Cisco ASA 55xx VPN Users

Templates, scripts for templates, scripts and requests for templates.

Moderators: Developers, Moderators

Post Reply
mrscary
Cacti User
Posts: 149
Joined: Tue Aug 26, 2014 2:58 pm

Cisco ASA 55xx VPN Users

Post by mrscary »

I have a question for those more experienced with making templates, etc.
I dont even know if this is possible, but.......

on such a device, if you go to Monitoring and choose properties\the IP of your device\identity\users you can see all the users connected to the VPN.

you can also see this on the VPN area on the monitoring section, go to VPN Statistics\Sessions and see everyone
you can even log this via a command line on the device.

i am looking for a way (again, this may not be possible with CACTI, to have that information logged for analysis, so i can see who was on, when they logged on, and for how long.

probably not possible with this awesome tool, but i had to ask.
riversdev0
Posts: 10
Joined: Sat Apr 25, 2020 10:53 am
Location: MN, USA

Re: Cisco ASA 55xx VPN Users

Post by riversdev0 »

Just to make sure I understand the question correctly, you want Cacti to collect an inventory of the VPN users that are attached to the ASA, and the associated statistics of each of those connections? The ASA will reveal all the data you're interested in via SNMP by walking the OID 1.3.6.1.4.1.9.9.392.1.3, and this data can surely be digested by Cacti using its flexible scripting capabilities, but I'm stumbling on how you would want that presented in Cacti? What kind of graph would you produce based upon the data you just gathered?

If what you're looking for is an accounting log to find out when a user attached or detached from the ASA, then you'd be better off collecting those events via syslog as they happen. If you're looking for a pretty graph that shows quantity of VPN users over time, that's where Cacti shines!
Post Reply

Who is online

Users browsing this forum: No registered users and 0 guests