Overrun nodes license CSC-SSM-10 (100 nodes) ASA5520

Hi all,
I got an ASA5520 with a CSC-SSM-10 (100 nodes) in use. There are about 200 host behind.
What happen, when the node license will be overrun. E.g. all 200 hosts are connecting through the firewall/contentfilter
at the same time?
Thanks,
Norbert

You can issue "sh csc node-count" on the ASA CLI.
http://www.cisco.com/en/US/docs/security/asa/asa80/command/reference/s2.html#wp1362072
License upgrade notice Error Message license-upgrade-notice: Your daily node counts (daily_count) has
exceeded your licensed seats (seats) by offset. Please upgrade your license.
Example:
License-upgrade-notice: Your daily node counts (300) has exceeded your licensed seats (100) by 200. Please upgrade your license.
Explanation    This system log message is generated when CSC SSM detects more nodes connected to the CSC SSM than are specified in the current license. In addition to this message, a notification e-mail is sent to the administrator.
•    daily_count—The daily node count that has connected to the CSC SSM •    seats—The number of seats of the CSC SSM license •    offset—The daily count minus the number of seats
Recommended Action    Contact Cisco for a license upgrade.
You can read the above in the csc module admin guide here: http://www.cisco.com/en/US/docs/security/csc/csc62/administration/guide/cscbook.pdf
-KS

Similar Messages

  • CSC-SSM license problems

    Hi,
    because of system failure i reinstalled CSC-SSM 6.1.1587.0 version. All was working. Before the reinstallation the license info was this:
    # License Information
    Product:Base License
    License profile host info check OK.
    Version:Standard
    Activation Code:xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
    Seats:000100 !!!!!!!!!!!!!!! 100 SEATS
    Status:Activated
    Expiration date:9/20/2008 !!!!!!!
    Product:Plus License
    License profile host info check OK.
    Version:Standard
    Activation Code:xxxxxxxxxxxxxxxxx
    Status:Activated
    Expiration date:5/18/2008 !!!!!
    After the installation i entered the same BASE and PLUS license but now i have only 50 seats and the expiration date is not the same, hava a look:
    # License Information
    Product:Base License
    License profile host info check OK.
    Version:Standard
    Activation Code:xxxxxxxxxxxxxxxxxxxxxxxxxxxx
    Seats:000050 !!!!!!!!!!! 50 SEATS
    Status:Activated
    Expiration date:5/18/2008 !!!!
    Product:Plus License
    License profile host info check OK.
    Version:Standard
    Activation Code:xxxxxxxxxxxxxxxxxxxxxxxxxxxx
    Status:Activated
    Expiration date:5/18/2008 !!!!!!
    any idea?
    Can anyone direct me to the correct site or give a email contact.

    Hi
    Contact [email protected] with the information above, they should be able to help.
    Regards MJ

  • Tree view control - populating speed - over 100 nodes

    I have a few questions about a tree view control:
    1. If you put more than approximately 100 nodes in a tree, it populates too slow. There is no change if you try with query or record group. I figured that the populating of the record group makes all problems, but there is no chance to enlarge the array siye of the record group. Developer 6 has some built-ins which can do that, bu after many unsuccesful tries I don't see a solution.
    I tried to make fetches from cursor into a record group (30 nodes on a "page", but it looses a real hierarchy and you should do a lot of programming). If anybody knows how to make the population of the tree faster or have some template / please forward.
    2. After we put the patch 5 of developer6, tree view control is totally unpredictable. Usually its when you programmaticaly try to select a node (ftree.set_tree_selection)...Anybody have the same problems?

