Configuring the Cisco ASA firewall to send log data to the OSSIM server

These steps will help you configure the OSSIM server:

  1. Connect to the ASA box using ASDM.
  2. Go to Configuration | Device Management | Logging | Syslog Servers and click on the Add button to add a syslog server:
Make sure you have connectivity between the Cisco ASA and the OSSIM server.
  1. In the Add Syslog Server dialog, specify the following:
    1. Interface associated with the server.
    2. OSSIM server IP Address.
    3. Protocol (TCP or UDP).
    4. The Port number depending on your network setup.
    5. Click on OK:
  1. The new syslog server appears when you navigate to Configuration | Device Management ...

Get Industrial Cybersecurity now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.