cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

556
Views
0
Helpful
1
Replies
Saud Alassaf
Beginner

how do i inspect in cisco asa, the https traffic

Dear All,

I would like to know the cisco asa inspection for https traffic, I am sending the logs of http,ftp and so on but i am not getting the logs of https into my log server.I don't know why the cisco asa is not sending the logs to the syslog server

thanks for your support

Ifthekhar Javed

1 REPLY 1
Jouni Forss
Mentor

Hi,

I'm not sure what logs you are talking about.

There should be no problem with getting TCP connection Built/Teardown messages to the Syslog server whatever their used TCP port is.

If on the otherhand you are trying to get some specific data about that HTTPS connection I think you need either a module for the ASA or an addiotional device/service to handle going through HTTPS traffic for you.

The "inspect http" configuration doesnt apply to https traffic. You also can't see anything related to the HTTPS traffic with the ASA alone since its encrypted.

- Jouni

Create
Recognize Your Peers
Content for Community-Ad