Solved

Logging traffic usage on ASA5520

Posted on 2008-06-19
3
472 Views
Last Modified: 2010-04-21
I need to be able to provide traffic statistics for the 'outside' interface.  Currently we are saving the syslog output to our FTP server.

There was so much traffic that it was unable to keep up with the device.  Can someone let me know how to log the traffic on the outside interface (bitrate) for upload and download, but not everything else?

Thanks
0
Comment
Question by:gracewild
  • 2
3 Comments
 
LVL 6

Accepted Solution

by:
raptorjb007 earned 500 total points
ID: 21822076
If you are simply looking to monitor bandwidth utilization and not keep detailed traffic logs, you could use a program called MRTG(http://oss.oetiker.ch/mrtg/). MRTG uses SNMP to gather information and creates a html report based on this information. It is highly customizable however the default installation will simply monitor bandwidth utilization for you interfaces.

The site has the necessary documentation to step you through the install, although it may require some fiddling with to get working, if its your first time installing it as not as simple as running an installer. The ASA configuration is easy as all you need to do is configure SNMP, the windows server part is more complicated but the guide is sufficient.

The MRTG 2.16.1 Windows Installation Guide
(http://oss.oetiker.ch/mrtg/doc/mrtg-nt-guide.en.html)

It is best to monitor the utilization on the device directly connected to the ISP, if there is a router between the firewall and ISP connection, you should monitor the router instead. Some ISP's even provide this type of information upon request, if so no work on your part would even be necessary.
0
 
LVL 6

Expert Comment

by:raptorjb007
ID: 21884349
Everything work out ok?
0
 

Author Closing Comment

by:gracewild
ID: 31468751
I will work on getting that configured.  Thanks for your help.
0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

Suggested Solutions

When I upgraded my ASA 8.2 to 8.3, I realized that my nonat statement was failing!   The log showed the following error:     %ASA-5-305013: Asymmetric NAT rules matched for forward and reverse flows It was caused by the config upgrade, because t…
From Cisco ASA version 8.3, the Network Address Translation (NAT) configuration has been completely redesigned and it may be helpful to have the syntax configuration for both at a glance. You may as well want to read official Cisco published AS…
It is a freely distributed piece of software for such tasks as photo retouching, image composition and image authoring. It works on many operating systems, in many languages.
Polish reports in Access so they look terrific. Take yourself to another level. Equations, Back Color, Alternate Back Color. Write easy VBA Code. Tighten space to use less pages. Launch report from a menu, considering criteria only when it is filled…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now