ASA multiple context logging

Problemy z zakresu security (VPN, firewall, IDS/IPS itp.)
Wiadomość
Autor
Awatar użytkownika
Cinek
wannabe
wannabe
Posty: 83
Rejestracja: 18 mar 2010, 20:55

ASA multiple context logging

#1

#1 Post autor: Cinek »

Hej,

Jest jakis sposob aby na asie w multiple context ustawic non-admin contexty, aby te wysylaly logi do servera przez admin context ? W skrocie, czy jest dostep do logow na non-admin context laczac sie do admin context ?

pzdr,
Marcin

Wolf
wannabe
wannabe
Posty: 297
Rejestracja: 20 cze 2005, 09:44
Lokalizacja: Warszawa

#2

#2 Post autor: Wolf »

Za dokumentacją:

Kod: Zaznacz cały

Logging in Multiple Context Mode

Each security context includes its own logging configuration and generates its own messages. If you log in to the system or admin context, and then change to another context, messages you view in your session are only those messages that are related to the current context.

Syslog messages that are generated in the system execution space, including failover messages, are viewed in the admin context along with messages generated in the admin context. You cannot configure logging or view any logging information in the system execution space.

You can configure the ASA and ASASM to include the context name with each message, which helps you differentiate context messages that are sent to a single syslog server. This feature also helps you to determine which messages are from the admin context and which are from the system; messages that originate in the system execution space use a device ID of system , and messages that originate in the admin context use the name of the admin context as the device ID.
Brak wzmianek o funkcjonalności o której piszesz. Na FWSM jak i ACE nie znalazłem także takiej funkcjonalności.

Awatar użytkownika
Cinek
wannabe
wannabe
Posty: 83
Rejestracja: 18 mar 2010, 20:55

#3

#3 Post autor: Cinek »

no tak, widzialem te linijki na stronie cisco... mysalem ze jednak jest jakis myk by jednak to uruchomic :(

ODPOWIEDZ