Solved

ASA 5505 VPN Peer Logging

Posted on 2011-02-24
3
1,210 Views
Last Modified: 2012-05-11
I need to know how to setup logging for specifically VPN Peers on a Cisco ASA 5505. I would like to see who and when people disconnect.
0
Comment
Question by:TechGuy_007
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 33

Expert Comment

by:MikeKane
ID: 34972201
You can pick this right out of the normal syslog severity 5 messages #722033

i.e.  "Group <tunnel name> User <username> IP <source ip> First TCP SVC connection established for SVC session.
0
 

Author Comment

by:TechGuy_007
ID: 34972846
Is there a way to adjust the logging to just capture these instances from here on out though? Also we have VOIP phones that connect as VPN Peers and seem to be timing out. Is there a way to adjust this to unlimited or just make it more stable?
0
 
LVL 33

Accepted Solution

by:
MikeKane earned 500 total points
ID: 34975719
Well, you can filter out syslog messages to just capture what you want at the server side.    You can also specify custom logging in the ASA for VPN informational, and leave everything else at a lower logging level....  

What I do usually is setup a syslogging tool that does log analysis.   There are a few good ones out there, like sawmill.  They can crunch through the syslog output and generate some decent reports like this....
0

Featured Post

Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

There’s a movement in Information Technology (IT), and while it’s hard to define, it is gaining momentum. Some call it “stream-lined IT;” others call it “thin-model IT.”
This article is in regards to the Cisco QSFP-4SFP10G-CU1M cables, which are designed to uplink/downlink 40GB ports to 10GB SFP ports. I recently experienced this and found very little configuration documentation on how these are supposed to be confi…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Suggested Courses
Course of the Month7 days, 14 hours left to enroll

617 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question