<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: sending logging to syslog server in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515622#M609129</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Since the security level is 50 for the APP interface that the server is located behind do I need and ACL?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 14 Oct 2010 20:37:41 GMT</pubDate>
    <dc:creator>w951duu</dc:creator>
    <dc:date>2010-10-14T20:37:41Z</dc:date>
    <item>
      <title>sending logging to syslog server</title>
      <link>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515619#M609120</link>
      <description>&lt;P&gt;I'm being asked to send logs from an ASA5510 to a syslog server on port 40991 thats behind an interface with a security level of 50.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;At this point it's not working, the syslog server is 192.168.233.43 and it's behind an interface named APP with a security level of 50&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I thought that all that would be required is the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="mediumtext"&gt;(config)logging host app 192.168.233.43 tcp/40991&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can someone please advise?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:54:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515619#M609120</guid>
      <dc:creator>w951duu</dc:creator>
      <dc:date>2019-03-11T18:54:21Z</dc:date>
    </item>
    <item>
      <title>Re: sending logging to syslog server</title>
      <link>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515620#M609123</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You also need&lt;/P&gt;&lt;P&gt;loggin trap debug&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;or what ever level you need to send to the syslog server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa82/command/reference/l2.html#wp1772754"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/command/reference/l2.html#wp1772754&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Oct 2010 19:20:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515620#M609123</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2010-10-14T19:20:48Z</dc:date>
    </item>
    <item>
      <title>Re: sending logging to syslog server</title>
      <link>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515621#M609125</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And also make sure you have logging enable.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So to summarize:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;logging enable&lt;/P&gt;&lt;P&gt;logging trapp debug&lt;/P&gt;&lt;P&gt;logging host app 192.168.233.43 tcp/40991 (make sure the syslog server is listening on TCP 40991 and not on UDP port 514)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;DIV&gt; &lt;/DIV&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Oct 2010 19:37:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515621#M609125</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-10-14T19:37:55Z</dc:date>
    </item>
    <item>
      <title>Re: sending logging to syslog server</title>
      <link>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515622#M609129</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Since the security level is 50 for the APP interface that the server is located behind do I need and ACL?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Oct 2010 20:37:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515622#M609129</guid>
      <dc:creator>w951duu</dc:creator>
      <dc:date>2010-10-14T20:37:41Z</dc:date>
    </item>
    <item>
      <title>Re: sending logging to syslog server</title>
      <link>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515623#M609132</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Greg,&lt;/P&gt;&lt;P&gt;ACL applied on the interface is only for "THROUGH" the box traffic. syslog is "FROM and TO" the box traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No need for acl. Just the logging on, logging trap and logging host lines are required.&lt;/P&gt;&lt;P&gt;Once done issue "sh logg" and see if the fiirewall shows the number of log messages sent to the syslog server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Oct 2010 00:57:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sending-logging-to-syslog-server/m-p/1515623#M609132</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2010-10-15T00:57:20Z</dc:date>
    </item>
  </channel>
</rss>

