Cisco Security Appliance System Log Messages, Version 7.1.pdf
(
4457 KB
)
Pobierz
Cisco Security Appliance Logging
Configuration and System Log Messages
For the Cisco PIX 500 Series and Cisco ASA Series Security Appliance
Software Version 7.1
Corporate Headquarters
Cisco Systems, Inc.
170 West Tasman Drive
San Jose, CA 95134-1706
USA
http://www.cisco.com
Tel: 408 526-4000
800 553-NETS (6387)
Fax: 408 526-4100
Text Part Number: OL-6721-02
THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. ALL
STATEMENTS, INFORMATION, AND RECOMMENDATIONS IN THIS MANUAL ARE BELIEVED TO BE ACCURATE BUT ARE PRESENTED WITHOUT
WARRANTY OF ANY KIND, EXPRESS OR IMPLIED. USERS MUST TAKE FULL RESPONSIBILITY FOR THEIR APPLICATION OF ANY PRODUCTS.
THE SOFTWARE LICENSE AND LIMITED WARRANTY FOR THE ACCOMPANYING PRODUCT ARE SET FORTH IN THE INFORMATION PACKET THAT
SHIPPED WITH THE PRODUCT AND ARE INCORPORATED HEREIN BY THIS REFERENCE. IF YOU ARE UNABLE TO LOCATE THE SOFTWARE LICENSE
OR LIMITED WARRANTY, CONTACT YOUR CISCO REPRESENTATIVE FOR A COPY.
The Cisco implementation of TCP header compression is an adaptation of a program developed by the University of California, Berkeley (UCB) as part of UCB’s public
domain version of the UNIX operating system. All rights reserved. Copyright © 1981, Regents of the University of California.
NOTWITHSTANDING ANY OTHER WARRANTY HEREIN, ALL DOCUMENT FILES AND SOFTWARE OF THESE SUPPLIERS ARE PROVIDED “AS IS” WITH
ALL FAULTS. CISCO AND THE ABOVE-NAMED SUPPLIERS DISCLAIM ALL WARRANTIES, EXPRESSED OR IMPLIED, INCLUDING, WITHOUT
LIMITATION, THOSE OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OR ARISING FROM A COURSE OF
DEALING, USAGE, OR TRADE PRACTICE.
IN NO EVENT SHALL CISCO OR ITS SUPPLIERS BE LIABLE FOR ANY INDIRECT, SPECIAL, CONSEQUENTIAL, OR INCIDENTAL DAMAGES, INCLUDING,
WITHOUT LIMITATION, LOST PROFITS OR LOSS OR DAMAGE TO DATA ARISING OUT OF THE USE OR INABILITY TO USE THIS MANUAL, EVEN IF CISCO
OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
CCSP, the Cisco Square Bridge logo, Follow Me Browsing, and StackWise are trademarks of Cisco Systems, Inc.; Changing the Way We Work, Live, Play, and Learn, and
iQuick Study are service marks of Cisco Systems, Inc.; and Access Registrar, Aironet, ASIST, BPX, Catalyst, CCDA, CCDP, CCIE, CCIP, CCNA, CCNP, Cisco, the Cisco
Certified Internetwork Expert logo, Cisco IOS, Cisco Press, Cisco Systems, Cisco Systems Capital, the Cisco Systems logo, Cisco Unity, Empowering the Internet Generation,
Enterprise/Solver, EtherChannel, EtherFast, EtherSwitch, Fast Step, FormShare, GigaDrive, GigaStack, HomeLink, Internet Quotient, IOS, IP/TV, iQ Expertise, the iQ logo,
iQ Net Readiness Scorecard, LightStream, Linksys, MeetingPlace, MGX, the Networkers logo, Networking Academy, Network Registrar,
Packet,
PIX, Post-Routing,
Pre-Routing, ProConnect, RateMUX, ScriptShare, SlideCast, SMARTnet, StrataView Plus, SwitchProbe, TeleRouter, The Fastest Way to Increase Your Internet Quotient,
TransPath, and VCO are registered trademarks of Cisco Systems, Inc. and/or its affiliates in the United States and certain other countries.
All other trademarks mentioned in this document or Website are the property of their respective owners. The use of the word partner does not imply a partnership relationship
between Cisco and any other company. (0501R)
Copyright © 2005 Cisco Systems, Inc. All rights reserved.
