I cannot read ACS 5.3 logs from my WCS. I have the ACS server added to the WCS. Below is the message I'm getting:
Unable to connect to any ACS View Server.Failed to access the WSDL at: { URL}. It failed with: {URL}. Do I need to install any special module on the ACS to support this?
My old trusty Linksys router started causing BSODs on my computer (!) by crashing the IP stack, so I bought the DIR-655. No more BSODs, throughput to the web went way up, so all that was a success.Then I tried to set it up to send syslog data to my computer, and it was totally useless. Want to see traffic logs, not debug messages. After a lot of discussion with level-3 tech support, it seems that this router cannot send syslog data to a syslog server that shows the incoming and outgoing traffic IPs for monitoring a network.
We have a Cisco 4404 WLC and and about 70 Cisco 1131 APs. I am very new to the Cisco WLC and I need to know how to view its AP registration and unregistration logs. We have a AP that has unregistered and we can't seem to find what switchport it was attached to. It would be useful to know the IP address and ideally any CDP information it had. Unfortunately you can only view this information in the WLC if the AP is registered, but at this point it is not.
I just purchased the AP1141N and I have created a logon account to access the device via URL which works fine but after 10 minutes it logs me out and requires that I log back on. Unfortunately it won't allow me to log back on unless I reset the device then I have another 10 minutes before it asks me to login again but then it won't accept my logon again without a reset.
I can logon with my account via the console logon but I don't know how to configure the access point via command line so I use the web interface. I have disabled the timing for security but didn't work.
I have a D-Link model DIR-625, and it always seems to disconnect when my mother logs on her computer. Is there some kind of setting on her computer that could be disconnecting us? When my dad is on his I never disconnect which is why I am wondering it must be something on her computer that's interfering with the signal or something. If I reset the router while she's still on, It will disconnect again within a few minutes. So where can I check if it could be her computer that's interfering with the signal?
Region : Poland Model : TD-W8951ND Hardware Version : V5 Firmware Version : 5.0.0 Build 120522 Rel.23978 ISP : Orange/TPSA
My router TD-W8951ND remembers only a dozen of latest logs. Previous, older logs disappears. Why? Is there any way to force router to keep logs from, for example, the last 12 or 24 hours?It is important to me because i have some problems on my adsl line and i want to know what happens with connection while I am not in home or when I sleep.If it will be necessary I am able to log onto my router using Telnet, just give me required commands to fix this problem with logs.
As I've seen in my Linksys' admin panel, I have a log option (Administration/Log). So if I enabled it i can check which sites was browsed in my home network?And the second question: if Linksys can store the browsed sites history and if I will use a VPN connection on my PC or iPhone (not router!) the logs will be still look like before setting-up VPN on PC? So like: [URL] not like: [URL]?
Our office has 4 Cisco Aironet 1140 access points mounted on the ceiling. They are all powered via PoE. Every few days 3 of the 4 access points hang and have to be rebooted. When they hang I am not able to connect to their web interface to check the logs. The fourth, for some reason, always seems to stay alive.
I checked the configuration for all AP's and "Hot Standby" is disabled They are all using static IP addresses. I've tried 2 different banks of static IP addresses and 3 of 4 still hange so I don't think this is an IP conflict. I have saved the configurations and compared them and they are all identical, where possible.
They all have software version: 12.4(21a)JA1
They all have bootloader version: 12.4(23c)JA1
I have tried to download the latest software/firmware, but unfortunately I do not have a valid service contract in place with Cisco and therefore can't download the latest version. All of our CISCO hardware was purchased from Amazon resellers but no luck. I have also tried to contact Cisco and they can't seem to assist either. How I can get a valid service contract that information would also be very useful!!!
why 3 of our 4 access points would hang? When they hang, I can't login to the web interface and the logs seem to reset when I reset each access point. I have also set up an rsyslog server and I don't see a log entry that would indicate a problem.
I have linksys E4500 and I would like to be able to see the website visited vs ip address.Is there a way to enable same or achive same via parental controls.Again I do not want to block a website but monitor which websites are visited. Is this achievable via router or an additional software/hardware required to be used with router
We are using WLC4402 for our Aironet 1240AG access points. The clients are connecting to the access points and are authenticating to the RADIUS server. I am seeing the logs in Server 2008 but they are being rejected due to Network Policy on the NPS server.
Where do I see the Authentication Type on the WLC4400 or the 1240's? In order for the clients (authenticated via Active Directory user) I have to set the Authentication in the NPS Connection Request Policy to "Allow clients to connect without negotiating an authentication method".
I do not have a certificate on the server and my method options are MS-CHAP-v2, MS-CHAP, CHAP, PAP, SPAP, and allow without negotiating. This RADIUS server was moved from Server 2003 IAS to Server 2008 NPS and there were no issues in Server 2003 IAS. I have all authentication methods allowed and it still gives me the error below. Only when I check "Allow clients to connect without negotiating an authentication method" it allows the authentication to proceed.
Client Machine: Security ID: NULL SID Account Name: Fully Qualified Account Name: OS-Version: Called Station Identifier: 00-17-a2-87-54-00: SSID NAME Calling Station Identifier: 00-41-96-b6-e3-27
NAS: NAS IPv4 Address: 192.168.90.24 NAS IPv6 Address: - [code]...
Reason: The user attempted to use an authentication method that is not enabled on the matching network policy.
