Cisco 2811 - Capture VPN Events

Posted on 2006-11-13
Last Modified: 2008-02-01
I am looking to implement event monitoring on my Cisco 2811 but I only want to monitor for specific events.

Can anyone let me know what the key event codes are to monitor faults with an IPSEC VPN ?


Question by:ccfcfc
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
LVL 12

Expert Comment

ID: 17929197

What sort of event monitoring method are you thinking?
LVL 79

Expert Comment

ID: 17938048
Turn logging up to "informational" or 6
output all logging to the syslog host

Author Comment

ID: 17938697
I am using a pair of routers within a configuration to provide VPN access only. I would like to select certain specific events that I can then use to generate alerts to support staff. I am aware that with the PIX it could be configured to block specific event codes and I was wondering if I could configure IOS to only report the codes I want to generate alerts for.
Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

LVL 79

Accepted Solution

lrmoore earned 250 total points
ID: 17946251
Unfortunately, on a router you cannot suppress specific message numbers like you can on a PIX. You get all or nothing.
You can set the syslog deamon on your syslog server to use a display filter or you can use a syslog analyzer such as Sawmill to give you a daily report automatically.


Author Comment

ID: 17947687
Ok, that answers my question.

Thanks for the help.

LVL 79

Expert Comment

ID: 18011439
Can you close this question?


Featured Post

Manage your data center from practically anywhere

The KN8164V features HD resolution of 1920 x 1200, FIPS 140-2 with level 1 security standards and virtual media transmissions at twice the speed. Built for reliability, the KN series provides local console and remote over IP access, ensuring 24/7 availability to all servers.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

While it is possible to put two routes in place with the secondary having a higher metric, this may not always work. In the event of a failure that does not bring down the physical interface on the router the primary route is not removed. There is a…
In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses
Course of the Month8 days, 14 hours left to enroll

617 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question