Filter for ASA or FDM-Managed Device Syslog Events but not ASA NetFlow Events

This task allows you to isolate syslog events for troubleshooting and analysis by filtering out NetFlow events that may clutter the event view.

This procedure finds only syslog events by ensuring NetFlow events are excluded from both the general filter settings and the ASA Events filter tree.

Procedure


Step 1

From the Security Cloud Control Home page, click Firewall.

Step 2

In the left pane, choose Events & Logs > Events > Event Logging.

Step 3

Click the Filter icon The image illustrates the filter settings used to exclude ASA NetFlow events from syslog events, highlighting the configuration options necessary for this process. and pin the filter open.

Step 4

Scroll to the bottom of the Filter pane and make sure the Include NetFlow events filter is unchecked.

Step 5

Scroll back up to the ASA Events filter tree, and make sure the NetFlow box is unchecked.

Step 6

Select the rest of your ASA or FTD filter criteria.


The event logging interface now displays only ASA or FTD syslog events with NetFlow events excluded from the view.