2 Cisco Iron Port (Cisco C370) Email appliances solution

i need
technical proposal based on below requirements:
2 Cisco Iron Port (Cisco C370) Email appliances with below options for 3000 users licenses:
1) Anti-spam
2) Anti-virus
3) Content Filtering
4) DLP
5) Encryption (Optional)

Any technical proposals will need to be provided from your Sales Ops/Account team - or reseller.  I would suggest opening a dialouge with them, in order to get the answer you are looking for.  It will not come from the support forums.
http://www.cisco.com/web/services/order-services/index.html
https://grs.cisco.com/grsx/cust/grsCustomerSurvey.html?SurveyCode=4161&KeyCode=195185_1
http://www.cisco.com/en/US/products/ps10154/index.html
Hope this helps!
-Robert
(*If you have received the answer to your original question, and found this helpful/correct - please mark the question as answered, and be sure to leave a rating to reflect!)

Similar Messages

  • 2 Cisco Iron Port (Cisco C370) Email appliances Solution Required

    Hi All,
    I NEED THE
    technical proposal based on below requirements:
    2 Cisco Iron Port (Cisco C370) Email appliances with below options for 3000 users licenses:
    1) Anti-spam
    2) Anti-virus
    3) Content Filtering
    4) DLP
    5) Encryption (Optional)

    Any technical proposals will need to be provided from your Sales Ops/Account team - or reseller.  I would suggest opening a dialouge with them, in order to get the answer you are looking for.  It will not come from the support forums.
    http://www.cisco.com/web/services/order-services/index.html
    https://grs.cisco.com/grsx/cust/grsCustomerSurvey.html?SurveyCode=4161&KeyCode=195185_1
    http://www.cisco.com/en/US/products/ps10154/index.html
    Hope this helps!
    -Robert
    (*If you have received the answer to your original question, and found this helpful/correct - please mark the question as answered, and be sure to leave a rating to reflect!)

  • Cisco Ironport Email Security inline with Microsoft Forefont

    Hi,
    We are going to deploy Cisco C370 Email security appliance as new email relay in our DMZ. Currently Microsoft Forefont is already doing the same functionality and new Ironport email security appliance will be added as 1st layer of email security. 
    I would like to know what are the changes that we should consider in this deployment in order to forward mail to Forefont, is there any specific configuration on both products and what is the best method of deployment etc.
    Also I would appreciate if there is any Cisco/Microsoft documentation available for such deployment senario.
    thanks in advance.

    Hello pemasirid,
    as far as I can see from your description is that you add the ESA C370 as an additional gateway, so I would say there is little you need to change in your current network design. As this is all about SMTP getting forwarded, you basically just need to take care of the following things:
    On Forefront: Allow injections from the ESA(s) and forward all outbound messages to the ESA
    On the ESA(s): Insert the Forefront IPs into the RELAYLIST of the private listener to allow outbound messages. Also set up an SMTP route to forward inbound messages to the Forefront server.
    Also change public DNS to point to the public IPs of the ESAs, in case they are different from what you have used before
    A good starting point for deploying would be the Quickstart Guide for C370, that you can find in the support section for email security on Cisco.com. Also, the user guide, which is also available on the GUI of every email appliance (GUI: Help and Support -> Online Help).
    Hope that helps,
    Andreas

  • Cisco iron port

    dear sir 
    i have a project for Iron port c170 and s170 the problem our customer need two c170 and two s170 to make clustering or redundancy.when i am searching i did not see any validation design clustering  for c170 or s170 can you help me please 
    best regard   

    Additionally if the application is using the proxy settings but using some non standard port it might be blocked.  Verify the port is allowed to go through by checking the Web Security Manager -> Access Policies -> Protocols and User Agents -> HTTP Connect ports.  If the port is not allowed in there, it will not allow the application to create a connection.
    Christian Rahl
    Customer Support Engineer
    Cisco Web Content Security Appliance
    Cisco Technical Assistance Center RTP

