Cisco lms - config collection

Hi, i'm looking for a way to collect config's from specific devices periodically, is this possible?
for example, collect configs from firewalls everyday at midnight , and collect routers config once a week.
firewalls: (about 3 devices, config changes every day)
routers: (about 800 devices, rarely change the config)
the only config collection schedule i have found so far is too simple:
admin > collection settings > config > config collecion settings > periodic collection
second question, is it possible for cisco lms to send via e-mail the diff of the config pulled from devices? i mean the specific commands that have appeared in the new configuration file.
regards, ignacio

Unfortunately, LMS syslog mechanism is very minimalistic and doesn't have a lot of options to it.
However, the feature you're requesting is not very much LMS dependent. As, Ciscoworks depends on the kind of syslog message it receives from device, based on it, it captures some characters to send a notification as automated actions.
So usually it is the device which won't send a lot of information on what changes was done by which user in normal IOS syslog messages.
But, to certain extent, you can try to configure you device for Configuration-Change logger to receive details on what changes were made by users and check it on the syslog report, or configure AA on it for all or important devices.
You can enable a configuration logger to keep track of configuration changes made with the command-line interface (CLI). When you enter the logging enable configuration-change logger configuration command, the log records the session, the user, and the command that was entered to change the configuration. You can configure the size of the configuration log from 1 to 1000 entries (the default is 100). You can clear the log at any time by entering the no logging enable command followed by the logging enable command to disable and reenable logging.
Use the:
show archive log config {all | number [end-number] | user username [session number] number [end-number] | statistics} [provisioning] privileged EXEC command to display the complete configuration log or the log for specified parameters.
This example shows how to enable the configuration-change logger and to set the number of entries in the log to 500:
 Switch(config)# archive 
 Switch(config-archive)# log config
 Switch(config-archive-log-cfg)# logging enable
 Switch(config-archive-log-cfg)# logging size 500
 Switch(config-archive-log-cfg)# end
So, in all, it depends on the device and the kind of syslogs it send for LMS to react on it.
-Thanks
Vinod
**Encourage Contributors. RATE Them.**

Similar Messages

  • Config collection fails occasionally in LMS 4.2

    Hello,
    In recently installed  LMS 4.2 archive collection is failing from time to time for random number of devices with error:
          "Execution Result: CM00139 Could not archive config Cause: Action: Verify that device is managed and credentials are correct. Increase timeout value, if required."
         We have sceduled config collection job to run every day. Credentials are ok. The LMS data is restored from LMS 3.2. Timeout seeting is the same as in LMS 3.2 and we never had this problem before.
         Somtimes it is working for 10 days correctly, and then one day it is not successful for 70 out of ~150 device. Then t is successfull for few days, then again fails for  86 devices. Collction is scedueld in the evening so devices are not overloaded, nor there is some other job in LMS running at the same time.
         Any ideas?
         Thanks,
         Marija
    I

    The following did resolve my issue
    The bug is fixed in the one of the latest device packages for LMS, SharedSwimIOS.RME525.v2-13-3. The release notes for it is here: http://www.cisco.com/web/software/283418817/118429/SharedSwimIOS.RME525.v2-13-3.readme.txt
    Before applying that device package update, the following prerequisites need to be met:
    - LMS 4.2.5
    - MDF 1.92 (or higher) update : https://software.cisco.com/download/release.html?mdfid=284259296&flowid=37207&softwareid=283716219&release=Mdf.%201.92&relind=AVAILABLE&rellifecycle=&reltype=latest
    - LibSwim.RME525.v2-13-1.zip & SharedDcmaIOS.RME525.v5-1-2.zip device packages already installed. Those two files and the  SharedSwimIOS.RME525.v2-13-3 file can be found here: https://software.cisco.com/download/release.html?mdfid=284259296&flowid=37207&softwareid=283418817&release=AutoDev%285.8%29&relind=AVAILABLE&rellifecycle=&reltype=latest

  • LMS 4.0 Config Collection failure

    Hello Members,
    i've added manually a bunch of Cisco Router 2911's and 2801's. On one of the the 2911 and 2801 the Config Collection fails. Data Collection, User Tracking, Inventory and Fault Discovery worked fine for all routers just on the two routers i get the failure?
    any ideas? Which log do i have to check?
    regards
    alex

    I believe the LMS reports this error because there was no vlan.dat in the
    flash of the router. after adding a vlan.dat file on in the flash the vlan config
    could be fetched and the error message doesn't appear any more.
    regards
    alex

  • LMS 4.2 - Config collection issue

    After launching config collection job in LMS 4.2 I can't get job results and receive error message - Unable to get results of job execution for device...
    I've increased the job result wait time using option in Admin > Collection Settings ... , but nothing changed.
    Here are screenshots of error message and wait settings I used:
    Thanks in advance!

