09-03-2004 04:59 AM - edited 03-09-2019 08:42 AM
Is it possible to set up auditing within a PIX (or using a PIX and another device) so that a company can limit access to the internet? How about tracking access to the internet? Not necessarily the sites visited, but the usage of the web.
09-03-2004 06:27 AM
There is an infinite number of ways to do such things. You can use a PIX in conjunction with a N2H2 or Websense server, if you want to restrict what types of content users can access. You probably can run reports on the N2h2/Websense server. If you simply want to block off certain users from the internet, there are other ways of doing that, which really depend on your topology, usage, etc
09-03-2004 06:30 AM
refam,
To auditing Internet Access you could use: N2H2 or WebSense
This allows you to use URL Filtering and Auditing fonction with that third party products.
Other way is to enbale syslog on your PIX and analyse the log files later to do reports.
commands:
logging on
logg host IP-of-syslog
logg trap info
I think you need to enable " logg trap info " to see the users, and this creates a lot of output into the syslog. Try the " logging trap notif" if the users are also logged.
Of course you need to have a to have a Radius or tacacs server to have an Authentication prompt when you connect to the Internet.
I that gives you start where to look at:
Patrick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide