Ciscoworks LMS 3.2 - Compliance mgmt negation problem

Hi,
Strange problem, that I am sure is being caused by me.
Basically trying to run an advanced Compliance mgmt job, looking for a set of pre-requisites (this is working) and then removing all non compliance SNMP community strings from a sample device.
I use two lines for this removal
- snmp-server community [#!testR[OW]mon#] [#.*#] [#.*#]
- snmp-server community [#!SNMP#] [#.*#] [#.*#]
From what I see, this should remove all snmp-server communities from a device other than "testROmon", "testRWmon" and "SNMP". Obvious caveat is that they would all need to have two words after this (in this case, these are ro or rw and an ACL).
When I run this it seems to try and remove twice as many snmp community strings as there actually are on the device config? So I guess the core questions are: -
1) Does the above look sound and would it do what I think
2) Does the Compliance management engine parse the entire config independantly for each line of the above and hence explain why I am getting more removals than I would expect or is there a problem somewhere?
Any help on this appreciated as its driving me nuts

Thanks Joseph,
So if I also wanted to remove all SNMP traps bar: -
snmp-server host 10.10.10.x (where x is any ip in the last octet)
From a device, would I use
- [#snmp-server host (!#10\.10\.10\..*#).#]
Or doesn't this make sense?

Similar Messages

  • Ciscoworks LMS 3.2 compliance mgmt negation problem 2

    Sorry one more question,
    If I also wanted to remove all SNMP traps bar: -
    snmp-server host 10.10.10.x (where x is any ip in the last octet)
    From a device, would I use
    - [#snmp-server host (!#10\.10\.10\..*#).#]
    Any help appreciated

    Thanks Joseph,
    But if the line is say: -
    snmp-server host 10.10.10.1 testROmon
    Would I not need the .*# for the extra word? I guess this would only be needed if I were also searching for variations in this word?

  • Ciscoworks LMS 3.2 Compliance Mgmt

    Would it be possible to create a template do the following?
    1.  check all interfaces, include Ethernet, FastEthernet, GigabitEthernet, Serial, Token, etc
    2.  if the interface is found to have "ip helper-address", it must match x.x.x.x and y.y.y.y
    The reason is that I am running this search and replace script, and I need to verify afterward.
    Name: ChkHelpers     SubMode: Yes      isPrerequisite: Yes
    Ordered : No     Prerequisite-Commandset : none     Parent: none
      interface   [#.*#]
      +   ip   helper-address  [#10\.\d\.\d\.\d\#]
    Name: ReplOldHelpers     SubMode: No      isPrerequisite: No
    Ordered : No     Prerequisite-Commandset : ChkHelpers     Parent: ChkHelpers
      -   ip   helper-address   10.a.a.a
      -   ip   helper-address   10.b.b.b
      +   ip   helper-address   x.x.x.x
      +   ip   helper-address   y.y.y.y

    There are a few typos where, but in general what you have it correct.
    Name: ChkHelpers
    IsPrereq: yes
    Submode: interface [INTF]
    Body:
    + ip helper-address [#10\.\d+\.\d+\.\d+#]
    Name: ReplOldHelpers
    Prereq: ChkHelpers
    Parent: ChkHelpers
    Body:
    - ip   helper-address   10.a.a.a
    - ip   helper-address   10.b.b.b
    + ip   helper-address   x.x.x.x
    + ip   helper-address   y.y.y.y

  • Ciscoworks LMS 2.2 layer 2 trace problem

    i have a 3745 (seed device) connected to a 2611xm via a 2950 switch but the ani server cannot discover the 2611xm or even properly recognize the 2950 switch. i have configured the required snmp parameters and cdp is enabled on all devices. i can also ping the 2950 and 2611xm from the ciscoworks server.
    do i need special configs on the 2950 for the ani server to discover the 2611xm router?

    To troubleshoot, go into the respective devices and execute "show cdp neighbors" commands.
    If the devices all see each other as neighbors, the problem is in CW's interaction with the devices. If that is the case, make sure each device's credentials are allowing CW to correctly query it.
    If not, then fix the cdp interaction on the devices and rediscover and then recheck CW's network view.
    Hope this helps. Please rate helpful posts.

