<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Replacement for Cisco security Manager in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950311#M23952</link>
    <description>Hi,&lt;BR /&gt;The obvious (to me) replacement for CSM is CDO (Cisco Defense Orchestrator), this is a cloud managed platform to manage cisco platforms such as ASA, Firepower, Umbrella and to a lesser extent IOS devices. I don't think you can really manage IOS device ACLs to the same extent as you can manage ASA or FTD firewall rules. Other cisco solutions such as ISE/SDA deploy and manage Trustsec SGACLs on IOS devices, which could be considered as replacements/alternative for ACLs.&lt;BR /&gt;&lt;BR /&gt;HTH</description>
    <pubDate>Wed, 30 Oct 2019 09:35:01 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2019-10-30T09:35:01Z</dc:date>
    <item>
      <title>Replacement for Cisco security Manager</title>
      <link>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950241#M23942</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;I've been using CSM for years managing several ASAs and access lists on our internal core routers. All ASAs are soon replaced by Firepower Threat Defences and in this age of cloud/web based management CSM feels really old. I've had help from our partner checking for options in the Cisco product suite but none has yet felt like a clear replacement for ACL management on a router platform.&lt;/P&gt;&lt;P&gt;So I'm searching far and wide, this being a Cisco forum but does anyone have any suggestions on how to manage router ACLs these days? I mean router ACLs is still a relevant feature these days, right?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Fredrik&lt;/P&gt;</description>
      <pubDate>Wed, 30 Oct 2019 06:42:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950241#M23942</guid>
      <dc:creator>hoffa2000</dc:creator>
      <dc:date>2019-10-30T06:42:13Z</dc:date>
    </item>
    <item>
      <title>Re: Replacement for Cisco security Manager</title>
      <link>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950311#M23952</link>
      <description>Hi,&lt;BR /&gt;The obvious (to me) replacement for CSM is CDO (Cisco Defense Orchestrator), this is a cloud managed platform to manage cisco platforms such as ASA, Firepower, Umbrella and to a lesser extent IOS devices. I don't think you can really manage IOS device ACLs to the same extent as you can manage ASA or FTD firewall rules. Other cisco solutions such as ISE/SDA deploy and manage Trustsec SGACLs on IOS devices, which could be considered as replacements/alternative for ACLs.&lt;BR /&gt;&lt;BR /&gt;HTH</description>
      <pubDate>Wed, 30 Oct 2019 09:35:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950311#M23952</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2019-10-30T09:35:01Z</dc:date>
    </item>
    <item>
      <title>Re: Replacement for Cisco security Manager</title>
      <link>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950350#M23953</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;Our Cisco partner did some research into CDO and advised us it wasn't intended for IOS management. For example was there no license aimed at the IOS devices, only firewalls and we will not manage those through CDO.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;/Fredrik&lt;/P&gt;</description>
      <pubDate>Wed, 30 Oct 2019 10:40:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950350#M23953</guid>
      <dc:creator>hoffa2000</dc:creator>
      <dc:date>2019-10-30T10:40:53Z</dc:date>
    </item>
    <item>
      <title>Re: Replacement for Cisco security Manager</title>
      <link>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950358#M23954</link>
      <description>Yes, management of IOS devices is certainly limited compared to other solutions on CDO. CSM is still being updated however, there was an update released only recently. Perhaps Cisco Prime Infrastructure meets your requirements, it can be configured to deploy templates for ACLs etc...although I personally have never used it.</description>
      <pubDate>Wed, 30 Oct 2019 10:53:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950358#M23954</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2019-10-30T10:53:02Z</dc:date>
    </item>
    <item>
      <title>Re: Replacement for Cisco security Manager</title>
      <link>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950414#M23955</link>
      <description>&lt;P&gt;CDO does not currently support IOS device management.&lt;/P&gt;
&lt;P&gt;There are non-Cisco products such as Tufin Orchestration Suite (TOS) SecureTrack that support ASA, FTD, IOS etc.:&lt;BR /&gt;&lt;A href="https://forum.tufin.com/support/kc/latest/index.htm#Suite/11198.htm" target="_blank"&gt;https://forum.tufin.com/support/kc/latest/index.htm#Suite/11198.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;It will be "reassuringly expensive" though.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 30 Oct 2019 12:12:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/replacement-for-cisco-security-manager/m-p/3950414#M23955</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-10-30T12:12:06Z</dc:date>
    </item>
  </channel>
</rss>

