cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
244
Views
0
Helpful
1
Replies

Unable to change syslog for PIX

bberry
Level 1
Level 1

I have a strange problem. My PIX is logging fine to my messages file but I am unable to get it to log to my LOCAL# file. Do I need to reload the PIX to get this change to take effect? I have attached the piece of the config and the syslog.conf. I have also reset the syslog server.

1 Reply 1

hoangbp
Level 1
Level 1

There are eight logging facilities commonly used for syslog. They are local0 through local7. Each one of these 8 facilities have a numeric value equivalent to local# on syslog server.

( For more information on the facility levels on the PIXes, please refer to the following document:

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a0080094030.shtml#logfacility)

Since you want to log your PIX INFORMATIONAL syslog messages to /var/log/pix.log, you need to change your logging facility to 21 (on your PIX), which is equivalent to local5 facility

Try "logging facility 21" and see if it works for you.

Thanks,

Binh

Review Cisco Networking for a $25 gift card