsayed78</dc:creator>
      <dc:date>2012-12-11T11:45:47Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP Trap for ASA</title>
      <link>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113365#M394995</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Hesham,&lt;/P&gt;&lt;P&gt;The way I provided to you is using Syslog messages rather than SNMP traps. Most of NMS has built in syslog server. Configuration sample below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging buffered informational&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ! in fact this one was only used to what exactly is being logged - you can omit it&lt;/P&gt;&lt;P&gt;logging trap informational&lt;/P&gt;&lt;P&gt; logging host inside 1.1.1.100&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sample of logs while configuration change is done:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa# show logging&lt;/P&gt;&lt;P&gt;(...)&lt;/P&gt;&lt;P&gt;%ASA-5-111008: User 'enable_15' executed the 'configure terminal' command.&lt;/P&gt;&lt;P&gt;%ASA-5-111008: User 'enable_15' executed the 'interface Ethernet 0/1' command.&lt;/P&gt;&lt;P&gt;%ASA-5-111008: User 'enable_15' executed the 'description DDD' command.&lt;/P&gt;&lt;P&gt; %ASA-5-111005: console end configuration: OK&lt;/P&gt;&lt;P&gt;%ASA-6-302015: Built outbound UDP connection 0 for inside:1.1.1.100/514 (1.1.1.100/514) to NP Identity Ifc:1.1.1.1/514 (1.1.1.1/514)&lt;/P&gt;&lt;P&gt;(...)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;captures proving syslog has been sent out to syslog server:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ciscoasa# show capture CAPIN&lt;/P&gt;&lt;P&gt;(...)&lt;/P&gt;&lt;P&gt;&amp;nbsp; 19: 00:08:34.199345 1.1.1.1.514 &amp;gt; 1.1.1.100.514:&amp;nbsp; udp 71&lt;/P&gt;&lt;P&gt;&amp;nbsp; 20: 00:08:34.199345 1.1.1.1.514 &amp;gt; 1.1.1.100.514:&amp;nbsp; udp 80&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 21: 00:08:34.679316 1.1.1.1.514 &amp;gt; 1.1.1.100.514:&amp;nbsp; udp 50&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope that helps. If not, just let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards,&lt;/P&gt;&lt;P&gt;Pawel&lt;/P&gt;&lt;H1&gt;&lt;/H1&gt;&lt;H1&gt;&lt;/H1&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Dec 2012 18:40:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113365#M394995</guid>
      <dc:creator>ptrynisz</dc:creator>
      <dc:date>2012-12-11T18:40:52Z</dc:date>
    </item>
    <item>
      <title>SNMP Trap for ASA</title>
      <link>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113366#M394996</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you Pawel,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible to use SNMP traps instead since logs are already sent to a syslog server?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am also not able to receive the syslog message that defines a change has occured!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Hesham &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 02 Feb 2013 19:17:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/snmp-trap-for-asa/m-p/2113366#M394996</guid>
      <dc:creator>helsayed78</dc:creator>
      <dc:date>2013-02-02T19:17:10Z</dc:date>
    </item>
  </channel>
</rss>

