Need guidance of ESA C680 and M680

Hi All,
I am totally new for Cisco Ironport and due to some needs of present scenario I am engage to implement Cisco Email Security Appliance C680 as cluster with M680 for centralize management of ESA. 
Could you please help me out to understand the basic installation help to basic configuration guide.
Current Infrastructure
1. Already using Ironport C670 & C3xx in cluster
2. Rough diagram as per my understanding attached.
Requirement:
1. Want to replace with new model C680 in cluster.
2. Need to configure  M680 for centralize management of ESA.
3. To enable all new features and tighten the email security.
4. Separation of internal and external traffic.
5. Ip addressing to configure the two nos of C680 and one M680. (Management, communication etc etc)
6. To redesign as per the best practice.
Thanks in advance!

Hey Goutam,
This reply will be a high-level response as for concerns where you need to have infrastructure re-design to cater to new requirements, I believe your Cisco Systems(sales) engineers can be of better assistance as they will be able to provide details to assist in this regard.
With replacing existing models to the new C680
Best approach i would recommend.
Apply a temporary IP to your C680 devices and upgrade them to the same version as devices in the existing cluster so you can add them in.
If the C680 is in a newer version; then you may need to schedule an upgrade timing for existing clustered systems to match that of the C680 for an easier cluster integration process.
To configure ESA's to point to the M680 device, you need to ensure network routes on port 22 and SSH protocols are allowed between the IP interfaces that will be used to reach each other.
Ensure no SSH key fingerprint exchange interruption or proxying is happening as this will break the communication.
Configuring the SMA (M series) to talk to the ESA would require enabling the centralized services on the ESA ( GUI > Security Services > Centralized Tracking/Reporting and anything else) then go to the SMA (M series) and go to Management > Security Appliances, add the ESA's IP that will be communicated to and establish a connection
Once this is done, they're centralzied.
TO enable all new features, depending on which features you're seeking on -- some features require purchase of feature keys (thus your Cisco Sales/Systems engineer is the best person to approach to sort this) -- then general instructions are available through the Systems Online help guide on implementation and use of the features (GUI > Help and Support > Online Help)
Seperation of internal and external traffic, this is generally tied to Listeners -- if only using 1 Listener, then sendergroups will seperate inbound to outbound traffic.
If you device to wish to change from 1 listener to 2 for more seperation, network routes need to be configured from the devices on port 25, IP interface configured on ESA and new private/public listener setup to use the IP for seperation of traffic.
IP addressing for communication, GUI > Network > IP interfaces > Enable ports you want to allow for the management, communication is generally on port 22 between devices
Redesign best practises; as a TAC engineer myself, I cannot really comment on this.
Thanks
Matty

Similar Messages

  • What is the cisco ironport C680 and M680 configuration backup file size?

    what is the cisco ironport C680 and M680 configuration backup file size?

    Size of the XML itself?  That is going to vary based on what you have configured, total lines of code, and # of appliances you may/may not have in cluster.
    M680, based on SMA as stand-alone, should be similar --- you are probably looking @ < 1 MB... 
    Looking @ my test environment, in which I have a nightly cron job set to grab a backup of...
    -rw-rw----  1 robert robert 161115 Sep 26 02:00 C000V-564D1A718795ACFEXXXX-YYYYBAD60A5A-20140926T020002.xml
    So, 161115 bytes = .15 MB
    -Robert

  • Need some Document\Approach\Guidance on Webcenter Site and ATG Integration

    we have a requirement where pages/templates/content will be created in Webcenter Sites and will be consumed in ATG. I am looking for some Document\Approach\Guidance for Webcenter Site and ATG Integration

    I am looking for some Document\Approach\Guidance for Webcenter Site and ATG IntegrationBelow may help you:
    http://www.extended-content.com/wp-content/uploads/2012/07/WhitePaper-PublishingContentToATGFromOracleWebCenter-July2012.pdf
    http://www.extended-content.com/mediastore-now-integrates-with-webcenter-sites/
    http://technology.amis.nl/2011/08/13/fatwire-integrated-into-webcenter-as-webcenter-sites-for-web-experience-management/
    Hope this helps.
    -RMishra

  • I need guidance in choosing an xterm all portable power supply for iPhone 5 and iPad Air.  Can U help?

    Traveling intl.  Need a rechargeable external power supply.  I can't find any restrictions in choice.  Need to chg iPad Air and iphone5.  Any thing to avoid?  Any advantages in specific choices/brands?

    DNArizona wrote:
    No charger at my seat on the plane.. 
    How many planes routinely stay in the air for the 8-10 hours your battery lasts?

  • Need guidance on statspack report

    Hello Friends, How are you. I hope you all will be fine.I need guidance on statspack report. I do not know how can i resolve wait events. Please help me and give me some time for considering statspack report. If any one willing to do my help its really honour for me. In reply just show me email address and i contact you for you kind consideration.
    Thanks in advance

    Either post the report here, or send it to me at [email protected], and I'll try to give my 2 cents on it.
    Daniel

  • My start up disk Macintosh HD is full on my McAir OSX 10.9.4 memory 4GB. I need to clear the disk so that I can update it with the new software IOS 10.9.5 requiring 2.05GB. Need guidance on how to clear space.

    My start up disk Macintosh HD is full on my McAir OSX 10.9.4 memory 4GB. I need to clear the disk so that I can update it with the new software IOS 10.9.5 requiring 2.05GB. Need guidance on how to clear space.

    For information about the Other category in the Storage display, see this support article. If the Storage display seems to be inaccurate, try rebuilding the Spotlight index.
    Empty the Trash if you haven't already done so. If you use iPhoto, empty its internal Trash first:
              iPhoto ▹ Empty Trash
    Do the same in other applications, such as Aperture, that have an internal Trash feature. Then restart the computer. That will temporarily free up some space.
    According to Apple documentation, you need at least 9 GB of available space on the startup volume (as shown in the Finder Info window) for normal operation—not the mythical 10%, 15%, or any other percentage. You also need enough space left over to allow for growth of the data. There is little or no performance advantage to having more available space than the minimum Apple recommends. Available storage space that you'll never use is wasted space.
    When Time Machine backs up a portable Mac, some of the free space will be used to make local snapshots, which are backup copies of recently deleted files. The space occupied by local snapshots is reported as available by the Finder, and should be considered as such. In the Storage display of System Information, local snapshots are shown as  Backups. The snapshots are automatically deleted when they expire or when free space falls below a certain level. You ordinarily don't need to, and should not, delete local snapshots yourself. If you followed bad advice to disable local snapshots by running a shell command, you may have ended up with a lot of data in the Other category. Ask for instructions in that case.
    See this support article for some simple ways to free up storage space.
    You can more effectively use a tool such as OmniDiskSweeper (ODS) or GrandPerspective (GP) to explore the volume and find out what's taking up the space. You can also delete files with it, but don't do that unless you're sure that you know what you're deleting and that all data is safely backed up. That means you have multiple backups, not just one. Note that ODS only works with OS X 10.8 or later. If you're running an older OS version, use GP.
    Deleting files inside an iPhoto or Aperture library will corrupt the library. Any changes to a photo library must be made from within the application that created it. The same goes for Mail files.
    Proceed further only if the problem isn't solved by the above steps.
    ODS or GP can't see the whole filesystem when you run it just by double-clicking; it only sees files that you have permission to read. To see everything, you have to run it as root.
    Back up all data now.
    If you have more than one user account, make sure you're logged in as an administrator. The administrator account is the one that was created automatically when you first set up the computer.
    Install the app you downloaded in the Applications folder as usual. Quit it if it's running.
    Triple-click anywhere in the corresponding line of text below on this page to select it, then copy the selected text to the Clipboard by pressing the key combination command-C:
    sudo /Applications/OmniDiskSweeper.app/Contents/MacOS/OmniDiskSweeper
    sudo /Applications/GrandPerspective.app/Contents/MacOS/GrandPerspective
    Launch the built-in Terminal application in any of the following ways:
    ☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)
    ☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.
    ☞ Open LaunchPad. Click Utilities, then Terminal in the icon grid.
    Paste into the Terminal window by pressing command-V. You'll be prompted for your login password, which won't be displayed when you type it. Type carefully and then press return. You may get a one-time warning to be careful. If you see a message that your username "is not in the sudoers file," then you're not logged in as an administrator. Ignore any other messages that appear in the Terminal window.
    The application window will open, eventually showing all files in all folders, sorted by size. It may take a few minutes for the app to finish scanning.
    I don't recommend that you make a habit of doing this. Don't delete anything as root. If something needs to be deleted, make sure you know what it is and how it got there, and then delete it by other, safer, means. When in doubt, leave it alone or ask for guidance.
    When you're done with the app, quit it and also quit Terminal.