  • Cisco Iron port ESA licensing

    Hi Team,
    We are using 20,000 mailbox/user Antispam/Antivirus license for cisco ironport email security appliance. Customer want to know the impact on email scanning if they rduced their user count to 10,000.
    will this affect the volume of traffic being scanned and processed by the appliance concurrently or not ?
    As we are not configuring mailboxes on the ironport devices ,how come the ironport device calculate usercount/mailbox ?
    does the user count means simultanious connection per second?
    please help me to find a solution
    Regards
    Muhammad

    Ironport ESA and WSA licensing is trust-based: you should purchase the amount of licenes that reflects the amount of users behind an Ironport device (email gateway or web proxy), but the actual users aren't counted.
    Sent from Cisco Technical Support iPad App

  • Cisco iron port feature activation code error how to resolve that?

    cisco iron port feature activation code error  how to resolve that?

    I have fixed this problem successfully.
    The problem was with the referral attribute of the cfldap tag.
    After adding this (referral="yes") attribute to my code I am able to login into my website.
    <cfldap action="QUERY" server="#application.LDAPServer#" port="#application.LDAPPort#" start="#application.LDAPBase#" name="search" attributes="alias, dn, uid, technicalCareerLevel, locationorgunit, givenName, sn" filter="#filter#" scope="SUBTREE" maxRows="2" referral="yes">
    Any way thanks for your assistance!!!!!

  • SunBlade 100 to Cisco PIX Security Appliance

    I have a problem connecting a SunBlade 100 workstation with Cisco Routers, and the PIX Security Appliance at the Console ports of both a Cisco router and the Cisco PIX Security Appliance. This should be out of the serial port of the SunBlade 100 workstation..
    I have tried to use the UNIX command tip hardwire. No luck connecting to the console port. I also tried to use the UNIX cu command again no response from the console port. I tried connecting a modem temporarily to the SunBlade 100 workstation and was successful in echoing a phone number to a modem. However, I need to use a direct connection from the SunBlade 100 workstation.
    Currently, Windows 2000 workstations are used with
    Hyperterminal to connect to routers and the PIX Security Appliance. I have 24 SunBlade workstations in my classroom and need to use them to connect to the console port on Cisco routers, and the PIX Security Appliance. I would appreciate any help anyone might be able to give on this subject.

    Hello Namit and Rahul,
    Here are few questions that came in directly during your live webcast hence posting them here so that users can benifit:
    1)      How is ASA CX different from other UTM solutions ?
    2)      How is dynamic application inspection of CX better than other inspection engines  ?
    3)      What features or functionalities on the CX are available by default ?
    4)      what are the different ways we can run or install CX on the ASA platform ?
    5)      What VPN features are supported with multi context ASA in the 9.x release ?
    6)      What are the IPv6 Enhancements in the ASA version 9.x ?
    Request you to please provide your responses to them individually.
    Thanks.

  • How do I use Cisco Registered Email Service with 10.7?

    I received a email via someone using Cisco Registered Email/Envelope Service.  The authentication process required the latest version of JAVA for 10.7, which I downloaded and installed.  When I try to logon, the screen hangs with the message "Loading Envelope Tools."  If I press "open" again it states "Inactive tools."  The alternate method is to open the mail via a secure Web site, which I can open, but I am unable to download attachments.  To download attachments, I am directed to a page that begins with "x-msg:" and I get a message that says: "Safari can't open the address .. . because MAC OX doesn't recognize Internet Addresses starting with "x-msg:"

    Thanks for the info Roger, this is indeed did work for me (at least the part about signing in on apple.com, haven't tried the rest). Since Apple does not allow for the merging of Apple IDs, my plan is to use the old me.com address (from the free trial) with iCloud but then forward all the messages from the old me.com to my current Apple ID. Problem is all my devices are already associated with iCloud. So... if I want to activate iCloud using the old me.com, how do I do it?
    I have two ideas: 1) as you suggest, signing out and signing back in through the iCloud preference pane (either on Mac OS or iOS); but I'm worried this will have consequence - will I be able to sign back in to my main Apple ID account after doing this?
    2) create a new user on my Mac and then sign in to iCloud with the old me.com address there, then delete the account.
    Thanks for any help with this.

