This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to track SSL VPN / Local user password change events?

In XG firewall we use local users with VPN group membership for remote SSL VPN access to our company. As per company policy we need to keep log of user password changes by admin as well as from SSL VPN web console by users themself. Is there any provision in sophos for such logs



This thread was automatically locked due to age.
Parents
  • Hey  

    By default, these password changes are not recorded as log entries. You would have to place the csc.log into debug mode to create log entries for such password changes.

    "csc custom debug" - Enable/disable debugging

    Unfortunately, the csc log is overwritten once the file becomes full. This may potentially occur very quickly and therefore not be useful for such record-keeping that you intend for. You will have to configure a syslog server like Sophos iView to offload the log file in order to store all the information completely.

    I hope this helps.

    Regards,

    FloSupport | Community Support Engineer

Reply
  • Hey  

    By default, these password changes are not recorded as log entries. You would have to place the csc.log into debug mode to create log entries for such password changes.

    "csc custom debug" - Enable/disable debugging

    Unfortunately, the csc log is overwritten once the file becomes full. This may potentially occur very quickly and therefore not be useful for such record-keeping that you intend for. You will have to configure a syslog server like Sophos iView to offload the log file in order to store all the information completely.

    I hope this helps.

    Regards,

    FloSupport | Community Support Engineer

Children
No Data