Syslog data is different for different version of FTD
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-02-2025 10:48 AM
Hello,
There are two FTD 6.0 and other is 7.0 , both are managed by FMC 7.0.
Both FTD's are forwarding logs to syslog server but FTD with version 6 is sending way less logs as compare to version 7.
Both are configured the same way.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-02-2025 11:03 AM
What is different' ftd 6.0 is missing NAT log ?
MHM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-02-2025 11:11 AM
Not only NAT but (7.0.6.2) log is much more detailed, including connection IDs, IP addresses, port numbers, traffic statistics, application protocol details, user information, and access control rules.
(6.6.5) log is a simpler, more basic log focusing on the teardown of a TCP translation with minimal details.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-02-2025 02:18 PM
Could you let us know your logging configuration that you have for both the 6.6 and 7.0 FTDs as well as what you are logging (i.e. beginning of connection, end of connection, or both.)
Please remember to select a correct answer and rate helpful posts
