cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4266
Views
0
Helpful
2
Replies

ASDM Real-Time Log Viewer - filter on VPN Peer (Group) address?

jkeeffe
Level 2
Level 2

I'm using ASDM 6.3(4) and ASA 8.3(2) and would like to use the Real-Time Log Viewer to troubleshoot lan-2-lan VPN connection problems. In the 'Build Filter' area I can filter on source/destination IP/port, but not peer (Group) IP address.

Without filtering I can see syslog messages from Group (peer) IP addresses, such as:

Group 12.56.139.193, IP = 12.56.139.193, PHASE 1 COMPLETED

...but they are mixed in with all the hundreds of other syslog messages and scroll by too fast.

How do I filter on the Group IP address in the Real-Time Log Viewer so I can troubleshoot connection problems without having to go to the syslog server - after the fact - and dig through the messages there?

2 Replies 2

ramds
Level 1
Level 1

Hello Jkeffe,

If you are speaking about the filter in the Real-Time Log Viewer, then it does not work on source or destination ip address/port rather its a "grep".

So in the filter specify the group name and you would see all messages related to that group.

Else you can use vpn traffic syslogging so that you get the specific vpn messages only.

Please refer this link :

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00805a2e04.shtml#capturevpn

--

Ramya

--Please rate the solutions.

The link no longer works do you have a updated link?