nanog mailing list archives
Re: ASA log viewer
From: Duane Toler <detoler () gmail com>
Date: Mon, 21 Nov 2011 11:01:54 -0500
On Sun, Nov 20, 2011 at 17:33, Jimmy Hess <mysidia () gmail com> wrote:
Yes. logging permit-hostdown However, if you don't need to refuse connections when TCP syslog fails, then you don't need 100% of your syslog messages, you should use UDP syslog for performance. TCP just makes sure you will get all syslog messages between time A and time B or none of them. If there are WAN issues, there are many cases where one would prefer SOME syslog messages, with an understanding that the network bottleneck means messages are being lost, rather than few/no syslog messages to help debug the issue -- -JH
Except you can't do syslog via TLS with UDP. :-/ -- Duane Toler detoler () gmail com
Current thread:
- Re: ASA log viewer, (continued)
- Re: ASA log viewer Duane Toler (Nov 19)
- Re: ASA log viewer Jonathan Lassoff (Nov 19)
- Re: ASA log viewer Duane Toler (Nov 19)
- Re: ASA log viewer Duane Toler (Nov 19)
- Re: ASA log viewer Joel M Snyder (Nov 19)
- RE: ASA log viewer Joe Happe (Nov 20)
- RE: ASA log viewer jjanusze () wd-tek com (Nov 20)
- Re: ASA log viewer Duane Toler (Nov 20)
- Message not available
- Re: ASA log viewer Duane Toler (Nov 20)
- Re: ASA log viewer Jimmy Hess (Nov 20)
- Re: ASA log viewer PC (Nov 20)
- Re: ASA log viewer Duane Toler (Nov 21)
- RE: ASA log viewer Joe Happe (Nov 20)