Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

PDM or CLI

Hi Folks,

which is best to use on PIX. PDM or CLI.

does PDM provides all options that CLI provides?

Thanks & reg.

Yogi

6 REPLIES
Gold

Re: PDM or CLI

For configuring i prefere CLI you have better control over firewall... you need better understand what every command means... Especially when configuring VPNs or ACLS - PDM adds lot of confusing and useless lines to configuration

check following links for comparsion and for Supported and Unsupported Commands

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pdm/v_11/pdmig/pdm_app.htm

But I think PDM is better for monitoring you can use various graphical charts...

M.

Hope that helps rate if it does

Re: PDM or CLI

I think CLI provides more options than PDM/GUI.

If you're new to PIX, PDM is probably the best as it simplify lots of configuration and monitoring tasks. Most important is that you do not have to know what CLI equavalent to PDM options as there're a lot of commands you need to know and understand how to use it (syntax combination). PDM also gives you graphical stats that is easy for you to understand.

But on the other hand, some (CLI-exposed) would prefer CLI as it gives you flexibility, especialy on command options. PDM is good as it gives you visibility on PIX status via the graphs.

Combination of both knowledge will be the best.

HTH

AK

New Member

Re: PDM or CLI

If you currently have a PIX 501 w/ PDM installed, how do you remove it? I have 16 MB RAM and 8MB Flash w/ 6.3(5). When I try to tftp 7.2(1) or 7.2(2) to it, I get an out of memory error.

WEB

New Member

Re: PDM or CLI

Mate,

I only use the ASDM/PDM for some monitoring tasks but as everyone said, CLI gives you more control and understanding of the PIX/ASA config architecture.

And e.bek, PIX OS 7.0 is not supported on 501'2 so don't waste your time mate.

Cheers.

Silver

Re: PDM or CLI

The new Branch office firewall from Cisco is the ASA5505. The PIX 501 can only be upraded to v6.3(5) because they do not have enough memory for 7.X and the memory cannot be upgraded. If you want the 7.X functionality, then check into the ASA5505.

Jay

Re: PDM or CLI

Hi

That will purely depend on the level of config. u are seeking.

PDM can do a basic setup with basic VPN access.There are options for ACLs and AAAs.

But for more flexibility, u need the CLI anyway.

Regards

JD

115
Views
0
Helpful
6
Replies