3Com 86-0621-000, C36460T Console Output in Telnet Sessions, Audit Log Messaging Enhancements

Page 20

20ENTERPRISE OS SOFTWARE VERSION 11.4 RELEASE NOTES

Console Output in Telnet Sessions

With 11.4, all system messages can be displayed to a Telnet session as well as through a terminal attached to the local console port. Administrators will be able to view all important status messages from the Telnet session improving manageability.

Audit Log Messaging Enhancements

Many enhancements are added in the 11.4 release regarding the logging of events. These include:

In previous releases, only one SYSLOG server on the network could be sent the audit log messages from an Enterprise OS device. With 11.4, the administrator can configure each Enterprise OS device to send it's audit log messages to up to six SYSLOG servers.

In previous releases, only one SYSLOG server on the network could be sent the audit log messages from an Enterprise OS device. With 11.4, the administrator can configure each Enterprise OS device to send it's audit log messages to up to six SYSLOG servers.

Persistent logging of events across reboots now available across all platforms. Previously this feature was available only for NETBuilder II and PathBuilder S5xx devices (those devices which could support the partial dump feature). With 11.4, the partial dump feature is extended to the stackable devices (OfficeConnect NETBuilder, SuperStack II NETBuilder SI, and PathBuilder S400 devices), so reasons for spontaneous failures will be logged both on the device and within audit log messages sent to the SYSLOG server(s).

To provides a clearer understanding of audit log messages, the format of the messages has been changed. There is a different format for those messages sent to a SYSLOG server vs those saved on the device's local audit log buffer. Redundant information was removed and comprehensive definitions are provided. A field was added to indicate message severity (0-7 indicating Emergency, Alert, Critical, Error, Warning, Notice, Info, and Debug).

Changes to audit log messages sent to SYSLOG server(s):

For the SYSLOG messages, a unique message identifier (starting with 100) has been added. Specific services have been assigned a range of identifying numbers. For example, 100-199 identifies audit log file access status messages … dial history messages are 400-499 … IPsec messages are 600-649 … and Web Link messages are 1400-1499.

A new message format will have identifying labels. The new syntax is as follows:

priority Seq:SeqNumber Sev:Severity From:Entity/Source Msg:Text

Changes to audit log messages saved on the device's local audit log buffer:

The new message format will have identifying labels. The new syntax is as follows:

<priority> Seq:SeqNumber Date/Time Sev:Severity From:Entity/Source

Msg:Text

Audit Log Message Filters are now supported. In previous releases, all audit log messages were sent to the designated SYSLOG server. With 11.4, the administrator can set a LogFilter, whereby specific messages can be sent to specific SYSLOG servers. Messages can be filtered based on service, priority,

Image 20
Contents Enterprise OS Software Version 11.4 Release Notes 3Com Corporation Bayfront PlazaSanta Clara, California 95052-8145Contents IBM-Related Services in Token Ring Maximum BSC Line Speed Shdlc Half-Duplex ModeDial Idle Timer Appn Connections to 3174 through Token RingFirmware Configuration Firmware Update Microsoft Mppe Patches and UpdatesPM-SM Not Supported Over Nbma Media RouteDiscovery Total Control Security and Accounting Server AvailabilityToken Ring+ Modules Token Ring Auto Start-up Windows NT MS-CHAP Authentication Platform NotesRequirements Approved Dram SIMMs Enterprise OS Software Version 11.4 Release Notes OfficeConnect NETBuilder IP/IPX Router JW SuperStack II NETBuilder SIIP/IPX Router with 56-bit Encryption JE Features OfficeConnectNETBuilder SuperStackIP Payload Compression Protocol IPComp or Ippcp Non-Broadcast, Multi-Access Nhrp for VPN TunnelsPublic-Key Infrastructure PKI Implementation Ospf External Route Aggregation Tunnel Switching Between Different Tunnel TypesProtocol Independent Multicast-Sparse Mode PIM-SM PPP over Ethernet PPPoE Multicast Border Router MBRIGMPv2 Enhancements Virtual Router Redundancy Protocol Vrrp for Virtual LAN Vlan Many-to-One NAT EnhancementIP Quality of Service IPQoS Bandwidth on Demand with Incoming TrafficNew Features and Feature Enhancements Class-Based Queuing CBQ Management Voice Over Frame Relay VoFR Web Link Enhancements Upgrade Utilities & Upgrade LinkVoice Over VPN VoVPN Autotargeting for SLA Monitoring/Remote Polling Performance Management Currently available statistics areConsole Output in Telnet Sessions Audit Log Messaging EnhancementsPKI Manager version Domain Name Use in FTP and Tftp CommandsSecure VPN Manager version Features of PKI Manager version NETBuilder II Software Features FeatureVersion 11.4 for the NETBuilder and PathBuilder platforms Bridge/RouterBritss Appn LNM LAA NETBuilder II Firmware Requirements NETBuilder II Firmware RequirementsMemory Requirements ModuleAX-APPN/Connection Services PackagesBF- Boundary Router NW-IP/IPX/AT RouterDlsw 16 MB 24 MB PathBuilder S5xx Series Switches Software Features Software Package FeatureLNM LAA Switch PPTP/L2TP R2R, VLL PathBuilder S400 Series Switches Software Features Britss Appn LNM LAA Bridge/Routers 16 MB For Dual ImagesOfficeConnect NETBuilder Bridge/Router Software Features Isdn BRI Isdn PRI Isdn T1/E1 Isdn CT1/CE1 Isdn T3/E3Virtual Ports Restricted Number of Dhcp 256 Addresses RW-Multiprotocol Router RE-Multiprotocol Router with 56-bit EncryptionRS-Multiprotocol Router with 128-bit Encryption and 3DES 10/ST bridge/routerSwitching/Tunneling WANExtender MP6E Module Fast Ethernet 100Base ATM Module/ Lane SuperStack II NETBuilder Token Ring Software Features Software Package CF for TE for Feature ModelSmds Memory Requirements Solaris 2.5 platforms Ruuhp114.ZHP-UX 10.x platforms Ruuaix114.ZVersion 11.4 Upgrade Upgrade ManagerExecuting Profile.batEncryptionLicenseRead Environment Variable Etc/passwd. You must add an entry can be ignoredBridge Static Routes DLSwUpgrade Link Window ResizingAppn Connections to ThroughNumber of DLSw Circuits DLSw CONNectUsage Parameter Default ChangeLeaf Node Sessions Support Number of TCP Connections Front-EndRelay port is HPR and ISRIBM-Related Feature Settings for Token Ring Ports 3Com Bridge/Routers and Supported Features Token Ring Frame Copy ErrorsFrame Copy Errors under LAN Net Manager Service Point ModeATM Emulated LANs ATM LAN EmulationClients and Large FramesHistory, the PPP link does not come up Ports in DCE ModeValue Dial Idle Timer Disaster Recovery onPorts Without Leased LinesSupported Asynchronous Modems Supported Synchronous ModemModems ModemNotation Ascii Boot Boot CycleBootP Server Bootptab FileThese messages do not indicate a problem and can be ignored Than 8k to the policyRemote Access RunOnBootFail25bis Modem Setup SchedulerVPN Protocols and Services Notes Page Adequate Dram and Flash memory installed prior to shipment Order Numbers for Memory Upgrade KitsPlatforms. The topics are presented in alphabetical order Memory RequirementsT3 Bandwidth Limitation Snmp ManagementBAud value to 16,000 or 4,000 to avoid this situation 3Com-approved 20 MB Flash Memory Cards