Friday, January 20, 2017

Why isn’t the syslog server receiving any syslog messages from ASA


















If the logging filters is disabled for the syslog servers then syslog messages wlll not get send to the syslog server even it is enabled globally and syslog servers are specified. 





Applying Logging Filters

To apply filters, perform the following steps:

 1. Choose the Filter on severity option to filter syslog messages according to their severity level.

 2. Choose the Use event list option to filter syslog messages according to an event list.

 3. Choose the Disable logging from all event classes option to disable all logging to the selected destination.

 4. Click New to add a new event list. To add a new event list, see the “Creating a Custom Event List”.

 5. Choose the event class from the drop-down list. Available event classes change according to the device mode that you are using.

 6. Choose the level of logging messages from the drop-down list. Severity levels include the following:

 • Emergency (level 0, system is unusable)

Note Using a severity level of zero is not recommended.

 • Alert (level 1, immediate action is needed)

 • Critical (level 2, critical conditions)

 • Error (level 3, error conditions)

 • Warning (level 4, warning conditions)

 • Notification (level 5, normal but significant conditions)

 • Informational (level 6, informational messages only)

 • Debugging (level 7, debugging messages only)

 7. Click Add to add the event class and severity level, and then click OK.

The selected logging destination for a filter appears at the top.

1 comment:

  1. This comment has been removed by a blog administrator.

    ReplyDelete