Controllerless Networks

last person joined: 2 days ago 

Instant Mode - the controllerless Wi-Fi solution that's easy to set up, is loaded with security and smarts, and won't break your budget
Expand all | Collapse all

IAP-105 + users logs

This thread has been viewed 3 times
  • 1.  IAP-105 + users logs

    Posted Feb 26, 2013 02:48 AM

    Hi,

     

    Sorry for this stupid question but is it possible to log users activity on an IAP-105 ?

     

    Syslog is only for system logs right ? It's not logging users activity ?

     

    Regards

     

    Dimitri



  • 2.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 05:03 AM
    Hi
    Good morning.
    You may use AirWave.
    connect your InstantAp unit to an AirWave server
    ------------------------------------------------------------------
    Airwave would provide you this sort of historic logging. You could then search by the mac address or IP address. If the user authenticated (thus providing a username) the username would be displayed. I recommend this if you are managing plenty of APs.

    Have a lovely day.

    me


  • 3.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 05:10 AM

    My IAPs are allready connected to Airwave, I can see users but I'd like to know on which site they are surfing and to log this (as security in case of bad use of the network).

     

    Can I still do this in Airwave ?

     

    Thanks.

     

    Dimitri



  • 4.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 05:11 AM

    Nope.



  • 5.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 05:13 AM

    Ok and is there an other way to do it ?



  • 6.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 05:21 AM
    Via your gateway|WAN firewall soultion - 3rd party soultion
    somthing like:
    nTop - might do it.
    http://www.ntop.org/products/ntop/


  • 7.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 05:32 AM

    Thanks but just to sum up and be sure of having right understand what you said :

     

    - I need a third part solution to log users activity.

    - I can't log activity of users on IAP-105.

    - If I deploy IAP-105s by a customer, I can't log the activity of the AP if I doesn't have gateway|WAN firewall solution.

     

    To explain a more bit about the project : I need to deploy sevral IAP by diffrent customers, they all use my CP Guest server to create new users and login. But for security, I must log users activity (to retrieve, in case of problems, who surfs on which websites).



  • 8.  RE: IAP-105 + users logs
    Best Answer

    Posted Feb 26, 2013 05:43 AM

    As far as i aware - you should solve it via your GW/WAN Router firewall or the ISP u are working in front of him.

     

    u also can consider the using of proxy - and then all the users web traffic will be passing trough that proxy - and you will be able to log it.

     

    Again - everything is 3rd party solution.

     

    Me



  • 9.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 05:46 AM

    Thanks, it's more clear for me now.

     

    Dimitri



  • 10.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 09:32 AM

    As kdisc98 has mentioned, third party proxies/filters are your best bet for comprehensive monitoring/logging; but without them, you can still use syslog to monitor user traffic, so long as you have configured the corresponding firewall rule to 'log' traffic.  See image below:

     

    instant-policy-log.jpg



  • 11.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 09:53 AM

    Thanks and then where can I retrieve the logs in syslog (which command) ?



  • 12.  RE: IAP-105 + users logs

    Posted Feb 26, 2013 11:43 AM

    I don't know the exact format of the syslog entries, but retrieval will depend on the syslog server you are using; defined under Settings/Syslog tab.



  • 13.  RE: IAP-105 + users logs

    Posted Mar 11, 2013 04:43 PM

    Hello clembo,

     

    I attempting to log src-nat traffic to a remote syslog service for copyright infringement tracking purposes.

     

    When I check the Log Box on my Firewall Rule for any any any any src-nat and save it.

    after applying and returning to the previous window the rule is no longer there.

     

    Also is there a way to select where these packets are being sent to?

     

    -Andre