Solved

Adding remarks to the PIX

Posted on 2006-07-07
4
902 Views
Last Modified: 2013-11-16
Hi,

Am working with a 525 Pix. Is there any way to add remarks to the config file (besides the ACL's) and it will show up doing a show run command ? Would like to add remarks to some of the nat lines.

Thank you
0
Comment
Question by:mdelaine
  • 2
  • 2
4 Comments
 
LVL 79

Expert Comment

by:lrmoore
Comment Utility
That depends.. what version PIX OS?
6.x gives you much more flexibility to add remarks in many places throughout the config using the PDM GUI
0
 

Author Comment

by:mdelaine
Comment Utility
Am using version 6.3. Remarks can only be done thru GUI ?  Not CLI ?
0
 
LVL 79

Accepted Solution

by:
lrmoore earned 250 total points
Comment Utility
Yes, you can use CLI:
  access-list <acl> remark <text whatever>

It appears that acls are about the only place after all where you can add remarks.

You can always save the config as a text file and edit the text to add comments for record and reference.
You can even use this "edited" file as a backup config as long as you put a "!" or "#" in front of each line of inserted text so that the pix will ignore it, but it still won't show up in the "show config"

In addition to the acl remarks, PIX 7.0 adds text Descriptions for interfaces, service groups, names, and some NAT rules
i.e.
 name <ip address> <NAME> description <text string>
interface Ethernet0
 nameif outside
 description <text string>
 object-group service <tag> tcp
  description <text>

 
0
 

Author Comment

by:mdelaine
Comment Utility
Thank you. I had done a little research on this, but had no success.
0

Featured Post

6 Surprising Benefits of Threat Intelligence

All sorts of threat intelligence is available on the web. Intelligence you can learn from, and use to anticipate and prepare for future attacks.

Join & Write a Comment

Suggested Solutions

Overview The Cisco PIX 501, PIX 506e, ASA 5505 and ASA 5510 (most if not all of this information will be relevant to the PIX 515e but I do not have a working configuration handy to verify the validity) are primarily used within small to medium busi…
From Cisco ASA version 8.3, the Network Address Translation (NAT) configuration has been completely redesigned and it may be helpful to have the syntax configuration for both at a glance. You may as well want to read official Cisco published AS…
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, Just open a new email message.  In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now