cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
394
Views
5
Helpful
1
Replies

Syslog

Ahmede
Level 1
Level 1

We are logging to our router remotley using just the line vty password and the enable password (no RADUIS or TACACS), is there any way to send a syslog message to the syslog server when a user tries to log into the router, becuase there will be no user name we will need to see the user IP address.

Thanks in advance..

1 Reply 1

Richard Burts
Hall of Fame
Hall of Fame

Ahmed

It used to be that there was not any way to do what you are asking. But Cisco introduced an enhancement to login beginning in 12.3(4)T which does support this. This link has good information about it:

http://www.cisco.com/en/US/products/ps6350/products_configuration_guide_chapter09186a0080455b93.html

you would use the commands:

login on-failure log

login on-success log

to enable this function.

I have not actually used this enhancement, but the documentation indicates that it will log the source address of the login attempt.

HTH

Rick

HTH

Rick
Review Cisco Networking for a $25 gift card