Automatic configuration for routers, switches Catalyst and ASA backups

I am looking for a free solution to make monthly backups of my routers (2821), Catalyst (X 3650, 3750-X) switches and ASA (5510). I'm in a Windows environment and have you not mind doing a bit of coding.

I did some research looking at other popular solutions:

-SNMP and a combination of Bash scripts, but that does not support switches Catalyst from what I've read.

-Rance, on Linux & OS X, not something common in our environment

-Tools of Tao kiwi, not free

Is there something (or if applicable, somethings) that I am missing that will do this from a Windows environment for free?

Thanks in advance.

Kron seems to be supported on the routers only, ASA here is a good explanation on how to collect the backups regularly:

https://supportforums.Cisco.com/docs/doc-14958

If you are looking for a centralized solution and you machine to act as a collector, rancid is really the best option (if you can allow non-windows machines).

Kind regards
Ivan

Tags: Cisco Network

Similar Questions

  • How to take backup of configurations of routers/switches by a script automated

    Hi friends,

    Can someone suggest me a script to do the backup of the devices(routers/switches) network. As the running configuration with only once for all devices.

    Thank you

    Mohammad.

    Two ways you can do this but it must be enabled on each device, if you do not have something like LMS/premium to seize all the configs devices centrally

    Command and tftp configuration of a device on your network of archives

    http://www.Cisco.com/c/en/us/TD/docs/iOS/fundamentals/command/reference/cf_book/cf_a1.html#wp1018716

    or use a job of kroon, the calendar and send it to a storage device

    http://www.Cisco.com/c/en/us/support/docs/iOS-NX-OS-software/IOS-software-releases-122-mainline/46741-backup-config.html#AB

    just a few options it is probably more ways as well

    Edit

    You can use the EEM aswell

  • Hardware configuration for the catalog, previews and the RAWs?

    Hi all.

    For the past 2 years I've been running a retina 27 "iMac with 512 GB SSD, because it is the essential motivation.

    My catalog, previews and RAWs have all been on a connected USB3 SSD 1 TB and backed up with time machine to 2 TB drive HARD USB3.

    Now all 3 of my discs are at capacity.

    Historically I've shot with a D800 the D810 so the raws were huge. Now, I'm moving to an X - T2.

    The easy answer is to move the SSD to 2 TB SSD and the TM drive to a 4 GB ext USB disk, which should buy me a few years.

    Maybe another option is to invest in a 4-Bay NAS, stick 4x4gb operates to and use the batch for the backup storage and image TM.

    What do you think guys? even if I'm running a processor i7 and 32 GB of RAM, sake still images second or 2 to appear in my current setup, I really don't want them to appear all slower. It was suggested that I could move all the images more than a year on the NAS and keep the catalog, the previews and the latest images on the 1 TB SSD.

    Curious to hear other ideas and configurations that work well.

    Thanks in adv.

    Craig

    Since you are using a fairly recent Mac she must have a thunderbolt port, otherwise 2 of them and you can also add a USB 3 hub to connect multiple disks to your current configuration. I don't see in adding disks more large and small age of retirement. Just add another 2 disks of the same capacity. You can also get rid of some of the old Time Machine backups to free up space on the drive that you configured for Time Machine.

    As far as I KNOW 99% of multiple NAS boxes drive (Bay) are thus set up a RAID array. Which would limit the overall storage capacity of this box.

    The LR catalog file must also be on a drive connected directly to the computer and not on a network drive.

  • LACP Configuration for Distributed Switch - vSphere 5.5

    I'm trying to set up the switch distributed in a new lab, but I have a question on how to properly configure the port offsets.

    If I have a collection of servers, each with two uplinks to a physical switch, how to properly configure the LACP lag? All ports on all of the servers are part of the same GAL, or should I create a different OFFSET for each new host?

    For example:

    Lets assume 16 servers. I create a single GAL on the DSwitch, mapping of all physical links 32 rising at the same OFFSET, then replicate the physical switch configuration? Or should I create 16 different gal, one for each pair of uplinks on each host server?

