03-07-2011 09:14 AM - edited 03-11-2019 01:02 PM
Hi All ,
Which is best log analyser tool for PIX and ASA logg , Could you please suggest some good tools like netscreen secuirty manager is good one for JUNOS firewall .
03-07-2011 09:24 AM
Hi Santosh,
Best will be to use the a external syslog collector (server) and use commanly availble analysis tool to monitor the same. You can either use a freeware/third party solutions or Cisco MARS to do the needful.
To add further, here is the configuration guide to configure Syslog Collector:
http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/monitor_nsel.html#wp1118451
To the same using ASDM, please refer to this document:
https://supportforums.cisco.com/docs/DOC-6114
In past, i have used Kiwi(freeware), Solar Winds Orion & Cisco MARS(http://www.cisco.com/en/US/products/ps6241/index.html). These are just a few suggestions from my end and Cisco recomendations.
Hope this helps. Please reply if you need further assistance.
Regards,
Chirag
P.S.: Please mark this thread as answered if you feel your query is answered. Do rate helpful posts.
03-07-2011 09:26 AM
Well i missed out on Junos firewall. Avoid the config guide and ASDM links, that are specific to Cisco ASA .
03-07-2011 09:34 AM
Hi Chirag ,
Apart from Cisco MARS is there is any better syslog analyzer tool ,which identfiy the traffic based on vulnerabilty and connection state . Thank you
03-07-2011 10:07 AM
Hello Santosh,
Apart from Cisco MARS, i have used SolarWinds Orion NTA on a few occasions. Here is a link for the same : http://www.solarwinds.com/products/orion/nta/
Hope this helps. Please reply if you need further assistance.
Regards,
Chirag
P.S.: Please mark this thread as answered if you feel your query is answered. Do rate helpful posts.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide