Re: [fw-wiz] Syslog set up

From: Brian A Kee (
Date: 07/24/03

  • Next message: Mark Tinberg: "RE: [fw-wiz] Syslog set up"
    To: "Doug Garrison" <>, <>
    Date: Thu, 24 Jul 2003 13:40:28 -0500

    Something to look at:

    In PIX v6.3, Cisco added the ability to filter out specific log messages
    from the syslog output. I have not yet had the time to work with it, but it
    seems to be promising.

    Syslog by access control list (ACL) entry

    Introduces powerful new reporting and troubleshooting capabilities that
    enable detailed statistics to be gathered on which ACL entries are triggered
    by network traffic attempting to traverse a Cisco PIX Security Appliance
    Gives precise control over which ACL entry-related syslog events are
    Assignable syslog levels by message

    Provides administrators tremendous flexibility and control over which syslog
    messages Cisco PIX Security Appliances generate


    ----- Original Message -----
    From: "Doug Garrison" <>
    To: <>
    Sent: Thursday, July 17, 2003 4:32 PM
    Subject: [fw-wiz] Syslog set up

    > I am looking for a document or suggestions on setting up what events to
    > on a Cisco PIX. I am not concerned about following our security policy
    > I just need a 'Best Practice" type of document to get started from.
    > Thanks for your input.
    > Doug Garrison

    firewall-wizards mailing list

  • Next message: Mark Tinberg: "RE: [fw-wiz] Syslog set up"

    Relevant Pages

    • [fw-wiz] Re: PIX syslog WAS: (no subject)
      ... Cisco supports a proprietary syslog over TCP ... as well as the Cisco PIX Firewall Syslog Server ...
    • Cisco PIX 515E vs. Fortinet Fortigate-300
      ... Firewall Evaluation ... Cisco PIX 515E vs. Fortinet Fortigate-300 ... Fortigate firewall. ...
    • RE: Firewall Hardware Recommendations
      ... but Cisco makes for good medicine also. ... next time I setup a PIX I'll have to load it on up and give it a shot. ... WatchGuard has you pay for VPN lic's. ...
    • RE: where should I start? help!
      ... you could also use the syslog feature in any *NIX system ... Plus there are tons of log analyzers for ... from your PIX to the listening device. ... and you can have more than one logging host system if need be. ...
    • RE: Router with security features
      ... Subject: Router with security features ... Cisco makes an even cheaper and smaller pix firewall. ... Pix 520's it just does not come with more powerful hardware. ...