<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to configure Logging for remote access vpn in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910180#M456973</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have cisco ASA5520 and i have a remote access vpn .I want to configure logging for this remote access vpn.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i want the time user connected .how log it is connected .If any error while connecting ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please reply ASAP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prashant&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 22:54:35 GMT</pubDate>
    <dc:creator>prashantrecon</dc:creator>
    <dc:date>2019-03-11T22:54:35Z</dc:date>
    <item>
      <title>How to configure Logging for remote access vpn</title>
      <link>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910180#M456973</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have cisco ASA5520 and i have a remote access vpn .I want to configure logging for this remote access vpn.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i want the time user connected .how log it is connected .If any error while connecting ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please reply ASAP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prashant&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:54:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910180#M456973</guid>
      <dc:creator>prashantrecon</dc:creator>
      <dc:date>2019-03-11T22:54:35Z</dc:date>
    </item>
    <item>
      <title>How to configure Logging for remote access vpn</title>
      <link>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910181#M456976</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To my knowledge for information about users connection times / bandwith usage / etc you will need a separate software to get that information.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If not that, you will have to send the ASAs logs to a syslog server and collect and filter the data from there with some method.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've considered configuring a some of ours ASAs only used for VPN to only send VPN related log messages (to make the syslog easier to read through and faster to filter through) but I havent still gotten into doing that. I would also have to determine if I can configure separate logging rules for different destination servers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Apr 2012 09:47:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910181#M456976</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-04-17T09:47:36Z</dc:date>
    </item>
    <item>
      <title>How to configure Logging for remote access vpn</title>
      <link>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910182#M456979</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;we do have syslog server but it takes to much of time to observe the logs.And we donot have any separate asa to configure for vpn only.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please let us know the softaware for that info&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Apr 2012 10:19:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910182#M456979</guid>
      <dc:creator>prashantrecon</dc:creator>
      <dc:date>2012-04-17T10:19:03Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure Logging for remote access vpn</title>
      <link>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910183#M456981</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The programs/software mentioned to me when I asked our Cisco contact was Cisco Security Manager 4.1 and a third party software called Extraxi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd imagine using either software to their full extent will cost you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Though I still imagine you would have other options. As I said, I havent setup any similiar setup in my own work yet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Apr 2012 10:23:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910183#M456981</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-04-17T10:23:44Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure Logging for remote access vpn</title>
      <link>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910184#M456983</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Prashant,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Assuming syslog server getting all the necessary log information from ASA and if you have a SQL server that can pull data from syslog server, you can have your dba a write a script that creats a table with all the VPN related information from syslog. The table will be populated with only related messages from ASA IP- so rest will not be included. &lt;/P&gt;&lt;P&gt;We did the similar implementation recently -as our management wants to know who, what time and how long remote users connected via vpn &amp;amp; citrix (for security reasons). We do not pull error messages into table -as we mainly need login &amp;amp; logout time etc. Few of the message IDs you may want to log...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;%PIX|ASA-7-713160: Remote user (session Id - id) has been granted access by the Firewall Server&lt;/P&gt;&lt;P&gt;&amp;gt; %PIX|ASA-3-713161: Remote user (session Id - id) network access has been restricted by the Firewall Server&lt;/P&gt;&lt;P&gt;&amp;gt; %PIX|ASA-3-713162: Remote user (session Id - id) has been rejected by the Firewall Server&lt;/P&gt;&lt;P&gt;&amp;gt; %PIX|ASA-3-713163: Remote user (session Id - id) has been terminated by the Firewall Server&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check with ASA IOS version doc for proper message Ids. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This way you do not need to spend fortune except your DBA's time &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hth&lt;/P&gt;&lt;P&gt;MS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Apr 2012 11:26:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/how-to-configure-logging-for-remote-access-vpn/m-p/1910184#M456983</guid>
      <dc:creator>mvsheik123</dc:creator>
      <dc:date>2012-04-17T11:26:33Z</dc:date>
    </item>
  </channel>
</rss>