    It seems strange to me that I should set up all servers on the same SHIFT, containing the uplinks for different physical host computers.

    Aaron, looks like you got it. You can think of the LAG configuration on the switch distributed as a profile of the EEG applied to each host. The physical switch upstream is configured with an OFFSET for each host.

  • Optimal hard drive configuration for first Pro CS5 and Pro Tools

    I am in the process of upgrading a workstation is used mainly for multi-track audio recording in Pro Tools using the Adobe CS5 products following production of promotional videos in HDV (AVCHD for the web) as well as printouts of documents of marketing for groups and musicians: Premiere Pro, Photoshop, Illustrator, and Soundbooth.

    Since Premiere Pro is probably the most demanding application in the group, I studied the hardware configurations suggested on this forum with great interest, in particular the suggestions of PREJUDICE (including its generic guidance for the installation disc) to determine what drives in order to buy and the best way to configure them.

    I'm upgrading to a HP Z800 with 2.44 GhZ processors dual quad core with hyperthreading (16 virtual cores), 12 GB of memory and a GeForce GTX 470 overclockee.  Without the implementation of a RAID configuration (which I can't afford right now), I would use 4 bays for HARD drives available in the Z800 in the optimal way for the Premier Pro, using currently available drives.  Currently, I plan to buy a 300 GB VelociRaptor to use as my C drive because of the time of extended loading and demands placed on the disc of ProTools and plug-ins Waves associated.

    I would appreciate your suggestions to improve my next plan: C (300 GB WD VelociRaptor) for the operating system and programs; D (1 TB WD Black Caviar) media and projects; E (1 250 GB WD Caviar Black) for the swap file (approx. 18 GB) and media Cache; and E (2 TB WD Caviar Black) for Pro Tools, exports, and previews of audio files.

    I have great respect for the knowledge of the members of this forum and look forward to your suggestions.

    / Bill

    Bill,

    If the live band shots involve a lot of multi-camera editing, I suggest a raid0, otherwise, if the Assembly is a single camera only, I would use separate disks, one for the media and for exports. The risk of losing all the data in a raid0 configuration would not bother, because the intensive part of the disc reads media / FLV writes. It will not be a significant difference in performance between playback of a disc and writing to each other compared to R/W in a raid0.

  • Why am I being automatically charged for unlimited cover USA and Canada, when I didn't ask for it?

    I do not remember that allows Skype to debit my account of 2.99 a month and suddenly it's... Can someone please tell me why and how I can stop it?

    Jessie

    Contact customer service

    TIME ZONE - US EAST. LOCATION - PHILADELPHIA, PA, USA.

    I recommend that you always run the latest version of Skype: Windows & Mac

    If my advice helped to solve your problem, please mark it as a solution to help others.
    Please note that I usually do not respond to unsolicited private Messages. Thank you.

  • My computer automatically exchanged for a basic theme and now I am unable to browse the web. any sollutions?

    During my recent frustrations to my PC, I managed to make my computer somehow have a basic theme constantly and I cannot search the Web. It's like constantly open in safe mode, even though I said to start windows normally... any sollutions would be greatly appreciated.

    Hello

    I suggest you try to restore the computer to an earlier point and check if it helps:
    http://Windows.Microsoft.com/en-us/Windows-Vista/system-restore-frequently-asked-questions

    It will be useful.

  • Disable SSH on Cisco routers/switches CBC encryption

    Hello

    Our customer ordered PenTest, and as a feedback, they got recommendation "disable SSH Mode CBC Ciphers, and don't allow that CTR ciphers ' and 'Disable weak SSH MD5 and algorithms MAC 96 bits' on their switches Cisco 4506-E with CIsco IOS 15.0

    I went through Cisco documentation that I could find, also tried to find commands on the switch itself, but I found no way to manipulate these SSH options. (SSH v2 only is already set up)

    Is it possible to do this on Cisco IOS? If this is not the case, what are my options?

    You can use an external server for authentication. But that will not change anything in the encryption.

