<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Next Step for Managing Firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066790#M914673</link>
    <description>&lt;P&gt;Hi, I have deployed ASA 5505 into Five locations and all are connected via STS Tunnel. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now I want to know what is a next step for a Network Admin so that everything could work fine. Which of the softwares would you recommand for logs, monitoring or etc so that I could manage all entire things perfectly and troubleshhot the issues while it requires. Thanks &lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 13:30:11 GMT</pubDate>
    <dc:creator>ray_stone</dc:creator>
    <dc:date>2019-03-11T13:30:11Z</dc:date>
    <item>
      <title>Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066790#M914673</link>
      <description>&lt;P&gt;Hi, I have deployed ASA 5505 into Five locations and all are connected via STS Tunnel. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now I want to know what is a next step for a Network Admin so that everything could work fine. Which of the softwares would you recommand for logs, monitoring or etc so that I could manage all entire things perfectly and troubleshhot the issues while it requires. Thanks &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:30:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066790#M914673</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2019-03-11T13:30:11Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066791#M914676</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco Works suite will do the trick.&lt;/P&gt;&lt;P&gt;It works as SNMP server, syslog, configuration backup, alerts and so on.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As for the management, since there are only 5 ASAs you can use the individual ASDMs. Buying a Firewall MC Software (also part of Cisco Works) doesn;t make sense, since is quite expensive.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The lite version of Cisco Works:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/sw/cscowork/ps2408/prod_brochure09186a00801c0a43.html" target="_blank"&gt;http://www.cisco.com/en/US/products/sw/cscowork/ps2408/prod_brochure09186a00801c0a43.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if this helped.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Daniel&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Aug 2008 16:27:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066791#M914676</guid>
      <dc:creator>5220</dc:creator>
      <dc:date>2008-08-12T16:27:01Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066792#M914680</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, Can I get all features in Cisco ACS? Basically I am looking a softwares through which I could see bandthwidth usage per Tunnel wise and support Nelflow as well. A software which has all feature whether it is too expensive.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Aug 2008 16:37:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066792#M914680</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-08-12T16:37:05Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066793#M914683</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Waiting of your response&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Aug 2008 16:51:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066793#M914683</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-08-12T16:51:34Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066794#M914685</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is this something you have first-hand &lt;/P&gt;&lt;P&gt;experience with or just something you just&lt;/P&gt;&lt;P&gt;read from a Cisco brochure?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If Ciscowork is so good, then why does Cisco&lt;/P&gt;&lt;P&gt;also tout Cisco Security Manager as well?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Aug 2008 22:53:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066794#M914685</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-08-12T22:53:53Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066795#M914689</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In upcoming months, we will be deploying FW on 10 new sites and all will be connected va Tunnel. Which of the software would you recommand? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Aug 2008 23:42:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066795#M914689</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-08-12T23:42:56Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066796#M914692</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I can not recommend you any management software because:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1- I do not have much experience with Ciscowork managing ASA devices.&lt;/P&gt;&lt;P&gt;My previous experience with Ciscowork had not been a pleasant one.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2- I used Cisco Security Manager 2.5 years ago and the product&lt;/P&gt;&lt;P&gt;was/is a horrible.  As a matter of fact, I decided to give it &lt;/P&gt;&lt;P&gt;another try a couple weeks ago.  After installing CSM 3.2 on&lt;/P&gt;&lt;P&gt;my Windows 2003 Enterprise Server with Service Pack 2,  I tried&lt;/P&gt;&lt;P&gt;to install Performance Monitoring on top of CSM 3.2 and it  &lt;/P&gt;&lt;P&gt;refuses to install.  