  • Cisco Wireless Location Appliance

    dear
    i have WCS with 500 ap License
    i need to have Cisco Wireless Location Appliance what lisens i need for 500 ap
    please explain to me that

    Hi Ahmed,
    This is the upgrade License SKU for upgrading WCS to WCS Location;
    WCS-LOC-UPG-K9
    Supports deployment of Cisco WCS on a single server only.
    For customers upgrading from their existing Cisco WCS base licenses to equivalent Cisco WCS location licenses running Cisco WCS Software Release 4.1 or later.
    Available as Cisco WCS location in increments of 50, 100, or 500 lightweight access points.
    Customers currently using this license with Cisco WCS Software Release 4.0 are encouraged to upgrade to Cisco WCS Software Release 4.1, but they are not required to do so.
    Order the Correct Cisco WCS SKUs
    The process to order Cisco WCS SKUs for WCS-STANDARD-K9, WCS-LOC-UPG-K9, WCS-WLSE-UPG-K9 and WCS-ENT-K9 is presented below. To request help with ordering, please contact Cisco Customer Service: http://www.cisco.com/go/customerservice.
    1. Login to the Cisco Ordering Tool.
    2. Enter the family SKU of WCS-STANDARD-K9 or WCS-LOC-UPG-K9 or WCS-WLSE-UPG-K9 or WCS-ENT-K9 into "Enter Product" in the Ordering Tool and then press "Enter."
    3. The family SKU will display in the ordering area. (Figure 6).
    4. Select the "Line" for the family SKU
    5. Once you have been taken to the configuration screen, select one of these options from the left side (Figure 7):
    For WCS-STANDARD-K9 select one of the sub-SKUs based on the following:
    Base: WCS Standard AP Base Option
    Location: WCS Standard AP Location Option
    For WCS-WLSE-UPG-K9 select one of the sub-SKUs based on the following:
    Base: WLSE to WCS AP Base Upgrade Option
    Location: WLSE to WCS AP Location Upgrade Option
    **For WCS-LOC-UPG-K9 select the sub-SKU:
    **WCS AP Location Upgrade Option
    For WCS-ENT-K9 select the sub-SKU:
    WCS Enterprise AP Location Option
    For the WCS-STANDARD-K9 or **WCS-LOC-UPG-K9 SKU families, customers are prompted to order the optional CD (WCS-CD-K9), for a nominal charge, during the ordering process. The WCS-CD-K9 contains one software image of Cisco WCS Software Release 4.1 on a CD for Windows and Linux. This CD is shipped by U.S. mail to the purchaser's address. The optional CD is not available for WCS-WLSE-UPG-K9 because this SKU family already ships in CD format.
    6. The right side of the screen will display the licenses available (Figure 7). The price for each SKU is displayed in the Ordering Tool.
    7. Each license is orderable in a quantity of one (1) for the quantity blocks specified. To add multiple quantities of license blocks, you must go back to the main screen and order additional family SKUs and then select the sub-SKU option and license quantity block required. Repeat this process as needed, until the correct quantity of license blocks for your sub-SKU have been ordered.
    From this good doc;
    http://www.cisco.com/en/US/products/ps6305/pro ducts_data_sheet0900aecd804b4646.html
    Hope this helps!
    Rob

