Guest

Cisco Security Manager

CSM: How to Keep the Unreferenced Access-Lists

Document ID: 99723



Contents

Introduction
Prerequisites
      Requirements
      Components Used
      Conventions
Problem
Solution
NetPro Discussion Forums - Featured Conversations
Related Information

Introduction

This document describes how to keep the unreferenced access-lists that are not used by other CLI commands, such as an access-group, within deployment in the Cisco Security Manager (CSM).

Prerequisites

Requirements

This document assumes that CSM is installed and works properly.

Components Used

The information in this document is based on the CSM 3.0.1 and later.

The information in this document was created from the devices in a specific lab environment. All of the devices used in this document started with a cleared (default) configuration. If your network is live, make sure that you understand the potential impact of any command.

Conventions

Refer to Cisco Technical Tips Conventions for more information on document conventions.

Problem

In the CSM, the problem is how to keep the access-lists that are not used by other CLI commands, such as an access-group, within deployment.

An example is if the PIX configuration has access-lists that are not a part of an access-group. When the CSM starts to manage the PIX, the CSM must delete those access-lists by default.

Solution

Use this solution in order to solve the problem.

  1. In the CSM Client, choose Tools > Security Manager Administration > Deployment; notice a check-box for remove unreferenced access-lists on device (enabled by default).

  2. Uncheck this option.

    CSMreferenceacl-1.gif

NetPro Discussion Forums - Featured Conversations

Networking Professionals Connection is a forum for networking professionals to share questions, suggestions, and information about networking solutions, products, and technologies. The featured links are some of the most recent conversations available in this technology.
NetPro Discussion Forums - Featured Conversations for Security
Security: Intrusion Detection [Systems]
Security: AAA
Security: General
Security: Firewalling

Related Information



Updated: Oct 26, 2007Document ID: 99723