Setting Up Logging Hosts for VPN Gateway Configurations

For VPN gateway configurations, set up logging hosts (Syslog servers) and Radius servers over an IPsec tunnel.

Perform the following steps to configure logging hosts and Radius servers for VPN gateway configurations.

  1. Enter global configuration mode.
    device# configure terminal
    device(config)#
    
  2. To configure a Syslog server, enter the logging host command followed by the IP address of the logging host (Syslog) server.
    The following example configures a logging host with the IP address 192.168.10.10.
    device(config)# logging host 192.168.10.10
    
    Syntax: [ no ] logging host < logging-host-ip-address >
  3. To configure a Radius server, enter the radius-server host command followed by identifying parameters. Specify the host IP address, the UDP authentication port, the UDP accounting port, the server as a default available for any AAA server operation, and the key password.
    The following example configures a Radius server with the IP address 15.15.15.3.
    device(config)# radius-server host 15.15.15.3 auth-port 1812 acct-port 1813 default key tEst1234#
    
    Syntax: [ no ] radius-server host < host-ip-address > auth-port < UDP-port-id > acct-port < UDP-port-id > default key < PASSWORD >

The following example configures both a logging host and a Radius server for use in a VPN gateway configuration.

device# configure terminal
device(config)# logging host 192.168.10.10
device(config)# radius-server host 15.15.15.3 auth-port 1812 acct-port 1813 default key tEst1234#