Wireless Access

last person joined: 20 hours ago 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

logging configuration

This thread has been viewed 7 times
  • 1.  logging configuration

    Posted Feb 18, 2015 12:44 PM

    Hi,

     

    How log all the users /cilent session  inculding authentication logs by using logging. we have splunk sever,  I have configured  logging to user --> level7 ----> notifications but no logs found on logging server 



  • 2.  RE: logging configuration

    EMPLOYEE
    Posted Feb 18, 2015 12:53 PM

    Try the link here to see if these are the events you want:

    config t
    logging level informational security process authmgr

     

     http://community.arubanetworks.com/t5/Command-of-the-Day/COTD-logging-authentication-events/m-p/5328/highlight/true#M220

     

    Then try this:

     

    logging <ip address of server> severity informational type security

     

     

     



  • 3.  RE: logging configuration

    Posted Feb 19, 2015 12:49 AM

    Hi Colin,

     

    I have created policies to forward  web traffic to my splunk severs and applied those policies to user role called "guest", but i never see any traffice here, could you please correct wrt configuration

     Capture.PNG

     

    the below one is for logging 

    Capture.PNG

     



  • 4.  RE: logging configuration

    EMPLOYEE
    Posted Feb 19, 2015 05:59 AM

    You should just be able to type:

     

    config t
    logging <ip address of syslog server>
    

    Please see the article below: 

     

    http://community.arubanetworks.com/t5/Controller-Based-WLANs/How-to-configure-syslog-setting-on-Aruba-Controllers/ta-p/185690

     



  • 5.  RE: logging configuration

    Posted Feb 19, 2015 11:30 PM

    Its not working for me, please suggest any other option 



  • 6.  RE: logging configuration

    EMPLOYEE
    Posted Feb 20, 2015 03:54 AM

    Are you seeing ANY traffic going to the syslog server?

     

    Please open a case with TAC so they can look at your configuration.