Not a good product, IMHO.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3- Solsoft Policy Server is a somewhat better than Cisco CSM.  &lt;/P&gt;&lt;P&gt;That being said, it is mainly used for Security policy&lt;/P&gt;&lt;P&gt;repository.  It lacks a lot of features in Cisco CSM.  But &lt;/P&gt;&lt;P&gt;in terms of policy management, it is definitely better than&lt;/P&gt;&lt;P&gt;CSM for sure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've been using Checkpoint Provider-1 for years so I have &lt;/P&gt;&lt;P&gt;a very high set of bar for management software product.  Cisco&lt;/P&gt;&lt;P&gt;CSM and Solsoft are error-prone and sluggish (due to java-based).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;By the way, if someone has successfully installed Performance&lt;/P&gt;&lt;P&gt;Monitor module on top of Cisco CSM, please let me know as well.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Aug 2008 01:44:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066796#M914692</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-08-13T01:44:42Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066797#M914699</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Farrukh :- Any suggestion&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Aug 2008 02:46:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066797#M914699</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-08-13T02:46:13Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066798#M914705</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have used both Solsoft and CSM.  In my opinion if CSM is set up correctly, utilizing shared policies, object overrides, etc.  It is much more useful and easier to manage a large number of devices or a small number of devices with a large number of rules or policies than Solsoft.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Talk with someone that has completed a successful deployment of CSM and then try it, I believe you should be able to demo it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As far as, performance monitor goes, I have successfully installed it on the same box as CSM, but it was on a CSM 3.1.1 box.  I don't believe I had to do any tricks to make it happen, I just followed the installation steps documented here on CCO.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Aug 2008 14:17:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066798#M914705</guid>
      <dc:creator>krowland123</dc:creator>
      <dc:date>2008-08-14T14:17:45Z</dc:date>
    </item>
    <item>
      <title>Re: Next Step for Managing Firewall</title>
      <link>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066799#M914710</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"As far as, performance monitor goes, I have successfully installed it on the same box as CSM, but it was on a CSM 3.1.1 box"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Fair point.  I have Windows 2003 Enterprise&lt;/P&gt;&lt;P&gt;Server with Service Pack 2 and Java version&lt;/P&gt;&lt;P&gt;1.6 running on it.  There are no other &lt;/P&gt;&lt;P&gt;applications running on this server.  &lt;/P&gt;&lt;P&gt;Hardware is an IBM x3650 with 10GB RAM and&lt;/P&gt;&lt;P&gt;dual "quad-core" Processors 3.16GHz.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I installed CSM 3.1.1 on this.  Installation&lt;/P&gt;&lt;P&gt;went through fine.  Reboot the box after &lt;/P&gt;&lt;P&gt;that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I then installed Performance Montior.  That&lt;/P&gt;&lt;P&gt;installation went fine too.  Reboot the box&lt;/P&gt;&lt;P&gt;after that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I then installed CSM 3.1.1 Service Pack 3.&lt;/P&gt;&lt;P&gt;That installation went fine.  Reboot the box&lt;/P&gt;&lt;P&gt;after that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I then logged into the CSM box from a Dell&lt;/P&gt;&lt;P&gt;Desktop Optiplex Gx620, 4GB RAM and 3.2 GHz&lt;/P&gt;&lt;P&gt;CPU.  URL link is &lt;A class="jive-link-custom" href="http://CSM-IP:1741" target="_blank"&gt;http://CSM-IP:1741&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I then installed CSM client n the dell &lt;/P&gt;&lt;P&gt;desktop.  connect again the CSM client.  Then&lt;/P&gt;&lt;P&gt;I download the CSM client service pack 3.  &lt;/P&gt;&lt;P&gt;Installed the CSM client after that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now I can log into the CSM with the CSM&lt;/P&gt;&lt;P&gt;client.  The jump start page showed up.&lt;/P&gt;&lt;P&gt;I closed the jump start page.  Now on my&lt;/P&gt;&lt;P&gt;screen, it tells me "connect to DCR" and&lt;/P&gt;&lt;P&gt;it hangs after that.  I also tried from &lt;/P&gt;&lt;P&gt;different machines as well but same result.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I tried URL &lt;A class="jive-link-custom" href="http://csm-ip:1741" target="_blank"&gt;http://csm-ip:1741&lt;/A&gt;, I tried&lt;/P&gt;&lt;P&gt;to go to Performance Monitor tab, it opens&lt;/P&gt;&lt;P&gt;another Browser and hang after that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;anyone know why?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Aug 2008 09:54:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/next-step-for-managing-firewall/m-p/1066799#M914710</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-08-15T09:54:29Z</dc:date>
    </item>
  </channel>
</rss>

