Cisco PIX 525 Especificaciones Pagina 335

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 466
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 334
9-33
Cisco PIX Firewall and VPN Configuration Guide
78-15033-01
Chapter 9 Accessing and Monitoring PIX Firewall
Using Syslog
Enabling Logging to Syslog Servers
This section describes how to enable logging messages to one or more syslog servers. For information
about saving messages to a buffer, displaying them on the console, specifying the transport used for
syslog messages, or various other options, refer to the logging command in the Cisco PIX
Firewall
Command Reference. Use the logging command to identify one or more syslog servers and to set the
various options available. To enable or disable logging, enter the following commands:
logging on
no logging on
To view the current logging options, enter the following command:
show logging
To identify a syslog server that will receive the messages sent from the PIX Firewall, enter the following
command:
logging host in_if_name ip_address [format {emblem}]
Replace in_if_name with the interface on which the syslog server resides. Replace ip_address with the
syslog server’s IP address. You can use multiple logging host commands to specify additional servers.
PIX Firewall Version 6.3 introduces support for EMBLEM format, which is required when using the
CiscoWorks Resource Manager Essentials (RME) syslog analyzer. Use the option format emblem to
send messages to the specified server in EMBLEM format. This option is available only for UDP syslog
messages, used by the RME syslog analyzer.
PIX Firewall Version 6.2(3) introduced support for defining a unique device ID for log messages sent to
a syslog server. To enable this option, use the following command.
logging device-id hostname | ipaddress if_name | string text
Use the hostname option to use the host name of the PIX Firewall as the device ID. Use the ipaddress
option to use the IP address of a specific interface as the device ID. Replace if_name with the name
assigned to the PIX
Firewall interface with the nameif command. Use the string option to enter a text
description. Replace text with a string of up to 16 characters, without spaces.
When this feature is enabled, the PIX Firewall will insert the specified device ID into all non-EMBLEM
format syslog messages. This command does not affect the syslog message text in EMBLEM format or
as it is displayed on the PIX
Firewall console or log file.
To disable this feature, use the following command:
no logging device-id
Changing Syslog Message Levels
PIX Firewall Version 6.3 gives you the option to modify the level at which a specific syslog message is
issued and to disable specific syslog messages. Previous versions of PIX
Firewall only let you specify
the message level or disable all messages to a specific syslog server.
To change the logging level for all syslog servers, enter the following command:
pix(config)# logging message level levelid
To change the level of a specific syslog message, enter the following command:
pix(config)# logging message syslogid level levelid
Vista de pagina 334
1 2 ... 330 331 332 333 334 335 336 337 338 339 340 ... 465 466

Comentarios a estos manuales

Sin comentarios