Cisco Security :: 4.7.2 / Nac Agent Requirement Type Audit?

Feb 7, 2011

i can configure a requirement type as audit (opposed to mandatory or optional), so the client will still access the network, the user will not be notified, and the information will be sent to the cas.It is possibile to generate an email or similar automated process to notify administrators on these audits?
 
(version in use 4.7.2)

View 2 Replies


ADVERTISEMENT

Cisco Security :: PIX 515E Logging For Audit

Oct 17, 2011

We have a PIX 515E running ver 6.3 and we want to implemente some sort of logging to keep track of who/when logs in to the PIX and if they make any config changes or to the file system. All of this is for forensic purposes in the future. I have already looked at some PIX docs but I don´t seem to find what I am lokking for.

View 1 Replies View Related

Cisco Firewall :: Security Context License Requirement - ASA5520

Jan 14, 2013

A simple question - I have ASA 5520s and was wondering what license is required to create multiple (more than default 2) security contexts.

The ASA already have ASA 5520 VPN Plus license.
 
Software Version 8.4(1)

View 2 Replies View Related

Cisco Security :: Use NAC 4.8 Web Agent Login With Ipad?

Jun 13, 2011

I'm using NAC 4.8, and I'd like to login using NAC Web Agent on Ipad. When I'm trying to do that, I'm receiving a message on Ipad that I need to install Java Plug-In, but there is no JavaPlug-in available for Ipad. Any additional configuration that I have to do on NAC Manager to be able to access the network using NAC Web Login on Ipad ?

View 3 Replies View Related

Cisco Security :: Clean Access Agent 4.0.5 Certificate

Feb 9, 2011

We have NAC 4.0.5 and windows active directory domain the clients log on to the client to access the network with their domain credentials and they used to get the "Certificate is issued from an untrusted." until I installed the url.. certificate to the local certificate store.
 
I seem to have done something on the NAC manager that messed up something, cause now the client considers the certificate issued from a trusted source, BUT a warning stating that the name on the certificate does not match the name.

View 1 Replies View Related

Cisco Security :: NAC 4.8 Agent Stays Open After Moving To Trusted VLAN

Feb 6, 2011

We have some Windows 7 clients that are running the 4.8 agent. NAC will process the user and move them to the trusted vlan. However, the agent stays open and appears to keep running/processing something. THe user can minimize the agent and work normally, and a reboot appears to fix the issue.

View 5 Replies View Related

Cisco Security :: 7200 - No IP Bootp Server On A DHCP Relay Agent?

Mar 18, 2003

I have a Cisco 7200 acting as the DHCP relay agent on my network. From a security standpoint, I want to disable the bootp server, with 'no ip bootp server'. What bearing, if any, does 'no ip bootp server' have on DHCP activity?

View 8 Replies View Related

Security / Firewalls :: Possible To Change Nat Type

May 22, 2012

can i change my nat type from type 3 to type 1

View 19 Replies View Related

Find The Security Type For Wireless Route?

Aug 12, 2012

I have a blackberry bold 9700 thats unlocked , i bought it is miami and im back in trinidad . I connected the phone to my wifi at home but when i went in browser tha promt message saying ata connection refused to the wireless network and your blackberry cannot connect a data session to the WAP gateway.

View 1 Replies View Related

Cisco WAN :: How To Convert From LSA Type 5 To Type 3 And Reverse

Nov 28, 2012

I have some LSA type 5, I want to change it from type 5 to type 3 before send to another Area, How can i do it?

View 1 Replies View Related

Network Audit Tools?

Oct 10, 2012

me what are the best Free tools to do a Network Audit (Thoughput, speed linksswitchs usage, analyse network topology.. etc)

View 7 Replies View Related

Cisco WAN :: WS-C6509-E - How To Enable Audit Log To Server

Apr 10, 2013

In our network we use cisco WS-C6509-E (R7000) Backbobe switch. We want to route syslog to log server.But I couldn't do it. How can solve this problem?

View 7 Replies View Related

Cisco :: LMS 4.0.1 / Understanding Change Audit Report?

Jun 27, 2011

I need to understand why change audit report reports an unused username Name of the user who performed the change. This is the name  entered when the user logged in. It can be the name under which the LMS  application is running, or the name using which the change was performed on the  device. #The User Name field may not always reflect the user name. The  User Name is reflected only when: A config change was performed using LMS. #A config change was performed outside of LMS, but the  network has username-based AAA security model, wherein authentication is  performed by an AAA server, which could be TACACS/RADIUS or local.

View 2 Replies View Related

Cisco AAA/Identity/Nac :: How To Enable ACS 5.2.0.26 Configuration Audit

Oct 12, 2011

ACS and i would like to know how to enable the "Configuration Audit" for someone login to my network devices using their ACS login and i can monitor what they did on it.
  
ACS Version : 5.2.0.26

View 6 Replies View Related

Cisco VPN :: Audit Users On Old 3060 Concentrators?

