CISCO-IOS router logs

296 views
Skip to first unread message

Azhar Hj.Mohd Ghazali

unread,
Aug 14, 2023, 11:21:42 PM8/14/23
to Wazuh mailing list
Hi team,

Need help with how to massage logs from cisco ios as below example ;

Aug 14 11:30:49.516 MYT: %SSH-5-SSH2_SESSION: SSH2 Session request from x.x.x.x (tty = 0) using crypto cipher 'aes256-ctr', hmac 'hmac-sha1' Succeeded
Aug 14 11:31:18.170 MYT: %SSH-5-SSH2_USERAUTH: User 'hongth' authentication for SSH2 Session from x.x.x.x (tty = 0) using crypto cipher 'aes256-ctr', hmac 'hmac-sha1' Succeeded


Appreciate your help.

Awwal Ishiaku

unread,
Aug 15, 2023, 2:14:59 AM8/15/23
to Wazuh mailing list
Hi Azhar,
Kindly clarify. Do you want to see alert of these events on the Wazuh dashboard?

Armelo Jashon

unread,
Oct 26, 2023, 7:39:16 AM10/26/23
to Wazuh | Mailing List
yes
Reply all
Reply to author
Forward
0 new messages