Cisco Network Management Solution

Hi,
I was asked to put together a Network Management solution to manage multiple sites. The sites are as follows:
Site 1 - Approx 30 Switches (Cisco 4507 Core / Cisco 3750X Access)
Site 2 - Approx 50 Switches (Cisco 4507 Core / Cisco 3750X Access)
Site 3 - Approx 40 Switches (Cisco 4507 Core / Cisco 3750X Access)
Site 4 - Approx 40 Switches (Cisco 4507 Core / Cisco 3750X Access)
Site 5 - Approx 50 Switches (Cisco 4507 Core / Cisco 3750X Access)
The sites are connected over a 2 or 4Mbps WAN connection to a central site.
Can you please advise on the following:
1) Architecture - Centralized or Distributed?
2) Cisco Prime Infrastructure 1.2? or is there anything else?
Thanks,
Z

You need to define what functions you want before selecting tools.
Event management (syslog, SNMP traps).
Network Change and Configuration Management (NCCM), which includes network discovery, inventory, as well as config mgmt.
Performance data collection, analysis, and alerting.
IP Address management.
Topology mapping.
Active path testing.
Application performance management.
Once you know what functions you want to implement, you can start identifying products that fulfill those requirements.
There is more info in my blogs about network management architecture:
http://www.netcraftsmen.net/resources/blogs/a-network-management-architecture-part-1.html
http://www.netcraftsmen.net/resources/blogs/a-network-management-architecture-part-2.html
http://www.netcraftsmen.net/resources/blogs/a-network-management-architecture-part-3.html
http://www.netcraftsmen.net/resources/blogs/a-network-management-architecture-part-4.html
  -Terry

Similar Messages

  • Wireless network management solution

    We are running a pilot project to deploy a centralize wireless solution for our campus. The pilot consists of only about 20 Cisco1200 access points. We are in need of Network Management solution to manage these access points. The NMS would have to pretty much behave like what we already have into place for our wired networks such as: alerts on snmp traps, thresholds settings, data capture, administration,etc, in general be able to proactively check possible shortcomings on the infrastructure and help to troubleshoot problems. Once we fully deploy the centrally controlled wireless network, there could be any way from 1200 to 1500 access points, so whichever system we choose must be able to scale to these numbers.
    I’m interested in knowing which wireless network management solutions are the preferred one from the audience on this forum. Your input will help me to narrow down possible options.
    Thanks a lot for any information.

    I would suggest that you go for the WLSE. CiscoWorks WLSE is a centralized, systems-level application for managing and controlling an entire Cisco Aironet WLAN infrastructure. For more information on this read
    http://www.cisco.com/en/US/products/sw/cscowork/ps3915/index.html

  • Cisco LAN Management Solution is required to support Cisco Nexus 5548P and 5596UP switches?

    Hi,
    Could someone help to know what Cisco LAN Management Solution is required to support Cisco Nexus 5548P switches and Cisco Nexus 5596UP switches?
    These new Cisco switches are being implementing on customer network and he ask us that he requires these equipments be supported on a LMS solution (customer currently is using LMS 3.2.1)
    Can someone help?
    Thanks in advanced,
    guruiz

    Some very limited Nexus support is present in LMS 3.2.1 - see the supported device table here.
    To get more complete support, including the 5596UP, they need to upgrade to LMS 4.x (e.g.  LMS 4.2.2 is the latest and is sold under the Cisco Prime Infrastructure 1.2 umbrella). The major upgrade from 3.x to 4.x requires purchasing an upgrade license.
    Some functions (namely User Tracking ) will not be available on the 5k due to non-support of the requisite MIB on the device. I believe LMS still doesn't let you do VLAN management on 5k's - you need to use DCNM for that if you want to do it from a GUI.
    See the table here for LMS 4.2 device support.

