cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3452
Views
0
Helpful
1
Replies

duplicate firewall rules- Shadow/redundant

Hello ,

At CSM I would like to  know all redundant and shadow rules that can be removed as a part of FW policy clean up process.

Can someone tell me is there any ways to achieve this using CSM ? I Mean does CSM has any inbuilt tool or report that can give us duplicate rules details ?

Thanks,

Prashant

1 Reply 1

Sergio Ceron Ramirez
Cisco Employee
Cisco Employee

Hello Prashant,

Yes, you an achieve this within CSM. Do as follows:

Choose the device and select Firewall rules.
At the very top of the Access Rule table, you will find the "Filter" option.
After clicking "Filter", from the first drop down list choose "Conflict"; second box "has"; third box "Redundant Rules" or "Shadowed Rules". For this last option it can be one at a time.
Notice that if you want to delete all rules at once, CSM may hang for a very long time. I suggest you to do it by section of 100 rules (depending on how many rules your box has).

Let us know your results. 

Review Cisco Networking for a $25 gift card