<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Port based ACL logging 3750 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/port-based-acl-logging-3750/m-p/952860#M937687</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The TAC confirms that ACL logging is not supported for an IP ACL applied to a layer 2 switchport.  Logging only works when applied to a switchport in routed mode or an SVI.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kent.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 20 May 2008 16:17:34 GMT</pubDate>
    <dc:creator>kent.plummer</dc:creator>
    <dc:date>2008-05-20T16:17:34Z</dc:date>
    <item>
      <title>Port based ACL logging 3750</title>
      <link>https://community.cisco.com/t5/network-security/port-based-acl-logging-3750/m-p/952858#M937685</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With the below test config I can't seem to generate a single log entry from the ACL?  Has anyone had experience in logging with port based ACL's?  The icmp traffic is being dropped - just not logged.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3750 running Adv IP Services&lt;/P&gt;&lt;P&gt;interface GigabitEthernet1/0/25&lt;/P&gt;&lt;P&gt; switchport access vlan 701&lt;/P&gt;&lt;P&gt; switchport mode access&lt;/P&gt;&lt;P&gt; ip access-group TEST in&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip access-list extended TEST&lt;/P&gt;&lt;P&gt; deny   icmp any any log&lt;/P&gt;&lt;P&gt; permit ip any any log&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip access-list log-update threshold 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"show access-lists hardware counters" does show drops.&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;Kent.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 12:45:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/port-based-acl-logging-3750/m-p/952858#M937685</guid>
      <dc:creator>kent.plummer</dc:creator>
      <dc:date>2019-03-11T12:45:27Z</dc:date>
    </item>
    <item>
      <title>Re: Port based ACL logging 3750</title>
      <link>https://community.cisco.com/t5/network-security/port-based-acl-logging-3750/m-p/952859#M937686</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Go through this document.&lt;/P&gt;&lt;P&gt;Access Lists&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/tech/tk648/tk361/tk821/tsd_technology_support_sub-protocol_home.html" target="_blank"&gt;http://www.cisco.com/en/US/tech/tk648/tk361/tk821/tsd_technology_support_sub-protocol_home.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 May 2008 13:00:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/port-based-acl-logging-3750/m-p/952859#M937686</guid>
      <dc:creator>owillins</dc:creator>
      <dc:date>2008-05-20T13:00:51Z</dc:date>
    </item>
    <item>
      <title>Re: Port based ACL logging 3750</title>
      <link>https://community.cisco.com/t5/network-security/port-based-acl-logging-3750/m-p/952860#M937687</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The TAC confirms that ACL logging is not supported for an IP ACL applied to a layer 2 switchport.  Logging only works when applied to a switchport in routed mode or an SVI.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kent.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 May 2008 16:17:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/port-based-acl-logging-3750/m-p/952860#M937687</guid>
      <dc:creator>kent.plummer</dc:creator>
      <dc:date>2008-05-20T16:17:34Z</dc:date>
    </item>
  </channel>
</rss>

