March 22, 2010

Troubleshooting and Auditing with Syslog

A Global Knowledge white paper entitled Using Syslog Effectively for Security Troubleshooting looks at the ways that syslog messages can be used to improve the security of Cisco equipment.

"Starting with Cisco IOS 12.3(4)T, an administrator can configure a router with a series of commands such that any subsequent configuration commands entered will be sent to syslog," writes report author Douglas B. McKillip. "Having a recorded audit trail of changes made can provide a valuable tool to troubleshoot possible unexpected outcomes."

"[Syslog] provides both an effective and secure (if using TLS) mechanism for providing meaningful auditing and troubleshooting information for a network administrator," McKillip writes.

Click here to access the Global Knowledge white paper.



View Article


IT Offers