|To:||Tivoli NetView Discussions <email@example.com>|
|Subject:||Re: [NV-L] cisco pix firewall|
|From:||Leslie Clark <firstname.lastname@example.org>|
|Date:||Fri, 8 Dec 2006 11:47:53 -0500|
|Delivery-date:||Fri, 08 Dec 2006 16:51:07 +0000|
|List-id:||Tivoli NetView Discussions <nv-l.lists.ca.ibm.com>|
|Reply-to:||Tivoli NetView Discussions <email@example.com>|
Actually. netmon will monitor that failover for you and generate a special event when it occurs. See the Fixpack 4 release notes:
PIX Firewall Failover support
IBM Tivoli NetView provides support for monitoring the Cisco PIX Firewall Failover conditions. NetView can monitor the failover state of the PIX devices during normal status polling. When a failover occurs, a new event is generated announcing whether the active addresses are on the primary or secondary device. In addition, the operator can see on the map when the active addresses are on the secondary device, which indicates that a failover has occurred and action should be taken to prevent a further failure that disables the firewalls. The management interface shows USER2 status, which is usually purple (by default). This propagates to change the PIX device symbol to marginal. When the active addresses are returned to the primary device, an event announces this fact and the status on the map returns to Normal.
Use the netmon.seed file to configure both the PIX Firewall Failover machines and to set and lock the SNMP address.
For more information on the PIX Firewall Failover support
see the /usr/OV/doc/PixFailoverReadme.pdf file.
Running Netview 7.1.4 FP 4, AIX 5.2.. Cisco PIX 535 version 6.3
I've been tasked with creating an alert when the PIX fails over (from primary to secondary / and vice versa). I currently have a separate window when certain devices go down, and I also have pop-up windows when a link down trap is received from a critical devices..
If I remember right, there is a trap that is sent when a PIX fails over? If I can determine the right trap then I can use that to generate a popup or email message. Is there any special configuration to netmon.seed?
Has anyone successfully monitored a failover?
_______________________________________________ NV-L mailing list NV-L@lists.ca.ibm.com Unsubscribe:NV-Lfirstname.lastname@example.org http://lists.ca.ibm.com/mailman/listinfo/nv-l (Browser access limited to internal IBM'ers only)
|<Prev in Thread]||Current Thread||[Next in Thread>|
|Previous by Date:||[NV-L] cisco pix firewall, Catalina Martinez|
|Next by Date:||RE: [NV-L] cisco pix firewall, Glen Warn|
|Previous by Thread:||[NV-L] cisco pix firewall, Catalina Martinez|
|Next by Thread:||RE: [NV-L] cisco pix firewall, Glen Warn|
|Indexes:||[Date] [Thread] [Top] [All Lists]|
Archive operated by Skills 1st Ltd
See also: The NetView Web