Numbers of users for ASA Content Security module

Hi,
Can someone tell me how the ASA Content Security module recognize the maxi number of users ?
eg. :  ASA-SSM-CSC-20-K9= is for 500 users. What will happen if I exceed to 560 users ?  Does the module recognize that there are more users than expected ?
Best regards

You will get similar message
License violation has been detected on the InterScan for CSC SSM. There are currently 560 active nodes while you only have 500 seats of license. 60 more seats of license is required.
Please upgrade your license to resolve the violation.

Similar Messages

  • ASA Content Security Module (Anti-X) issue

    Is there a way to configure the Anti-X module such as I can filter the web content based on source VLAN or subnet? I need to implement something like that and can?t find how to do it.

    Traffic for CSC inspection is done using the Modular Policy Framework commands to create a service-policy
    General modular policy info is here
    http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/mpc.html
    The service policy you create sends traffic to the CSC for inspection
    The service policy identifies traffic using one or more class-maps
    Class-maps can use an access-list to match interesting traffic
    So it's up to how creative you can get with your access-list really.
    Info here should be of some help
    http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/ssm.html#wp1058664
    Here's an extremely basic example to hopefully get you going that inspects only http traffic initiated from the 10.1.1.0/24 subnet
    access-list MATCH_CSC extended permit ip 10.1.1.0 255.255.255.0 any eq http
    class-map MATCH_CSC_CLASS
    match access-list MATCH_CSC
    policy-map CSC_POLICY
    class MATCH_CSC_CLASS
    csc fail-close
    service-policy CSC_POLICY global
    Hope this helps

  • ASA Content Security

    Hi,
    We are looking at purchasing the above module for ASA 5510.
    Can someone let me know if this allows web monitoring per user or per IP etc? and how good the interface is?
    I know it wont have all the functuality but we are trying to decide if this is a decent alternative to Websense.
    Thanks

    Here is the datasheet for CSC module on ASA:
    http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/ps6823/product_data_sheet0900aecd80402e4f_ps6120_Products_Data_Sheet.html
    And here is the configuration guide for CSC module which will show you features that is supported:
    http://www.cisco.com/en/US/docs/security/csc/csc66/administration/guide/cscssm66.html
    Hope this helps.

  • Cisco ASA 5510 Content Security bundle

    Hello,
    please help me  to understand if i buy  the    Cisco ASA 5510 Content Security bundle  for  my  network   found  there is   1 yr subscription for the content
    security features.  what are  services included in it.  Does   URL blocking and filtering  includ  in this subscription  or  its a seperate features.
    Thanks,
    Saroj Pradhan

    Here is the license for CSC module and it lists what is included in Basic and Plus CSC license:
    http://www.cisco.com/en/US/docs/security/csc/csc66/administration/guide/csc1.html#wp1045405
    One year subscription is providing you the ability to upgrade the virus scan engine, spyware pattern file, anti spam, etc

  • Content engine module

    Hi, is it possible for a content engine module to work in a 2600 with the following scenario? I want the clients gateway to be the 2600 with content engine installed but I want the 2600 to forward all traffic out a seperate gateway. I know a content switch can do this but can a content module in a 2600 do it too. The reason for wanting this is I want to use url filtering software such as websense and at the moment the existing gateway/firewall is not compatible with websense so Im looking to use a 2600 with content module installed to filter webtraffic and forward out the existing gateway. Thanks

    this is no problem
    Just look at the nm-ce as a standalone device connected by ethernet to the 2600.
    The 2600 can be the default gateway for the client and the cache [nm-ce].
    The 2600 will intercept traffic from client and forward to nm-ce.
    The nm-ce will use the 2600 as its default gateway.
    Gilles.

  • Content Security Licensing on Cisco ASA

    Hi Guys,
    Need help on licensing of content security on Cisco ASAs. Hope someone would be able to help.
    Our customer has a ASA5520-CSC20-K9 (default 500 users) appliance. When the appliance was first bought, they upgraded it to 750 user license and PLUS feature license. They want to renew these licenses. Kindly advise the following:
    1. In order to do so, is it right that the customer has to purchase both the following (to cater to the 750 users and PLUS features)?
    • L-ASACSC20-500UP1Y     ASA 5500 CSC-SSM-20 500-User w/ Plus Lic. Renewal (1-year)
    • L-ASACSC20-250UP1Y     ASA 5500 CSC-SSM-20 250-User w/ Plus Lic. Renewal (1-year)
    2. Do the renewal licenses above include BASE features (Anti-Virus, Anti-Spyware, File-Blocking)?
    Thanks!
    Citra

    That unfortunate.  It seems like with the VPN licensing they realized if you were in an active/standby configuration then you should only have to pay for one license, thus the license change in 8.3+ only requires you to purchase one license.  I thought this would have carried over into IPS. 
    Beings we haven't failed over to the standby unit in 2 years, would it be possible to install the IPS module in both the active and standby appliances, but just license the one in the active mode?  I don't care if we are running without IPS on the standby if we did have to failover for some amount of time.  Or does having it licensed on one and not the other mess with being in active/standby failover mode?

  • Can SES search webcenter content when content using ACL security module

    hi experts:
    My customer asked me if SES11g can search ecm11g with ACL security module? from SES document, seems SES crawler only support security grount/account module, the only way is by using fedarated search for ACL module? any comments on this?
    Thanks a lot!
    Best regards

    I'm trying to sort out a similar issue myself, and it looks like the answer is no.
    The Oracle SES Oracle Content Server connector supports the two most popular security models among current Oracle Content Server customers: Roles and Groups, and Accounts.
    http://docs.oracle.com/cd/E21698_01/admin.1122/e21605/cmsources009.htm#sthref479

  • I just installed version 7 of Firefox and afterwards it told me my security module for my firm's bank account was disabled. Now I can't access my account and the bank is in Brazil. I MUST make transactions from the US. How can I go back?

    I just intalled version 7 of firefox and afterwards it told me it had disabled a security module for access to my bank account. The account and my company are in Brazil and I am in the US. I must have access to perform transactions. Had the program warned me I would not have "upgraded". To reinstall the security module I must be physically in Brazil because a code is text messaged to my local cell phone as one of the securty precautions and I am in the US and Europe for t3 to 4 weeks. I need to make a wire transfer during that time and cannot do so now. How can I go back to the old version and recover the bank access? Thank you.

    You can download last Firefox 6 version from [http://releases.mozilla.org/pub/mozilla.org/firefox/releases/latest-6.0/ Here]
    Regards

  • Advice needed: many lines terminating to same user for multiple numbers...

    In our situation, there are many numbers that can terminate into one user for many different reasons. I.E. A help line for product A, and a sales line for product B. Some users have up to 14 different numbers that they will be responsible for. It is a CCM 4.2 envorionment, with unity unified msg. The user needs to be able to differentiate between the called numbers. Aside from using multiple lines on a sidecar 7914, is there an alternate solution for changing the appearance of the called number? Would forwarded route points be able to pass calling and called line information via the 7960 screen?
    Thank you.

    Yes, that will work. Take a look at the following post for the required steps.
    http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&forum=IP%20Communications%20and%20Video&topic=IP%20Telephony&CommCmd=MB%3Fcmd%3Dpass_through%26location%3Doutline%40%5E1%40%40.1ddb5957/0#selected_message
    Hope this helps. If so, please rate the post.
    Brandon

  • Remove Context Menu for KM Content for Anonymous User

    Hi All,
    I have implemented External Facing Portal and i have to show KM documents
    on Anonymous user home page. For This I have created JSP page and have
    created url iview for this created JSP application. On this JSP  page to access
    KM i have used below code
    <iframe src ="/irj/go/km/navigation/documents/Public%20Documents" > </iframe>
    Now i am able to see the KM Contents of Public Documents on my Anonymous
    user Home Page .But here i need  to remove the context menu for KM Content
    for Anonymous User , but the context menu should come for Logged in user.
    How to do this ??
    Regards,
    Piyush

    solved

  • Powershell script for security groups and users for multiple share folders

    Hi scripting team,
    I need your help with powershell script for the below queries 
    1. List out the security groups for more than one server share path and output it to a file ( csv ) 
    For eg.
    If the are are two share paths 
    \\servername\foldermain\folder1
    \\servername\foldermain\folder2
    So I needs the list of security groups for each share path
    And the output needs to be under each any every path.
    2. Grab the users belongs to main security groups and it nested groups for more than one security group and listed the users under each and every group. No need to display nested groups. Just users belongs to main group and users under nested.
    Your teams help is much appreciated 
    Thank you.
    Thilochana kumararatne

