08-01-2017 07:52 PM - edited 03-12-2019 02:46 AM
We want to check what caused the server behind 5512 cannot be accessed from outside occationally.
If we can check some log like NAT traffic?
If we can set some monitoring?
Other way to do this?
Thanks in advance.
Solved! Go to Solution.
08-01-2017 09:01 PM
Hi,
You can check the following things on the ASA:
show logging | in <server ip>--- Only if logging is enabled on the ASA
show conn | in <server ip>
show
Regards,
Aditya
Please rate helpful and mark correct answers
08-01-2017 09:01 PM
Hi,
You can check the following things on the ASA:
show logging | in <server ip>--- Only if logging is enabled on the ASA
show conn | in <server ip>
show
Regards,
Aditya
Please rate helpful and mark correct answers
08-01-2017 09:22 PM
Thanks Aditya,
How many (period) logging I can check if it is enalbed on ASA?
Will the logging be overwrite/cut if I go to check it not quickly enough?
Can I send log to a server to extend the period of logging if the answer of second question is yes?
08-01-2017 10:27 PM
Hi,
Yes, you can send the
And it can be overwritten depending on the size of buffer set and the log level you set.
Use the following config:
http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/63884-config-asa-00.html#anc6
https://supportforums.cisco.com/discussion/13028651/cisco-asa-syslog-forward-all-logs-syslog-server
Regards,
Aditya
Please rate helpful and mark correct answers
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide