<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic appl logging to multiple rules in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/appl-logging-to-multiple-rules/m-p/3785237#M991676</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;looking for some help.&lt;/P&gt;
&lt;P&gt;i am working on a firewall with 750 rules. most of these rules are not set to log.&lt;/P&gt;
&lt;P&gt;is there any way to apply logging (at end) to a select bunch of rules in one hit. or am i looking at clicking 750 rules one at a time to switch logging on.&lt;/P&gt;
&lt;P&gt;also when logging is enabled (to event viewer) is this held in FMC? i want to send all rule hits to a syslog server - do i need to enable this per rule - as above? or will FMC do that for me?&lt;/P&gt;
&lt;P&gt;thanks in advance&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 14:14:32 GMT</pubDate>
    <dc:creator>stuart.rock</dc:creator>
    <dc:date>2019-03-12T14:14:32Z</dc:date>
    <item>
      <title>appl logging to multiple rules</title>
      <link>https://community.cisco.com/t5/network-security/appl-logging-to-multiple-rules/m-p/3785237#M991676</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;looking for some help.&lt;/P&gt;
&lt;P&gt;i am working on a firewall with 750 rules. most of these rules are not set to log.&lt;/P&gt;
&lt;P&gt;is there any way to apply logging (at end) to a select bunch of rules in one hit. or am i looking at clicking 750 rules one at a time to switch logging on.&lt;/P&gt;
&lt;P&gt;also when logging is enabled (to event viewer) is this held in FMC? i want to send all rule hits to a syslog server - do i need to enable this per rule - as above? or will FMC do that for me?&lt;/P&gt;
&lt;P&gt;thanks in advance&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 14:14:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/appl-logging-to-multiple-rules/m-p/3785237#M991676</guid>
      <dc:creator>stuart.rock</dc:creator>
      <dc:date>2019-03-12T14:14:32Z</dc:date>
    </item>
    <item>
      <title>Re: appl logging to multiple rules</title>
      <link>https://community.cisco.com/t5/network-security/appl-logging-to-multiple-rules/m-p/3785312#M991677</link>
      <description>Hi,&lt;BR /&gt;There is no such option to edit multiple rules in a single shot. You need to edit each rule and enable logging. &lt;BR /&gt;You can configure syslog server from the Device &amp;gt; Platform Setting &amp;gt; Threat Defense Policy &amp;gt; Syslog&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/200479-Configure-Logging-on-FTD-via-FMC.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/200479-Configure-Logging-on-FTD-via-FMC.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;Abheesh&lt;BR /&gt;PS: Please don't forget to rate and select as validated answer if this answered your question. &lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 22 Jan 2019 17:56:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/appl-logging-to-multiple-rules/m-p/3785312#M991677</guid>
      <dc:creator>Abheesh Kumar</dc:creator>
      <dc:date>2019-01-22T17:56:10Z</dc:date>
    </item>
    <item>
      <title>Re: appl logging to multiple rules</title>
      <link>https://community.cisco.com/t5/network-security/appl-logging-to-multiple-rules/m-p/4913611#M1103871</link>
      <description>&lt;P&gt;&lt;SPAN&gt;There is no such option to edit multiple rules in a single shot, as mentioned by Abheesh. We have the ENH below for the same:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwe32569" target="_blank"&gt;"https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwe32569&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;"&lt;SPAN class="subheader-large"&gt;ENH: Add option to enable Syslog on all Access Control Policies rules"&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;DIV class="lia-message-author-with-avatar"&gt;&lt;SPAN class="UserName lia-user-name lia-user-rank-Rising-star lia-component-message-view-widget-author-username"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;</description>
      <pubDate>Tue, 29 Aug 2023 07:56:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/appl-logging-to-multiple-rules/m-p/4913611#M1103871</guid>
      <dc:creator>iabualna</dc:creator>
      <dc:date>2023-08-29T07:56:37Z</dc:date>
    </item>
  </channel>
</rss>

