Describes About the Remote Access Log Report in Cisco Secure Access. The Remote Access Log report lists users that have remotely connected to Secure Access and requested access to destinations.
The Remote Access Log report lists users that have remotely connected to Secure Access and requested access to destinations. Some relevant fields to aid debugging and trouble-shooting remote access sessions include:
-
Display Username for Failed Events – Significantly improves how quickly issues can be tracked and addressed.
-
ASA Syslog Message ID Extraction Support – Offers detailed insights by identifying the specific sys-log messages used in the remote access logs.
-
Device ID – Includes the device ID with every event, providing critical help to network administrators in numerous ways.
-
Failed Events for Posture – Provides vital information for effective triage during failed connection attempts.
You can schedule automatic delivery of Remote Access Log reports or export them as CSV files for further analysis. For more information, see Schedule a Remote Access Log report and Export Report Data to CSV.
The exported CSV file of Remote Access Logs includes the following columns: Date, Time, User, Device Name, Connection Event, Event Details, Public IP, Internal IP, VPN Profile, Session Type, OS Type and Versions, Secure Client Version, Session Duration, and Region.
You can use filters to refine results and help identify security issues that require attention.