Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Cisco VPN 3000 Concentrator

The JSA DSM for Cisco VPN 3000 Concentrator accepts Cisco VPN Concentrator events by using syslog.

JSA records all relevant events. Before you can integrate with a Cisco VPN concentrator, you must configure your device to forward syslog events to JSA.

  1. Log in to the Cisco VPN 3000 Concentrator command-line interface (CLI).

  2. Type the following command to add a syslog server to your configuration:

    set logging server <IP address>

    Where <IP address> is the IP address of JSA or your Event Collector.

  3. Type the following command to enable system messages to be logged to the configured syslog servers:

    set logging server enable

  4. Set the facility and severity level for syslog server messages:

    • set logging server facility <server_facility_parameter>

    • set logging server severity <server_severity_level>

The log source is added to JSA as Cisco VPN Concentrator events are automatically discovered. Events that are forwarded to JSA are displayed on the Log Activity tab of JSA.

Syslog Log Source Parameters for Cisco 3000 Concentrator

If JSA does not automatically detect the log source, add a Cisco 3000 Concentrator log source on the JSA Console by using the syslog protocol.

When using the syslog protocol, there are specific parameters that you must use.

The following table describes the parameters that require specific values to collect syslog events from Cisco 3000 Concentrator devices:

Table 1: Syslog Log Source Parameters for the Cisco 3000 Concentrator DSM

Parameter

Value

Log Source type

Cisco 3000 Concentrator

Protocol Configuration

Syslog

Log Source Identifier

Type the IP address or host name for the log source.

The identifier helps you determine which events came from your Cisco 3000 Concentrator devices.