Hi,
I have a strange problem regarding our PIX 515e with 3 interfaces. I have configured the pix to send informational syslogs (facility 20) to a webtrends firewall-suite. Everything seems to work fine, but the reports I get do not include any bandwidth information. I emailed the webtrends support about the problem an send a example syslog file to them. They told me that I have this problem because I renamed my 3rd interface to DMZ. This is what they told me:
**********************************************
Hello Fritjof,
I took a look at your log file and the reason you cannot view your
bandwidth is due to interface names.
Sample :
WTsyslog[2002-11-08 00:29:17 ip=192.168.101.10 pri=6] <166>Nov 08 2002
00:25:49: %PIX-6-302015: Built outbound UDP connection 56573 for
outside:213.XXX.100.4/53 (213.xxx.100.4/53) to DMZ:192.168.101.6/514
(213.XXX.109.69/514)
In order to get the bandwidth and other stats you must change the value
DMZ to the default (inside/outside). This can be done by configuring
Cisco Pix.
*************************************************
There are some things I don't understand:
1) Can I rename the interface to the default without the need to change every line in my config that includes the interface name?
2) What is the default name for the 3rd interface?
3) As far as I understand Webtrends they want me to name the interface inside. Is it possible to have different interfaces with the same name ?
4) Is there any impact on the logfiles other than the different interface name ?
Any help would be nice.
Thank you.
Fritjof
I have a strange problem regarding our PIX 515e with 3 interfaces. I have configured the pix to send informational syslogs (facility 20) to a webtrends firewall-suite. Everything seems to work fine, but the reports I get do not include any bandwidth information. I emailed the webtrends support about the problem an send a example syslog file to them. They told me that I have this problem because I renamed my 3rd interface to DMZ. This is what they told me:
**********************************************
Hello Fritjof,
I took a look at your log file and the reason you cannot view your
bandwidth is due to interface names.
Sample :
WTsyslog[2002-11-08 00:29:17 ip=192.168.101.10 pri=6] <166>Nov 08 2002
00:25:49: %PIX-6-302015: Built outbound UDP connection 56573 for
outside:213.XXX.100.4/53 (213.xxx.100.4/53) to DMZ:192.168.101.6/514
(213.XXX.109.69/514)
In order to get the bandwidth and other stats you must change the value
DMZ to the default (inside/outside). This can be done by configuring
Cisco Pix.
*************************************************
There are some things I don't understand:
1) Can I rename the interface to the default without the need to change every line in my config that includes the interface name?
2) What is the default name for the 3rd interface?
3) As far as I understand Webtrends they want me to name the interface inside. Is it possible to have different interfaces with the same name ?
4) Is there any impact on the logfiles other than the different interface name ?
Any help would be nice.
Thank you.
Fritjof