Can I log smtp attempts on a ASA 5505

I have an ASA 5505 that I am using as a firewall.  I just set it up and I know that one of the computers in my network is sending out spam.  I believe that I know which computer is sending it, but I am not sure how to verify that it is this computer.  Can I do any logging with the ASA to figure this out?
LVL 12
ryan80Asked:
Who is Participating?
 
ged125Connect With a Mentor Commented:
See Below:

Monitor > Firewall Status > Pick the Zone Pair > Click "Start Monitoring"

Does that work on ASDM?
SDM.jpg
0
 
ged125Commented:
The quickest way would be to load Adaptive Security Device Manager (ASDM) on the flash of the firewall and then look at this through the GUI interface.

If you have a CCO login, you can download ASDM here:
http://www.cisco.com/cgi-bin/Software/Tablebuild/doftp.pl?ftpfile=cisco/crypto/3DES/ciscosecure/asa/customer/asdm-613.bin&app=Tablebuild&status=showC2A

Documentation can be found here:
http://www.cisco.com/en/US/products/ps6121/index.html
0
 
ryan80Author Commented:
I have ASDM loaded.  Where would I look to be able to see traffic specifically on port 25?
0
 
ged125Commented:
I have SDM in front of me, so it may differ slightly from ASDM.  I go to the monitoring section and look at the firewall sessions.  It shows me all active connections with protocol, port, source and destination IP addresses.  I will try to post a screen shot shortly.
0
 
ryan80Author Commented:
I am using ASDM version 5.2, so I may need to update it to get some more functionality.  there is not a firewall section under monitoring. I will just parse the logs to see if anything is hitting port 25.  Its my first time really using ASDM or a ASA so I'm just trying to make sure that I wont miss anything.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.