Re: Information about Cisco ASA "Firewall Server" messages
Anusuya K <[email protected]> Fri, 15 Feb 2008 12:54:52 -0800 (PST)
| Newsgroups | gmane.comp.sysutils.loganalysis |
|---|---|
| Message-ID | <[email protected]> |
Thanks for replying. But my concern is more about the term "Security appliance server", and how is it different from "Security appliance" (I guess in PIX it would be Firewall server vs Firewall). Thanks Anusuya ----- Original Message ---- From: "[email protected]" <[email protected]> To: Anusuya K <[email protected]> Cc: [email protected] Sent: Friday, February 15, 2008 12:58:13 PM Subject: Re: [logs] Information about Cisco ASA "Firewall Server" messages Hi as per ASA 7.2 config guide it seems that the term security appliance now references to the PIX and ASA models that support the recent software versions http://www.cisco.com/en/US/partner/docs/security/asa/asa72/configuration/guide/about.html This guide applies to the Cisco PIX 500 series security appliances (PIX 515E, PIX 525, and PIX 535) and the Cisco ASA 5500 series security appliances (ASA 5505, ASA 5510, ASA 5520, ASA 5540, and ASA 5550). Throughout this guide, the term "security appliance" applies generically to all supported models, unless specified otherwise. The PIX 501, PIX 506E, and PIX 520 security appliances are not supported. They seem to relate to remote access sessions (vpn) On Thu, 14 Feb 2008, Anusuya K wrote: > Hi, > While analyzing the Cisco ASA 8.0 log messages I came across some VPN messages which refer to firewall server/Security appliance server. Following are some of them: > > %PIX|ASA-7-713160: Remote user (session Id - id) has been granted access by the Firewall Server > %PIX|ASA-3-713161: Remote user (session Id - id) network access has been restricted by the Firewall Server > %PIX|ASA-3-713162: Remote user (session Id - id) has been rejected by the Firewall Server > %PIX|ASA-3-713163: Remote user (session Id - id) has been terminated by the Firewall Server > > Description of these messages refers to "Security appliance server" and not firewall server. I am not able to figure out what is the meaning of either "firewall server" or "security appliance server". This does not look same as "firewall" or "security appliance". Searching on Cisco site also did not help. > > Is anybody aware if this is a component of ASA/firewall itself or anything external, and when do these events occur in normal course of operartions in PIX/ASA (I did not find see these messages occuring in our test environment atleast). Any pointers would be appreciated. > > Thanks > Anusuya > > > > Looking for last minute shopping deals? Find them fast with Yahoo! Search. > > > ____________________________________________________________________________________ > Never miss a thing. Make Yahoo your home page. > http://www.yahoo.com/r/hs ____________________________________________________________________________________ Looking for last minute shopping deals? Find them fast with Yahoo! Search. http://tools.search.yahoo.com/newsearch/category.php?category=shopping _______________________________________________ LogAnalysis mailing list [email protected] http://www.loganalysis.org/mailman/listinfo/loganalysis