    <BLOCKQUOTE><font size="1" face="Verdana, Arial">quote:</font><HR>Originally posted by Natasa Stojovska ([email protected]):
    I have a few questions about a tree view control:
    1. If you put more than approximately 100 nodes in a tree, it populates too slow. There is no change if you try with query or record group. I figured that the populating of the record group makes all problems, but there is no chance to enlarge the array siye of the record group. Developer 6 has some built-ins which can do that, bu after many unsuccesful tries I don't see a solution.
    I tried to make fetches from cursor into a record group (30 nodes on a "page", but it looses a real hierarchy and you should do a lot of programming). If anybody knows how to make the population of the tree faster or have some template / please forward.
    <HR></BLOCKQUOTE>
    Try taking out the 'start with' and 'connect by' clauses in your select statement if you're using them. However, this will mean that you will have to determine the levels of the tree manually and ensure that the data comes out in the same order each time you execute the select statement.
    null

  • Node License

    Dear Experts,
    I have the following HW/SW configuration of two call Managers to be clustred, I need to confirm if any extra license in required, and what its part#
    Product
    Description
    Qty
    UNIFIED-CM-7.0
    CUCM 7.0 top level part number
    2
    MCS7816H3-K9-CMC1
    HW/SW MCS 7816-H3 Unified CM 7.0 Appliance
    2
    CAB-ACU
    Power Cord UK
    2
    CCX-70-CM-BUNDLE
    CCX 7.0 UCM 5 Seat ENH Bundle - ONLY with NEW UCM
    2
    CUCMS-EVAL-K9
    CUCMS Monitoring Bundle Evaluation
    2
    CON-SNT-16H3CMC1
    SMARTNET 8X5XNBD HW/SW MCS7816H3 Unified CM7.0 Appliance
    2
    LIC-CM7.0-7816=
    License CM 7.0 7815/7816 Appliance, 500 seats
    2
    LIC-CM-DL
    Top level part number for Unified CM Device Licenses
    2
    LIC-CM-DL-10
    Unified CM Device License - 10 units
    62
    CM7-DL-PAK
    CUCM 7.0 DL PAK
    2
    Also When Im Implemting the Cluster is it true that I shall Install the 2 x " LIC-CM7.0-7816=" in two server to have node license Qty 2
    thanks

    Hi majd,
    If the Quantity of this part is equal to 2;
    LIC-CM7.0-7816=
    License CM 7.0 7815/7816 Appliance, 500 seats x 2
    Then you are good to go
    All Licenses (including the Node License) will be referenced to
    the Publisher/First Node MAC, and loaded only on the
    Publisher/First Node.
    Cheers!
    Rob

  • CUCM 9.0 nod license

    Hi,
    Since some of 8.x versions there is no need to buy nod license for each additional node in cluster. But it's still need to be ordered even with 0$ price. Is there same trouble in 9 version or that trouble was definately solved with it's new ELM?
    Thank you

    Hi ,
    Not clear on this , do we need to order node licenses for CUCM 9.0  as well ?
    how many nodes are by default supported by CUCM 9.0 with out a specific node licenses ?
    regards
    PW

  • Upload License file to CSC-SSM usling CLI

    Hi,
    The CSC-SSM license has ben expired into my ASA 5520 having CSC-SSM module..I got the license. But as GUI is not functioning so only option left with CLI.
    Can someone guide me the steps for uploading a new license usling CLI into CSC-SSM !!!!

    The Activation/License pane lets you configure activation codes for the following two components of the CSC SSM:
    • Base License
    • Plus License
    You can use ASDM to configure CSC licenses only once each for the two licenses. Renewed license activation codes are downloaded automatically with scheduled software updates. Links to the licensing status page and the CSC UI home page appear at the bottom of this window. The serial number for the assigned license is filled in automatically

  • Which part number for CSC-SSM with Plus license?