    i have seen this with SNMP timeout needed to be increased.
    please try to increase those values, and not the job completion values.
    I just saw in CP LMS 4.2 that the values are assembled on a new page.
    all of them ...
    Admin > Network > Timeout and Retry Settings > Inventory/Config Timeout and Retry Settings
    also in the navigator of the same last windows your screenshot is from try the device specific timeouts:
    Admin > Collection Settings > Config > Edit the Inventory/Config Timeout and Retry Settings
    HTH

  • LMS 4.0 Config collection vlan.dat

    Hi Guys,
    I have a network with 4500, 3560 and 2960 switches.
    In my LMS I have created 1 credential set to access all the switches. The config collection (startup, running and vlan) has succeeded for all the 2960 switches. The collection of the running and startup config has also succeeded for the 4500 and 3560 switches. But LMS doesn't collect the vlan.dat from the 4500 and 3560 switches. (inventory collection is ok with all the switches).
    I have only configured SSH as config fetch protocol.
    Why doesn't my LMS collect the vlan.dat of the 3560 and 4500 switches. The difference between the 2960 and the other switches is that there are only 2 vlans created on the 2960 switches and +30 vlans on the 3560 and 4500 switches.
    Is the vlan.dat file maybe to big on the 3560 and 4500 to be collected with ssh...
    Any ideas?
    Thanks,
    Best Regards,
    Joris

    I believe that LMS 4.2 can get the vlan.dat via SCP. Prior versions require TFTP to do this.
    The commands to start the TFTP can be send via TELNET, SSH and possibly SNMP.
    Cheers,
    Michel

  • Cisco LMS 3.2 SYSLOG not storing after 10 days

    Hi ,
    Im facing one issue with Cisco LMS 3.2
    Issue : The logs is generating only for 10 days and post that im not able to see the logs. I have not done any config changes. The only change i have done is i have completely reinstalled the LMS. i did multiple troubleshoot but not able to resolve this isse. It would be great If any some one is  able to help me in this isse.  Thanks.
    Regards,
    Juliet

    Dear Vinod
    Thanks for ur response and the problem has been resolved.
    The purge policy was set to 60 days only .The problem in reports viewing setting.
    Syslog folder under LMS would store syslog reports of both the device as well as applications for defined folder size , which in your case was 1 MB ( same can be viewed under log generator option).  The  older reports would get deleted from the folder upon reaching the limit.
    The only way to view device syslog is under following option :  Reports -> Reports Generator  in LMS  GUI where we will have to choose syslog with desired attribute.
    Regards,
    Juliet

  • Cisco lms - backup out of the box

    when using cisco lms 4.2.5 linux version, what would be the best way to backup the config files out of the box?
    what i'm lookin for is a way to take the shadow folder to another box for disaster recovery.

    Hi, i found this solution to work very well for exporting files out of the box:
    As user root:
    1) on cisco-lms install sshfs, which lets you mount a folder on a remote box through sftp:
    install in the following order:
    rpm -ivh fuse-libs-2.7.4-8.el5.x86_64.rpm
    rpm -ivh fuse-2.7.4-8.el5.x86_64.rpm
    rpm -ivh fuse-sshfs-2.5-1.el5.rf.x86_64.rpm
    2) mount 
    mkdir /mnt/backup
    sshfs root@<remote-linux-box-ip>:<remote-folder> /mnt/backup -o allow_other
    3) rsync with cron
    00 1 * * * rsync -r -v /var/adm/CSCOpx/files/rme/dcma/shadow/* /mnt/backup/ >> /root/rsync.log 2>&1

  • Error in Cisco LMS

    Hi,
    I get this error when i run some actions in CISCO LMS  3.2 i.e if I click in Campus Manager - Start Data Collection. it gives error " you are not access to request this action ".
    What can be the problem?
    Please find the attachment for your reference.
    Please Suggest. waiting for your prompt reply.
    Thanks

    to fix the database issue , you need to reintilaze the ANI database:
    1) Stop the daemon manager
    "net stop crmdmgtd"
    2) Go to NMSROOT\CSCOpx\bin.
     NMSROOT\bin\perl.exe NMSROOT\bin\dbRestoreOrig.pl dsn=ani dmprefix=ANI
    for linux:
    /opt/CSCOpx/bin/dbRestoreOrig.pl dsn=ani dmprefix=ANI
     3)  Wait for a few minutes before starting the CW daemons again:
     "net start crmdmgtd"   (wait for at least 5 minutes before using CW again)
    Thanks-
    Afroz
    ***Ratings Encourages Contributors ***

  • Upgrade Cisco LMS to PI

    We currently operate Cisco Prime LMS v4.1 and we're looking to upgrade Cisco PI (Prime Infrastructure) in the next few weeks.
    Is there an upgrade path from Cisco LMS to PI?  The reading I have completed seems to indicate that an upgrade can only be completed from Cisco NCS.
    If I need to perform a new install of PI, can I somehow Migrate / Import my existing device database and config into the new software?  I have configured some syslog fault rules for e-mail notification, config templates, custom reports, etc, that I would also like to keep and not necessarily recreate.
    Thanks.

