[c-nsp] LOG ACL

Melvin C. Etheridge mele at enia.net
Mon Jan 30 00:19:47 EST 2006


I would really like to log all traffic on this host.

The cust thinks they have a trojan and have not been able to track it down.

Thanks!

Mel
  ----- Original Message ----- 
  From: Amol Sapkal 
  To: Melvin C. Etheridge 
  Sent: Sunday, January 29, 2006 11:19 PM
  Subject: Re: [c-nsp] LOG ACL


  Melvin,

  Are you looking at logging only the number of packets?
  If yes, try put an explicit permit statement in your access-list.

  Like,

  access-list 100 permit ip host 1.1.1.1 any
  access-list 100 permit ip any host 1.1.1.1



  HTH,
  Amol


   
  On 1/30/06, Melvin C. Etheridge <mele at enia.net> wrote: 
    I would like to create a ACL to just log traffic to and from a ip going
    through one of my adsl routers. 

    What would be the best way to word the ACL to do this?

    Thanks,

    Mel

    _______________________________________________
    cisco-nsp mailing list  cisco-nsp at puck.nether.net 
    https://puck.nether.net/mailman/listinfo/cisco-nsp
    archive at http://puck.nether.net/pipermail/cisco-nsp/ 




  -- 
  Warm regards,

  Amol Sapkal

  -------------------------------------------------------------------
  "A new study shows that licking the sweat off 
  a frog can cure depression. The down side is, 
  the minute you stop licking, the frog gets 
  depressed again." - Jay Leno
  ------------------------------------------------------------------- 


More information about the cisco-nsp mailing list