NAT Logging

Samir Abid Al-mahdi samir.abidali at gorannet.net
Fri Nov 18 10:00:51 EST 2016


Dears Experts,

I have been reading about NAT CGN and the NAT logging method in which you
can pre-define a port range per user or IP address, this will help us to
avoid logging all flows and to log only the port range+ Ip address used for
this users and will facilitate the tracing of an attack.

However, it seems that Facebook and others service does not report the port
of the attacker and only the IP address which makes the solution mentioned
above not useful.

Can you please share your experience in this regards please from an ISP
perspective.

Thank you
Best Regards


More information about the cisco-nsp mailing list