republican-creole
site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Uniqs:
19795
Share Topic
Posting?
Post a:
Post a:
Links: ·Submit a new forum topic ·Forum FAQ ·Submit a FAQ ·Docs Guidelines and Advisories ·EOS/EOL thread
AuthorAll Replies

mocah

join:2003-04-11
Slovenia

Cisco ASA show VPN and SSH users

Hello,

is it possible to monitor directly on ASA (ssh connection), who is currently connected via SSH or RemoteVPN connection?

Thank you and kind regards, M


RolteC
0h

join:2001-05-20
Fresh Meadows, NY
kudos:1

I know that by using the ASDM, you can click on firewall, and then it will show you either 1 hour, 8 hour, or 24hour, of the top ten most active IP's going through the network either in or out, and separately, the most active ports.

I would also like to know if there was any way of monitoring specifically who is on what port and at what time, instead of waiting for a random IP to make it to the top ten, without even knowing what port that IP is really connected on. I know I cant use the line "sh nat | incl 3074" for example for the xBox, because it will only show me the static port forwarding I already have in place, it will never show me who is connected to that, and this is what I want to be able to see in real time.


garnetbobcat

join:2007-10-02

reply to mocah
I'm not sure about monitoring SSH connections off the top of my head, but to view VPN connections via the command line you can use:

ASA# show vpn-sessiondb

I love this command.
--
Matt, CCIE Security, »www.wr-mem.com



russman

@rr.com

reply to mocah
VPN:

sh vpn-sessiondb remote (IPSec Remote VPN Clients)
sh vpn-sessiondb l2l (L2L Tunnels)
sh vpn-sessiondb svc (SSL VPN / Anyconnect Clients)

SSH:

sh ssh sessions (show users connected to ASA via SSH)

- Russ


mocah

join:2003-04-11
Slovenia

reply to mocah
Thank you that was exactly what I need


Saturday, 25-May 22:14:33 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 13.5 years online © 1999-2013 dslreports.com.
Most commented news this week
Hot Topics