    As cwallin noted, LMS 4.2.2 patch added the ability to migrate some information from LMS to PI.
    Most customers would not be well-served by migrating a mature LMS implementation to PI at this time due to the fact that PI does not yet have feature parity with LMS, Even PI 2.0 (due out in a couple of months) will not have complete feature parity.
    See this link for a current comparison.

  • Device Alert from Cisco LMS

    Hi All,
    I am currently getting buried in a flurry of alerts from Cisco LMS. However when I check on the device in fault manager or with Device Diagnostic Tools, I do not see any issues. Anyone have any ideas as to why these alerts are being generated? ( I have removed our specific info with xxxx)
    Additionally, I don't want to seem like I am bashing the LMS product, but could these alerts be made any more cryptic?
    ALERT ID                = 00001LI
    TIME                    = Wed 24-Mar-2010 01:21:49 GMT-06:00
    STATUS                  = Active
    SEVERITY                = Critical
    MANAGED OBJECT          = xxxx
    MANAGED OBJECT TYPE     = Switches and Hubs
    EVENT DESCRIPTION       = xxxx: Cisco Configuration Management Trap:InformAlarm; xxxx [xxxx]:Unresponsive;
    ALERT ID                = 00001LI
    TIME                    = Wed 24-Mar-2010 06:54:37 GMT-06:00
    STATUS                  = Active
    SEVERITY                = Critical
    MANAGED OBJECT          = xxxx
    MANAGED OBJECT TYPE     = Switches and Hubs
    EVENT DESCRIPTION       = xxxx: STP Topology Change:MinorAlarm; xxxx [xxxx]:Unresponsive;
    ALERT ID                = 00001LI
    TIME                    = Wed 24-Mar-2010 13:13:16 GMT-06:00
    STATUS                  = Active
    SEVERITY                = Critical
    MANAGED OBJECT          = xxxx
    MANAGED OBJECT TYPE     = Switches and Hubs
    EVENT DESCRIPTION       = xxxx: vlanTrunkPortDynamicStatusChange Trap:InformAlarm; xxxx [xxxx]:Unresponsive;
    ALERT ID                = 00001LI
    TIME                    = Wed 24-Mar-2010 13:13:52 GMT-06:00
    STATUS                  = Active
    SEVERITY                = Critical
    MANAGED OBJECT          = xxxx
    MANAGED OBJECT TYPE     = Switches and Hubs
    EVENT DESCRIPTION       = xxxx: STP Topology Change:MinorAlarm; ess016184.casino.sk.ca: vlanTrunkPortDynamicStatusChange Trap:InformAlarm; xxxx[xxxx]:Unresponsive;
    ALERT ID                = 00001LI
    TIME                    = Wed 24-Mar-2010 14:05:49 GMT-06:00
    STATUS                  = Active
    SEVERITY                = Critical
    MANAGED OBJECT          = xxxx
    MANAGED OBJECT TYPE     = Switches and Hubs
    EVENT DESCRIPTION       = xxxx: vlanTrunkPortDynamicStatusChange Trap:InformAlarm; xxxx: STP Topology Change:MinorAlarm; xxxx [xxxx]:Unresponsive;
    Thanks,
    Rick

    The alerts are quite generic.  The individual EVENT details will contain many more details.  Initially, it looks like DFM is showing you trap information relating to config  and STP changes.  If you have determined that these are not important, then you can clear the events (or mark them as acknowledged).  If you're receiving these as notifications (e.g. email notifications), you might consider creating event sets to filter the events to just the ones in which you are interested, then unchecking the boxes for alerts in your Notification Group.

  • CiscoWorks-Config collection problem

    Hi,
    I have configured config collection on Cisco Works. But only one device's configuration has been succesfully collected, rest of the devices are showing failed.
    check the log...showing telnet authentication failed 3 times.  but I have checked the username and password configured on Cisco Works is perfect even the same username and password configured on the device, which configuration collection succeded.
    Please give me some troubleshooting process so I can fix the issue.

    yes..I have checked so many times...and username / password is ok....but still I am not able to fix the problem.....It the username and password is configured wrong , then it should work for one device,,,because the username and password is configured in Tacacs Server and same for all devices.