    Dear All,
    Which part number for CSC-SSM with Plus License? i saw the part number for standard license.
    could you let me know?
    Best regards,

    Hi,
    The part number is the following:
    ASA-CSCX-YP-ZY
    where X is your CSC model, Y is the number of seats of the license and Z is the number of years.
    For instance, if you need a 2 year plus license for a CSC10 with 250 seats, the part number would be ASA-CSC10-250P-2Y
    Regards,
    Nicolas

  • ISE distribution system with 4 nodes & Licensing

    Hi,
    Question 1
    We have 04 ISE appliances and we are planning to deploy in distributed system such way that 02 ISE will act as PRI/SEC with the roles PAD/M&T and other 02 to be act as PRI/SEC with PDPs.
    Configuring PAD/MT pair is straighforward and has no doubts, however we have issue with other two nodes which is  (PDP) as PRI/SEC.
    ISE giving us warning that atleast one node should have monitor role enabled, however by the time Admin role is already enabled where we cant disabled.
    If someone has deployed this, appreciate can guide me in proper direction or share any document how to achieve this requirement.
    Question 2
    My other querry is about the licensing on this requirement. We have only 1 Base and 1 Adv license for all these 04 boxes for about 500 endpoints. However we can generate licenses against only 1 ISE appliance giving it's serial number and that will be installing on Primary PAP/MT box only, and what about other two boxes which will act as PRI/SEC PDPs and it will still giving warning that there's no licenses.
    Question 3
    When we deploy distributed system with above senario, what ISE node IP addresses that we need to configure on NAD (switch), will it be all 04 ip addres or it will be the pair of  PAP/MT or PDP..?
    Thanks in advance.

    Question 1
    We have 04 ISE appliances and we are planning to deploy in distributed system such way that 02 ISE will act as PRI/SEC with the roles PAD/M&T and other 02 to be act as PRI/SEC with PDPs. Configuring PAD/MT pair is straighforward and has no doubts, however we have issue with other two nodes which is  (PDP) as PRI/SEC.  ISE giving us warning that atleast one node should have monitor role enabled, however by the time Admin role is already enabled where we cant disabled.  If someone has deployed this, appreciate can guide me in proper direction or share any document how to achieve this requirement.
    Answer-  The type of ISE deployment you want to implement is Distributed with HA.
    In this particular case, you must have PAN and one MNT and rest nodes can be PSN, which depends as per your requirement.
    In your case you are going to run PAN & MNT on single node with HA and other 2 nodes are left for PSNs.
    There is no concept of HA for individual PSN, your all PSNs will remain active; however you can distribute the requests coming from NADs between 2 PSNs, like configure some NADs with one PSN IP and rest with other PSN.
    Question 2
    My other querry is about the licensing on this requirement. We have only 1 Base and 1 Adv license for all these 04 boxes for about 500 endpoints. However we can generate licenses against only 1 ISE appliance giving it's serial number and that will be installing on Primary PAP/MT box only, and what about other two boxes which will act as PRI/SEC PDPs and it will still giving warning that there's no licenses.
    Answer- First node in ISE is considered as Primary node under the ISE instance, so when you add more ISE appliances under that ISE instance all become secondary except the first one.
    Hence you install licenses on the Primary ISE node on which you installed ISE in early stage or you introduced in your network.
    So Licenses are meant for ISE instance not for the node.
    Question 3
    When we deploy distributed system with above senario, what ISE node IP addresses that we need to configure on NAD (switch), will it be all 04 ip addres or it will be the pair of  PAP/MT or PDP..?
    Answer- On NADs you have to configure PSN's IPs, like you can configure one PSN IP as a primary and other one as a secondary.

  • Additional Node License for existing cluster

    Hi,
    I am having two MCS servers having call manager version 8.5 installed in a single cluster. Now I have bought one new MCS server with the same version call manager and I want to add this node in the same cluster but I am having only two node license installed in my call manager cluster and that is already being used.
    Please help me how can I can get the license to add this additional node in the cluster. If I have to order something then please share the part code which I have to order.
    Thanks,
    Shaheen Sidana

    Nodes are free with version 8.5, however you need to order the free part number and receive a PAK, contact your Cisco reseller to submit the order or you can try sending and email to [email protected] to see if they can assist.
    HTH,
    Chris

  • RAC one node license

    Hi all,
    we are running several rac systems license for EE. So we plan to switch from normal rac EE to "RAC ONE NODE"
    Does anyone can tell me if the normal rac license to use "rac one node" or does we need the "rac one node" option ?
    Thanks *T                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   