  • Cisco ACS 4.2 authenticating Cisco 4710 ACE appliance failed

    Hi,
    I've got a problem with Cisco ACS 4.2 authenticating Cisco 4710 ACE appliance.
    ACS4.2 has been configured to use both internal and external database. It's been working fine for a couple or years.
    Recently we bought a Cisco 4710 ACE appliance. When I use ACS4.2 internal username and password to login the Cisco 4710 ACE appliance, I have no problem. I can also see the passed authentication log on ACS4.2. However, if I use AD username and password, I couldn't login in. The message is "Login incorrect". I checked the failed attempts log on the ACS4.2, there was no log regarding the failed attempt. My AD username and password works fine on all other cisco routers and switches.
    I've posted my AAA configuration of the 4710 ACE below. ACE is running on the latest version A4(1.1). Please help.
    tacacs-server key 7 "xxxxxxxxxxxxx"
    aaa group server tacacs+ tac_admin
      server xx.xx.xx.xx
    aaa authentication login default group tac_admin local
    aaa authentication login console group tac_admin local
    aaa accounting default group tac_admin

    Hi,
    Since the ACS is receiving the request.
    Could you please ensure that In ACE on every context (including Admin and other) you have  following strings:
    tacacs-server host x.x.x.x key 7 "xxx"
    aaa group server tacacs+  tac_admin
       server x.x.x.x
    aaa authentication login default group  tac_admin local
    aaa authentication login console group  tac_admin local 
    aaa accounting default group x.x.x.x
    On ACS side for group named "Network  Administrators" you should configure in TACACS settting:
    1. Shell  (exec) enable
    2. Privilege level 15
    3. Custom attributes:
               shell:Admin*Admin default-domain
        if you have additional  context add next line
              shell:mycontext*Admin  default-domain
    After  loging to ACE and issuing sh users command you should see following
    User             Context                                                                  Line     Login Time   (Location)        Role   Domain(s)   
    *adm-x        Admin                                                                    pts/0   Sep 21 12:24  (x.x.x.x)    Admin   default-domain
    Hope this helps.
    Regards,
    Anisha
    P.S.: please mark this thread as answered if you fee your query is resolved. Do rate helpful posts.

  • Ask the Expert: Introduction to Cisco Adaptive Security Appliance (ASA) version 9.x (Context Aware Security and VPN Features)

    With Namit Agarwal and Rahul Govindan 
    Welcome to the Cisco Support Community Ask the Expert conversation. This is an opportunity to learn and ask questions about Cisco Adaptive Security Appliance (ASA) version 9.x (Context Aware Security and VPN Features) with experts Namit Agarwal and Rahul Govindan.
    This is a continuation of the live webcast.
    Cisco ASA CX (Context-Aware) is a next generation firewall service that serves as an extension to the Cisco Adaptive Security Appliance (ASA) firewall platform. In addition to the proven stateful inspection firewall capabilities, it provides us with next-generation capabilities and a host of additional network-based security controls for end-to-end network intelligence and streamlined security operations.
    Namit Agarwal is a customer support engineer at the Cisco Technical Assistance Center in Bangalore, India. He has more than four years of experience in the security domain. His areas of expertise include ASA firewalls, IPS, and ASA content-aware security (ASA CX). He has been involved in various escalation requests from around the world. He holds CCIE certification (number 33795) in security.   
    Rahul Govindan has been an engineer with the Security Technical Assistance Center team in Bangalore for more than three years. He works on security technologies such as VPN; Cisco ASA firewalls; and authentication, authorization, and accounting. His particular expertise is in Secure Sockets Layer VPN and IP security VPN technologies. He holds CCIE certification (number 29948) in security.
    Remember to use the rating system to let Namit and Govindan know if you have received an adequate response. 
    Because of the volume expected during this event, Namit and Govindan might not be able to answer every question. Remember that you can continue the conversation in the Security community, subcommunity VPN shortly after the event. This event lasts through November 1, 2013. Visit this forum often to view responses to your questions and the questions of other Cisco Support Community members.
    Webcast related links:
    Slides from the live webcast
    Video Recording of the live webcast
    Introduction to Cisco Adaptive Security Appliance (ASA) version 9.x (Context Aware Security and VPN Features): FAQ from live webcast

    Hello Namit and Rahul,
    Here are few questions that came in directly during your live webcast hence posting them here so that users can benifit:
    1)      How is ASA CX different from other UTM solutions ?
    2)      How is dynamic application inspection of CX better than other inspection engines  ?
    3)      What features or functionalities on the CX are available by default ?
    4)      what are the different ways we can run or install CX on the ASA platform ?
    5)      What VPN features are supported with multi context ASA in the 9.x release ?
    6)      What are the IPv6 Enhancements in the ASA version 9.x ?
    Request you to please provide your responses to them individually.
    Thanks.