  • Folks, How do you stop tftp being tried for Config collection ?

    Hi there. We use LMS 3.2 with RME 4.3.1.[Solaris 10].
    tftp is band across our network. So we don't use tftp remotely.
    I've removed tftp from the RME config transport settings. [I just allow SSH / SCP ]
    We still get 'couldnot determine the tftpboot directory. VLAN Config fetch is not supported using SCP'.
    How can config RME to not even attempt to use tftp when pulling back switch configs ?
    We don't want the old vlan.dat database form our older switches. Config collection also tries to tftp to routers to pull back the VLAN config.
    Please have a think ? Many thanks. Guy

    So it still tries anyway?
    Well, if you use SSHand RCP/SCP you could try to disable the TFTPserver of ciscoworks.
    It is a regular windows service (on the windows version of LMS ofcourse) just stop and disable it.
    Archive will fail because it can't get vlan.dat ofcourse but that is how RME is hardcoded
    Cheers,
    Michel

  • Icmp Jitter collector configuration with Cisco LMS

    Hi,
    I am trying to collect jitter information of cisco Routers which are added in Cisco LMS
    I have configured collector icmp jitter for them but somehow no stats are visible in lms and its says in IPM that u have no jitter collectors configured.
    Do i need to enable anything on the Router as well to export stats to LMS ?
    Thanks

    Hi,
    show ip sla application
            IP Service Level Agreements
    Version: Round Trip Time MIB 2.2.0, Infrastructure Engine-II
    Time of last change in whole IP SLAs: *07:35:21.730 UTC Thu Mar 13 2014
    Estimated system max number of entries: 27977
    Estimated number of configurable operations: 27976
    Number of Entries configured  : 1
    Number of active Entries      : 1
    Number of pending Entries     : 0
    Number of inactive Entries    : 0
            Supported Operation Types
    Type of Operation to Perform: dhcp
    Type of Operation to Perform: dns
    Type of Operation to Perform: echo
    Type of Operation to Perform: frameRelay
    Type of Operation to Perform: ftp
    Type of Operation to Perform: http
    Type of Operation to Perform: icmpJitter
    Type of Operation to Perform: jitter
    Type of Operation to Perform: pathEcho
    Type of Operation to Perform: pathJitter
    Type of Operation to Perform: slm controller
    Type of Operation to Perform: slm frame-relay interface
    Type of Operation to Perform: slm frame-relay pvc
    Type of Operation to Perform: slm interface
    Type of Operation to Perform: tcpConnect
    Type of Operation to Perform: udpEcho
    Type of Operation to Perform: voip
    IP SLAs low memory water mark: 38288719
    The device is a Cisco 1841 

  • Cisco LMS - Check for multiple words?

    Can anyvbody help me out with a Cisco LMS query.
    I'm doing a complaince check for snmp-server location
    +snmp-server location [#.*#]
    But I assume as I've got mulitple words which may vary it shows as not present in the complaince check even though it's in the config.
    e.g. snmp-server location Martin's house in the middle of Scotland
    I think [#.*#] stands for a missing string but not for multiple words, can anyone help me out with what I could use for multiple words?
    Thanks in advance
    Martin

    I could solve the monitoring issue with snmp context configuration. I had to map each OSPF process to a snmp community. So i could retrieve data for each OPSF process. My issue now is how to add multiple communities to an LMS controlled device.
    As far as i know, LMS support only one RO community per device.
    regards
    alex

  • Cisco LMS 4.0 Graph some time not coming

    I have installed cisco lms 4.0.
    I have added 10 devices, previously it was working fine, Since last few days some time syslog and graph are not coming. after every reboot on server it started working. It is happening on daily.plz help me out with permanent solution
    and also i have added manualy one device 7609-s router but not able to see cisco view
    Error:-
    Cannot find applicable device package for 10.133.224.131.
    This error could be due to one of the following:
    - The device package for this device type is not installed.
    - Device support for this device type is not available.
    - You are trying to open a component inside a device.
    To correct the problem, either install a device package for the device type, or open the parent device to manage the component.
    In device attribute it is showing 868 integrated router, I had try to delete and add again but problem is still same...
    Windows 2008 r2 standard
    RAM-16 Gb, Swap memory 8096

    Evrything looks good. Are you able to access LMS in the server itself? Try to install another browser on your server and try to login.
    Try both :
    http://x.x.x.x:1741
    https://x.x.x.x:443
    Share NMSROOT/MDC/tomcat/logs/stdout.log and stderr.log.
    -Thanks

Maybe you are looking for