Cisco VPN 3000 Gateway
- What is Discovered and Monitored
- Event Types
- Rules
- Reports
- Configuration
- Settings for Access Credentials
What is Discovered and Monitored
Protocol | Information Discovered | Metrics Collected | Used For |
---|---|---|---|
SNMP | |||
Syslog |
Event Types
In ADMIN > Device Support > Event Types, search for "cisco_vpn" to see the event types associated with this device.
Rules
There are no predefined rules for this device.
Reports
There are no predefined reports for this device.
Configuration
SNMP
- Log in to your device with administrative credentials.
- Go to Configuration > System > Management Protocols > SNMP Communities.
- Click Add.
- For Community String, enter
public
.
Syslog
- Go to Configuration > System > Events > Syslog Servers.
- Click Add.
- Enter the IP address of your FortiSIEM virtual appliance for Syslog Server.
- Add a syslog server with FortiSIEM IP Address.
Sample Parsed Cisco VPN 3000 Syslog Message
<189>18174 01/07/1999 20:25:27.210 SEV=5 AUTH/31 RPT=14 User [ admin ] Protocol [ Telnet ] attempted ADMIN logon. Status: <REFUSED> authentication failure
Settings for Access Credentials
Set these Access Method Definition values to allow FortiSIEM to communicate with your device.
Setting | Value |
---|---|
Name | <set name> |
Device Type | Cisco VPN 3K |
Access Protocol | See Access Credentials |
Port | See Access Credentials |
Password config | See Password Configuration |