Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Firewall Wizards: Re: Cisco Security Manager clone?

Re: Cisco Security Manager clone?

From: Neil Glock <nglock_at_vrs.state.va.us>
Date: Fri, 2 May 2008 14:50:53 -0400

Have you looked at fwbuilder? Hosted by Sourceforge at
http://sourceforge.net/projects/fwbuilder/ although I think it looks
more like Juniper's NSM than CSM and runs on several flavors of Linux
and BSD.

 

Thanks,

 

________________________________

From: firewall-wizards-bounces_at_listserv.icsalabs.com
[mailto:firewall-wizards-bounces_at_listserv.icsalabs.com] On Behalf Of
Mike Davis
Sent: Wednesday, April 30, 2008 11:02 AM
To: 'firewall-wizards_at_listserv.icsalabs.com'
Subject: [fw-wiz] Cisco Security Manager clone?

 

This is my first posting so be gentle ;-)

 

I have an environment that is all Cisco based firewalls for my edge
protection and site to site vpns. I have a little over 100 remote sites
running on ASA 5505's with an AES Tunnel to both the primary (HQ) and
secondary (DR ) sites. It is working quite nicely and has been for
years now but the problem I have is this... all my remote site firewalls
are not centrally managed in the sense that I can make one change in a
console and push it globally to all my remote firewalls so that when a
change is required, I have to log into each and every one (I use SSH)
and make the changes.

I know that Cisco Security Manager will allow me to do that but at the
100K pricetag I was quoted from Cisco with the blink of an eye... I just
cannot put that into my budget.

 

Does anyone know of or can recommend any freeware or low-cost-ware
application that will allow me to monitor and make global config changes
without having to SSH to each one? The ability to segregate into groups
and manage based upon groups would certainly be a plus as well but not a
requirement.

 

Thanks in advance!

 

Mike Davis

 

_______________________________________________
firewall-wizards mailing list
firewall-wizards_at_listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
Received on May 07 2008

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]