Configuring syslog on NetGear FM114P
The FM114P supports Syslog since the firmware version
1.3. However, in this tutorial I am using firmware version 1.4 Release 17
Beta.
It is the most recent firmware versions some new features and settings.
Please check this first over the web configuration
interface. The Router Status should look like the following screenshot

If you don't have the latest firmware version installed, download it from the following website
In my example, I am using the 172.21.x.x IP Range with
the subnet mask 255.255.0.0. My router has the IP 172.21.1.1 and my Syslog
Server the IP 172.21.0.1.
Enabling Syslog logging is quit simple, just open the web
configuration interface, and go to the Security->Logs site. There is a
Syslog configuration part where you can enable "Send to this Syslog server
IP address". Configure it to your Syslog Server (In my case 172.21.0.1).
Above the Syslog part you will find the logging options.
Enable the options you want to be logged. But be careful with the "All
incoming and outgoing traffic" option. This can make the router very laggy
if you have a lot of traffic. The FM114P unfortunately has only 4 MB of memory,
which is the main reason why it becomes unstable if you enable this option.
For more details of the FM114P Router, see this
pdf document. Below is a screenshot, which shows how the configuration
should look like.

It is usually a good Idea to reboot the router after
changing this settings. It sometimes has problems when applying the changes directly.
If you have configured WinSyslog or MonitorWare Agent on
the Server 172.21.0.1, you should get Syslog messages send to your Syslog
Server. If you are using the File Logging Action (See the product manual for
help setting this up), you should get log files which looks like the following
sample lines:
...
2003-01-22,00:00:59,2003-01-22,00:00:59,172.21.1.1,23,5, 2003 Jan 22 00:05:32
(FM114P-c-2d-54) 217.224.156.17 ICMP packet forwarded -
Source:172.21.0.1,[Destination Unreachable]LAN -
Destination:80.129.153.228,WAN - [Outbound Default rule match]
2003-01-22,00:02:24,2003-01-22,00:02:24,172.21.1.1,23,4, 2003 Jan 22 00:07:06
(FM114P-c-2d-54) 217.224.156.17 TCP packet dropped -
Source:62.57.136.253,46094 WAN -
Destination:217.224.156.17,5689 LAN - [Inbound Default rule match]
...
Still problems enabling syslog? Find the solution in our
forum or post a question there!
Syslog messages generated by these products can be received
by MonitorWare Agent and
WinSyslog.
All information in this section is to the best of our knowledge but without warrenty of
any kind. This is free information - use it at your sole risk.
[Back to Syslog Enabled
Products]
|