cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
449
Views
10
Helpful
2
Replies

Possible to Export L3 Drop with API or Other Method?

Sean-M
Level 1
Level 1

I'll preface this by saying I am sysadmin, not a network engineer but I have been given read-access to the ACO console so I can review the L3 drop/permit logs. I am looking for an automated way to export the logs so my co-workers can also see them. Has anyone implemented something similar?

1 Accepted Solution

Accepted Solutions

Sergiu.Daniluk
VIP Alumni
VIP Alumni

Hi @Sean-M 

Yes you can export the L2/L3 drop/permit logs using GET requests to their respective URIs:

https://{{APIC_IP}}/api/node/class/ndbgs/acllog/tn-{{TENANT_NAME}}/acllogDropL2Pkt.json
https://{{APIC_IP}}/api/node/class/ndbgs/acllog/tn-{{TENANT_NAME}}/acllogDropL3Pkt.json
https://{{APIC_IP}}/api/node/class/ndbgs/acllog/tn-{{TENANT_NAME}}/acllogPermitL2Pkt.json
https://{{APIC_IP}}/api/node/class/ndbgs/acllog/tn-{{TENANT_NAME}}/acllogPermitL3Pkt.json

 

Stay safe,

Sergiu

View solution in original post

2 Replies 2

you can use syslog. are you mean ACI as your product?

if it is, you can use log directive setting

Please rate this and mark as solution/answer, if this resolved your issue
Good luck
KB

Sergiu.Daniluk
VIP Alumni
VIP Alumni

Hi @Sean-M 

Yes you can export the L2/L3 drop/permit logs using GET requests to their respective URIs:

https://{{APIC_IP}}/api/node/class/ndbgs/acllog/tn-{{TENANT_NAME}}/acllogDropL2Pkt.json
https://{{APIC_IP}}/api/node/class/ndbgs/acllog/tn-{{TENANT_NAME}}/acllogDropL3Pkt.json
https://{{APIC_IP}}/api/node/class/ndbgs/acllog/tn-{{TENANT_NAME}}/acllogPermitL2Pkt.json
https://{{APIC_IP}}/api/node/class/ndbgs/acllog/tn-{{TENANT_NAME}}/acllogPermitL3Pkt.json

 

Stay safe,

Sergiu

Review Cisco Networking for a $25 gift card

Save 25% on Day-2 Operations Add-On License