CONTENTS
Preface
xxxiii
xxxiii
Document Objectives
Audience
xxxiii
Document Organization
Document Conventions
Related Documentation
xxxiv
xxxiv
xxxiv
Obtaining Documentation
xxxiv
Cisco.com
xxxv
Documentation DVD
xxxv
Ordering Documentation
xxxv
Documentation Feedback
xxxvi
Cisco Product Security Overview
xxxvi
Reporting Security Problems in Cisco Products
Obtaining Technical Assistance
xxxvii
Cisco Technical Support Website
xxxvii
Submitting a Service Request
xxxvii
Definitions of Service Request Severity
xxxviii
Obtaining Additional Publications and Information
1
xxxvi
xxxviii
CHAPTER
Configuring Logging and SNMP
Configuring SNMP
1-1
SNMP Overview
1-1
Enabling SNMP
1-3
1-1
Configuring and Managing Logs
1-4
Logging Overview
1-4
Logging in Multiple Context Mode
1-5
Enabling and Disabling Logging
1-5
Enabling Logging to All Configured Output Destinations
1-6
Disabling Logging to All Configured Output Destinations
1-6
Viewing the Log Configuration
1-6
Configuring Log Output Destinations
1-7
Log Output Destination Overview
1-8
Designating a Syslog Server as an Output Destination
1-8
Designating an E-mail Address as an Output Destination
1-10
Cisco Security Appliance Logging Configuration and System Log Messages
OL-6721-02
iii
Contents
Designating ASDM as an Output Destination
1-11
Viewing Logs Using a Telnet Session
1-12
hostname(config)#
no logging monitorDesignating
the Log Buffer as an Output
Destination
1-13
Filtering System Log Messages to be Sent to an Output Destination
1-15
Message Filtering Overview
1-15
Filtering System Log Messages by Class
1-16
Filtering System Log Messages with Custom Message Lists
1-17
Customizing the Log Configuration
1-19
Configuring the Logging Queue
1-19
Including the Date and Time in System Log Messages
1-19
Including the Device ID in System Log Messages
1-19
PIX|ASA Generating System Log Messages in EMBLEM Format
1-20
Disabling a System Log Message
1-21
Changing the Severity Level of a System Log Message
1-21
Changing the Amount of Internal Flash Memory Available for Logs
1-22
Understanding System Log Messages
1-23
System Log Message Format
1-23
Severity Levels
1-24
Variables Used in System Log Messages
1-24
2
CHAPTER
System Log Messages
2-1
2-1
Messages 101001 to 199009
101001
2-1
101002
2-2
101003, 101004
2-2
101005
2-2
102001
2-2
103001
2-3
103002
2-3
103003
2-3
103004
2-4
103005
2-4
104001, 104002
2-4
104003
2-5
104004
2-5
105001
2-5
105002
2-5
105003
2-6
105004
2-6
Cisco Security Appliance Logging Configuration and System Log Messages
iv
OL-6721-02
Contents
105005
2-6
105006, 105007
105008
2-7
105009
2-7
105010
2-8
105011
2-8
105020
2-8
105021
2-8
105031
2-9
105032
2-9
105034
2-9
105035
2-9
105036
2-9
105037
2-10
105038
2-10
105039
2-10
105040
2-11
105042
2-11
105043
2-11
105044
2-11
105045
2-12
105046
2-12
105047
2-12
106001
2-13
106002
2-13
106006
2-13
106007
2-14
106010
2-14
106011
2-14
106012
2-14
106013
2-15
106014
2-15
106015
2-15
106016
2-15
106017
2-16
106018
2-16
106020
2-16
106021
2-17
106022
2-17
106023
2-18
2-7
Cisco Security Appliance Logging Configuration and System Log Messages
OL-6721-02
v
Plik z chomika:
musli_com
Inne pliki z tego folderu:
Cisco Security Appliance Command Reference.pdf
(16224 KB)
Cisco Security Appliance Command Line Configuration Guide, Version 7.1.pdf
(5607 KB)
Cisco Security Appliance System Log Messages, Version 7.1.pdf
(4457 KB)
Content Security and Control SSM Administrator Guide.pdf
(2040 KB)
aa-svrgrps-asdm.pdf
(210 KB)
Inne foldery tego chomika:
IPSec VTI
New_CCSP
Old_CCSP
SRNDs
WebSense
Zgłoś jeśli
naruszono regulamin