06-04-2010 12:31 PM - edited 03-11-2019 10:55 AM
We just installed Botnet on our ASA firewalls. Is there a way to have the botnet logs forwarded to email? I've looked through all the settings and can't seem to find anything. Thanks for the help.
06-04-2010 02:04 PM
They can go to syslog, and you can then have a daemon parse syslog and send it to you via email if you like. That's usually a scripted method we've used to achieve this.
05-26-2012 09:12 PM
Create a logging event list (ASDM : Configuration/Logging/Event Lists)
Use Message IDs 338201-338202 and 338001-338004)
Then in Logging Filters, enable email and select the event list.
-Robert
05-27-2012 03:08 PM
I should add, I don't see how to set the SMTP credentials for email. Anyone?
I added the ASA's IP into the SMTP server's trusted list and it works.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide