Solved

will cisco ASA Firewall will support SNMP RW String

Posted on 2011-03-11
9
2,328 Views
Last Modified: 2012-05-11
I wanna configure a SNMP Community RW Or RO string in Cisco ASA, or Cisco ASA Firewall only support RO. & how to Configure it=
0
Comment
Question by:tyrosec
  • 4
  • 3
  • 2
9 Comments
 
LVL 34

Expert Comment

by:Istvan Kalmar
ID: 35110420
yep

SNMP configs:-------------------------
snmp-server host [ip of snmp server]
snmp-server community [community string] RO (read only)
snmp-server community [community string] RW (read/write)
snmp-server enable traps
Here's Cisco's doc's on confiuguring SNMP on the PIX/ASA:
http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a0080094a13.shtml
PING------------------------
icmp permit any echo-reply inside
Here's cisco doc's on this:
http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a0080094e8a.shtml#pingsown
0
 

Author Comment

by:tyrosec
ID: 35110679

HI ikalmar

Following RW or RO options are not available in cisco ASA Firewalls , and just allows us to configure community only.
snmp-server community [community string] RO (read only)
snmp-server community [community string] RW (read/write)


I wanna know the community configured is RO or RW.

Or by default firewall will suport only SNMP RO string ?? and too Fortigate supports SNMP RO implementation only.

0
 
LVL 45

Expert Comment

by:Craig Beck
ID: 35110889
SNMP on ASA is read-only.  This is by design.
0
 
LVL 34

Expert Comment

by:Istvan Kalmar
ID: 35110953
sorry Iqve forget it... give the points to craig
0
Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

 

Author Comment

by:tyrosec
ID: 35111046
Hi craig  .. thanks for your quick reply, but help me to get some docs from cisco which authenticate your statement..
0
 
LVL 45

Accepted Solution

by:
Craig Beck earned 500 total points
ID: 35112629
0
 

Author Closing Comment

by:tyrosec
ID: 35114304
Nice to see the Knowledge Exchange under one roof ... I Like to be part of it
0
 

Author Comment

by:tyrosec
ID: 35114355
Hi Everyone .. One more thing, how Cisco Security Manager  communicates to devices which added for management to it....I hope then it should not be with SNMP....as because only Cisco SNMP RO is there !!!!!
0
 
LVL 45

Expert Comment

by:Craig Beck
ID: 35115489
Apps like SDM and ASDM use HTTPS (or HTTP) to communicate with devices.
0

Featured Post

What Should I Do With This Threat Intelligence?

Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

Join & Write a Comment

How to configure Site to Site VPN on a Cisco ASA.     (version: 1.1 - updated August 6, 2009) Index          [Preface]   1.    [Introduction]   2.    [The situation]   3.    [Getting started]   4.    [Interesting traffic]   5.    [NAT0]   6.…
There are many useful and sometimes not well documented or forgotten IOS or ASA/PIX commands. See IPE article here , there was also one on PacketU and on Cisco Tips & Tricks. Below are my favorites. I give also a few most often used for Cisco IPS an…
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …
You have products, that come in variants and want to set different prices for them? Watch this micro tutorial that describes how to configure prices for Magento super attributes. Assigning simple products to configurable: We assigned simple products…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now