cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
377
Views
0
Helpful
1
Replies

is there a way on the ASA

Jack Leung
Level 1
Level 1

to create a policy where you can define source destination and have any traffic matching that criteria to NOT generate a syslog entry? basically i have a particular legit traffic pattern where ANY to a particular public web server is generating tens of thousands of syslog entries (for tcp/udp/icmp sessions) etc but I don't want to pump that to a syslog collector. I do wnat to send syslog info for all other connections but not this particular flow. Is this possible?

1 Reply 1

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Jack,

No, you can create a filter list but based on the message ID or severity level! Not based on an IP address. Sorry to tell you that.

At least I hope this helps,

Regards,

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
Review Cisco Networking for a $25 gift card