Hi James, 

As Lindsay said the PIX doesn't support SNMP write access, even if SNMP v3 is secure , 
they decide to not implement the function: historical choice or not ? ... If you want 
to backup your pix config you can googeling for some perl script that use net:ssh 
library and add it to jffnms backup scripts.


David LIMA
SCC Services

 

-----Message d'origine-----
De�: James [mailto:[EMAIL PROTECTED] 
Envoy�: vendredi 14 mai 2004 06:20
��: [EMAIL PROTECTED]
Cc�: [EMAIL PROTECTED]; [EMAIL PROTECTED]; [EMAIL PROTECTED]
Objet�: Re: [jffnms-users] Cisco PIX firewall save configs?

http://advocacy.postgresql.org/Lindsay 
Druett wrote:
> Sorry Javier, I might as well jump in here...
> 
> 
> Basically the Cisco PIX only supports Read Only SNMP communities.
> 
> They don't support Read Write for a very good reason, and that is so that
> there is no way someone can change the configuration on a PIX using SNMP
> as SNMP fundamentally does have a few security flaws.
> 
OH YEA sure,

Cisco tells me there security, including 
snmp(2) over sshd is inpenetrable?

As an old OpenBSD biggot, I find it hard 
to believe(cisco) but, you have not 
provided any evidence that cisco's snmp3 
over sshd(the latest patched versions) 
has security holes.

Show me da money.....?


James



-------------------------------------------------------
This SF.Net email is sponsored by: SourceForge.net Broadband
Sign-up now for SourceForge Broadband and get the fastest
6.0/768 connection for only $19.95/mo for the first 3 months!
http://ads.osdn.com/?ad_id=2562&alloc_id=6184&op=click
_______________________________________________
jffnms-users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/jffnms-users


-------------------------------------------------------
This SF.Net email is sponsored by: SourceForge.net Broadband
Sign-up now for SourceForge Broadband and get the fastest
6.0/768 connection for only $19.95/mo for the first 3 months!
http://ads.osdn.com/?ad_id%62&alloc_ida84&op=click
_______________________________________________
jffnms-users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/jffnms-users

Reply via email to