How would you go about logging a specific user account that connects via VPN? I've been asked to see if someone is logging into their VPN when they say they are.
Not knowing how they are connecting one of the below should give you
the information for currently connected users.
connected by ssh'ing into the asa box and enter:
show vpn-sessiondb summary ( tells what type of connects are current active
show vpn-sessiondb svc (show SSL VPN Clients)
show vpn-sessiondb remote ( IPsec Remote Access sessions
show vpn-sessiondb webvpn (webvpn connections
show vpn-sessiondb l2l (IPSEC lan-to-lan connections
Test it out by connection yourself as that user does and run the above to see which one you need.
You can also setup logging and pull "ASA-3-716001" for webvpn connections.
Last Wiki Answer Submitted: April 6, 2011 3:17 am by orangehat1,445 pts.
If you live outside the United States, by submitting your email address you consent to having your personal data transferred to and processed in the United States.