I've got plenty of experience with Cisco router and switches for configuring logging to console, monitor, or syslog server for troubleshooting my ACLs.
I've got an ACL on a 1242AG very 12.3(8) on the dot11radio1.20 interface. The ACL has the ip deny any any log entry. When I do show...
I'm good at catching external attacks, using ACLs with syslog monitoring on WAN links, WireShark and Ethereal for tracking down bandwidth hogs and infected PCs.
But how do you monitor the activity of a single user who has nothing better to do than attempt to exploit servers, printers, switches...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.