    Re,
    so that is not really the point.
    "RAC" costs around 25k per cpu and "rac one node" around 10 so the question is if we do use "rac one node" instead of lets say "normal rac" Does we can use our current license or does we need to buy new licenses.
    RAC costs more....Oracle make benefit :-?
    Thanks again
    *T                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               

  • Can't Send or Receive Email from Exchange behind ASA 5510 with CSC SSM

    We are upgrading from a Pix 515e to a ASA 5510 with CSC SSM.  We cannot send outbound email or receive any email from the outside world. I have placed a call with Cisco Support with no luck. Here is a copy of my config:  Any Help would be appreciated.
    show config
    : Saved
    : Written by enable_15 at 07:17:44.760 CST Wed Jan 18 2012
    ASA Version 8.4(3)
    names
    interface Ethernet0/0
    nameif outside
    security-level 0
    ip address 216.XXX.XXX.XXX 255.XXX.XXX.XXX
    interface Ethernet0/1
    nameif inside
    security-level 100
    ip address 192.168.0.5 255.255.255.0
    interface Ethernet0/2
    shutdown
    no nameif
    no security-level
    <--- More --->
      no ip address
    interface Ethernet0/3
    shutdown
    no nameif
    no security-level
    no ip address
    interface Management0/0
    shutdown
    nameif management
    security-level 100
    no ip address
    management-only
    boot system disk0:/asa843-k8.bin
    ftp mode passive
    clock timezone CST -6
    clock summer-time CDT recurring
    object network obj-192.168.5.0
    subnet 192.168.5.0 255.255.255.0
    object network obj-192.168.0.0
    subnet 192.168.0.0 255.255.255.0
    <--- More --->
    object network obj-192.168.9.2
    host 192.168.9.2
    object network obj-192.168.1.65
    host 192.168.1.65
    object network obj-192.168.1.0
    subnet 192.168.1.0 255.255.255.0
    object network obj-192.168.2.0
    subnet 192.168.2.0 255.255.255.0
    object network obj-192.168.3.0
    subnet 192.168.3.0 255.255.255.0
    object network obj-192.168.6.0
    subnet 192.168.6.0 255.255.255.0
    object network obj-192.168.8.0
    subnet 192.168.8.0 255.255.255.0
    object-group service DM_INLINE_TCP_1 tcp
    port-object eq ftp
    port-object eq www
    port-object eq pop3
    port-object eq smtp
    object-group network Red-Condor
    description Email Filtering
    network-object host 66.234.112.69
    network-object host 66.234.112.89
    object-group service NetLink tcp
    <--- More --->
      port-object eq 36001
    object-group network AECSouth
    network-object 192.168.11.0 255.255.255.0
    object-group service Email_Filter tcp-udp
    port-object eq 389
    object-group protocol TCPUDP
    protocol-object udp
    protocol-object tcp
    object-group service DM_INLINE_TCP_0 tcp
    group-object Email_Filter
    port-object eq pop3
    port-object eq smtp
    object-group network Exchange-Server
    description Exchange Server
    network-object host 192.168.1.65
    access-list global_mpc extended permit tcp any any object-group DM_INLINE_TCP_1
    access-list outside_access extended permit tcp any object obj-192.168.9.2
    access-list outside_access extended permit icmp any any
    access-list outside_access extended permit tcp any object-group Exchange-Server eq https
    access-list outside_access extended permit tcp object-group Red-Condor object-group Exchange-Server eq smtp
    access-list outside_access extended permit tcp object-group Red-Condor object-group Exchange-Server eq pop3
    access-list outside_access extended permit object-group TCPUDP object-group Red-Condor object-group Exchange-Server object-group Email_Filter
    access-list inside_access_in extended permit ip any any
    access-list inside_access_in extended permit icmp any any
    <--- More --->
    pager lines 24
    logging enable
    logging console debugging
    logging asdm informational
    mtu outside 1500
    mtu inside 1500
    mtu management 1500
    ip local pool vpnpool 192.168.5.1-192.168.5.254 mask 255.255.255.0
    icmp unreachable rate-limit 1 burst-size 1
    icmp permit any outside
    icmp permit any inside
    asdm image disk0:/asdm-647.bin
    no asdm history enable
    arp timeout 14400
    object network obj-192.168.9.2
    nat (inside,outside) static 216.XXX.XXX.XXX no-proxy-arp
