cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
350
Views
2
Helpful
3
Replies

Syslog data is different for different version of FTD

Salman111
Level 1
Level 1

Hello,

 

There are two FTD 6.0 and other is 7.0 , both are managed by FMC 7.0.

 

Both FTD's are forwarding logs to syslog server but FTD with version 6 is sending way less logs as compare to version 7. 

Both are configured the same way.

 

 

3 Replies 3

What is different' ftd 6.0 is missing NAT log ?

MHM

Not only NAT but (7.0.6.2) log is much more detailed, including connection IDs, IP addresses, port numbers, traffic statistics, application protocol details, user information, and access control rules.

(6.6.5) log is a simpler, more basic log focusing on the teardown of a TCP translation with minimal details.

Could you let us know your logging configuration that you have for both the 6.6 and 7.0 FTDs as well as what you are logging (i.e. beginning of connection, end of connection, or both.)

--
Please remember to select a correct answer and rate helpful posts
Review Cisco Networking for a $25 gift card