Solved

Logging access to servers / hosts through the ASA or 2620XM

Posted on 2006-11-13
1
212 Views
Last Modified: 2010-04-17
Hello

I have an ASA5510 box and a Cisco 2620XM router.
I have a bunch of servers behind these devices.
I need to keep a log of who is connecting to what port. i.e.


source / date-time / port / destination

and keep at least 60 days worth of logs.

Is there an easy way of doing this either on the PIX or the Router?
0
Comment
Question by:eggster34
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 79

Accepted Solution

by:
lrmoore earned 500 total points
ID: 17934684
You can log all connections through the ASA by enabling logging to an external syslog host and log "informational" level
It can generate 1Gb+ log files daily if you're not careful. Watch the logs and diable certain message #'s that are not required to be maintained (i.e. icmp requests, netbios packets ignored, etc)
Archive the log file daily (most syslog servers can do this automatically), and move the archives to a disk drive that gets backed up regularly.
Done.

http://www.kiwisyslog.com
0

Featured Post

[Live Webinar] The Cloud Skills Gap

As Cloud technologies come of age, business leaders grapple with the impact it has on their team's skills and the gap associated with the use of a cloud platform.

Join experts from 451 Research and Concerto Cloud Services on July 27th where we will examine fact and fiction.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

While it is possible to put two routes in place with the secondary having a higher metric, this may not always work. In the event of a failure that does not bring down the physical interface on the router the primary route is not removed. There is a…
In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses
Course of the Month5 days, 17 hours left to enroll

626 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question