Logging Issue With PIX 515E
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-24-2007 11:47 AM - edited 03-11-2019 02:24 AM
I am trying to enable sylog logging to a Windows server thru my inside interface to beable to capture my VPN traffic. Everytime I enable logging my inside interface drops until I Disable logging. Please help, I'd like to be able to review all of my logs but I am required to at least get my VPN traffic.
- Labels:
-
NGFW Firewalls
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-24-2007 06:17 PM
Is the whole PIX not responding or only the inside interface ?? How is the CPU usage after enabling logging ? which code of PIX are you running ? alternately, you can span the switchport connecting to inside interface and log all the events necessary...
Raj
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-25-2007 10:58 AM
Sachinraja,
Just the inside port seems to fail.
How do I check for CPU Usage?
Attached is my config sorry it is so long.
Thanks for all of your help.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
05-21-2007 07:54 AM
None of the interfaces are passing traffic. CPU usage is normal I am running ver. 7.0(1)
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
05-21-2007 11:12 AM
Hi,
make sure it is necessary to use TCP for sending your logs. If your logging host goes down your firewall will stop when TCP is used till your logging host is back online. If this is not the desired behaviour rather use UDP.
Hope this helps.
Cheers.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
05-24-2007 04:40 AM
how do I specify just using UDP vs using both? I am using PIX Firewall Syslog server ver 5.12 on a windows 2003 server.
