×

Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

CSA 5

Answered Question
Apr 5th, 2006
User Badges:

I have a few questions about CSA 5


1)I can't find the options for the network shim anywhere in MC.


2) Once an agent has been installed with the network shim, is it true that to remove the shim, one has to re-install the agent?


3) Is there a list of what protection does the agent give when set at a medium security level through the agent GUI?


Thank you

Correct Answer by tsteger1 about 11 years 4 months ago

1. For whatever reason bug CSCsd99274 is not in there.


The SR# is 603331301 and I can see it in the TAC Service Request Tool.


2. Yes, the network shims were permanently enabled in CSA 5 with no option to disable.


Tom S

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 3.8 (3 ratings)
Loading.
tsteger1 Thu, 04/06/2006 - 11:28
User Badges:
  • Red, 2250 points or more

1) The network shim option is supposed to present itself if you create a "noisy" installation agent kit. I have yet to see it in either 5.0.0.176 or 5.0.0.183. I opened a service request (603331301) on it.


2) Since 1) does not work, I don't believe 2) is possible for now. I did read in an earlier post that it is possible to use a registry setting to disable but I haven't tried it.


3) Security levels relate to system state sets. You can have conditional rules set to deny all connections of a certain type when security level is high and query the user when the security level is set to medium or low.


Hope this helps...


Tom S

tsteger1 Tue, 04/18/2006 - 13:46
User Badges:
  • Red, 2250 points or more

I just got confirmation that the documentation in CSA 5 help is wrong. The bug id is CSCsd99274.

The network shims were permanently enabled in agent kits. This was necessary for QoS to work.


Tom S

ciscors Tue, 04/18/2006 - 16:02
User Badges:

Tom


1) I can't find the bug CSCsd99274 in the bug toolkit. Do you have a direct link to it or maybe you can copy/paste the entire passage in here?


2) Did you mean to state that network shims just can't be disabled anymore in 5.x?



Correct Answer
tsteger1 Wed, 04/19/2006 - 15:48
User Badges:
  • Red, 2250 points or more

1. For whatever reason bug CSCsd99274 is not in there.


The SR# is 603331301 and I can see it in the TAC Service Request Tool.


2. Yes, the network shims were permanently enabled in CSA 5 with no option to disable.


Tom S

Actions

This Discussion