03-30-2009 02:02 PM - edited 03-11-2019 08:12 AM
What is the best tool to gather syslogs from multiple Cisco ASAs & Cisco IPS.
Preferably I would like to use a single machine to get logs from 4 firewalls, 2 IPSs and multiple Web/DB servers running Apache & mysql.
What solution would you recommend for log archival, log Analysis and Report Generation for these many logs.
Thanks
D.
04-03-2009 08:06 AM
PIX 7.0 has introduced very granular filtering techniques to allow only certain specified syslog messages to be presented. The Basic Syslog section of this document demonstrates a traditional syslog configuration. The Advanced Syslog section of this document shows the new syslog features in 7.0.
04-03-2009 08:49 AM
"Preferably I would like to use a single machine to get logs from 4 firewalls, 2 IPSs and multiple Web/DB servers running Apache & mysql.
What solution would you recommend for log archival, log Analysis and Report Generation for these many logs. "
Syslog-ng and Simple Event Correlation (SEC). Both of these are freeware.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide