cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
195
Views
4
Helpful
4
Replies

What is the logging command to log NAT S & D IP in ASA Firewall.

Tkass
Level 1
Level 1

What is the logging command to log NAT S & D IP in ASA Firewall if there is any?

 

4 Replies 4

tvotna
Spotlight
Spotlight

Connection creation syslogs, e.g. 302013 include both real and mapped source/destination IPs by default. E.g.

Error Message%ASA-6-302013: Built {inbound|outbound} [Probe] TCP connection_id for interface :real-address /real-port (mapped-address/mapped-port ) [(idfw_user )] to interface :real-address /real-port (mapped-address/mapped-port ) [(idfw_user )] [(user )]

 

Logging list toSyslog level critical 

Logging list toSyslog message 305013

This level 6 message for NAT for connection.

This not error message' but just for make you notify the conn add or remove from conn table' which you can use it to see NAT of IP.

MHM

Tkass
Level 1
Level 1

Thank you, If the NAT do its job as it configured, why would I have the Error message? can I still log NAT S & D IP address, if there is no Error message by using # logging message 302013?

 

Review Cisco Networking for a $25 gift card