76-26
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter76 Configuring Logging
Monitoring the Logs
Step4 To filter syslog messages, choose one of the settings in the Filter By drop-down list, then click Filter on
the toolbar. This setting also applies to all future syslog messages. To clear all filters, click Show All on
the toolbar.
Note You cannot save filters that you have specified with the Build Filter dialog box. These filters are
valid only for the ASDM session during which they were created.
Editing Filtering Settings
To edit filtering settings that you created using the Build Filter dialog box, perform the following steps:
Choose one of the following:
Revise a filter directly by entering the changes in the Filter By drop-down list.
Choose a filter in the Filter By drop-down list, then click Build Filter to display the Build Filter
dialog box. To remove the current filter settings and enter new ones, click Clear Filter. Otherwise,
change the settings that appear, and click OK.
Note These filter settings apply only to those defined in the Build Filter dialog box.
To stop filtering and show all syslog messages, click Show All on the toolbar.
Executing Certain Commands Using the Log Viewers
You can execute the following commands using either of the log viewers: ping, traceroute, whois, and
dns lookup.
To execute any of these commands, perform the following steps:
Step1 Choose one of the following:
Monitoring > Logging > Real-Time Log Viewer > View
Monitoring Logging > Log Buffer > View
Step2 From the Real-Time Log Viewer or Log Buffer pane, click Tools, then choose the command that you
want to execute. Alternatively, you can right-click a specific syslog message that is listed to display a
context menu, then choose the command that you want to execute.
The Entering command dialog box appears, with the command that you selected automatically showing
in the drop-down list.
Syslog ID not in the range 725001 through
725003
FILTER: sysID=!725001-725003;
Source IP = 1.1.1.1
Description = Built outbound
FILTER: srcIP=1.1.1.1;descr=Built outbound