  • Need guidance asap

    Hi,
    I need to generate the reports and all the required fields are present in the BW system in two different cubes, except 2 fields. I need to extract these missing 2 fields from R/3 to BW system.
    Need your suggestions, how to move ahead...
    your help / guidance will be rewarded.
    Regards,
    Minal

    enhancing the structure and then mapping it with adding two new fiels in cube is fine...but the cube is already loaded and the landscape is like from r/3 data comes to ODS and then to the cube...
    if any other way is suggested...i didnot get  ur 2nd point.
    data for these two r/3 fields is not there, need to create new info objects and then to populate them.

  • I'm looking for Apple desktop P.C. as an upgrade from my Dell /windows XP. I need  guidance.

    I currently use a 6 yr. old Dell Vostro 200 (Windows XP). I want to upgrade to an Apple desktop PC. I need guidance to a product. Are any peripherals compatible (ie. screen, printer, Maxtor hard drive)?

    Almost all  peripherals are compatible. I'd recommend reading https://www.apple.com/support/macbasics/  and if you have an Apple Store in your general area stop buy and ask questions. You were not specific as to what screen, printer etc... that you want to use with the iMac and that is all important so you can verify they are compatible.

  • Need guidance to solve the problem.

    my internal hard drive is not showing up on mac. need guidance to solve the problem. thanks

    Hi,
    First make the finder the Front app.
    The Finder Menu > Preferences > General Section should have the Hard Drive item ticked to show the Hard Drive on the Desktop.
    The Name of the drive should not have a . at the beginng  as in .Mactinosh HD as this will make te file Invisible.
    There are also other characters that cause this.
    If you go to the Finder > Go Menu and select My Computer it should have opened a window displaying the Volumes ( Hard Drives and storage devices) that are connected.
    10:17 PM      Sunday; April 14, 2013
      iMac 2.5Ghz 5i 2011 (Mountain Lion 10.8.3)
     G4/1GhzDual MDD (Leopard 10.5.8)
     MacBookPro 2Gb (Snow Leopard 10.6.8)
     Mac OS X (10.6.8),
     Couple of iPhones and an iPad
    "Limit the Logs to the Bits above Binary Images."  No, Seriously

  • I need guidance on software selection

    I am totally lost on the myriad of software being offered and I need guidance on which one i should use.
    I want to create an interactive short movie display for my website similar to the one that does a 360 virtual tour being used by Royal Caribbean Cruiselines on their website. That allows the view to do a 360 and with the mouse you can also pan up and down, slow or pause.
    Can anyone tell me what Apple product or combination of products I would need to achieve this? My webserver is Linux.
    URL ref: www.royalcaribbean.com
    NAVIGATE TO: Find a Cruise > Ships > Freedom of the Seas > Deck Plans and then select VIRTUAL TOUR.
    Thanks for your assistance.
    Rgds/
    Terry

    What you need to create is a QuickTime VR movie. Apple does not make any Windows-based tools for creating QTVR movies, but there are some third-party tools available. Try VR Worx; it's probably the most popular and capable.
    Hope this helps.

  • I need guidance on using an i-pad with older people

    I represent a UK Charity that is considering rolling out the use of i-pads to older people who attend day centres so that when they are at home they can access, very easily, information about local services, activities, friends, family etc. I have so far concluded that an i-pad with a mobile contract should allow them unfettered access the Internet  thus information and e-mails. It would not need another computer to piggy-back on nor a wireless router. Applications specifically tailored to older people who are living alone. I would like some guidance on the realities of persuading older people that the i-pad is not a 'computer' but merely a window to the world. I would welcome guidance on how to set up such a roll out programme, costs, pitfalls, unexpected advantages etc.Help !!?

