In article , captain Zod wrote: :Anyhow I am having issues with syslog on my pix 6.3. It does not send :to my linux syslogd.
Linux syslogd has to be specifically configured to allow syslog from remote devices. I do not know the appropriate command line options for this purpose.
:I ran tcpdump and was not seeing anything.
:Pix config: :logging on :logging timestamp :logging buffered warnings :logging trap debugging :logging host inside 10.60.2.129 :no logging message 111005
That should generally work, provided that the remote system is willing to receive the packets (and is reachable.)
:syslog.conf: :local6.debug /var/log/level6
You have not put in a 'logging facility' statement into your configuration. The default is not loca6 but rather local4 . For local6, you would need
logging facility 22
:Any ideas? :I also see the line below in my syslog.conf: :local7.* /var/log/boot.log :The comment says that this is for boot logging. Why is this? It should :get a lot more info than just boot with that * .
That's getting a bit off topic for the cisco newsgroup, but the answer is that it would get all messages directed to the facility local7 . The implication of the comment is that the only things that would
-normally- send with facility local7 are the boot messages. Of course if you configure something else to send to local7 then that'd show up in the boot.log file as well.