cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
639
Views
0
Helpful
4
Replies

Cisco ASA Logging

Lovleen Arora
Level 1
Level 1

 

Hi,

 

We are running Cisco ASA 9.3, and have few questions on logging setup:

 

1. Can we setup ASA to send NAT messages to one syslog server and DENY ACL messages to another syslog servers?

Or

2. Can we setup ASA to send all messages to a syslog server except a few message IDs (which we think are not necessary part of monitoring)?

 

Thanks in advance

Lovleen

2 Accepted Solutions

Accepted Solutions

1) No, but you could send all logs to one server and this server forwards selected messages to another server.

2) You can disable selective messages:

http://www.cisco.com/c/en/us/td/docs/security/asa/asa93/configuration/general/asa-general-cli/monitor-syslog.html#pgfId-1937538

View solution in original post

Hi,

This would be possible with the fix for this enhancement:-

https://tools.cisco.com/bugsearch/bug/CSCun20291/?reffering_site=dumpcr

Thanks and Regards,

Vibhor Amrodia

View solution in original post

4 Replies 4

1) No, but you could send all logs to one server and this server forwards selected messages to another server.

2) You can disable selective messages:

http://www.cisco.com/c/en/us/td/docs/security/asa/asa93/configuration/general/asa-general-cli/monitor-syslog.html#pgfId-1937538

Hi,

This would be possible with the fix for this enhancement:-

https://tools.cisco.com/bugsearch/bug/CSCun20291/?reffering_site=dumpcr

Thanks and Regards,

Vibhor Amrodia

thanks

 

thanks for your response

Review Cisco Networking for a $25 gift card