RE: Pix info - audit info and logging and general

From: Zhang, Anchi (AZhang@reliant.com)
Date: Wed Nov 28 2001 - 11:07:58 EST


The following are mine and for the highest logging level, use "logging
trap debug"

netadmin# grep logging pix
logging on
logging timestamp
logging buffered warnings
logging trap informational
logging host inside 10.51.255.229

-----Original Message-----
From: fingers [mailto:fingers@fingers.co.za]
Sent: Wednesday, November 28, 2001 6:29 AM
To: cisco-nsp@puck.nether.net
Subject: Pix info - audit info and logging and general

Hi all

I wonder if someone could assist me. I've done a fair amount of rtfm'ing
on CCO, but can't seem to find what I'm looking for.

1) I'm wanting to enable logging for auditing purposes. Not just talking
about acl drops, but actual audit info that can be used at a later stage
if there's any queries wrt what let's say ip a.b.c.d did to ip e.f.g.h.
I've found various log levels in the pix docs, but can't seem to find a
way for full audit logging. Yes, I do understand there's a fair bit of a
performance impact doing something like this.

2) any general firewall/pix specific url's, lists etc. where I could
scrounge up some howto's etc. I've got a few off CCO but their topics
don't cover that wide a scope of issues.

Thanks in advance

--Rob



This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:12:55 EDT