You're not supposed to directly manually edit device ACLs managed by CSPM,
but rather use the PRE and POST areas to add additional commands. You can
also comment up your own commands in this section using !comment (but it
won't be stored in the PIX/router, but at this point you need to do it all
from CSPM). The first thing CSPM does is blow away ACLs, so just use it to
manage it instead of fighting things.
--
Jason Roysdon, CCNP+Security/CCDP, MCSE, CNA, Network+, A+
List email: [EMAIL PROTECTED]
Homepage: http://jason.artoo.net/
Cisco resources: http://r2cisco.artoo.net/
""kaushik khakhar"" <[EMAIL PROTECTED]> wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi All, Cisco Secure Policy Manager CSPM - Enables one to define a GUI
> based policy/topology. The program then uploads this policies to PIX
> firewall and there is hindreds of line of configuration in PIX FW. PIX
> Firewall - can also be configured manually via command line. But theres
> no way this can be uploaded to CSPM and realize the policy/topology from
> configuration on PIX. Ambiguity remains, one does not know which commands
> are generated by CSPM program after defining the topology. One cannot
> upload the manually configured policy to CSPM. Can any one provide some
> insight, as to how this ambiguity can be removed and synchrinise both.
> Ofcourse, someone who have worked with both multiple times will be able
> to help me. Many Thanks in Aniticpation Regards, KaushikTechnical
> Consultant
>
> ------------------------------------------------------------------------
>
> Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.
_________________________________
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]