    object network obj-192.168.1.65
    nat (inside,outside) static 216.XXX.XXX.XXX no-proxy-arp
    object network obj-192.168.1.0
    nat (inside,outside) dynamic interface
    object network obj-192.168.2.0
    nat (inside,outside) dynamic interface
    object network obj-192.168.3.0
    <--- More --->
      nat (inside,outside) dynamic interface
    object network obj-192.168.6.0
    nat (inside,outside) dynamic interface
    object network obj-192.168.8.0
    nat (inside,outside) dynamic interface
    access-group outside_access in interface outside
    access-group inside_access_in in interface inside
    route outside 0.0.0.0 0.0.0.0 216.XXX.XXX.XXX 1
    route inside 192.168.0.0 255.255.0.0 192.168.0.1 1
    timeout xlate 3:00:00
    timeout pat-xlate 0:00:30
    timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
    timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
    timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
    timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
    timeout tcp-proxy-reassembly 0:01:00
    timeout floating-conn 0:00:00
    dynamic-access-policy-record DfltAccessPolicy
    aaa-server isaconn protocol radius
    aaa-server isaconn (inside) host 192.168.1.9
    timeout 5
    key XXXXXXX
    user-identity default-domain LOCAL
    aaa authentication ssh console LOCAL
    <--- More --->
    http server enable
    http 192.168.0.0 255.255.0.0 inside
    no snmp-server location
    no snmp-server contact
    snmp-server enable traps snmp authentication linkup linkdown coldstart
    crypto ipsec ikev1 transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
    crypto ipsec ikev1 transform-set ESP-DES-SHA esp-des esp-sha-hmac
    crypto ipsec ikev1 transform-set ESP-DES-MD5 esp-des esp-md5-hmac
    crypto ipsec ikev1 transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
    crypto ipsec ikev1 transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
    crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
    crypto ipsec ikev1 transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
    crypto ipsec ikev1 transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
    crypto ipsec ikev1 transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
    crypto ipsec ikev1 transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
    crypto ipsec ikev1 transform-set AEC esp-des esp-md5-hmac
    crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1
    crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev1 transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
    crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
    crypto map outside_map interface outside
    crypto ca trustpoint _SmartCallHome_ServerCA
    crl configure
    crypto ca server
    shutdown
    <--- More --->
      smtp from-address [email protected]
    crypto ca certificate chain _SmartCallHome_ServerCA
    certificate
      quit
    crypto ikev1 enable outside
    crypto ikev1 policy 10
    authentication pre-share
    encryption 3des
    hash sha
    group 2
    lifetime 86400
    telnet 192.168.0.0 255.255.0.0 inside
    telnet timeout 5
    ssh 192.168.0.0 255.255.0.0 inside
    ssh timeout 5
    console timeout 0
    management-access inside
    threat-detection basic-threat
    threat-detection statistics access-list
    no threat-detection statistics tcp-intercept
    ntp server 208.66.175.36 source outside prefer
    webvpn
    username cisco password 3USUcOPFUiMCO4Jk encrypted privilege 15
    <--- More --->
    class-map global-class
    match access-list global_mpc
    class-map inspection_default
    match default-inspection-traffic
    policy-map type inspect dns preset_dns_map
    parameters
      message-length maximum client auto
      message-length maximum 512
    policy-map global_policy
    class inspection_default
      inspect dns preset_dns_map
      inspect ftp
      inspect h323 h225
      inspect h323 ras
      inspect rsh
      inspect rtsp
      inspect esmtp
      inspect sqlnet
      inspect skinny 
      inspect sunrpc
      inspect xdmcp
      inspect sip 
    <--- More --->
       inspect netbios
      inspect tftp
      inspect ip-options
    class global-class
      csc fail-close
    service-policy global_policy global
    prompt hostname context
    call-home reporting anonymous

