[c-nsp] PIX/ASA Change Control

Ryan West rwest at zyedge.com
Thu Jun 25 13:07:04 EDT 2009


It handles it fine.  This is basically all you have to do to get it work with ASA/PIXen:

add user customer-fw1             admin
add password customer-fw1         mypassword    mypassword
add autoenable customer-fw1       0
add method customer-fw1           ssh telnet

We did a very minor tweak to allow netscreen's to be backed up and parsed as well and configured cvsweb to manage the diffs / revision control.

-ryan

-----Original Message-----
From: A.L.M.Buxey at lboro.ac.uk [mailto:A.L.M.Buxey at lboro.ac.uk] 
Sent: Thursday, June 25, 2009 12:39 PM
To: Sigurbjörn Birkir Lárusson
Cc: Ryan West; William; cisco-nsp at puck.nether.net
Subject: Re: [c-nsp] PIX/ASA Change Control

hi,

regarding RANCID and Cisco ASAs - are there common
scripts etc for logging/scraping such devices as there
are for cisco (clogin), foundry (flogin) etc?

..or does it all just magically work with clogin
(looking at the clogin and rancid code it seems to
be that way...but theres so many CLI quirks with
it and TACACS+ login doesnt autoenable no matter what
we seem to send back in the priv etc)

alan


More information about the cisco-nsp mailing list