Comparing ASA configs

Unanswered Question
Jul 5th, 2012
User Badges:

Hi All,

I am in the process of re-writing the configuration for an ASA using service groups and a new naming convention. Before implementing the new ACL I would like to ensure that it matches all the rules in the current ACL. Is anyone aware of software which can take two config files and compare them to ensure that they both match up and show any differences in ports allowed and/or IP addresses allowed.



Sent from Cisco Technical Support iPad App

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
nkarthikeyan Fri, 07/06/2012 - 10:56
User Badges:
  • Gold, 750 points or more

You can use compare it software which is a freeware of trial version.... which is a very good comparision tool..... it will show a different color codes if there is any difference.... else it will on the same color code....

which is 2 mb in size

manish arora Tue, 07/10/2012 - 11:21
User Badges:
  • Silver, 250 points or more

Notepad ++, open both file & check line by line using your eyes & brain ;-).


c_hullah1 Fri, 02/15/2013 - 03:43
User Badges:


I found some software which does the job perfectly and would highly recommend!

I performed a full rewrite on one of our complex firewalls using service object groups and a new naming convention to make the rules easier to read but I wanted the services passing through the firewall to remain the same. The following software allowed me to compare two configurations and highlight any problems.

AthenaFirePAC Client


jocamare Mon, 02/18/2013 - 19:20
User Badges:
  • Silver, 250 points or more

ALT+D using Notepad++


This Discussion