cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
655
Views
0
Helpful
5
Replies

Configuring cisco FTD to send Administrative logs

systems100
Level 1
Level 1

Dears,

Please am trying to make cisco FTD to send user administrative logs to a syslog server and also via emails to system administrator.

I mean logs that has to do with the following but not limited to:

-user log on to the FTD cli

-Upgrades done on the firewall 

-access control rules modified and deployed from the fmc to the ftd

-and administrative changes made to the firewall.

Please can anyone help with this?.

5 Replies 5

systems100
Level 1
Level 1

Dears,

Please am trying to make cisco FTD to send user administrative logs to a syslog server and also via emails to system administrator.

I mean logs that has to do with the following but not limited to:

-user log on to the FTD cli

-Upgrades done on the firewall 

-access control rules modified and deployed from the fmc to the ftd

-and administrative changes made to the firewall.

Please can anyone help with this?.

You can send the logs to syslog - ( if you looking granualar you need to check the log message and send only that events)

https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/200479-Configure-Logging-on-FTD-via-FMC.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

I have configured the logging on the FTD platform.

But it is only sending logs based on traffic filter by access control entries.

Am not getting administrative logs from FTD for user login into the FTD cli, configuration changes e.t.c

Review Cisco Networking for a $25 gift card