12-23-2016 09:08 AM - edited 03-12-2019 01:42 AM
I need help in knowing If through "CISCO ANY CONNECT" client MAC address information would be send in syslog payload. We are building a security monitoring use-case with a client, where we plan to whitelist MAC's and detect unauthorized access from Machines using MAC address from CISCO VPN logs generated by use of CISCO ANY connect. Could this be done?
12-23-2016 10:06 AM
You can get ip address for sure, Other than that please check the tshoot guide below, which might give you some help, Also let me know do you need help with MAC IDs of client connected in VPN logs.
12-23-2016 11:07 AM
Thanks a lot Farhan, but I want to know If MAC address is part of syslog messages for CISCO ANY CONNECT? How can you help? and i don't see attach tshoot guide.
12-23-2016 11:48 AM
Please see the link below, I am still searching for that exact answer and i will get back shortly:-
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide