Network Management
What privileges does an account need to monitor Cisco ASA or Cisco Nexus devices?
Network Insight for Cisco ASA devices and Network Insight for Cisco Nexus devices require additional credentials for logging in to the devices, and for polling the device. Learn more about privileges required for an account to monitor Cisco ASA and Nexus devices. Network Insight for Cisco ASA devices was introduced in NPM 12.2, Network Insight for Cisco Nexus devices in NPM 12.3.
First published date
Last published date
Overview
Network Insight for Cisco ASAs and Cisco Nexus devices polls data from the devices by a combination of SNMP and CLI polling.
CLI polling requires credentials for logging in to the device, and for polling the device.
Product section
Resolution
When polling your Cisco ASA or Nexus devices, you need to enable CLI polling and provide credentials to access the device and poll the device.
The requirements for credentials depend on the device you are monitoring and on Orion Platform products used for monitoring.
- ASA devices
- Nexus devices
Credentials required for monitoring ASA devices
- User name and password for logging into the ASA device. The user must be able to run the following commands on the ASA device:
enableshow run interfaceshow firewallshow asp drop flowshow modeshow contextshow failover stateshow version | include Serialshow running-config crypto mapshow moduleshow failoverchangeto systemshow clockshow running-config namesshow run names
- Enable password: if you are using enable passwords on your ASA device, you need to provide it to allow CLI polling. Without the Enable Password, CLI polling does not work.
Credentials required for monitoring Nexus devices (NPM 12.3)
User name and password for logging into the Nexus device. The user must be able to run the following commands on the device:
show vpc briefshow port-channel summaryshow int snmp-ifindexshow vpc peer-keepaliveshow ip arp {ipaddress} vrf allshow interface {interfacename} | i address