  • Cisco network management software's/application's in a big picture

    Hi,
    I am looking for a document or slide which can help me understand the various Cisco network management software umbrella.
    I mean there are so many Cisco network management software, one big picture of all the application will help me understand.
    Thanks
    Mudassir

    Hi,
    I am looking for a document or slide which can help me understand the various Cisco network management software umbrella.
    I mean there are so many Cisco network management software, one big picture of all the application will help me understand.
    Thanks
    Mudassir

  • Cisco Network Management software options

    Hi,
    I wanted to see if anyone can give me a quick breakdown on the differences between some Network Management software titles.  I dont know when you would use each one or what the limitations are of each. 
    CNA - Cisco Network Assistant
    http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps6504/ps5931/product_data_sheet0900aecd8068820a.html
    http://www.cisco.com/en/US/docs/net_mgmt/cisco_network_assistant/version5_0/release/notes/OL12210a.html
    CCP - Cisco Config Professional
    http://www.cisco.com/en/US/prod/collateral/routers/ps9422/data_sheet_c78_462210.html
    http://www.cisco.com/en/US/docs/net_mgmt/cisco_configuration_professional/v2_7/rlsnts/ccp_v27_rel_notes.html
    CCA - Cisco Config Assistant
    http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps7256/ps7287/data_sheet_c78-682273.html
    http://www.cisco.com/en/US/docs/net_mgmt/cisco_configuration_assistant/version3_2_1/release/Notes/cca_3_2_1_relnotes.html
    Cisco Prime LMS  (are their different versions or products here?)
    http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps6504/ps6528/ps11200/data_sheet_c78-697479.html
    http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_lan_management_solution/4.2.3/release/notes/lms4_2_3_release_notes.html
    CiscoWorks  (depreciated?  Now Prime?)
    http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps6504/ps6528/ps2425/data_sheet_c78-534877.html
    I have been looking over the realease notes for each product trying to draw some conclusion on which titles support or dont support certain products. 
    Has anyone used these and can give a quick answer for when you would use each and if there are any gotchas or limits to watch out for?
    It looks like Prime is a paid for product but will any of the free solutions (CNA, CCP, CCA) work with all enterprise level products (2950, 2960, 3560, 3750, 4948, 4900 4500 switches and 1800, 1900, 2800, 2900, 3800, 3900 routers) or do you have to use Prime to get a product that will mange these devices?
    Thank you in advance. 

    Hi Marvin,
    i am currently try to explore cisco prime Infra 1.3 and facing some problem.
    1 : i have set the admin password at startup config but this password is not working(i am pretty sure that i have enter the same password)
    2: Can i change the prime lan infra clock setting from it,s GUI
    3: i am not able to see the end client assosiate to a cisco switch(C3750 )
    4: i want to know can i use cisco infra to monitor broadcast on a switch port level.(suppose switch 1's  port 10 client making broadcast ,can i monitor that)
    is there is any videos avialable for cisco prime infra 1.2/1.3 .
    Thanks,
    Prashant

  • Is there a network management solution for adobe reader updates.

    Hi
    I'm looking for a program we can install on our update server to push adobe updates to +\- 300 users that don't have admin rights.  Anyone know of any software that would do this?
    Thanks,
    Doug

    Doug:
    Since your options don't seem to be limited by pay vs. open source, you have a multitude of possible solutions. You could purchase the now outdated SMS 2003 product from Microsoft, or elect to go with their "latest and greatest" distribution management product SCCM. We have dabbled with another similar product here that shows promise: Altiris. An open source option that I ran across in my research is WPKG. I can not vouch for WPKG but it seems a viable solution. Keep in mind, with a paid product, you are paying for support as well as the software. If you elect to go with an open source option, support can be somewhat limited in scope.
    I hope this helps?
    Michael

  • Network Managment report

    Network Managment report

    Are you looking for network management reports?  If you can expand a bit on what you're looking for, we might be able to better address your concern or point you to the appropriate network management documentation.  In the mean time, here are some network management links that you might already be familiar with.
    This is the basic Network Management web page: http://www.cisco.com/en/US/products/sw/netmgtsw/index.html
    This is the link for the Network Management Technology Overview that describes the range of Cisco network management products:
    http://www.cisco.com/en/US/products/sw/netmgtsw/products_category_technologies_overview.html
    This is the link for the Cisco Network Management Podcast Series where you can listen to the latest issues in network management: http://www.cisco.com/en/US/prod/netmgtsw/networking_solutions_products_genericcontent0900aecd806d5809.html
    Regards,
    Mary
    Technical Writer, Cisco Systems

