Hi, There are many types of sending logs from ASA. For ex. you can send different logs on ASA ASDM, and different on syslog server. This topic might interest you: http://www.cisco.com/c/en/us/support/docs/security/pix-500-series-security-appliances/63884-config-asa-00.html
On Thursday, April 23, 2015 at 3:22:32 PM UTC+2, [email protected] wrote: > > Dear, I have Graylog 1.0.1 installed in a Debian Wheezy box. Everything > works OK, except the Cisco ASA incoming logs. > > When I'm in Graylog terminal, I execute tcpdump pointing to Cisco ASA IP, > and I can see a lot of incoming logs....but when I'm in the Graylog web > interface, and choose the Cisco ASA source, there are a few logs. > > What can be the problem with this situation??? > > Thanks a lot, > > Roberto. > -- You received this message because you are subscribed to the Google Groups "graylog2" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
