Security

 View Only
last person joined: 21 hours ago 

Enterprise security using ClearPass Policy Management, ClearPass Security Exchange, IntroSpect, VIA, 360 Security Exchange, Extensions and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Clearpass DUR + 2930F. Access list log?

This thread has been viewed 15 times
  • 1.  Clearpass DUR + 2930F. Access list log?

    Posted Jul 21, 2022 09:14 AM
    Hello,

    I am using Clearpass with 2930F switches and some IAPs. Access lists are downloaded with roles.

    Is there a way to view DUR ACL denied traffic?
    For example this can be seen on IAPs while issuing command "show log security"


  • 2.  RE: Clearpass DUR + 2930F. Access list log?

    EMPLOYEE
    Posted Jul 22, 2022 09:14 PM
    you can get some info about DUR failures with
    "show log -r"

    ------------------------------
    Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba.
    ------------------------------



  • 3.  RE: Clearpass DUR + 2930F. Access list log?

    Posted Jul 24, 2022 10:04 AM
    Thanks, but it does'nt show traffic log.


  • 4.  RE: Clearpass DUR + 2930F. Access list log?

    EMPLOYEE
    Posted Jul 24, 2022 07:32 PM
    In any ACL, you can apply an ACL log function to ACEs that have an explicit "deny" action. Then the switch sends ACL logging output to Syslog, if configured, and, optionally, to a console session.
    check the Access Security Guide for ArubaOS-Switch guide for 2930s

    ------------------------------
    Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba.
    ------------------------------



  • 5.  RE: Clearpass DUR + 2930F. Access list log?

    Posted Jul 27, 2022 09:16 AM
    I guess there is no "log" option in clearpass. At least I can't find it.