Region : UnitedKingdom Model : TL-WR841N Hardware Version : V7 Firmware Version : 3.13.9 Build 120201 Rel.54965n ISP : Linpop
I have had my WR841N for about a year, supplied to me by my WISP. I like the router in terms of facilities but it seems to have one really annoying problem.
The router becomes inaccessible via the webpage after a random period of several days. I have at times associated the issue with occasional loss of radio broadband service but it is not always so. To try and further localise the problem I set the router up to send emails of the log to me every two hours from 17/04/2013 but today for the second time the emails stopped arriving after the 02:29 message and the router is inaccessible again. The router previously locked up with loss of broadband service on 26/04/2013 sometime after emailing a log at 02:41 on that day but had been running without issue from a cold restart at 12:25 as soon as I noticed loss of service. Today I have not lost broadband service and so even though I am no longer receiving an emailed log or able to access the router via its webpage I am leaving well alone for the present. Some months ago when I originally noticed the web access issue I downloaded and installed the latest firmware TL-WR841N-v7-120201 and I note that there have been no further firmware releases for the v7 model.
My broadband service is delivered via radio link from a local transmitter mast and is reliable with typical download speed of 20-30Mbps and 30-40Mbps upload, seldom if ever affected by weather so I now feel the problem is inherent in the router rather then being the result of some issue affecting broadband service which has been solid since 26/04/2013
Without the log I have no way of knowing what was happening when the router became inaccessible but I attach the last 24 hours of received log below.
May 5 00:59:42 DHCP NOTICE DHCPC Send REQUEST to server d91650b2 with request ip c3cecc76 May 5 02:29:44 OTHER INFO Mail successfully.
I have a question about VPN Concentrator FTP Backup configuration to get logs on FTP server. I have configure FTP Backup with all details but I still do not see any logs on FTP server. Do you know what could be the issue? I have never used Concentrator and not sure what needs to be done to get in working condition. I am using VPN Concentrator 3015 series.
I am running two ASA 5520 routers synched up with eachother. I had a massive connectivity issue this weekend that I am investigating. Now I have figured out how to get the live logging but I need to know how to get the old logs from my router.
I have 3 ACS servers placed throughout N. America. I it set up so that ACS01 is primary and ACS02 and ACS03 are secondary. When i look at the logs for passed/failed authentications in radius or tacacs I cannot see anything from ACS03 logging. This is weird because just a few weeks ago it worked perfectly. In fact, ACS03 is the most active server since this site is using it for wireless phones and tacacs and the other 2 are just using ACS for wireless networking. I went through the log settings and every server is set up the same as the others (except the primary) so it should be logging ACS03 the exact same as 01 and 02.Anyway it seems like a small problem but i need the logs to work correctly to properly administrate security.
My iphone started resetting the connection every 2 minutes today. I noticed that the date maximum is Dec 31, 2012. My logs are getting messed up, and NTP isn't setting. Is there a firmware update for REV E3?? I'm at 5.10 right now.
We recently had to rebuild our ACS server. Now when we have an 802.1x authentication failure and look at the RADIUS logs for the specific user, it does not show us the MAC address of the device the user tried to login with. We use this all the time because users have PDAs and other mobile devices that they save their passwords on. Then when they change their domain password on their laptop, they don't change it on their PDA which then tries to authenticate them using the wrong password and eventually locks them out. We need to see the MAC address so we can pinpoint which device is causing the lockout. The report I am generating is when you go to this location: Monitoring & Reports > ... > Reports > Catalog > User > User_Authentication_Summary
I have hardware version 2 and firmware 3.0.2.01 (latest firmware available for this hardware version I believe) and I cannot get it to email me logs. I have entered my outlook address and our SMTP server.The log says that it's failing each time it attempts. I have scoured the internet and I cannot find a solution that will work for me. I have found some talk of adjusting an MTU setting which is supposed to be located under the firewall / general tab.
I have turned on 'Local log' and 'output blocking event log' on my WRVS4400N v2 with latest fw.When I am clicking 'view log' button I can't see anything in empty fields. When I am trying to change logs genre I have empty fields all time.
I have a 5508 wireless lan controller we have two SSID configured Profile Name : Corporate and Guest When I go look at the Most Recent Traps all I see is Client with Mac address blah has joined your corporate, this goes on for sometime. But I am unable to see any of the Guest logs joining the network, I have since then grabbed my laptop and connected to the guest log. I still dont see any logs in Most Recent Traps for the Guest SSID WLAN configuration, I then blocked my Mac address and tried to connect again, No logs. I need to also montior the guest network is there some special tick box I need to apply for this to work? Once the guest is connected I can view them in the clients list but it never shows them on MOST RECENT TRAPS but I want to see the guests account connecting or failing to connect as we currently have a rogue device annoying me.
what is the meaning of the following log messages on Cisco 7604 Core routers. The Core router is configured with 2 STM card configurations with Vlan assignments: [code]
We are using almost 10 Nexus 5k in our DC currently we are getting same error logs in all Nexus 5k." ntpd[4746]: ntp:time reset +0.279670 s " ,Is it major error or just for reset time?
Noticed tacacs authorization logs when you change password for a user ?? in authorization logs I can see the new password but same I can not see in accounting logs ? is it a normal behaviour ?? or do we need to do something to hide the password in authorization logs ?
For example if i type command username xyz priv 15 secret cisco 123
I see this command in accounting logs as uername xyz oriv 15 secret *** where as in tacacs authorization logs it shows username xyz priv 15 secret cisco 123