Compare cert salaries and plan your next career move
logging discriminator mydisc1 mnemonics drop OALP logging buffered discriminator mydisc1 4096
ConstantlyLearning wrote: » Is the syslog server on a linux box? You could 'tail -f' the logs and grep for what you're looking for. tail -f R1.log | 'grep whatever'
Device#show logging | exclude AFLSEC-6-OALP
Router#sh access-list 104 Extended IP access list 104 10 deny ip 0.0.0.0 1.255.255.255 any (68 matches) 20 deny ip 2.0.0.0 0.255.255.255 any (814 matches) 30 deny ip 5.0.0.0 0.255.255.255 any 40 deny ip 7.0.0.0 0.255.255.255 any 50 deny ip 8.0.0.0 0.255.255.255 any 60 deny ip 10.0.0.0 0.255.255.255 any 70 deny ip 23.0.0.0 0.255.255.255 any 80 deny ip 27.0.0.0 0.255.255.255 any (321 matches) 90 deny ip 31.0.0.0 0.255.255.255 any 100 deny ip 36.0.0.0 1.255.255.255 any 110 deny ip 39.0.0.0 0.255.255.255 any 120 deny ip 41.0.0.0 0.255.255.255 any (2627 matches) 130 deny ip 42.0.0.0 0.255.255.255 any 140 deny ip 49.0.0.0 0.255.255.255 any 150 deny ip 50.0.0.0 0.255.255.255 any (60 matches) 160 deny ip 58.0.0.0 1.255.255.255 any (5402 matches) 170 deny ip 60.0.0.0 0.255.255.255 any (1948 matches)
Netwurk wrote: » You can turn the logging off and get at least some information from the show access-list command. Here's a sample from one of my routers
tiersten wrote: » Are you attempting to do bogon filtering or is there another reason to have such a random assortment of ACLs? Most of those aren't bogons and have actually been assigned. The mask on the first one is odd as well. If you do bogon filtering then you have to make sure that you keep the list up to date because ranges don't stay unassigned forever.
Netwurk wrote: » For my home lab, I am using a somewhat old bogon filter, so if you know a link to an up-to-date one it would be helpful to me and most likely others.
tiersten wrote: » Team Cymru Bogon list
nel wrote: » im running 12.2(17r)SX3 at the minute. From research it appears it can be done via the discriminator as mentioned - but this is not a supported command on our platform.
Cisco wrote: This command was integrated into Cisco IOS Release 12.4(11)T This command was integrated into Cisco IOS Release 12.2(33)SRB. This command was integrated into Cisco IOS Release 12.2(33)SB. This command was integrated into Cisco IOS Release 12.2(33)SXI.
nel wrote: » Another alternative is to use a TCL script which filters syslog messages. Has anyone done it via this method before?
Compare salaries for top cybersecurity certifications. Free download for TechExams community.