Sep 13, 2012

We are trying to finally get rid of a couple old 3060 concentrators and would like to see how many active connections are still on.  Is there any reporting that can be seen from the concentrators? 

View 3 Replies View Related

Cisco :: Audit All Input / Output Of Switch 1900

Jan 10, 2012

Sometimes our network lag and i thing there is a computer making this problem. i'd like to audit all input output of all port of a Catalyst 1900. all i manage to do is to enter to the console menu via Telnet.. once here, i try monitoring but i'm afraid to do a bad thing :

     Catalyst 1900 - Main Menu
 
     [C] Console Settings
     [S] System
     [N] Network Management
     [P] Port Configuration

[Code]...

View 2 Replies View Related

Cisco :: 5508 / NCS Prime 1.3 Controller Audit Status Mismatch?

May 14, 2013

When performing an audit from NCS Prime 1.3 on our 5508 controllers (500 lic)  we are getting mismatch messages from many of our 3602i AP's that say the following...
 
(Type)Configuration Name     Audit Status              Attribute           Prime Infrastructure Value     Controller Value
 (AP APname, Interface) 802.11a/n     Mismatch     Spectrum Intelligence      true                                       false
  
These AP's are not configured as Spectrum Intelligence on the controllers, rather as local. It seems that NCS believes that they are supposed to be SI. We have refreshed the config from controller many times but this does not change. The 5508's run v.7.2.111.3 Is there a change I can make on NCS or otherwise to make this mismatch go away? Is this a bug? It is not causing any problems (that we can see) but as most would rather not have these mismatches.

View 2 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.4 - Audit Logs Operated By Secondary Instance?

Mar 28, 2013

I'm using ACS 5.4p2 within distributed systems: one primary and one secondary instance.For now, primary instance is acting as Log Collector server and I can see any AAA audit logs.

When the primary instance fails I can authenticate successfully using the secondary instance.However, when primary instance comes back, I'm not able to see any audit logs operated by secondary.

View 9 Replies View Related

Cisco :: LMS 4.1 Device Change Audit Lists Wrong Users?

Aug 14, 2011

I have noticed that under the Device Change Audit list under the configuration dashboard. LMS lists the wrong user for the last change. For example. User ABC performed a change on a switch yesterday but switch shows user XYZ has performed the change.
 
e.g.
 
SwitchA
 
! Last configuration change at 16:27:06 AEST Mon Aug 15 2011 by ABC
 
User XYZ then performs changes on switchB, switchC. These show up correctly. but the change on switchA shows user XYZ instead of ABC.
 
User XYZ has never logged into the switchA in question.

View 1 Replies View Related

Cisco :: Ciscoworks LMS3.2 Not Showing Latest Configuration / Change Audit Report

Dec 19, 2012

My cisco works LMS3.2 is  not showing recent configuration of my Cisco devices. also it dont show any change report on last 24 hours or even if i select x number of day, looks like its not saving any changes made on devices.
 
today i logged in and cisco ASA was showing this in status as well Configuration Last Archived Time    May 03 2012 11:27:46 EDT  on checking i could see it is same date when cisco ASA was added in cisco works. do i need to click some where for auto update configuration changes and latest confoguration in cisco works setting?

View 1 Replies View Related

Cisco VPN :: C1941 / License Requirement For IOS SSL VPN

Aug 16, 2011

I want to configure IOS SSL VPN on C1941 Router. let me know if any additional License is required for that.

View 1 Replies View Related

Cisco Switching/Routing :: 2811 Disable Audit-trail For Icmp Packets In CBAC Logging

Mar 23, 2013

I have a cisco 2811 router set up as a nat/firewall gateway for my network. I've configured it for CBAC on using ip inspect and an access list.What I want is to use audit-trail to record network traffic (which means sending syslog messages to a server) concerning established sessions from my own network to locations in the outside. If i configure this using ip inspect audit-trail and no ip inspect alert-off, the configuration looks like this: [code] which works just fine, but there is the matter of icmp packets.
 
Since i use polling software that needs to check some machines in the outside part of the network, it is only natural that several icmp sessions are established through the Inspection Rule per minute. The problem is that since these sessions are recorded along with everything else, my syslogs are flooded with these (since i am using logging trap informational) to the point that more messages are generated about icmp than all other traffic combined, especially in non-working hours.What I am asking is a way for the audit-trail to be selecively disabled for icmp, so that the outgoing (echo) &incoming (echo reply) sessions can be established without generating syslog messages.

View 1 Replies View Related

Cisco LAN :: Power Supply Requirement For SM-ES3G-16-P

Jul 1, 2012

I need 3925 router and i want to install SM-ES3G-16-P etherswitch module with PoE into it. So my question is do I need PoE power supply or not? Will PoE ports on this module work with basic AC power supply?

View 2 Replies View Related

Cisco WAN :: 6500 IOS Upgrade Memory Requirement

Feb 20, 2013

I am upgrading 6500 switch from old ios to new one and the new one requires 512/512 memory to be free below is the show ver and sh sup-bootflash,
 
sw-cta2-i8-off>sh ver
Cisco IOS Software, s72033_rp Software (s72033_rp-IPSERVICESK9-VM), Version 12.2             

[Code].....