  • Basic Network Monitoring for Cisco Operation Manager 2012

    Hello,
    Please bear with me as i'm new the Operations Manager 2012 world. I've just installed operations manager 2012 in our environment and i've setup a network management point. I've discovered my networking gear which is primarily cisco equipment. The devices
    are appearing as CERTIFIED. It appears that they are HEALTHY however in most cases i'm getting some arbitrary monitors. I have a 6509 switch where memory and processor appear to be being monitored out of the box. I'm receiving alerts and everything.
    My question is how do I turn on monitoring for other discovered components. I seem to understand I can make SNMP monitors under the authoring pane if i know the OID. That sounds like it'd be tedious work for such a simple and basic monitor. However I was
    under the impression I would be able to monitor a lot of these components with a simple click of a button. Is this not the case? I'm primarily interested in monitoring the state and performance of particular interfaces as well as the state of the power supplies
    in our switches. Is there a guide that explains the basic principles of this. What are my options?
    Thanks!
    -Brandon

    Hi,
    You will need to edit the discovery and broaden the range. You may use recursive discovery.
    Recursive discovery will try to discover any other network devices it knows about through its Address Routing Protocol (ARP) table, its IP address table, or the topology Management Information Block (MIB) to grow the network map and present all applicable
    devices to you for monitoring.
    You can also filter out devices that you don't want to be discovered by using properties such as the device type, name, and object identifier (OID). This is a handy option if you wanted to quickly discover all the network devices in your network except,
    a small number or some with a specific criteria.
    In really large networks with a lot of network devices, keep in mind that there is a default limit of 1500 network devices that can be discovered recursively. You can of course tweak this limit to suit your environment if you wish, but for most people, this
    won't be needed.
    More details, please go through the article below:
    http://kevingreeneitblog.blogspot.com/2012/07/scom-2012-network-monitoring-explicit.html
    Regards,
    Yan Li
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

  • Cisco application networking manager license file - unable copy to server

    Hi all
    We tried all the options like ftp,tftp,scp,etc., to copy cisco application networking manager license file from my pc to its server which has CISCO ADE OS .But unable to copy .can anybody know correct method to copy ??
    Thanks & Regards
    Sanjeevi

    Adrian,
    In order to install the license you must have a license file on the ANM server and install it through the command line:
    http://www.cisco.com/en/US/docs/app_ntwk_services/data_center_app_services/application_networking_manager/4.1/installation/guide/IG_config.html#wpmkr1120937
    No other way to do it.
    License file can either be copied to the ANM file system, or you can create a new empty license file on it and copy paste the license file content.
    If you have no access to the ANM server through CLI, then a workaround might be:
         - install a new VMWARE machine where you have CLI access.
         - install ANM on it
         - copy license (other you copy the file through any means or you create a file and edit by copy pasting the license file content)
         - install license with the command  /opt/CSCOanm/bin/anm-license install /path/ANMxxxxxxxxxxxxxxxxx.lic as described in the link above
         - save the VMware image
         - deploy the same VMWare image to the ESX where it has to be installed and where you have no access to CLI neither you can copy a file.
    Hope this helps,
    Domenico.

  • Import Network host objects to Cisco Security Manager

    Is it possible to import complete lists of Network Hosts objects to Cisco Security Manager?
    Exporting the hosts already defined in the ASAs is easy but how to import them in CSM??
    Thanks

    No hostnames discovered go the Policy Object Manager (nor to the Access rules), only group-names (there's a bug in ASAs related to single host names too). The way CSM handles single hosts is previously creating them, so when we later discover devices, the single hosts names set in the discovered device are not considered, only their IP addresses; then you can see that in the discovered access rules CSM shows the hostname as the previously defined ones in the Policy Object Manager. If you dont define those hostnames before the device discovery, you will only see IP addresses, no hostnames, no matter they are set in your firewalls.
    Imagine discovering a couple FWSM modules with 500 access rules, and you only get to see the IP addresses of the 2,500 hosts on your network. And you have all those hosts already defined in your FWSM firewalls, when you log via ASDM you view your hard created rules with hostnames, and when you log to CSM you only view IP addresses. The clients get very disappointed with CSM after that, and discard it. The bigger the network, the faster they reject CSM.
    The only way to add hosts in the Policy Object Manager is 1 by 1. But as this may have happened to more than one company and considering how easy it is to code a feature like that, I assume that it's possible to import a complete list of single hosts to CSM.
    is that really possible? it should be.
    thanks for the replies so far

  • Cisco Video Telephony Solution Reference Network Design (SRND)

    Below are links to two design guides focused on video telephony and videoconferencing. The first link is goes to the NEW Video Telephony guide while the second links to the existing Videoconferencing guide that has been referenced before in a previous thread.
    Cisco Video Telephony Solution Reference Network Design (SRND):
    http://www.cisco.com/application/pdf/en/us/guest/netsol/ns268/c649/ccmigration_09186a008026c609.pdf
    IP Videoconferencing Solution Reference Network Design (SRND):
    http://www.cisco.com/application/pdf/en/us/guest/netsol/ns280/c649/ccmigration_09186a00800d67f6.pdf

    Hi
    As long as this is new instalation I recommend you to use SIP on all of the end points where possible and integrate with CUCM using sip trunk this will give you two main benefits
    - the transformation of the called and calling number from and to CUCM will be easier
    -if have end point using H323 and communicating with other end using sip the vcs will do internetworking to this call and you will need license for each internetworked call plus the media path will go through the vcs not direct between end points for internetworking
    If you use sip make the end point name/sip usri as [email protected]  Calls from vcs to CUCM use search rules with trsformation so if end point dial 123456 only from vcs and the default call is sip vcs will send it to CUCM as 123456@sip domain.com you need to do transformation before sending it to CUCM and send it as 123456@cucmip. 
    This is just in brief and also using the expersss way you can have your sip domain registered over the Internet and configure dns srv record point sip ton the vcs public ip and Internet calls can come to your end point sip name directly no need to publish ip to others to dial you
    HTH
    If helpful rate

  • Manage a Cisco Secure ACS Solution Engine?

    Hello,
    how can i manage/observe a 'Cisco Secure ACS Solution Engine'? Ich found no things like SNMP etc.
    regards
    Karsten

    Hi,
    you have no chance to control the ACS SE with snmp. We have one router, access via ACS and uses a script roboter to control the access to the router. If the access fails, we send us an email
    Bye Michael

  • Cisco call manager Network Failover Configuration

    Hi all,
    I have a cisco call manager 6.0.
    The server is configured and is functioning very well.
    Only  today I realized that the server MCS has two NIC and there is the  possibility to configure a networ failover by cli interface.
    Now the question are:
    is it possible to configure this function now without problem?
    if yes what are the ordered steps to follow?
    Thanks all.

    Hi
    you can use EtherChannel, 2 phisical ports as 1 logical

  • Welcome to the Cisco Networking Professionals Unified Computing topic

    Welcome to the Cisco Networking Professionals Unified Computing topic. This topic will provide you the opportunity to discuss issues such as building and running server virtualization, mobility management, stateless computing, application provisioning, implementation of FCoE and other solutions based on the Cisco Unified Computing System and Cisco Unified Fabric. We encourage everyone to share their knowledge and start conversations about challenges you might be facing.
    Remember, just like in the workplace, be courteous to your fellow forum participants. Please refrain from using disparaging or obscene language or posting advertisements.
    We encourage you to tell your fellow colleagues about the site.
    Dan Bruhn
    NetPro Community Manager

    This is easily done with dial peer statements . The dial peer in your originating router must route the calls to the terminating router first. That would look like :
    dial-peer voice xxxxx voip ( the xxxxx is just a tag)
    destination-pattern 45... (that would route any 5-digit calls beginning with 45)
    session-target ipv4:xxx.xxx.xxx.xxx (ip address of the terminating router)
    If digitones are to be dialed after the connection is established, use the statement:
    dtmf-relay-h.245-alphanumeric
    You could also use a statement to specify the codec to be used:
    codec g711ulaw
    You would need multiple voip dial peers if the calls were going to different routers based on the dialed digits. If all calls are sent to the same terminating router, use all wild cards in the dest-pattern statement.
    At the terminating router configure pots dial peers:
    dial-peer voice xxxxx pots
    dest-pattern 45...
    port x/x (whichever port the call is to be terminated on)
    prefix 45 (this re-inserts matched digits which are stripped off by the pots dp)
    Repeat for other ports which will receive calls.
    Paul

  • Ask the Expert: Cisco BYOD Wireless Solution: ISE and WLC Integration

    With Jacob Ideji, Richard Hamby  and Raphael Ohaemenyi   
    Welcome to the Cisco Support Community Ask the Expert conversation. This is an opportunity to learn and ask questions about  the new Identity Solutions Engine (ISE) and Wireless LAN Controller (WLC) hardware/software, integration, features, specifications, client details, or just questions about  Cisco's Bring-your-own device (BYOD) solution with cisco Experts Richard Hamby, Jacob Ideji, and Raphael Ohaemenyi. The interest in BYOD (Bring You Own Device) solutions in the enterprise has grown exponentially as guests and company users increasingly desire to use personal devices to access .  Cisco BYOD enhances user experience and productivity while providing security, ease-of-administration, and performance. The heart of the Cisco wireless BYOD solution is Identity Solutions Engine (ISE) utilizing the Cisco Unified Wireless portfolio.  Starting with ISE v1.1.1MR and WLC (Wireless LAN Controller) code v7.2.110.0 and higher, end-to-end wireless BYOD integration is reality. 
    Jacob Ideji is the technical team lead in the Cisco authentication, authorization and accounting (AAA) security team in Richardson, Texas. During his four years of experience at Cisco he has worked with Cisco VPN products, Cisco Network Admission Control (NAC) Appliance, Cisco Secure Access Control Server, and Dot1x technology as well as the current Cisco Identity Services Engine. He has a total of more than 12 years experience in the networking industry. Ideji holds CCNA, CCNP, CCSP, CCDA, CCDP, and CISM certifications from Cisco plus other industry certifications.
    Richard Hamby  works on the Cisco BYOD Plan, Design, Implement (PDI) Help Desk for Borderless Networks, where he is the subject matter expert on wireless, supporting partners in the deployment of Cisco Unified Wireless and Identity Services Engine solutions. Prior to his current position, Hamby was a customer support engineer with the Cisco Technical Assistance Center for 3 years on the authentication, authorization, accounting (AAA) and wireless technology teams. 
    Raphael Ohaemenyi  Raphael Ohaemenyi is a customer support engineer with the authentication, authorization and accounting (AAA) team in the Technical Assistance Center in Richardson, Texas, where he supports Cisco customers in identity management technologies. His areas of expertise include Cisco Access Control Server, Cisco Network Admission Control (NAC) Appliance, Cisco Identity Services Engine, and IEEE 802.1X technologies. He has been at Cisco for more than 2 years and has worked in the networking industry for 8 years. He holds CCNP, CCDP, and CCSP certification.
    Remember to use the rating system to let Jacob, Richard and Raphael know if you have received an adequate response.  
    Jacob, Richard and Raphael might not be able to answer each question due to the volume expected during this event. Remember that you can continue the conversation on the wireless mobility sub community forum shortly after the event. This event lasts through Oct 5th, 2012. Visit this forum often to view responses to your questions and the questions of other community members.

    OOPS !!
    I will repost the whole messaqge with the correct external URL's:
    In  general, the Trustsec design and deployment guides address the specific  support for the various features of the 'whole' Cisco TS (and other  security) solution frameworks.  And then a drill-down (usually the  proper links are embedded) to the specifc feature, and then that feature  on a given device.  TS 2.1 defines the use of ISE or ACS5 as the policy  server, and confiugration examples for the platforms will include and  refer to them.
    TrustSec Home Page
    http://www.cisco.com/en/US/netsol/ns1051/index.html
    http://www.cisco.com/en/US/solutions/collateral/ns170/ns896/ns1051/product_bulletin_c25-712066.html
    http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5712/ps11637/ps11195/at_a_glance_c45-654884.pdf
    I find this page very helpful as a top-level start to what features and capabilities exist per device:
    http://www.cisco.com/en/US/solutions/ns170/ns896/ns1051/trustsec_matrix.html
    The TS 2.1 Design Guides
    http://www.cisco.com/en/US/solutions/ns340/ns414/ns742/ns744/landing_DesignZone_TrustSec.html
    DesignZone has some updated docs as well
    http://www.cisco.com/en/US/netsol/ns982/networking_solutions_program_home.html#~bng
    As  the SGT functionality (at this point) is really more of a  router/LAN/client solution, the most detailed information will be in the  IOS TS guides like :
    http://www.cisco.com/en/US/docs/switches/datacenter/sw/6_x/nx-os/security/configuration/guide/b_Cisco_Nexus_7000_NX-OS_Security_Configuration_Guide__Release_6.x.html
    http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/asr1000/sec-usr-cts-xe-3s-asr1000-book.html
    http://www.cisco.com/en/US/docs/switches/lan/trustsec/configuration/guide/trustsec.html

Maybe you are looking for