    RAY will be fine for authentication, if you are also looking strong authorization, you should look into GANYMEDE +.

    Back to you initial problem:

    Some long time there was a similar problem with a client and it resolved in the following way:

    1. All routers and switches had a class of only two Linux servers access to access devices through SSH.
    2. The SSH server was accessed by admins and used as a jumping point to access the routers/switches
    3. Linux servers had a put to update the ssh-server config to allow only the strong crypto to Admins and also check the administrative work.

    With this, there was strong crypto by the admin-workstations to linux server and pretty weak crypto of the Linux for routers switches (which was at the time-3900XL-2950). But as the linux-boxes have been placed in the management network, all on the risk has been reduced.

  • Your backup configuration is not valid. Review your backup settings. 0 x 81000029

    Original title: Window Vista backup 0x81000029___File backup code might not save your automatic setting for the backup configuration following reason: ___Your is not valid. Review your backup settings.  0x81000029__

    I created a new backup set and got this response:

    File backup could not save your automatic setting for the following reason:

    Your backup configuration is not valid. Review your backup settings. 0 x 81000029

    Hello

    This problem occurs when you click on save files in the backup Center dialog box and restore, then you select the hard drive as the location to save the backup.

    This problem can also occur if you have an EISA partition that is marked as active on the hard drive.

    To resolve this problem, try the steps in the "RÉSOLUTION" section and check the result:http://support.microsoft.com/kb/950167

    Diana

    Microsoft Answers Support Engineer

    Visit our Microsoft answers feedback Forum and let us know what you think.

    If this post can help solve your problem, please click the 'Mark as answer' or 'Useful' at the top of this message. Marking a post as answer, or relatively useful, you help others find the answer more quickly.

  • How can I upgrade images IOS system of routers, switches and firewalls

    Hello

    I am very surprised and fewer still understand how the program license or the Cisco's IOS upgrades are done. I have several routers, switches & ASA who I wan upgrading of IOS, but I can't do it. How ever I can download these images on the internet, but I want to know how can I do this Cisco as I don't trust these IOS is available on the internet.

    According to my study I found that I need to have the number of Cisco Service contract for the devices so that I can download updated the IOS Images for them.

    Someone kindly explain what are the best methods for requirements above.

    Concerning

    @Mohammed

    You are right about a contract of service. Cisco calls this Smartnet support. It includes both supported hardware (i.e. returns for defective equipment), software support (including the right to download and upgrade your software) and technical assistance (through the Cisco TAC). SMARTnet is charged separately for each device covered. Once you have it, your cisco.com username must be associated with your service contract number. This will allow then allows you to download the software of cisco.com. (There are a few cases where you don't have to have a support contract - especially when there is a safety notice (PSIRT) indicating that the Cisco software was flawed it was released at the beginning.)

    Each product (or product family) has a product on cisco.com support page. This page includes release notes, Setup guide, user guides and links to downloads of software for this product. Start by reading the release notes and determine which (if any) update is appropriate for your product. Then, you can download and upgrade the software if necessary.

  • Network configuration for ISCSI and VMotion

    Hello

    I have an ESX host configured with the iSCSI storage and am currently working on the best way to affect my NIC I a four VMK vSwitch and two nic

    http://communities.VMware.com/message/1428385#1428385

    I also have an additional switch for VMotion.

    vSwitch3

    -


    -VMkernel

    -Service 2 console

    -


    vmnic6

    -


    vmnic7

    -


    vmnic6 and vmnic7 are both on the San.

    After adding the new VMkernel and activation of vmotion, I was wondering why this has not shown as an additional path to the storage (I want to know if this is another question). Then I ran "esxcli swiscsi nic list d vmhba33" and of course, only the first four VMK was listed.

    Why the new VMKernel is not automatically linked to vmhba33?

    It would be a bad idea?

    See you soon

    Just to play devil's advocate, why shouldn't be VMotion and SAN traffic on the same link though?

    the iSCSI traffic MUST have a low latency and no mistake.

    VMotion can create advanced that could generate problems in iSCSI traffic.

