cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
965
Views
0
Helpful
2
Replies

SYSLOG MSG?

abhi-adte
Level 1
Level 1

Hi,

I want to do some changes for syslog message:

As per below message like message ID 302014 or some more are examples, are sending log to my log server and server utilization is very high. So I want to do like these message alert on syslog server is not necessary for me... but its still sending so I need a help to block the particular message id don't need to send on server.

How I can do this?

Aug 24 2007 11:15:33: %ASA-6-302013: Built inbound TCP connection 733283 for outside:192.168.208.63/51608 (192.168.208.63/51608) to inside:192.168.150.63/80 (192.168.150.63/80)

Aug 24 2007 11:15:33: %ASA-6-302014: Teardown TCP connection 733283 for outside:192.168.208.63/51608 to inside:192.168.150.63/80 duration 0:00:00 bytes 0

Aug 24 2007 10:27:22: %ASA-6-302015: Built inbound UDP connection 732748 for outside:192.168.208.63/49804 (192.168.208.63/49804) to inside:192.168.150.70/53 (192.168.150.70/53)

Aug 24 2007 10:27:22: %ASA-6-302015: Built inbound UDP connection 732749 for outside:192.168.208.63/49804 (192.168.208.63/49804) to inside:192.168.150.70/123 (192.168.150.70/123)

Aug 24 2007 10:27:22: %ASA-6-302015: Built inbound UDP connection 732750 for outside:192.168.208.63/49804 (192.168.208.63/49804) to inside:192.168.150.70/

ug 24 2007 10:27:22: %ASA-6-302020: Built ICMP connection for faddr 192.168.208.63/15343 gaddr 192.168.150.70/0 laddr 192.168.150.70/0

Aug 24 2007 10:27:22: %ASA-6-302021: Teardown ICMP connection for faddr 192.168.208.63/0 gaddr 192.168.150.70/0 laddr 192.168.150.70/0

Thanks in advance....

2 Accepted Solutions

Accepted Solutions

mvsheik123
Level 7
Level 7

Try 'no logging message ' on ASA.

hth

MS

View solution in original post

As MS noted, you can disable individual log messages by their ID number.

Another approach is to raise the logging message level globally using the command:

logging trap {severity_level | message_list}

The messages you cite are all Level 6 (Informational). If you change the level to 5 (Notification), only messages of that severity or greater ( = lower numerical value) will be logged. Here is a listing of messages by severity.

See here for details on configuring logging options.

View solution in original post

2 Replies 2

mvsheik123
Level 7
Level 7

Try 'no logging message ' on ASA.

hth

MS

As MS noted, you can disable individual log messages by their ID number.

Another approach is to raise the logging message level globally using the command:

logging trap {severity_level | message_list}

The messages you cite are all Level 6 (Informational). If you change the level to 5 (Notification), only messages of that severity or greater ( = lower numerical value) will be logged. Here is a listing of messages by severity.

See here for details on configuring logging options.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card