Chapter 18 Managing System Administration Configurations

Configuring Logs

Table 18-24 Per-Instance: General Page

Option

Description

Configure Log Category

Log Severity

Use the list box to select the severity level for diagnostic logging categories. (For audit and accounting categories, there is only one severity, NOTICE, which cannot be modified.) Valid options are:

FATAL—Emergency. The ACS is not usable and you must take action immediately.

ERROR—Critical or error condition.

WARN—Normal, but significant condition. (Default)

INFO—Informational message.

DEBUG—Diagnostic bug message.

Configure Local Setting for Category

Log to Local Target

Check to enable logging to the local target.

 

For administrative and operational audit logging category types, logging to

 

local target is enabled by default and cannot be disabled.

 

 

Local Target is

Usable for accounting and for passed authentication logging category types

Critical

only. Check the check box to make this local target the critical target.

 

For administrative and operational audit logging category types, the check box

 

is checked by default and cannot be unchecked; the local target is the critical

 

target.

If you make local target as the critical target and the logging operation fails, the authentication request will be rejected and accounting response will not be sent to the device.

Configure Logged Attributes

Display only. All attributes are logged to the local target.

Configuring Per-Instance Remote Syslog Targets

Use this page to configure remote syslog targets for logging categories.

Step 1 Select System Administration > Configuration > Log Configuration > Logging Categories > Per-Instance, then click Configure.

The Per-Instance: Configuration page appears as described in Table 18-23.

Step 2 Do one of the following actions:

Click the name of the logging category you want to configure.

Select the radio button associated with the name of the logging category you want to configure, and click Edit.

 

Step 3

Click the Remote Syslog Target tab.

 

 

The Per-Instance: Remote Syslog Targets page appears as described in Table 18-25:

 

 

User Guide for Cisco Secure Access Control System 5.3

 

 

 

 

 

 

 

 

 

 

 

 

OL-24201-01

 

 

18-31

 

 

 

 

 

Page 545
Image 545
Cisco Systems OL-24201-01 manual Configuring Per-Instance Remote Syslog Targets, Configure Logged Attributes, 18-31