    No idea why it does not automatically bind well?

    Can you vmkping each IPs Eql?

    You have to add each interface vmkernel of initiator iSCSI, with a command like this?

    esxcli swiscsi nic add - n vmk0 d vmhba34

    André

  • Impossible to connect a computer to the wireless network, I would like to first of all the automatic configuration service and I need advice.

    Article 861122 start WZC

    Unable to connect a computer to the network wirelee I firstly the WZC serviceand I need advice. TX

    Hello

    • Are you referring to Wireless Zero Configuration (WZC) Service?
    • What happens when you start the automatic Wireless Configuration Service?
    • You receive an error message?
     
    If you experience problems with the wireless network, reconfigure the Automatic Configuration Wireless for all wireless profiles automatically, click the fix this toolfrom the link below.
    Click run in the file download dialog box, and then follow the steps in this wizard.
     
    See also:
    In Windows network connection issues
  • 2960 switch configuration for test of dark fiber

    Hi guys

    IM new in network. We have a dark fiber, tests aside > dark fiber > side (B) to test the fiber link, im using a switch 2960 and configure a vlan - vlan 31 and I assign port 1 to switchport access vlan 31. I'm not sure whether the switch need to configure a default gateway, which is the other tat switch side b. I'm not able to ping to my pc either [port 2/0/1]. the fiber link that connected to the switch's port 2/0/49]

    can you help me to check if this configuration is correct?  Here's the running configuration. TX a lot for the help.

    #sh SRO-SWITCH-TEST run
    Building configuration...

    Current configuration: 2679 bytes
    !
    version 12.2
    no service button
    horodateurs service debug uptime
    Log service timestamps uptime
    encryption password service
    !
    SRO-SWITCH-TEST hostname
    !
    boot-start-marker
    boot-end-marker
    !
    enable password 7 110A1016141D5F01072728
    !
    username admin privilege 15 password 7 00071A 150754
    !
    !
    No aaa new-model
    clock timezone 8 MYS
    switch 2 supply ws-c2960s-48ts-l
    !
    !
    !
    !
    !
    pvst spanning-tree mode
    spanning tree extend id-system
    !
    !
    !
    !
    internal allocation policy of VLAN ascendant
    !
    property intellectual ssh version 2
    !
    !
    interface FastEthernet0
    no ip address
    !
    GigabitEthernet2/0/1 interface
    switchport access vlan 31
    switchport mode access
    No auto mdix
    spanning tree portfast
    !
    interface GigabitEthernet2/0/2
    !
    interface GigabitEthernet2/0/3
    !
    interface GigabitEthernet2/0/4
    !
    interface GigabitEthernet2/0/5
    !
    interface GigabitEthernet2/0/6
    !
    interface GigabitEthernet2/0/7
    !
    interface GigabitEthernet2/0/8
    !
    interface GigabitEthernet2/0/9
    !
    interface GigabitEthernet2/0/10
    !
    interface GigabitEthernet2/0/11
    !
    interface GigabitEthernet2/0/12
    !
    interface GigabitEthernet2/0/13
    !
    interface GigabitEthernet2/0/14
    !
    interface GigabitEthernet2/0/15
    !
    interface GigabitEthernet2/0/16
    !
    interface GigabitEthernet2/0/17
    !
    interface GigabitEthernet2/0/18
    !
    interface GigabitEthernet2/0/19
    !
    interface GigabitEthernet2/0/20
    !
    interface GigabitEthernet2/0/21
    !
    interface GigabitEthernet2/0/22
    !
    interface GigabitEthernet2/0/23
    !
    interface GigabitEthernet2/0/24
    !
    interface GigabitEthernet2/0/25
    !
    interface GigabitEthernet2/0/26
    !
    interface GigabitEthernet2/0/27
    !
    interface GigabitEthernet2/0/28
    !
    interface GigabitEthernet2/0/29
    !
    interface GigabitEthernet2/0/30
    !
    interface GigabitEthernet2/0/31
    !
    interface GigabitEthernet2/0/32
    !
    interface GigabitEthernet2/0/33
    !
    interface GigabitEthernet2/0/34
    !
    interface GigabitEthernet2/0/35
    !
    interface GigabitEthernet2/0/36
    !
    interface GigabitEthernet2/0/37
    !
    interface GigabitEthernet2/0/38
    !
    interface GigabitEthernet2/0/39
    !
    interface GigabitEthernet2/0/40
    !
    interface GigabitEthernet2/0/41
    !
    interface GigabitEthernet2/0/42
    !
    interface GigabitEthernet2/0/43
    !
    interface GigabitEthernet2/0/44
    !
    interface GigabitEthernet2/0/45
    !
    interface GigabitEthernet2/0/46
    !
    interface GigabitEthernet2/0/47
    !
    interface GigabitEthernet2/0/48
    !
    interface GigabitEthernet2/0/49
    switchport access vlan 31
    switchport mode access
    Nonegotiate speed
    spanning tree portfast
    !
    interface GigabitEthernet2/0/50
    !
    interface GigabitEthernet2/0/51
    !
    interface GigabitEthernet2/0/52
    !
    interface Vlan1
    no ip address
    Shutdown
    !
    interface Vlan31
    Description OFFICE SRORO
    IP 192.168.31.250 255.255.255.0
    !
    IP http server
    IP http secure server
    !
    Line con 0
    line vty 5 15
    !
    end

