cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1354
Views
0
Helpful
4
Replies

SNMP Security on Cisco ASA 5510

eferro
Level 1
Level 1

I am on a bit of a hotseat right now.  I have a Cisco ASA5510 used for b2b vpn connections. Some one from my sales departmet has offered to allow a customer to monitor our vpn device via snmp (with nagios).

I have a major proble with this. Unfortunatly it is gettign stuffed down my throat. I am worried about compromising by gear. We have other customers on this device.

Can someone tell if there is a safe way to do this.

2 Accepted Solutions

Accepted Solutions

Panos Kampanakis
Cisco Employee
Cisco Employee

Make sure you use a password for snmp authentication and only read is allowed for the MIBS.

Then the monitoring software will only be able to pull information/monitor from the ASA, but not change anything etc.

I hope it helps.

PK

View solution in original post

4 Replies 4

Panos Kampanakis
Cisco Employee
Cisco Employee

Make sure you use a password for snmp authentication and only read is allowed for the MIBS.

Then the monitoring software will only be able to pull information/monitor from the ASA, but not change anything etc.

I hope it helps.

PK

I was worried that they would be able to read my configs (similar to a router). Do you know if this is possible ?

Stupid marketing Department. Anything for a sale.

Review Cisco Networking products for a $25 gift card