Parvez,
The default configuration of the syslog uses UDP/514 unless configured as
TCP which uses port 1470.

If you really want to see if firewall is using UDP/514, then you might need
to capture data on the switchport where firewall is connected to. In my
knowledge there is no way to check this out.

http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/monitor_syslog.html#wp1092814



Thank you.
FNK


On Tue, Jun 26, 2012 at 4:16 AM, Eugene Pefti <[email protected]>wrote:

>  See below number of messages in red
> If your ASA is configured correctly then they should increment
>
>  5510-ASA# sh logging
> Syslog logging: enabled
>     Facility: 20
>     Timestamp logging: enabled
>     Standby logging: disabled
>     Debug-trace logging: disabled
>     Console logging: level errors, 5312 messages logged
>     Monitor logging: disabled
>     Buffer logging: level informational, 135581860 messages logged
>     Trap logging: level warnings, facility 20, 69388 messages logged
>         Logging to inside 192.168.14.4 errors: 1  dropped: 1
>         Logging to inside 192.168.14.5 errors: 2535  dropped: 9164
>
>   From: parvez ahmad <[email protected]>
> Date: Monday, June 25, 2012 11:19 PM
> To: "[email protected]" <[email protected]
> >
> Subject: [OSL | CCIE_Security] ASA with two Syslog Server
>
>  Hello,
>
>  We have configure ASA as per the below.
>
>  Outside------ASA----Inside
>
>  We have one more interface DMZ with Security 50 and have two syslog
> servers, one is inside and another  in DMZ.
>
>  I have configured ASA to send the syslog to these server.
>
>  How i can check that ASA is sending syslog to these server at the UDP
> Port 514.
>
>  Show snmp-server statistics is not that much helpful, I just wanted to
> know the other way to check it.
>
>
>  Regards,
> Parvez
>
>
>
> _______________________________________________
> For more information regarding industry leading CCIE Lab training, please
> visit www.ipexpert.com
>
> Are you a CCNP or CCIE and looking for a job? Check out
> www.PlatinumPlacement.com
>
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Are you a CCNP or CCIE and looking for a job? Check out 
www.PlatinumPlacement.com

Reply via email to