<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Read IPS IP Log file in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/read-ips-ip-log-file/m-p/1149108#M77573</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;While I don't specifically remember "time based" capture, I have performed captures based on a source or destination IP address on the AIP-SSM modules. They are saved on the module in pcap format. This is a standard packet capture format used by any packet sniffer, such as Wireshark (free) &lt;A class="jive-link-custom" href="http://www.wireshark.org/" target="_blank"&gt;http://www.wireshark.org/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Download the pcap and open with Wireshark. Make sure you try out the "follow TCP stream" option in Wireshark, it's great for following a single session.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 05 Mar 2009 16:28:07 GMT</pubDate>
    <dc:creator>rhermes</dc:creator>
    <dc:date>2009-03-05T16:28:07Z</dc:date>
    <item>
      <title>Read IPS IP Log file</title>
      <link>https://community.cisco.com/t5/network-security/read-ips-ip-log-file/m-p/1149107#M77562</link>
      <description>&lt;P&gt;Hello, I have a IPS-SSM-20 (6.2.1) and I'm using IME 6.2 to manage it. On IME-&amp;gt; Configuration-&amp;gt;Time Based-&amp;gt; IP Logging is possible to capture a particular IP traffic and download the file. Does someone know, once downloaded, how to read it ?&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 11:32:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/read-ips-ip-log-file/m-p/1149107#M77562</guid>
      <dc:creator>helenio</dc:creator>
      <dc:date>2019-03-10T11:32:16Z</dc:date>
    </item>
    <item>
      <title>Re: Read IPS IP Log file</title>
      <link>https://community.cisco.com/t5/network-security/read-ips-ip-log-file/m-p/1149108#M77573</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;While I don't specifically remember "time based" capture, I have performed captures based on a source or destination IP address on the AIP-SSM modules. They are saved on the module in pcap format. This is a standard packet capture format used by any packet sniffer, such as Wireshark (free) &lt;A class="jive-link-custom" href="http://www.wireshark.org/" target="_blank"&gt;http://www.wireshark.org/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Download the pcap and open with Wireshark. Make sure you try out the "follow TCP stream" option in Wireshark, it's great for following a single session.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Mar 2009 16:28:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/read-ips-ip-log-file/m-p/1149108#M77573</guid>
      <dc:creator>rhermes</dc:creator>
      <dc:date>2009-03-05T16:28:07Z</dc:date>
    </item>
  </channel>
</rss>