  • CiscoWorks LMS 3.2 device driver discovery problem

    Hi,
    We have many devices Cisco 3825 on our network. For some of them, the device driver is correctly discovered but not for others.
    - Devices correctly discovered : cisco3825 : Cisco IOS Software, 3800 Software (C3825-ADVSECURITYK9-M), Version 12.4(5a), RELEASE SOFTWARE (fc3)Technical Support: http://www.cisco.com/techsupportCopyright (c) 1986-2006 by Cisco Systems, Inc.Compiled Fri 13-Jan-06 21:09 by alnguyen : snmp oid : .1.3.6.1.4.1.9.1.543
    - Devices not recognized : cisco3825 : Cisco IOS Software, 3800 Software (C3825-ADVSECURITYK9-M), Version 12.4(15)T9, RELEASE SOFTWARE (fc5)Technical Support: http://www.cisco.com/techsupportCopyright (c) 1986-2009 by Cisco Systems, Inc.Compiled Tue 28-Apr-09 17:45 by prod_rel_team : snmp oid : .1.3.6.1.4.1.9.1.543
    I didn't see any new device driver package on Cisco site.
    Does somebody has an idea ?
    Many thanks,
    Fabien GIRAUD

    I'm not sure I clearly understand the problem.  Are you saying that some 3825s are not being discovered by Common Services Discovery?  If so, are they showing up as unreachable, or are they not showing up at all in the Discovery reports?

  • CiscoWorks LMS 4.0 Time Zone Problem

    Hi,
    CiscoWorks LMS 4.0 timezone is VET. I know that LMS time is syncronized with system time. Hovewer, system time is correct but LMS's time is wrong.
    -I restarted LMS CW Deamon Manager
    -I re-installed LMS
    My problem still exists.
    What should I do to syncronize the time?
    Thank you for your help.

    My setup files were corrupted. I tried new setup and LMS succesfully installed.

  • CiscoWorks LMS problem

    We are running CISCOWORKS LMS in our Data Network,
    But right now getting below problem,
    1.    Unable to integrate Cisco-3925 integrated service router
    2.    Unable to integrate Cisco-2811 integrated service router
    3.    LMS cannot sense link status
    4.    LMS cannot auto discover link
    Attached Image for your kind reference.Appreciate your concern about this issue.

    Hi Hafiz,
    Kindly let me know how you are adding device to CiscoWorks LMS 2.6.
    As a best practise, when you will add new device to CiscoWorks, you should not select the device type while adding the device to CiscoWorks. Let the ciscoworks collect the inventorty on device and identify it automatically.
    To start with make sure you have the lastet MDF device packages install for Common Services and then install all device pachages for other components like RME, CiscoView etc but make sure to have lastest MDF install first.
    Thanks
    Gaganjeet

