Solved

Logging access to servers / hosts through the ASA or 2620XM

Posted on 2006-11-13
1
211 Views
Last Modified: 2010-04-17
Hello

I have an ASA5510 box and a Cisco 2620XM router.
I have a bunch of servers behind these devices.
I need to keep a log of who is connecting to what port. i.e.


source / date-time / port / destination

and keep at least 60 days worth of logs.

Is there an easy way of doing this either on the PIX or the Router?
0
Comment
Question by:eggster34
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 79

Accepted Solution

by:
lrmoore earned 500 total points
ID: 17934684
You can log all connections through the ASA by enabling logging to an external syslog host and log "informational" level
It can generate 1Gb+ log files daily if you're not careful. Watch the logs and diable certain message #'s that are not required to be maintained (i.e. icmp requests, netbios packets ignored, etc)
Archive the log file daily (most syslog servers can do this automatically), and move the archives to a disk drive that gets backed up regularly.
Done.

http://www.kiwisyslog.com
0

Featured Post

Enroll in May's Course of the Month

May’s Course of the Month is now available! Experts Exchange’s Premium Members and Team Accounts have access to a complimentary course each month as part of their membership—an extra way to increase training and boost professional development.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

I have seen some questions on problems with SSH/telnet access to Cisco routers that may occur despite the fact that from a PC connected to your LAN, Internet connectivity is in place and users can access Internet sites without any issues.  There are…
Problem Description:   Couple of months ago we upgraded the ADSL line at our branch office from Home to Business line. The purpose of transforming the service to have static public IP’s. We were in need for public IP’s to publish our web resour…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question