  • Cisco Prime NCS appliance & license

    Hi all,
    I'm looking for getting a Cisco prime NCS appliance (PRIME-NCS-APL-K9). I'm a little bit confused regarding to the license scheme:
    1. Does the appliance has any license coming with it or we need to order the license separately?
    2. If I have an WLC 5508 (license support 12 APs) & 12 3500 APs, then number of devices counted will be 1 (WLC) or 12 (APs) or 13 (WLC + APs) ?
    Thanks for the help,

    Cisco Prime Infrastructure for the  first time you may access the lifecycle and assurance features using the  built-in evaluation license that is available by default. The default evaluation  license is valid for 60 days for 100 devices and 150 interfaces. You will need  to purchase the base license and the corresponding feature license before the  evaluation license expires. Cisco Prime Infrastructure 1.2 can be ordered using  the standard Cisco® ordering tools at http://www.cisco.com/go/ordering. More information about getting the  license files can be found in the Cisco Prime Infrastructure 1.2 Ordering and  Licensing Guide

  • Cisco Wireless NAC Appliance - Design Practices ??

    Hi,
    I have a new Cisco WIreless NAC appliance, the purpose of which is to manage the Guest users access to network. I have been searching for some best practices related to the design of this appliance but havent found one.
    Can anybody help me in sharing his design experience or any docuement which would be guiding in deciding over the design / placement of this NAC device in network.
    Thank You.

    Hi,
    there is nothing such as "Wireless Nac appliance".
    The question is "do you have the NAC Guest Server" or the "Nac appliance Server and Nac appliance Manager (CAS/CAM)" ?
    Because those are just not the same at all.
    Then on the wireless side, do you have autonomous APs or a WLC ?
    Sorry to ask, but there's just so many possibilities you could be asking that we need to clarify.
    My bet is that you are either looking for this :
    http://www.cisco.com/en/US/partner/products/ps6128/products_configuration_example09186a0080a138cc.shtml
    or for this :
    http://www.cisco.com/en/US/partner/docs/security/nac/guestserver/configuration_guide/20/g_hotspots.html#wp1092277
    Nicolas
    ===
    Don't forget to rate answers that you find useful

  • Migrating from Linux based Tacacs+ server to Cisco ACS 1113 appliance

    I'm trying to migrate my configuration from a Linux based Tacacs+ server to the Cisco ACS 1113 appliance. Does anyone have any recommendations.
    Thanks.

    Hi
    We (extraxi) offer migration and general consultancy for ACS if you need professional help.
    www.extraxi.com/contact.htm

  • About CPU utilization value of ironport C370 email-security-appliance

    Hello all,
    What is the normal / abnormal value for the following parameters of ironport C370 email-security-appliance ?
    total active recipients
    active messages in work queue
    CPU utilization

    Each appliance would be a little different based on the expected mail processing, throughput for your environment/domains... and then throw in which processes you have turned up (IPAS, AV, VOF, etc.)...
    Typical C370 (running 8.0.1) should be able to handle:
    1. ~18 +/- recipients/sec
    2. average workqueue ~ 462 
    3. average CPU utilization of ~ 91%
    The #s vary, again, based on what you have enabled and licensed.  You would be well suited to open a dialog with your Sales Ops/Account team, as they have means to determine the proper numbers and outcomes for your environment.
    I hope this helps!
    -Robert
    (*If you have received the answer to your original question, and found this helpful/correct - please mark the question as answered, and be sure to leave a rating to reflect!)

Maybe you are looking for