  • User tracking not finding any hosts in Ciscoworks LMS 3.1

    L.S.
    Our test-configuration is as follows:
    Application versions:
    Ciscoworks LMS 3.1
    Ciscoworks Common Services 3.2.0
    Campus Manager 5.1.4
    We have 31 managed devices in Campus Manager (data has been collected on all),
    Edit: All of them show up green in the topology window.
    The device are: 2 6509 cores (running IOS s72033_rp-IPSERVICESK9_WAN-M version 12.2(18)SXF8), 1 ASA firewall (running ASA-OS version 8.0.5) and 29 switches (2960 and 3560 models both running ios version 12.2(52)SE). The switches are connected as follows:
    User tracking jobs are running normally, but aren't finding any end-hosts or IP phones at all (I suspect around 250-500 hosts+ on these switches)
    We are running SNMP v3 on the switches and have added the following configuration items to all the switches:
    snmp-server group readonly v3 auth context vlan-1
    <repeat for all present snmp-contexts as shown in show snmp context output>
    snmp-server group readonly v3 auth context vlan-83
    Debugging is enabled in CM->Admin->Debugging Options->User Tracking Server
    This is the UT.log file of the last major acquisition:
    messages will remian logged to file: D:\PROGRA~1\CSCOpx\log\ut.log
    2010/01/13 14:00:01 main MESSAGE ProcessInitializer: Properties will be read from D:\PROGRA~1\CSCOpx\campus\etc\cwsi\ut.properties
    I= 0value *.*.*.*
    I= 1value 6
    I= 2value 1
    2010/01/13 14:00:01 main MESSAGE DBConnection: Created new Database connection [hashCode = 10969598]
    PartialOrderNode tree dump: time base = VMPSMajor
    <root>
        VMPSMajor: <root>
        VMPSMajor:     VMPSMajor.GetXMLData
        VMPSMajor:         VMPSMajor.PingSweep
        VMPSMajor:         VMPSMajor.PopulateFromDCR
        VMPSMajor:             VMPSMajor.GetPortStatus
        VMPSMajor:                 VMPSMajor.GetBridgeTable
        VMPSMajor:             VMPSMajor.Sweep
        VMPSMajor:                 VMPSMajor.GetIpXlateTable
        VMPSMajor:                 VMPSMajor.GetIpv6XlateTable
        VMPSMajor:                     VMPSMajor.GenerateTable6
        VMPSMajor:                         VMPSMajor.GenerateTable
    SMFunction evaluation order: time base = VMPSMajor
      VMPSMajor.GetXMLData  Major
      VMPSMajor.PingSweep  Minor
      VMPSMajor.PopulateFromDCR  Major
      VMPSMajor.GetPortStatus  Minor
      VMPSMajor.Sweep  Major
      VMPSMajor.GetBridgeTable  Minor
      VMPSMajor.GetIpXlateTable  Minor
      VMPSMajor.GetIpv6XlateTable  Minor
      VMPSMajor.GenerateTable6  Major
      VMPSMajor.GenerateTable  Major
    Time base VMPSMajor has 5 major nodes and 3 minor traversals.
    log4j:ERROR No appenders could be found for category (CTM.common).
    log4j:ERROR Please initialize the log4j system properly.
    In classlist loader
    In classlist loader processing sub classes
    updation done
    In classlist loader completed
    2010/01/13 14:00:03 main MESSAGE DBConnection: Created new Database connection [hashCode = 12524859]
    Calling default
    Subnet to SubnetData Map Size :73
    2010/01/13 14:01:31 DBConnecton-Reaper MESSAGE DBConnection: Closed Database connection [hashCode = 12524859]
    2010/01/13 14:01:31 DBConnecton-Reaper MESSAGE DBConnection: Closed Database connection [hashCode = 10969598]
    2010/01/13 14:04:50 main MESSAGE DCRDevWrapper: Closing DCRProxy
    I'm slowly getting to a dead end here. What am I missing?

    Well, our problem was resolved finally through a weird coincendence after having a websession with a Cisco TAC engineer (TAC case SR 613376661)
    We changed the
    snmp-server group readonly v3 auth context vlan-xxxx
    commands in the switches to:
    snmp-server group writeonly v3 auth context vlan-xxxx
    that is: use the writestring in the snmp-server groups instead of the read string.
    After we changed that, all of the User Tracking mysteriously started working.
    As far as I know, the writestring should not be needed, but apparently it is....
    Is there any explanation for this?

  • CiscoWorks LMS 4.0 No muestra los dispositivos

    Buenas.
    Tengo el CiscoWorks LMS 4.0, y de un momento a otro me dejo de mostrar los dispositivos que me habia reconocido, hice de todo y nada, por ultimo desinstale e instale nuevamente y lo mismo, me reconoce los dispositivos pero no me los muestra.
    Quien me puede guiar para saber que problema estoy experimentando.
    Gracias.
    Jose Luis Diaz Ortega
    Ingeniero de Sistemas.
    Administrador de redes.       

