01-20-2011 07:59 AM
I'm using ASDM 6.3(4) and ASA 8.3(2) and would like to use the Real-Time Log Viewer to troubleshoot lan-2-lan VPN connection problems. In the 'Build Filter' area I can filter on source/destination IP/port, but not peer (Group) IP address.
Without filtering I can see syslog messages from Group (peer) IP addresses, such as:
Group 12.56.139.193, IP = 12.56.139.193, PHASE 1 COMPLETED
...but they are mixed in with all the hundreds of other syslog messages and scroll by too fast.
How do I filter on the Group IP address in the Real-Time Log Viewer so I can troubleshoot connection problems without having to go to the syslog server - after the fact - and dig through the messages there?
02-01-2011 12:32 AM
Hello Jkeffe,
If you are speaking about the filter in the Real-Time Log Viewer, then it does not work on source or destination ip address/port rather its a "grep".
So in the filter specify the group name and you would see all messages related to that group.
Else you can use vpn traffic syslogging so that you get the specific vpn messages only.
Please refer this link :
--
Ramya
--Please rate the solutions.
10-23-2019 07:18 AM
The link no longer works do you have a updated link?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide