02-10-2016 09:30 AM
I'd like to know if its possible to send to a external syslog server only specific logs
The costumer must have, for legal reasons, a record of all mac-addresses which connected to the network. I'd like to have only the log for connect/disconnect and not every debug log about the all the mac addresses.
i've been messing around with the levels but i could not achieve this goal
If it's possible the customer would like to have a record of all the websites visited by each mac address. Is this possible?
I'm using firewall access rules and activated the logging for http and https but nothing appears at the syslog server
Thank you very much
02-10-2016 12:25 PM
Logging would be located in the security logs (show log security 50). Quite frankly, logging hits on URLs and destinations can potentially raise the CPU on the controller, so type "show cpuload" to make sure your cpu is not hovering at 50 to 80% while you are doing all of this logging.
Aruba Customer Engineering
Looking for an Answer? Search the Community Knowledge Base Here: Community Knowledge Base
02-11-2016 04:41 AM
thank you for yout reply
I understand what you said about cpu issues. However, about the mac address logging (only the mac addresses). How can I achieve this goal without sending tons of logs do the syslog server?