    Gracias.
    Si antes me mostraba en el inventario todo los dispositivos y en la opcion de monitor igualmente, pero cuando trataba de hacer una modificacion en la parte de configuracion no me desplegaba los dispositivo. Como tenia este problema lo que hice fue instalar nuevamente la aplicaciones, hice en descubrimiento me reconoce los dispositivo pero ahora no me muestra nada en inventario al igual que en la opcion de monitor.
    Siempre he trabajado con la verison LMS 4.
    opcion de inventario
    opcion de monitor
    En la imagen siguiente son los dispositivos que fueron reultado del descubrimiento realizado, esto sigmifica que los encuentra pero no me muestra informacion en la opcion de inventario y monitor.
    Jose Luis Diaz Ortega
    Ingeniero de Sistemas.
    Administrador de redes.

  • Ciscoworks LMS 4.0 – Fault Device Details Issue

           We currently use Ciscoworks LMS 4.0 but when I go into,  Monitor > Fault Settings > Setup > Fault Device Details   
           I get the following message (see attached document with screenshot) and being a LMS newbie am unsure what to do? As have tried to search for this
           file but no luck.
           So thanks in advance for any advice.

    Check if the fault management rediscovery page shows device as discovered and known or does it have any errors?
    Are you able to generate any fault management reports and view other pages?
    Just try to reboot the server/restart daemon to see if it is goes away.
    Else it is mostly corrupt FM DB. Which would need to be re-initialized.
    Fault Mgmt reinitialize is very simple task, which doesnt removes a lot of data, except past 31 days of FM history and custom notifications, if configured.
    Thanks
    Vinod
    **Rating Encourages contributors, and its really free. **

  • CiscoWorks LMS 4.0.1 - Could not generate the report

    Hello,
    I am running CiscoWorks LMS 4.0.1 since 6 months and I wanted to generate today a report about the interface utilization on 2 Cisco switches (Catalyst 3750G). The corresponding job is created, it runs and then i get "succeeded with info" in the "Run Status" column. When I want to click then on the "View Report" link, I get the following error: "Could not generate the report. Either data is not available for the specified duration or the report job failed."
    I tried the same procedure with 2 other switches but I have got the same result.
    Does anybody has an idea of how I can fix this issue?
    Thanks a lot in advanced.
    Best regards,
    Marc Hoffmann

    Hi Marc,
    I have this problem too. I rebooted my Windows but no solved. You known the service name responsible for this error? You have any other sugestion?
    Thank you !!!

  • Ciscoworks LMS 3.2 Processes down

    Hello all,
    I have installed ciscoworks lms 3.2 on windows 2003.
    The discovery ran successfully and the devices were added to dcr.
    After a few days, the ciscoworks processes were automatically down.
    “Processes NOSServer, CmfDbMonitor, FHServer, IPMProcess, Sysloganalyser, 1041, CTMJrmServer,
    Interactor1, EDS-GCF, IPMOGSServer, CMFOGSServer, 1015, DFMOGSServer, UPMDbMonitor, ChangeAudit, Inventory Collector, CampusOGSServer, Interactor, TISServer, jrm, UTManager,
    ConfigMgmtServer, DCRServer, PMCOGSServer, ICServer, EssentialsDM, InventoryCollector1, PTMServer, RMEOGSServer, UPMProcess are down” .
    Why were the processes down?
    What might be the solution?
    Thanks and Regards
    Yama

    Hello,
    Thanks for your answer.
    Unfortunately the problem still exists.
    I attached the required files.
    Thanks and Regards

  • Ciscoworks LMS 3.2 bug summary report

    Hi,
    I have one Ciscoworks LMS 3.2, it managed around 500 devices. I tried to generate bug summary report and the bug number is zero. Please kindly help to solve this problem.
    Best Regards,
    Jackson Ku                  

