set up an accesslist permiting the IP address and then log the activity against the access list.
SAMPLE OUTPUT:
07-01-2001 18:56:00 Local7.Info 192.1.1.1 30: 3w5d: %SEC-6-IPACCESSLOGDP:list 109 denied icmp 192.168.50.20 (Ethernet0 00d0.09f7.14bc) -> 192.1.3.4 (0/0), 1 packet
Command:
access-list (IP extended)
To define an extended IP access list, use the extended version of the
access-list global configuration command. To remove the access lists, use
the no form of this command.
access-list access-list-number [dynamic dynamic-name [timeout minutes]]
{deny | permit} protocol source source-wildcard destination
destination-wildcard [precedence precedence] [tos tos] [log | log-input]
MikeS
"Diplomacy; the art of saying 'nice doggie' till you can find a rock" Wynn Catlin