    SRO-SWITCH-TEST #.

    Hey the config looks ok just disappeared locally pointing to the other switch, default gateway as you say

    PC must be set with the 192.168.31.250 gateway vlan 31 and have a static ip address in the same range and same subnet

    Make sure that your vlan 31 is to the top/top

  • EIGRP running between the router and ASA by switch

    Hello

    Is that possible I can running an EIGRP between router and ASA by switch?

    Router and ASA connected to the switch with static route.

    Hi Tommy Chin.

    It is possible, we must advertise to the route between the router and ASA.

    Please provide your connectivity diagram to better explain.

    For example...

    interface GigabitEthernet0/0

    Description links to WAN router

    nameif OUTSIDE

    security-level 50

    IP 10.1.1.1 255.255.255.192 ensures 10.1.1.2

    Summary-address eigrp 100 10.1.0.0 255.255.0.0 1

    !

    Confiuration Protocol EIGRP

    standard access list eigrpACL_FR allow a

    !

    Router eigrp 100

    eigrpACL_FR distribute-list in the interface outside

    neighbor 10.1.1.3 OUTSIDE interface

    neighbor 10.1.1.2 OUTSIDE interface

    Network 10.1.1.0 255.255.255.192

    redistribute connected

    redistribute static

    !

    Kind regards

    Srinivas.

    Note: if it solves your problem it mark it as resolved.

  • IOM 11 GR 2 - Configuration of automatic approval for automatic recording - organization field

    Hello

    I am trying to configure automatic approval of record auto in OIM 11 g 2.

    I read a lot of links (a relative majority of 11 GR 1 material) but I'm still not able to do this due to the field of the organization being approver only

    I tried to use an adapter to prepopulate (as I do with success with the 'role' attribute) and a search query. None of this has worked.

    I found out that someone did the same steps as me, but the debate is closed without response: Re: configuration of automatic approval for automatic recording - fail because the organization.

    Any advice to achieve this in GR 2 11?

    Thanks in advance

    This message was edited by: 2808590

    In the case where a person is confronted with the same question, I solved it by using an event handler to pre-process on user create.

    The following link can give some advice: identity and access management: automatic approval for Self-Register users - OIM 11 g R2

    To get dynamically key of the organization by the name of the Organization, you can use it in Manager:

    The value attrRet = new HashSet();

    attrRet.add (OrganizationManagerConstants.AttributeName.ID_FIELD.getId ());

    Organization org = orgManager.getDetails (orgName, attrRet, true);

    Object orgKey = org.getAttribute (OrganizationManagerConstants.AttributeName.ID_FIELD.getId ());

    return (Long) orgKey;

Maybe you are looking for