<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Logging Access-List Hit Counts to SysLog Server in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/logging-access-list-hit-counts-to-syslog-server/m-p/1488837#M663319</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, That configuration should log infomrational messages to syslog for those access-list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is your document reference :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/pix/pix63/system/message/pixemint.html#wp1029160"&gt;http://www.cisco.com/en/US/docs/security/pix/pix63/system/message/pixemint.html#wp1029160&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/pix/pix63/command/reference/ab.html#wp1067755"&gt;http://www.cisco.com/en/US/docs/security/pix/pix63/command/reference/ab.html#wp1067755&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 12 Jun 2010 05:02:49 GMT</pubDate>
    <dc:creator>edadios</dc:creator>
    <dc:date>2010-06-12T05:02:49Z</dc:date>
    <item>
      <title>Logging Access-List Hit Counts to SysLog Server</title>
      <link>https://community.cisco.com/t5/network-security/logging-access-list-hit-counts-to-syslog-server/m-p/1488836#M663311</link>
      <description>&lt;P&gt;I have a Cisco PIX Firewall 525 Version 6.3(5) running that we are in process of decomissioning it.&amp;nbsp; I am still getting some hitcounts on the following access-list and and want to anaylze it by sending it to syslog server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list PeopleSupport line 21 permit ip host 10.71.0.170 172.29.136.0 255.255.255.0&lt;BR /&gt;access-list PeopleSupport line 24 permit ip host 10.71.0.170 172.22.195.0 255.255.255.0&lt;BR /&gt;access-list PeopleSupport line 31 permit ip host 10.110.9.171 172.16.152.0 255.255.255.0&lt;BR /&gt;access-list PeopleSupport line 26 permit ip host 10.71.0.170 172.22.199.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have enabled logging with following commands:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Logging on&lt;/P&gt;&lt;P&gt;Logging trap informational&lt;/P&gt;&lt;P&gt;Logging facility 6&lt;/P&gt;&lt;P&gt;Logging host inside 10.88.169.58&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now, What do I need to define in access-lists to send hit counts to syslog.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Will the below configuration work?&amp;nbsp; I have a long list of access-list but only want to add logging to the above access-list Line Numbers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From:&lt;/P&gt;&lt;P&gt;no access-list PeopleSupport line 21 permit ip host 10.71.0.170&amp;nbsp; 172.29.136.0 255.255.255.0&lt;BR /&gt; no access-list PeopleSupport line 24 permit ip host 10.71.0.170&amp;nbsp; 172.22.195.0 255.255.255.0&lt;BR /&gt; no access-list PeopleSupport line 31 permit ip host 10.110.9.171&amp;nbsp; 172.16.152.0 255.255.255.0&lt;BR /&gt; no access-list PeopleSupport line 26 permit ip host 10.71.0.170&amp;nbsp; 172.22.199.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list PeopleSupport line 21 permit ip host 10.71.0.170&amp;nbsp; 172.29.136.0 255.255.255.0 log informational&lt;BR /&gt; access-list PeopleSupport line 24 permit ip host 10.71.0.170&amp;nbsp; 172.22.195.0 255.255.255.0 log informational&lt;BR /&gt; access-list PeopleSupport line 31 permit ip host 10.110.9.171&amp;nbsp; 172.16.152.0 255.255.255.0 log informational&lt;BR /&gt; access-list PeopleSupport line 26 permit ip host 10.71.0.170&amp;nbsp; 172.22.199.0 255.255.255.0 log informational&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 17:58:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-access-list-hit-counts-to-syslog-server/m-p/1488836#M663311</guid>
      <dc:creator>abbas.ali</dc:creator>
      <dc:date>2019-03-11T17:58:33Z</dc:date>
    </item>
    <item>
      <title>Re: Logging Access-List Hit Counts to SysLog Server</title>
      <link>https://community.cisco.com/t5/network-security/logging-access-list-hit-counts-to-syslog-server/m-p/1488837#M663319</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, That configuration should log infomrational messages to syslog for those access-list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is your document reference :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/pix/pix63/system/message/pixemint.html#wp1029160"&gt;http://www.cisco.com/en/US/docs/security/pix/pix63/system/message/pixemint.html#wp1029160&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/pix/pix63/command/reference/ab.html#wp1067755"&gt;http://www.cisco.com/en/US/docs/security/pix/pix63/command/reference/ab.html#wp1067755&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 12 Jun 2010 05:02:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/logging-access-list-hit-counts-to-syslog-server/m-p/1488837#M663319</guid>
      <dc:creator>edadios</dc:creator>
      <dc:date>2010-06-12T05:02:49Z</dc:date>
    </item>
  </channel>
</rss>

