<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic CPU utalization in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709062#M561609</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can find all you need regarding device CPU utilization in the administration guide , under &lt;EM&gt;monitoring&lt;/EM&gt; and also under &lt;EM&gt;system status&lt;/EM&gt; sections.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;A href="http://www.cisco.com/en/US/docs/security/vpn3000/vpn3000_47/administration/admon.html"&gt;http://www.cisco.com/en/US/docs/security/vpn3000/vpn3000_47/administration/admon.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿I was not able to find any NAT rules&amp;nbsp; limitations under Policy management NAT section ,&amp;nbsp; you can double check on lates version code 4.7 configuration guide&amp;nbsp; &lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_installation_and_configuration_guides_list.html"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_installation_and_configuration_guides_list.html&lt;/A&gt;﻿&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would recommend looking&amp;nbsp; into VPN&amp;nbsp; migration path&amp;nbsp; as the&amp;nbsp; VPN 3000&amp;nbsp; series concentrators are end of life.&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5743/ps5749/ps2284/prod_end-of-life_notice0900aecd805cd5a0.html"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5743/ps5749/ps2284/prod_end-of-life_notice0900aecd805cd5a0.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 08 Jun 2011 01:42:37 GMT</pubDate>
    <dc:creator>JORGE RODRIGUEZ</dc:creator>
    <dc:date>2011-06-08T01:42:37Z</dc:date>
    <item>
      <title>CPU utalization</title>
      <link>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709061#M561608</link>
      <description>&lt;P&gt;Hi Guys We have a VPN concentartor which is having few VPN and doing&amp;nbsp; NAT (Static and PAT) as well. One of our customer has added huge number&amp;nbsp; of serves so we have to do hundreds of static and PAT rules.we have&amp;nbsp; really large number of customers which are growing and do so the NAT in&amp;nbsp; VPN concentartor.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am bit concern and want to know what will be the best way to check that how my VPN concentartor is doing .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As we all know its a GUI i try to check few stuff but couldnt get any info.... the model number is 3015.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just want to know how many NAT rules it can take more before it dies on me &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; as i cant afford it&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks guys&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any way we can check the percentage it working on CPU and stuff as i tried to see it but no success&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:39:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709061#M561608</guid>
      <dc:creator>The_guroo_2</dc:creator>
      <dc:date>2019-03-11T20:39:51Z</dc:date>
    </item>
    <item>
      <title>CPU utalization</title>
      <link>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709062#M561609</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can find all you need regarding device CPU utilization in the administration guide , under &lt;EM&gt;monitoring&lt;/EM&gt; and also under &lt;EM&gt;system status&lt;/EM&gt; sections.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;A href="http://www.cisco.com/en/US/docs/security/vpn3000/vpn3000_47/administration/admon.html"&gt;http://www.cisco.com/en/US/docs/security/vpn3000/vpn3000_47/administration/admon.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿I was not able to find any NAT rules&amp;nbsp; limitations under Policy management NAT section ,&amp;nbsp; you can double check on lates version code 4.7 configuration guide&amp;nbsp; &lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_installation_and_configuration_guides_list.html"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_installation_and_configuration_guides_list.html&lt;/A&gt;﻿&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would recommend looking&amp;nbsp; into VPN&amp;nbsp; migration path&amp;nbsp; as the&amp;nbsp; VPN 3000&amp;nbsp; series concentrators are end of life.&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5743/ps5749/ps2284/prod_end-of-life_notice0900aecd805cd5a0.html"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5743/ps5749/ps2284/prod_end-of-life_notice0900aecd805cd5a0.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 08 Jun 2011 01:42:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709062#M561609</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2011-06-08T01:42:37Z</dc:date>
    </item>
    <item>
      <title>CPU utalization</title>
      <link>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709063#M561610</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for that.....now you are right these items are end of sale so have to go to a new device....i need your help in that we have a internet router then we have a VPM concentartor (which terminated VPN over internet) and does NAT as well......vpn concentator is conected to a firewall which has policies and stuff...........the firewall is PIX....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so if i have to change/upgarde it ASA is the option shd i get two ASA's one to terminate VPN (just like VPN concenattor) and other to repolave PIX or shd i get only one to do both jobs.....what do you reommend&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 08 Jun 2011 04:57:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709063#M561610</guid>
      <dc:creator>The_guroo_2</dc:creator>
      <dc:date>2011-06-08T04:57:33Z</dc:date>
    </item>
    <item>
      <title>Re: CPU utalization</title>
      <link>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709064#M561611</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since you have the concentrator terminating VPN conections&amp;nbsp; and the PIX doing the access control list&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; you can actually have the ASA firewall do both tasks , that is,&amp;nbsp; firewalling and VPN gateway,&amp;nbsp; the question&amp;nbsp; would probably be how to plan in consolidating&amp;nbsp; of two devices into one platform with minimal downtime,&amp;nbsp; this is probably another thread but indeed possible,&amp;nbsp; it is a matter of&amp;nbsp;&amp;nbsp; geting the right tools/resources and good planing .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In addition&amp;nbsp; I shoudl add , It is not required but&amp;nbsp; recommended to implement&amp;nbsp; some kind of failover architecture&amp;nbsp;&amp;nbsp; Active/Standby&amp;nbsp; firewalls,&amp;nbsp;&amp;nbsp; so you should plan for&amp;nbsp; two ASA firewalls&amp;nbsp; for failover architecture migration and deployment&amp;nbsp;&amp;nbsp; to ultimately&amp;nbsp; provide for all functions of firewalling&amp;nbsp; NATing , VPNing routing&amp;nbsp; etc..&amp;nbsp;&amp;nbsp; at your internet perimeter..&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;bellow are some good reference to plan your migration &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX to ASA migration guide&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/partner/docs/security/asa/migration/guide/pix2asa.html"&gt;http://www.cisco.com/en/US/partner/docs/security/asa/migration/guide/pix2asa.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There are some good references and&amp;nbsp; software tools&amp;nbsp; such as the PIXtoASA convertion software ,&amp;nbsp;&amp;nbsp; information&amp;nbsp; found in above link to help you migrate PIX to ASA&amp;nbsp; .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;AS for the VPN concentrator&amp;nbsp;&amp;nbsp; I am not aware of any&amp;nbsp; software tools but have come accross some threads here where Cisco&amp;nbsp; (internal ) may be able to assist you in convertions for the VPN concentrators,&amp;nbsp; Im not able to verify this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But overall you can find prety much all you need pertaining to&amp;nbsp; migration guides here&amp;nbsp;&amp;nbsp; including VPN concentratot to ASA&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/partner/products/ps6120/prod_installation_guides_list.html"&gt;http://www.cisco.com/en/US/partner/products/ps6120/prod_installation_guides_list.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 08 Jun 2011 14:28:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cpu-utalization/m-p/1709064#M561611</guid>
      <dc:creator>JORGE RODRIGUEZ</dc:creator>
      <dc:date>2011-06-08T14:28:04Z</dc:date>
    </item>
  </channel>
</rss>

