ACS 5.2 shows only 100 pages of logs and so only the logs for few hours is seen and unable to see the log for the entire day. How can we see the log for the entire day without missing them?
The ACS 5.x was designed to keep only 100 pages of logs. This unit generates a lot of information that will saturate the server if everything is stored in the internal hd, so there is an option to send these logs to an external Syslog server, this option is located under System Administration/Log Configuration.
Configuring Per-Instance Remote Syslog Targets:
Select System Administration > Configuration > Log Configuration > Logging Categories > Per-Instance, then click Configure.
Step 2: Perform any one of the following:
Click the name of the logging category you want to configure.
Select the radio button associated with the name of the logging category you want to configure, and click Edit.
Step 3: Click the Remote Syslog Target tab.
Available targets: List of available targets. You can select a target from this list and move it to the Selected Targets list.
Selected targets: List of selected targets. You can select a target from this list and move it to the Available Targets list to remove it from your configuration.
Displaying Logging Categories
Select System Administration > Configuration > Log Configuration > Logging Categories > Per-Instance, and click Configure.
Step 2: After clicking on Configure you need to complete the following enteries.
Name Expandable tree structure of AAA services logging categories.
Edit Click to display a selected Logging Categories > Edit: "lc_name" page, where lc_name is the name of the logging category
There are two changes related to this logging functionality in ACS 5.4:
Even though report generated can still only be of 100 pages, there is an option for the user to export the report to CSV file and include records more than the content of 100 pages.
User can generate the report based on timestamp as well. So can reduce the granularity of each set of data and retrieve / view the data in smaller chunks.
Refer to Exporting Report Data for more information about the ability to export report data to an Excel spreadsheet as a comma-separated values (.csv) file, pipe-separated values (.psv) file, or a tab-separated values (.tsv) file.
Hi Techguys,i want to confirm the VRF Support in Cisco Firpower 2130. I have requirement for different connections from Partnet. I want to keep all partner information separate. i want to keep voice, Internet and Partners VPN in a seprate VRF. ...
hi,i can't seem to install anyconnect 4.7 on a spare windows 7 machine.i already uninstall anyconnect 3.1 and restarted PC.after the EULA i got this message prompt. see attached photo.once i clicked OK a few times, i got a prompt that installation was com...
Hi Everyone, I just read that Google Gsuite expose also an LDAPS connection, I would like to know if anyone had a chance to test it and eventually if it allows to retrieve Google identity attributes (groups, etc) with Cisco ISE. I am considering...
Is it possible to quarantine mails based on the threat category? I can see in the message details an entry "Threat Category: Phishing" and in the SMA I can search for them in the Sender Domain Reputation report also in the message tracking , but how ...
I have searched Cisco and online for docs showing the syntex for natting multiple hosts via command line. I can do it via ASDM, but want to know how to do it via CLI so the running-config does not show "DM_inline" making the configs look more complicated....