<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IDS 4215 IP logging in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ids-4215-ip-logging/m-p/334090#M97029</link>
    <description>&lt;P&gt;The IDS MC and Cisco's IDS book show configuration for IP packet capture for later viewing through Ethereal.&lt;/P&gt;&lt;P&gt;Question:  If I set IP logging on the IDS, how do I retrieve the file for Ethereal analysis?&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 09:17:24 GMT</pubDate>
    <dc:creator>jmayes</dc:creator>
    <dc:date>2019-03-10T09:17:24Z</dc:date>
    <item>
      <title>IDS 4215 IP logging</title>
      <link>https://community.cisco.com/t5/network-security/ids-4215-ip-logging/m-p/334090#M97029</link>
      <description>&lt;P&gt;The IDS MC and Cisco's IDS book show configuration for IP packet capture for later viewing through Ethereal.&lt;/P&gt;&lt;P&gt;Question:  If I set IP logging on the IDS, how do I retrieve the file for Ethereal analysis?&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 09:17:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ids-4215-ip-logging/m-p/334090#M97029</guid>
      <dc:creator>jmayes</dc:creator>
      <dc:date>2019-03-10T09:17:24Z</dc:date>
    </item>
    <item>
      <title>Re: IDS 4215 IP logging</title>
      <link>https://community.cisco.com/t5/network-security/ids-4215-ip-logging/m-p/334091#M97030</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are 2 (and possibly 3) ways for retreiving the IP Log file from the sensor.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) From the CLI&lt;/P&gt;&lt;P&gt;You can use the "iplog-status" command in the sensor's CLI to view the status of the IP Logs and determine the iplog id of the log you are interested in.&lt;/P&gt;&lt;P&gt;You can then use the "copy iplog &lt;IPLOGID&gt; &amp;lt;&lt;A class="jive-link-custom" href="ftp://user" target="_blank"&gt;ftp://user&lt;/A&gt;@host/directory/filename&amp;gt;" to copy that IP Log to an ftp server than you can then access to copy the log to your desktop to run ethereal on.&lt;/IPLOGID&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2) From IDM&lt;/P&gt;&lt;P&gt;Optionally you can view the list of IP Logs within IDM.  Within IDM you can then download the IP Log directly to your desktop.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3) From another monitoring tool&lt;/P&gt;&lt;P&gt;I have heard that some monitoring tools are now offering a new menu option for downloading the IP Log from the sensor.  I am not sure in which monitoring tools this menu option has been implemented.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 20 Feb 2005 21:12:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ids-4215-ip-logging/m-p/334091#M97030</guid>
      <dc:creator>marcabal</dc:creator>
      <dc:date>2005-02-20T21:12:08Z</dc:date>
    </item>
  </channel>
</rss>

