Solved

cisco asa5510 question about reports/logging

Posted on 2006-11-29
11
284 Views
Last Modified: 2013-11-16
Is there away or other tool to see where computers are going out on the internet and for how long they browse?
0
Comment
Question by:iceman19330
  • 7
  • 4
11 Comments
 
LVL 79

Expert Comment

by:lrmoore
ID: 18040071
Not directly with the ASA, but you can either set up a proxy, force all users to go through the proxy and lock all except the proxy from going out the ASA, then use the reporting features of your chosen proxy. Microsoft ISA is pretty good for this...

Setup NTOP on a PC connected to a hub that connects the inside of the ASA to the internal LAN switch (or on a SPAN port of the switch)
http://www.NTOP.org

Pop in an in-line filter appliance like iPrism http://www.stbernard.com/iPrism
0
 

Author Comment

by:iceman19330
ID: 18040154
Okay is there a tool reading the logs and generating reports that way?
0
 
LVL 79

Expert Comment

by:lrmoore
ID: 18040454
Yes.
Enable logging to an external host, and use Sawmill automated syslog analyzer
http://www.sawmill.net/formats/kiwi_iso.html

Or FireGen
http://www.eventid.net/firegen/
0
Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

 

Author Comment

by:iceman19330
ID: 18040485
How do I enable the logging to an external host?
0
 

Author Comment

by:iceman19330
ID: 18040502
I think I found it.
0
 
LVL 79

Accepted Solution

by:
lrmoore earned 500 total points
ID: 18040516
logging on
logging trap informational
logging host a.b.c.d inside

<8-}

0
 

Author Comment

by:iceman19330
ID: 18040535
Nevermind that was something else.
0
 

Author Comment

by:iceman19330
ID: 18040605
Result of the command: "logging host 192.168.234.214 inside"

logging host 192.168.234.214 inside
                  ^
ERROR: % Invalid input detected at '^' marker.
0
 

Author Comment

by:iceman19330
ID: 18040628
Here is a funny thing I ran the commands, but then when it failed I exited the screen and went around.  At some point it stopped accepting connections, I went back and changed a small setting and applied and it started working again, this has happened before where I have set something via CLI and had to check on syntax or something like that and gotten out and the system has stopped accepting connections?  I know its not part of the question but any thoughts?
0
 
LVL 79

Expert Comment

by:lrmoore
ID: 18043020
My bad..
syntax =
logging host inside 192.168.234.214

Been a long day.....
0
 

Author Comment

by:iceman19330
ID: 18055349
No problem, been a long week for me.  TGIF.
0

Featured Post

Portable, direct connect server access

The ATEN CV211 connects a laptop directly to any server allowing you instant access to perform data maintenance and local operations, for quick troubleshooting, updating, service and repair.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
md5 password 3 74
Need help on Windows Firewall blocking program 7 45
Oracle DB Slows After Datapump Until Next Reboot 27 90
Cisco 2960 unable to add SFP modules to device 9 57
Short answer to this question: there is no effective WiFi manager in iOS devices as seen in Windows WiFi or Macbook OSx WiFi management, but this article will try and provide some amicable solutions to better suite your needs.
Let’s list some of the technologies that enable smooth teleworking. 
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

789 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question