View 1 Replies View Related

Cisco VPN :: Memory Requirement For Anyconnect On ASA 5510?

Apr 8, 2012

I am trying to load the anyconnect VPN client package v3 for windows and Mac on ASA 5510. The ASA has 256MB for RAM and Flash. After I uploaded pkg files and selected the 2 files and applied from ASDM, ASDM spots responding...
 
I tried to tftp the running config from ASA to my laptop to analyse but got "No memory available" message...
 
So it seems like the "unzip" process of the pkg files used up memory... what is really the requirement of the mini Memory/RAM on ASA for hosting anyconnect Clients for 2 OS platform? Requirement on Cisco web site is kind of vague.

View 4 Replies View Related

Cisco Switching/Routing :: Power Requirement For 6506E

Jun 2, 2013

I am looking the power requirement for 6506E in data sheet and it shows that is support 3000, 4000, 6000 & 8700W. I have currentely 4000W power source for my new 6506E switch. will it work with below modules in new 6506e ?

View 2 Replies View Related

Cisco Wireless :: Radius Server Requirement With Wlc 2504?

Jul 12, 2012

I want to know if its nessary to install Certificate authority on your radius server. If we have a CA server already in the domain can we use that for this purpose or we have to install certificate authority on our DC. 

View 1 Replies View Related

Cisco WAN :: Power Requirement For 3845 With Two (2) Switch Modules

Aug 17, 2011

I would like to know if any additional power would be needed for a 3845 (currently with one (1) NME-XD-48ES-2S-P) to which another 24-port switch module is added. Thus, I would have two (2) switch modules on the 3845 for a total of 72 ports.
 
I have been unable to find specific power requirements detailing the requirements with 1 ethernet module, 2, etc.

View 14 Replies View Related

Cisco Application :: WS-SUP720-3B SP DRAM Requirement For ACE30

Oct 28, 2011

Last month I was reviewing following Cisco document, in which Cisco mentioned that ""To avoid possible memory fragmentation in the forwarding information base (FIB), Cisco recommends that the switch processor (SP) DRAM to a minimum of 1 GB ""
 
[URL] 
 
Since this document has been revised in Oct 2011 and, I can't no more find the above memory recommendations.
 
I want know if any one using WS-SUP720-3B with IOS SXI6 and Cisco ACE30 has gone for upgrading the SP DRAM from 512MB(default) to 1GB ?

View 1 Replies View Related

Cisco Firewall :: ASA 5540 - Firmware Upgrade Requirement?

Apr 8, 2013

We have a old Cisco ASA5540 firewall running on firmware version 7.0 and also a Firewall Service Module (FSWM) running on firmware version 2.3.
 
My question is if I would like to upgrade the Cisco ASA5540 firmware version to 7.1 above and the FWSM firewall version to 3.1 above, any requirement on the memory size or hardware to perform the firmware upgrade activity, do I require to do some memory or hardware module upgrade activty first before the firmware upgrade ?
 
Any restriction, shortcoming and  pre-requites to do before the firmware upgrade activity ?

View 2 Replies View Related

Cisco Switching/Routing :: 1000BASE-LX10 - SFP IOS Version Requirement?

Dec 31, 2012

Unforunately I have not been able to find any IOS version requirement for a brand-new 1000BASE-LX10 SFP (MGBLH1) in the internet.

The IOS version in use on this stack is:Cisco IOS Software, C3750 Software (C3750-IPBASEK9-M), Version 12.2(55)SE6, RELEASE SOFTWARE (fc1)

[Code]... 

I have searched for this error and beside a third-party module (this is a Cisco SFP) the reason could be that newer IOS version is required. Before I'll request an IOS update to the stack with our internal team, IOS version required for this module to run properly and maybe a link to an overview to lookup such requirements in the future.

View 5 Replies View Related

Cisco Switching/Routing :: 3750 License Requirement For Upgrading IOS To K9

Nov 9, 2011

I have cisco 3750 with ipservices license and I am running with c3750e-universal-mz.122-50.SE2. And I would like to upgrade the IOS " k9" IOS. ie c3750e-universalk9-mz.122-50.SE2. Is there any license required for that ?Also any difference in the IOS upgrade procedure.

View 1 Replies View Related

Cisco Switches :: Disable Password Expiration Requirement On SG300?

May 13, 2012

I have a dozen or so SG300 switches and a few months after configuring and deploying them, I have noticed that as I'm logging back into them, I'm being told that I'm required to change my password as it has expired.  The problem I have with this is that we pick a super complex password and stick with it because we have bots that telnet to the switches and pull configs and make config changes.  I do NOT wish to have this enforcement turned on for these switches and I think it should be an option but neither the Admin Guide, the command line, nor the GUI seem to have any mention of this "feature".  how to disable this feature?

View 3 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved