Cisco Cisco Web Security Appliance S670 Guida Utente

Pagina di 430
 
20-33
AsyncOS 8.1 for Cisco Web Security User Guide
 
Chapter 20      Monitor System Activity Through Logs
  Troubleshooting Logging
Pushing Log Files to Another Server Using SCP
If using Secure Copy Protocol (SCP) to push log files to another server from the Web Security appliance, 
you need to add the remote server’s SSH public host key to the appliance. SSH servers have a pair of 
host keys, one private and one public. The private host key resides on the SSH server and cannot be read 
by remote machines. The public host key is distributed to any client machine that needs to interact with 
the SSH server.
Step 1
Access the CLI.
Step 2
Use the 
logconfig -> hostkeyconfig
 command to access the required area.
Step 3
Use the commands below to perform the required tasks:
Step 4
Commit your changes.
Troubleshooting Logging
Command
Description
New
Add a new key.
Host
Display system host keys. This is the value to place in the remote system’s 
‘known_hosts’ file.
Fingerprint
Display system host key fingerprints.
User
Displays the public key of the system account that pushes the logs to the remote 
machine. This is the same key that is displayed when setting up an SCP push 
subscription. This is the value to place in the remote system’s ‘authorized_keys’ file.