    For how many devices are you running the report?
    [ Wed Jan 05  21:26:50 CST 2011 ],INFO ,[main],com.cisco.nm.rmeng.bugtool.BTBugSummary,populateResults,295,Cisco.com URL Connection TimeOut: Try again later or with less number of devices.
    Have you tried running it for just one?
    This is also kind of strange,
    [ Wed Jan 05  21:26:50 CST 2011 ],INFO ,[main],com.cisco.nm.rmeng.bugtool.BTBugSummary,formBTDevHash,228,Device(s) are not supported by Cisco.com.
    [ Wed Jan 05  21:26:50 CST 2011 ],INFO ,[main],com.cisco.nm.rmeng.bugtool.BTBugSummary,formBTDevHash,229,Hence Could not generate report
    Like as if cisco.com would not know about these C3750's
    Maybe do an export of these 3750's in the DCR to see if the all have the same OID and if it is a supported OID.
    Are your device packages up to date? You may want to sync those with CCO.
    Cheers,
    Michel

  • CiscoWorks LMS: not receveing certain SNMP traps

    CiscoWorks LMS 4.0.1 (I know it's old and unsupported).
    Problem: not receiving certain SNMP traps.
    For example: I receive trap like "STP new root" but not like "port put to err-disabled" or my custom traps (produced by EEM scripts).
    I've investigated my situation and found out that switch sends traps and they reach* LMS but somehow LMS ignores them (there's no trace of them in GUI). I've read that some traps just pass through LMS but my traps are very important and I need to know about them.
    * I did Wireshark capture on LMS machine.
    I'd like to know how to debug receiving of SNMP traps in LMS:
    which specific debugs need to be enabled,
    which specific log files need to be examined.

    LMS uses DFM to process certain traps.
    All traps it deems unimportant are dropped.
    If you want to use the LMS GUI you can have you device send a SYSLOG message rather than a trap.
    use logging source command to make the management interface send the message.
    Then there is a GUI that allows you to launch an action on a message
    Cheers,
    Michel

  • Using Ciscoworks to update netmask on mgmt interface for multiple switches

    Is it possible to user Ciscoworks LMS 3.2 to update the netmask for a management interface on multiple switches? For example, say I have a 3750 access switch management network, 172.28.185.0/27 (default gateway 172.28.185.1) that we're resizing to a /26. Is there a simple way to update just the netmask for the management interface on those devices using Netconfig?
    -David

    Unfortunately not.  You could use Netconfig or even baseline compliance for this, but since you need to know each interface's IP, that means you'd have to create parameterized templates.  Therefore, you would have to create a template "answer" file for each device in this subnet which had their IP address for the interface in question.
    Baseline compliance might be a little easier with a template like:
    Commandlet : CheckIP
    IsPrereq : Yes
    Submode : interface [#.*Ethernet.*#]
    + ip address [#172.58.185.\d+#] 255.255.255.224
    Commandlet : ReplaceIP
    Parent : CheckIP
    + ip address [IP] 255.255.255.192
    You would still need to provide a value for [IP] for each device when performing a deployment.

Maybe you are looking for

  • HP LaserJet Pro MFP M125nw problem with scanning on samsung tablet

    Hi I have a problem with scaning on wireless hp app on samsung galaxy tab3. HP is online, when I tap 'scan' buttom, I can see black screen only with two buttons, preview and scan. Both of them does not work, when I tap them, there is short informatio

  • No Driver for Canon MP610 printer

    Hello! I recently updated to Leopard. When I went to print using my Canon Pixma MP610 printer I received a message that "no printer was selected." I then selected to add my printer but then a follow up request asked to select a driver or printer mode

  • Regarding ORA-00001: unique constraint violation error

    Hi , This is Venkat. I am new to OWB. When I run the mapping I am getting the ORA-00001: unique constraint violation error. My loading type is Update/Insert. My target table Primarykey is combination of 3 keys. Please give me the suggestions. It is v

  • Wish: Executing multiple SQL statements

    I've noticed Raptor, SQL Worksheet, and Toad all execute everything from the beginning even if there was an error. This can be bad if the next statement depended on the first statement being successfull. Also, when executing a single statement and yo

  • Since iOS 5.0 upgrade can't add details into calender. Any ideas

    Since iOS 5.0 upgrade, can't add details into calender. Any ideas