    Hi Braham,
    Thanks for your quick reply.
    Are we able to do this on two stage method
    1. grab the security groups from the share paths
    if can grab the share path from a separate txt file than copying it to the <your path> location
    so i can modify the txt file
    once run the script
    if can the output like below to a CSV file
    \\servername\foldermain\folder1group 1group 2group 3\\servername\foldermain\folder2group 1group 2group 3then i know which groups belongs to which share paththen i can remove the duplicate groups and keep the common groups to grab the users belongs to itso with the second script same as the first copy the security groups to a txt file and the out put as below.what I needs is the users full name and the samaccount name ( user id )group 1user1user2user3
    group 2user1user2user3looking forward your help on thisThank you.Thilo

  • Templates for deploying content management in sap ep at user end

    Where i can find templates for deploying content management at user end in sap enterprise portal ? or Please suggest me about default templates provided by sap if any for content management ?
    Regards-
    Sumeet Sharma

    My question is not yet answered
    hi, I want to know about Templates in the sense that what the information should be collected or form shoud be filled up for deploying content management at user's end from the user.?
    what must be the contents for that form or template for content management or user id creation......?
    Plz Reply...?
    Thank's in advance
    Regards-
    Sumeet Sharma

  • Users for secure web services

    Hello,
    if i define a secure web service, i also have to define one or more users which are allowed to access this web service. I only found instruction for defining such users on the application level. If i undeploy or redeploy the web service i lost this users.
    Is there any possibility to store users for an application permanently or to define allowed users during the deployment?

    Hello,
    I suppose that you are in OracleAS 10.1.3.x and you are using the WS-Security built in the product. If this is the case...
    The WS-Security handlers are based on the JAAS security model, this means that the security processing is based on the container security. The user credentials are not related to the WS application but how the J2EE application security provider has been configured.
    So by default you are using the FileBased Security provided that stores the data in the system-jazn-data.xml, but you can easily configure your application to use any other system to store user information such as a LDAP server for example.
    I am inviting you to take a look to the Security Provider documentation:
    - Introducing the OracleAS JAAS Provider and Security Providers
    Regards
    Tugdual Grall

  • I have setup a new user profile for myself on my wife's mac. If i authorise it for my content will it remove my wife's authorisation.

    I have set up a separate user profile for myself on my wife's MacBook Air.
    If i authorise this Mac for my content for home sharing, will this remove my wife's authorisation.

    Shared iMac, different users, different iTunes accounts - 90 day hold???

  • Maximum number of users for server SEQ module exceeded

    Hi ,
    I am getting the below error for optimizer SEQ in SCM 7.0 EHP3 system.
    "Maximum number of user for server SEQ module exceeded"
    But the RFC connection works fine and all are green in /sapapo/opt03.
    Should I increase the user in /sapapo/opt03? for SEQ..and on which column...Maximum slot?
    Thanks in advance

    Can you check this thread:
    maximum number of users for server module SNP exceeded
    Divyanshu

Maybe you are looking for

  • Workitem should be in  IC Agent Inbox but not in SBWP

    Hi,      I have a scenario in which i am creating a workitem through program. This is creating a workitem and sending a mail to the user through ERMS. Now, this workitem is present both in the agent inbox (i.e ERMS) and also in SBWP. Once the ERMS ru

  • Dump while executing the Query

    Hi, when I try to execute the query I get the following dump. ASSIGN_TYPE_CONFLICT Error analysis You attempted to assign a field to a typed field symbol, but the field does not have the required type. Pleaes assist , its urgent Regards, ANita

  • Macbook Pro Retina BOOTCAMP & StarCraft 2 Issues

    I am using a Macbook Pro with Retina Display 13-inch (256GB, late 2014). 1. I run StarCraft 2 on Mac OS. The fan speed gets really high whenever I do so. I do know that this is a heavy task (so I don't really thing there are any problems here), but j

  • Previous Month, Current Month, Percent Change

    Post Author: lcrawfor CA Forum: Formula I need to create a report which shows the count of orders for the previous month, the current month and the percent change. An example follows.I suspect I need to use sql expressions but I can't figure it out.

  • We have a legacy Forms application that has

    We have a legacy Forms application that has been moved to the web. Now that it is executing using OAS9i, we are now providing an ASP offering for clients. The application consists of 210 Forms 6i screens, 130 Report Writer 2.5/6i reports as well as 1