cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

158
Views
0
Helpful
2
Replies
Highlighted
Beginner

Cisco ASA 5500

I need to identify when access rules & NATs are created in ASA 5500, this is required for audit in my company btw.

The question is:

Is it possible to know when an access rule / NAT rule is created in ASA 5500 ??

 

I haven't found any commands/solution for this... still trying to figure it out and searching through guides and such.

 

Thanks

2 REPLIES 2
Highlighted
VIP Mentor

Re: Cisco ASA 5500

No not possible by default with ASA, until you have some orchestrator like Tuffin available in network to tell you when was the added  or if you have Change process in place, for changing the ACL  in ASA will give track record.

 

if both not in place, i am afraid you going to get any further information as per i know.

BB
*** Rate All Helpful Responses ***
Highlighted
Participant

Re: Cisco ASA 5500

if you have an NMS that you send traps to, you can try:

snmp-server enable traps entity config-change

 

that would at least let you know that something has been changed.