    JohnPW wrote:
    I represent a UK Charity that is considering rolling out the use of i-pads to older people who attend day centres so that when they are at home they can access, very easily, information about local services, activities, friends, family etc. I have so far concluded that an i-pad with a mobile contract should allow them unfettered access the Internet  thus information and e-mails. It would not need another computer to piggy-back on nor a wireless router. Applications specifically tailored to older people who are living alone. I would like some guidance on the realities of persuading older people that the i-pad is not a 'computer' but merely a window to the world. I would welcome guidance on how to set up such a roll out programme, costs, pitfalls, unexpected advantages etc.Help !!?
    I would try a few iPads first, may work for some just fine, others likely not at all.
    Some of the drawbacks of the iPad for some seniors I've found are as follows:
    1: can't scale the UI for their poor eyesight
    2: touchscreen issues with colder fingers
    3: UI has a lot of hidden and not clear cut references, lots of guessing, harder to learn
    4: difficult to hold, no mouse, having to raise their arms to use, fragile device easily dropped.
    5: some sites they use are not compliant, or use plug-ins the iPad can't use, like historical records, government sites and such designed for a desktop OS and a mouse pointer
    Believe it or not, I've found Windows XP to be the best for seniors as they have had the most familiarity with it, but adopting to Windows 7 themed as close to Windows XP to be the most trouble free on newer machines.
    Your results may vary and your learning level of the seniors you work with may vary.
    Usually the ones are active will go out and buy their own iPad or computer they like, however with shut-ins your likely looking at doing everything for them and they are more interested in your company and may only feign interest. You'll find out the iPad is only being used while your there.
    If you really want to help them, then give them something as close to what they already know how to use or others can assist to take the workload off you.
    They mostly prefer a mouse, pointer and a keyboard over a touchscreen.
    All I can suggest is s mixed approach, not all iPad and not all desktop computers, however you will find the desktop computers are considerably less headache, cost less , autoupdate etc., and break down less than a iPad.
    You can set the desktop machine to do things automatically, it's always hooked to the power, the iPad needs to be charged, it needs this or that update and so forth.
    Not knocking the iPad, and it can work for some, but likely not all.
    I know as a young person it's tempting to think a lot of older seniors can grasp new technology as  easy as the young, but a lot don't, it's a whole new different way of doing things and it's foreign to them, take them so long to learn they they don't want to bother.
    So sometimes it's just better to give them something as close to what they already know, your trying to help them remain active, not torture them with every new technological gadget that magically appears on the market, is popular now but won't be 3 years from now as something newer is released.
    You'll catch on soon enough who you can use a iPad with or not, unfortunatly a "organization" is thinking a global rollout, when a much more tailored approach is better.
    I've hope I've made my point.
    Good luck

  • Troubleshoting help needed:  My iMac keeps crashing and restarting with a report detail: "spinlock application timed out"  What can I do to fix this?timed out"

    Troubleshooting help needed:  My iMac keeps crashing and restarting with a notice: "Spinlock application timed out"  What can I do?

    Launch the Console application in any of the following ways:
    ☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)
    ☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.
    ☞ Open LaunchPad. Click Utilities, then Console in the page that opens.
    Select the most recent panic log under System Diagnostic Reports. Post the contents — the text, please, not a screenshot. In the interest of privacy, I suggest you edit out the “Anonymous UUID,” a long string of letters, numbers, and dashes in the header and body of the report, if it’s present (it may not be.) Please don't post shutdownStall, spin, or hang reports.

  • Urgent help needed!! Layout table and Draw layout cell dissapeared.

    I need some urgent help. I'm using CS3 but for a while my
    Layout Table and Draw Layout Cell icons appear greyed and can't use
    them at all. Is there any kind soul out there who knows how to fix
    this? I'm going nuts trying all the possible options but none seem
    to work.
    Help please!!!!!!

    > How would you about designing a page without using html?
    You don't. But I don't recall suggesting that you not use
    HTML. I just
    suggested that you use best-practice HTML, no? Or maybe you
    meant to ask
    how you would go about building your site without learning
    HTML? In that
    case, I think you are outta luck. Using DW without knowing
    HTML is a very
    punishing experience, I'm afraid.
    > PS: A virtual box of 12 bottles of Moet Chandon is
    already on your way!!
    I'd prefer Cristal, please.
    Murray --- ICQ 71997575
    Adobe Community Expert
    (If you *MUST* email me, don't LAUGH when you do so!)
    ==================
    http://www.projectseven.com/go
    - DW FAQs, Tutorials & Resources
    http://www.dwfaq.com - DW FAQs,
    Tutorials & Resources
    ==================
    "Untersberg" <[email protected]> wrote in
    message
    news:g4tj9a$m5o$[email protected]..
    > Ahhhhhh!!!!! They came up!!!! They came up again!!
    > I was on standard mode. Now going back to your
    suggestion, which I really
    > appreciate. How would you about designing a page without
    using html? I'm
    > just
    > redesigning my website at the moment and need it to get
    going urgently,
    > hence
    > the reluctance to start learning HTML at the moment.
    I'll do after but I
    > need
    > to get this up and running fairly quickly.
    >
    > Cheers.
    >
    > PS: A virtual box of 12 bottles of Moet Chandon is
    already on your way!!
    >

