cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
542
Views
1
Helpful
3
Replies

FTD Filter Logs

taro75
Level 1
Level 1

I am managing FTD from FDM web console and I need to look for logs for dropped/denied packets. How can I define custom filter for monitoring denied logs?

1 Accepted Solution

Accepted Solutions

@taro75 under Monitoring > Events> Connections, define a filter "Rule Action=Block". Ensure the ACP rules log the traffic.

RobIngram_0-1697561583568.png

 

View solution in original post

3 Replies 3

@taro75 under Monitoring > Events> Connections, define a filter "Rule Action=Block". Ensure the ACP rules log the traffic.

RobIngram_0-1697561583568.png

 

taro75
Level 1
Level 1

Thank you, similarly of any traffic getting dropped because if IPS rules, it will be listed under  "Intrusion" right?

@taro75 yes correct

Review Cisco Networking for a $25 gift card