    Hello Scott,
    So Exchange server ip is obj-192.168.1.65 natted to 216.x.x.x
    object network obj-192.168.1.65
    "nat (inside,outside) static 216.XXX.XXX.XXX no-proxy-arp"
    The ACL says
    access-list outside_access extended permit tcp object-group Red-Condor object-group Exchange-Server eq smtp
    access-list outside_access extended permit tcp object-group Red-Condor object-group Exchange-Server eq pop3
    From witch ip addresses are you trying to send traffic to the exchange server?
    Please do a packet-tracer and give us the output
    packet-tracer input outside tcp x.x.x.x( Outside host ip) 1025 216.x.x.x.x 25
    Regards,
    Julio
    Rate helpful posts!!!

  • How to get label of Parent level nodes, when itemOpen() event of any node in AdvancedDataGrid in Flex?

    Hi all,
              This is the code, to get the label of every one parent level nodes, when we open the parent node item in AdvancedDataGrid in Flex.
    <?xml version="1.0"?><!-- dpcontrols/adg/SimpleGroupADGMXML.mxml --><mx:Application
    xmlns:mx="http://www.adobe.com/2006/mxml">
    <mx:Script>
    <![CDATA[
    import mx.controls.Alert; 
    import mx.events.AdvancedDataGridEvent; 
    import mx.collections.ArrayCollection; [
    Bindable] 
    private var groupData:ArrayCollection = new ArrayCollection([{Computer:
    "HardWare Devices", Device:"Keyboard", Company:
    "Logitech", PriceInRupees:"500"}, {Computer:
    "HardWare Devices", Device:"Keyboard", Company:
    "Microsoft", PriceInRupees:"500"},{Computer:
    "HardWare Devices", Device:"Mouse", Company:
    "Logitech", PriceInRupees:"300"},{Computer:
    "HardWare Devices", Device:"Mouse", Company:
    "Microsoft", PriceInRupees:"300"},{Computer:
    "HardWare Devices", Device:"Monitor", Company:
    "LG", PriceInRupees:"5000"},{Computer:
    "HardWare Devices", Device:"Monitor", Company:
    "Microsoft", PriceInRupees:"5000"}]);
    //This method is used to get label of every parent lavel nodes, when we open any item 
    private function getLabel(e:AdvancedDataGridEvent):void{
    Alert.show(e.item[
    "GroupLabel"]);}
    ]]>
    </mx:Script>
    <mx:Label text="NOTE : Open the every parent level nodes here. We can get the label of every one parent level nodes."color="
    blue" fontWeight="bold"/>
    <mx:AdvancedDataGrid id="groupADG" width="
    100%" height="437" initialize="gc.refresh();" itemOpen="getLabel(event)"
    >  
    <mx:dataProvider>
    <mx:GroupingCollection id="gc" source="{groupData}">
    <mx:grouping>
    <mx:Grouping>
    <mx:GroupingField name="Computer"/>
    <mx:GroupingField name="Device"/>
    </mx:Grouping>
    </mx:grouping>
    </mx:GroupingCollection>
    </mx:dataProvider>  
    <mx:columns>  
    <mx:AdvancedDataGridColumn headerText="
    Computer"/>
    <mx:AdvancedDataGridColumn dataField="Company"headerText="
    Company"/>
    <mx:AdvancedDataGridColumn dataField="PriceInRupees" headerText="PriceInRupees"/>
    </mx:columns>
    </mx:AdvancedDataGrid>

    Dialog\ResponseTime 6585
    "The dialog response time consists of the period of time from the request of the dialog to the dispatcher through the processing, to the ending of the dialog in the dispatcher and the transfer of the data to the presentation layer"
    This is not buffered as far as I know is measured on demand
    Read,
    http://help.sap.com/saphelp_nw70/helpdata/en/31/d7843b43c8e937e10000000a11402f/content.htm
    Regards
    Juan

