<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: syslog with separate filenames in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074740#M964106</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;i know that we have tp do simething on the syslog server.. what iam asking is the fwsm configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 04 Oct 2008 08:58:43 GMT</pubDate>
    <dc:creator>cfajardo1_2</dc:creator>
    <dc:date>2008-10-04T08:58:43Z</dc:date>
    <item>
      <title>syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074734#M964096</link>
      <description>&lt;P&gt;scenario;&lt;/P&gt;&lt;P&gt;i have some 6 FWSM's in separate 6x6500 core switches..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;requirement;&lt;/P&gt;&lt;P&gt;i need to log messages on my ACE "permit ip any any log" with separate filenames on a syslog server. how would my syslog config looks like.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 11:01:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074734#M964096</guid>
      <dc:creator>cfajardo1_2</dc:creator>
      <dc:date>2020-02-21T11:01:44Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074735#M964097</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You would need to configure your requirement on your syslog server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you run syslog-ng on Linux, your config would look like:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;destination d_switch { file("syslog-ng/switches/$HOST/$PRIORITY.$DAY-$MONTH-$YEAR.log"); };&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&amp;gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Sep 2008 07:44:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074735#M964097</guid>
      <dc:creator>andrew.prince</dc:creator>
      <dc:date>2008-09-29T07:44:09Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074736#M964098</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;sorry for not being so clear...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what i mean is the config on the FWSM&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Sep 2008 17:39:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074736#M964098</guid>
      <dc:creator>cfajardo1_2</dc:creator>
      <dc:date>2008-09-29T17:39:29Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074737#M964100</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The platform makes no differnce, the fact it you configure the FWSM to send the syslogs to another device = syslog server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the syslog server you configure what you need.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You cannot tell the fwsm that you want the remote files to be saved in a particular format or with a specific name.....it just sends the syslog.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&amp;gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Sep 2008 17:45:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074737#M964100</guid>
      <dc:creator>andrew.prince</dc:creator>
      <dc:date>2008-09-29T17:45:42Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074738#M964102</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;so how could we distinguish the logs from different fwsm&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Sep 2008 06:14:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074738#M964102</guid>
      <dc:creator>cfajardo1_2</dc:creator>
      <dc:date>2008-09-30T06:14:06Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074739#M964104</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As previosuly posted - you need to configure the syslog server to filter and write the files according to your requirements.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&amp;gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Sep 2008 07:31:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074739#M964104</guid>
      <dc:creator>andrew.prince</dc:creator>
      <dc:date>2008-09-30T07:31:04Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074740#M964106</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;i know that we have tp do simething on the syslog server.. what iam asking is the fwsm configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 04 Oct 2008 08:58:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074740#M964106</guid>
      <dc:creator>cfajardo1_2</dc:creator>
      <dc:date>2008-10-04T08:58:43Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074741#M964108</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;read the below config guide:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/security/fwsm/fwsm31/configuration/guide/monitr_f.html#wp1098912" target="_blank"&gt;http://www.cisco.com/en/US/docs/security/fwsm/fwsm31/configuration/guide/monitr_f.html#wp1098912&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&amp;gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 04 Oct 2008 11:03:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074741#M964108</guid>
      <dc:creator>andrew.prince</dc:creator>
      <dc:date>2008-10-04T11:03:33Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074742#M964109</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I found the solution, though not exactly but the idea is there..see the below thread&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&amp;amp;forum=Network%20Infrastructure&amp;amp;topic=LAN%2C%20Switching%20and%20Routing&amp;amp;topicID=.ee71a04&amp;amp;CommCmd=MB%3Fcmd%3Dpass_through%26location%3Doutline%40%5E1%40%40.2cbf352d/1#selected_message" target="_blank"&gt;http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&amp;amp;forum=Network%20Infrastructure&amp;amp;topic=LAN%2C%20Switching%20and%20Routing&amp;amp;topicID=.ee71a04&amp;amp;CommCmd=MB%3Fcmd%3Dpass_through%26location%3Doutline%40%5E1%40%40.2cbf352d/1#selected_message&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 04 Oct 2008 18:01:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074742#M964109</guid>
      <dc:creator>cfajardo1_2</dc:creator>
      <dc:date>2008-10-04T18:01:33Z</dc:date>
    </item>
    <item>
      <title>Re: syslog with separate filenames</title>
      <link>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074743#M964111</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes - you can configure your nework devices to use "differenet" facility numbers, so your syslog server knows which device type is sending the syslog.  it facility 17 is a firewall, facility 10 is a router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BUT you STILL have to configure your syslog server to log the information by device name/ip address etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This cannot be done in the network device.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&amp;gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 05 Oct 2008 07:23:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syslog-with-separate-filenames/m-p/1074743#M964111</guid>
      <dc:creator>andrew.prince</dc:creator>
      <dc:date>2008-10-05T07:23:46Z</dc:date>
    </item>
  </channel>
</rss>