  • I need to show grouped id and only the max order value for each unique id

    select distinct 
    Table1.id,
    Table1.id +' - '+ Table1.VisitNumber +' : '+ Table1.Priority as UidVisitKey,
    Table1.VisitNumber,
    DATEDIFF(d, [dob],[Visite_dte])/365.25 as Age_On_Visit,
    Table1.Priority,
    Table1.OrderOfVisit,
    Table1.OrderOfVisit + ' - ' + Table1.Notes AS VisitNote, 
    Table1.Visitor_FName,
    Table1.Visitor_SName,
    Table2.dob,
    Table2.sex,
    Table1.Visit_dte,
    into #Temp1
    FROM         Table1 INNER JOIN
                Table2 ON Table1.id = Table2.id
    WHERE Table1.LeaveDate IS NOT NULL 
    and Table1.LeaveDate  between DATEADD(mm,-1,DATEADD(mm,DATEDIFF(mm,0,GETDATE()),0)) 
    and DATEADD(ms,-3,DATEADD(mm,0,DATEADD(mm,DATEDIFF(mm,0,GETDATE()),0))) 
    select #Temp1.id, max(#Temp1.[OrderOfVisit]), #Temp1.VisitNote 
    from #Temp1
    group by #Temp1.id, #Temp1.OrderOfVisit, #Temp1.[VisitNote]
    ORDER BY #Temp1.id
    drop table #Temp1
    ---I need to show grouped id and only the max OrderOfVisit for each unique id, and the VisitNote for each OrderOfVisit
    ----------------need help-------------

    Sounds like this
    select distinct
    Table1.id,
    Table1.id +' - '+ Table1.VisitNumber +' : '+ Table1.Priority as UidVisitKey,
    Table1.VisitNumber,
    DATEDIFF(d, [dob],[Visite_dte])/365.25 as Age_On_Visit,
    Table1.Priority,
    Table1.OrderOfVisit,
    Table1.OrderOfVisit + ' - ' + Table1.Notes AS VisitNote,
    Table1.Visitor_FName,
    Table1.Visitor_SName,
    Table2.dob,
    Table2.sex,
    Table1.Visit_dte,
    into #Temp1
    FROM Table1 INNER JOIN
    Table2 ON Table1.id = Table2.id
    WHERE Table1.LeaveDate IS NOT NULL
    and Table1.LeaveDate between DATEADD(mm,-1,DATEADD(mm,DATEDIFF(mm,0,GETDATE()),0))
    and DATEADD(ms,-3,DATEADD(mm,0,DATEADD(mm,DATEDIFF(mm,0,GETDATE()),0)))
    select id,OrderOfVisit,VisitNote
    from
    select #Temp1.id, #Temp1.[OrderOfVisit], #Temp1.VisitNote,ROW_NUMBER() OVER (PARTITION BY #Temp1.id ORDER BY #Temp1.[OrderOfVisit] DESC) AS Seq
    from #Temp1
    )t
    WHERE Seq = 1
    ORDER BY id
    drop table #Temp1
    Please Mark This As Answer if it helps to solve the issue Visakh ---------------------------- http://visakhm.blogspot.com/ https://www.facebook.com/VmBlogs

  • Dear Apple Support,  Good day to you. This is to report the problem i encountered when i updated my Ipad mini to the new IOS 8.1..  After the update my Ipad restart and after that it appears a picture that need to connect to itunes and need  to resto

    Dear Apple Support,
    Good day to you.
    This is to report the problem i encountered when i updated my Ipad mini to the new IOS 8.1..
    After the update my Ipad restart and after that it appears a picture that need to connect to itunes and need  to restore. So i connect it to itunes and wait to restore my ipad mini because it is not opening.
    After restoring it my ipad is now opening and it is like new that i need to set up again.
    I set up again until i reach the apple id and password.
    I put my below apple ID and password to unlock my ipad but it didn't work. The message i receive is "the apple ID cannot be used to unlock this Ipad.
    What will I do? Please help.
    Thank you
    Sent from my iPhone
    Begin forwarded message:
    From: Apple <[email protected]***>
    Date: October 9, 2013 at 11:53:53 PM GMT+4
    To: ****
    Subject: Your Apple ID was used to sign in to iCloud and iMessage on an iPad mini 
    Dear Leslie J.,
    Your Apple ID was used to sign in to iCloud and iMessage on an iPad mini named “Leslie Joye's iPad”.
    If you have not recently set up an iPad with your Apple ID, then you should change your Apple ID password. Learn more.
    Apple Support
    <Email Edited By Host>

    1. It is never a good idea to include personal info like your email address or Apple ID in a post on an open forum.
    2. The email you received DOES NOT say your Apple ID cannot be used to unlock this iPad. The email informs you that your Apple ID was used to unlock an iPad. Fortunately the iPad is yours. The message confirms that. If your Apple ID was used to unlock an iPad that was not yours your would then know to change your password. Since the iPad is yours you do not need to change your password.
    Is your iPad working?

Maybe you are looking for