  • ASA 5520 : IP address for CSC SSM

    Hi All,
    I have an ASA 5520 with CSC SSM. I have base and plus license and want to activate it. T he IP address and gateway have to be configured on the CSC SSM. I have configured IP addresses for the INSIDE,OUTSIDE,DMZ and MGMT. The outside is a public IP address. Now for the CSC SSM what range should i give?
    There is an ISA server on the DMZ where all user IP's get PATed and on ASA this gets NATed on the ASA. Direct access to the internet exists for the servers (bypassing proxy).
    My basic doubt is about the IP address and gateway that the CSC SSM should have and is it related ot the management interface ip address?
    Thanks and Regards.
    Sonu

    Hi
    put your CSC ip address as outside interface subnet.because CSC needs automatic updates from internet.and you can able to manage CSC from remote itself.
    for EX
    your outside ip is 10.0.0.1/24,make CSC IP As 10.0.0.2/24,Gateway 10.0.0.1
    Hopes this helps
    regs
    S.Mohana sundaram

  • Is there any architectural difference between CSC-SSM and AIP-SSM modules

    Hello security gurus!
    I'm wondering if there's any chance to make Content security module (CSC-SSM) work as IPS (AIP-SSM). It seems to me they are absolutely identical in terms of hardware. Is there any chance to make CSC-SSM boot with the flash from AIP-SSM and have the ASA recognize it as an IPS module ?
    Eugene

    Zheka,
    This is not recommended and you will loose support, these are different devices designed for different purposes, you will also have issues with the license, I have seen it one once, and the customer did it by mistake, the module eventually crashed and we had to add the proper image.
    Regards,
    Felipe.

  • What is node and how to create a node in logical database in reports.

    What is the purpose of this nodes. Show me one example program using these nodes.Clearly show me an example with explanation. If this is taking any table means.Plz give me a clear example with my ztable.
    Tables : zptable1
    fields in this table are f1,
                                    f2,
                                    f3.

    hi,
    The sole effect of the NODES statement is to copy data from logical databases to executable programs. It defines an interface work area and is allowed only in the global declaration section of executable programs that are linked to a logical database, and in the database program of logical databases. node must be the name of a node of the logical database. NODES declares a table work area node for the respective node. The data type of the table work area is either predefined in the node of the logical database or can be chosen from a list using addition TYPE.
    The nodes of the structure of a logical database are maintained in transaction SE36
    for more go to transaction ABAPHELP and write Nodes you will get examples there and explanation
    thanks
    Sachin

Maybe you are looking for

  • Safari 4.0.3 and Dreamweaver temp files

    since upgrading last night when I go to preview files in Dreamweaver, which uses a temp file, all links now open the source file in the finder instead of previewing them in the browser. Both firefox and IE work correctly with the temp files Also load

  • Whatsapp on Nokia E7

    I am using nokia E7 and when I am using Whatsapp messenger it is working only on Network Data and not on Wifi... When I am at home wifi is connected. All other applications like nimbuzz is working on wifi but whatsapp need network data. Can any1 help

  • File icons in Finder shows random app icons

    My image files all have an iTunes icon. I don't know how it got like this, but how can I fix it so it shows the generic Image or Preview (which is the app selected to open all JPGs) icon? I tried selecting a file and choosing to open all files of thi

  • NOS 2.1 - Outlook sync issue

    I can't sync my Outlook 2010 (Beta) calender and tasks. However, i able to do it with Nokia PC Suite 7.1 R40.1 I am using Windows 7 Enterprise. Handphone is Nokia X6. The error message: Sync canceled Could not sync calendar items and tasks. Plug the

  • Why am I seeing slow performance/freezing only while using Publish Services?

    I experience significant lag/lock-up when my Publish Services menu is expanded.  The animation of the menu itself, as well as the other visual functions oF LR.  If the menu is already open, the other parts of the display scroll properly, and no other