Directing Cidlog Messages To Syslog - Cisco IPS-4255-K9 - Intrusion Protection Sys 4255 Installation Manual

Intrusion prevention system appliance and module installation guide for ips 7.0
Table of Contents

Advertisement

Chapter A
Troubleshooting
Table A-2
Zone Name
cmgr
cplane
csi
ctlTransSource
intfc
nac
rep
sched
sensorApp
tls
1. The Card Manager service is used on the AIP SSM to exchange control and state
2. The Control Plane is the transport communications layer used by Card Manager on the
3. The CIDS servlet interface is the interface layer between the CIDS web server and the
For More Information
To learn more about the IPS Logger service, refer to Logger.

Directing cidLog Messages to SysLog

It might be useful to direct cidLog messages to syslog. To direct cidLog messages to syslog, follow these
steps:
Go to the idsRoot/etc/log.conf file.
Step 1
Make the following changes:
Step 2
a.
b.
OL-18504-01
Debug Logger Zone Names (continued)
Description
Card Manager service zone
Control Plane zone
CIDS Servlet Interface
Outbound control transactions zone
Interface zone
ARC zone
Reputation zone
Automatic update scheduler zone
Analysis Engine zone
SSL and TLS zone
information between modules in the chassis.
AIP SSM.
servlets.
Set [logApp]
enabled=false
Comment out the
enabled=true
Set [drain/main]
type=syslog
The following example shows the logging configuration file:
timemode=local
;timemode=utc
[logApp]
;enabled=true
;-------- FIFO parameters --------
fifoName=logAppFifo
fifoSizeInK=240
;-------- logApp zone and drain parameters --------
zoneAndDrainName=logApp
fileName=main.log
fileMaxSizeInK=500
[zone/Cid]
Cisco Intrusion Prevention System Appliance and Module Installation Guide for IPS 7.0
1
2
3
because
is the default.
enabled=false
Troubleshooting the Appliance
A-51

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents