View Full Version : Secure Device Manager Supported Cisco Routers
tsignal32
02-07-2009, 07:56 AM
I have download & installations instructions for Cisco Router & Security Device Manager. It list Cisco 1711 as a supported router along with the supported software. I've have the Cisco Router 1711 along with the IOS that is SDM supported, but I recieve an error message stating "Router does not support SDM" during my installation of SDM software.
Can someone tell me whats that problem?
:confused:
lildeezul
02-07-2009, 09:46 AM
I always like to install SDM on my computer only, and then just use ip addresses of which i want to configure it by SDM.. the ipaddress has to be reachable by your computer.
It always saves space on your router's flash memory.
tsignal32
02-07-2009, 10:01 AM
lildeezul,
I install it on my computer only first, but once I logged in via IP address I still get the cisco router does not support SDM.
lildeezul
02-07-2009, 10:17 AM
is the router accepting Http /https connections..
do you have in your config, ip http-server, or ip http-server secure ?
there should be two pages that pop up, one that says DONT CLOSE, and the other that says it should open in a minute...
tsignal32
02-07-2009, 10:36 AM
lildeezul,
Yes. I configure the router to support SDM by enabling http/https. The instruction provides a step-by-step guide.
The web interface comes up, and I enter my IP address of the router.
Then it prompts me for my username, and password. After I enter it, a about 5 seconds later I get the message that router does not support SDM.
crissa
02-07-2009, 12:40 PM
lildeezul,
Yes. I configure the router to support SDM by enabling http/https. The instruction provides a step-by-step guide.
The web interface comes up, and I enter my IP address of the router.
Then it prompts me for my username, and password. After I enter it, a about 5 seconds later I get the message that router does not support SDM.
Hello,
does ssh (to the router) work?
Bye, Tore
crissa
02-07-2009, 01:34 PM
Hello,
does ssh (to the router) work?
Bye, Tore
Hello,
never mind ssh (a user is only required with https, as far as I remember).
I own a Cisco 1712 router and I just tried to connect to it with SDM with success.
I used a Win2000 System, SDM is version 2.4.1, the IOS on the router is "c1700-k9o3sy7-mz.124-21.bin".
By the way:
ip http server
no ip http secure-server
HTH!
Bye, Tore
tsignal32
02-07-2009, 05:58 PM
All,
Thanks - For the advise. I think I do not have enough NVRAM. When I do a sh ver, it shows me having 32 NVRAM 16 Flash.
Crissa,
How much NVRAM does your router have?
crissa
02-08-2009, 10:29 AM
All,
Thanks - For the advise. I think I do not have enough NVRAM. When I do a sh ver, it shows me having 32 NVRAM 16 Flash.
Crissa,
How much NVRAM does your router have?
Hello,
check youself. ;-)
r1712a#sh vers
Cisco IOS Software, C1700 Software (C1700-K9O3SY7-M), Version 12.4(21), RELEASE
SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2008 by Cisco Systems, Inc.
Compiled Wed 09-Jul-08 22:56 by prod_rel_team
ROM: System Bootstrap, Version 12.2(7r)XM4, RELEASE SOFTWARE (fc1)
r1712a uptime is 23 minutes
System returned to ROM by power-on
System restarted at 15:57:34 UTC Sun Feb 8 2009
System image file is "flash:c1700-k9o3sy7-mz.124-21.bin"
[....]
Cisco 1712 (MPC862P) processor (revision 0x101) with 114688K/16384K bytes of mem
ory.
Processor board ID FOC08154711 (2008154711), with hardware revision 0000
MPC862P processor: part number 7, mask 0
1 Ethernet interface
5 FastEthernet interfaces
1 ISDN Basic Rate interface
1 Virtual Private Network (VPN) Module
32K bytes of NVRAM.
32768K bytes of processor board System flash (Read/Write)
Configuration register is 0x2102
r1712a#
I don't think that the nvram is the problem.
HTH!
Bye, Tore
tsignal32
02-08-2009, 03:26 PM
Tore,
Here is my router configs. Do you see anything wrong?
Below is my router output. I thought I had Cisco 1711 router, but it seems to be a Cisco 1721. I notice it doesn't
show what type in the show version cmd.
Router#sh ver
Cisco IOS Software, C1700 Software (C1700-ADVSECURITYK9-M), Version 12.4(3g), RE
LEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2006 by Cisco Systems, Inc.
Compiled Mon 06-Nov-06 00:24 by alnguyen
ROM: System Bootstrap, Version 12.2(7r)XM4, RELEASE SOFTWARE (fc1)
Router uptime is 3 hours, 11 minutes
System returned to ROM by power-on
System image file is "flash:CiscoIOS-C1700-k9o3sy7-mz.123-1a.bin"
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
export@cisco.com.
Cisco IPM (MPC862P) processor (revision 0x101) with 87255K/11049K bytes of memor
y.
Processor board ID FOC09173KJA (4158861365), with hardware revision 0000
MPC862P processor: part number 7, mask 0
1 FastEthernet interface
32K bytes of NVRAM.
32768K bytes of processor board System flash (Read/Write)
Configuration register is 0x3922
------------------
Router#sh flash
System flash directory:
File Length Name/status
1 9432332 CiscoIOS-C1700-k9o3sy7-mz.123-1a.bin
[9432396 bytes used, 23859888 available, 33292284 total]
32768K bytes of processor board System flash (Read/Write)
Router#
-----------------------------
Router#sh runn
Building configuration...
Current configuration : 2516 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
!
boot-start-marker
boot-end-marker
!
enable secret 5 $1$0yDG$N/SNsarBpSeTO..Om07UH/
!
no aaa new-model
!
resource policy
!
mmi polling-interval 60
no mmi auto-configure
no mmi pvc
mmi snmp-timeout 180
ip subnet-zero
ip cef
!
!
crypto pki trustpoint TP-self-signed-4158861365
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-4158861365
revocation-check none
rsakeypair TP-self-signed-4158861365
!
!
crypto pki certificate chain TP-self-signed-4158861365
certificate self-signed 01
3082023F 308201A8 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 34313538 38363133 3635301E 170D3032 30333031 30313033
35305A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D34 31353838
36313336 3530819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100B9D2 6CA4821C F1D50F76 0608A2EA C6B94BC9 11504338 7861C326 D6251F0C
B27434B3 F8A63864 5A5A167F F87368A6 9BF3B555 9D68A781 B6B429EF 8CA32EB7
FE9F8C4D FF3E433C E35F3FAB 10A023CE 4E62F977 D4234F2B 79D7561B B1639308
2CBB0650 CCE7149E 6557C1D2 2A1DF9C4 48E4EB15 B44C42F4 83840301 25B740F4
56F70203 010001A3 67306530 0F060355 1D130101 FF040530 030101FF 30120603
551D1104 0B300982 07526F75 7465722E 301F0603 551D2304 18301680 14143344
D2D66286 6AD8F71B E2865F93 619C0B8D 6B301D06 03551D0E 04160414 143344D2
D662866A D8F71BE2 865F9361 9C0B8D6B 300D0609 2A864886 F70D0101 04050003
8181003D 4A5DE132 642B5E9E 29A5AAB0 340AE59E 3A8F714D 139F49D3 34B7D7BD
8B431046 348B2E16 2C3F182A F05F1813 24555B50 F50E6F8B ED79CC69 4BEB542F
E42B8C3A 7E310C71 15CCC178 28AD164A 610B434A C5863E7B D6403055 1E4DE516
044D0826 797DB760 60915F97 4659F05A E34D0DDE 754290FF B805795F 7A6542B4 9D5A3B
quit
username tsignal32 privilege 15 password 0 xxxxxxxxxxxxxxxx
!
!
interface FastEthernet0
description Uplink to Linksys
ip address 192.168.1.118 255.255.255.0
speed 100
full-duplex
!
ip classless
ip route 0.0.0.0 0.0.0.0 192.168.1.1
!
ip http server
ip http authentication local
no ip http secure-server
!
!
control-plane
!
!
line con 0
exec-timeout 300 0
logging synchronous
speed 115200
line aux 0
line vty 0 4
exec-timeout 300 0
logging synchronous
login local
transport input all
!
end
Router#
crissa
02-08-2009, 03:59 PM
Tore,
Here is my router configs. Do you see anything wrong?
Below is my router output. I thought I had Cisco 1711 router, but it seems to be a Cisco 1721. I notice it doesn't
show what type in the show version cmd.
Router#sh ver
Cisco IOS Software, C1700 Software (C1700-ADVSECURITYK9-M), Version 12.4(3g), RE
LEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2006 by Cisco Systems, Inc.
Compiled Mon 06-Nov-06 00:24 by alnguyen
ROM: System Bootstrap, Version 12.2(7r)XM4, RELEASE SOFTWARE (fc1)
Router uptime is 3 hours, 11 minutes
System returned to ROM by power-on
System image file is "flash:CiscoIOS-C1700-k9o3sy7-mz.123-1a.bin"
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
export@cisco.com.
Cisco IPM (MPC862P) processor (revision 0x101) with 87255K/11049K bytes of memor
y.
Processor board ID FOC09173KJA (4158861365), with hardware revision 0000
MPC862P processor: part number 7, mask 0
1 FastEthernet interface
32K bytes of NVRAM.
32768K bytes of processor board System flash (Read/Write)
Configuration register is 0x3922
------------------
[...]
Hello,
the IOS (C1700-k9o3sy7-mz.123-1a.bin) you use doesn't support SDM!
The IOS (c1700-k9o3sy7-mz.124-21.bin) I use supports SDM.
You can check this with the Cisco Feature Navigator <http://www.cisco.com/go/cfn/>.
Bye, Tore
vBulletin® v3.8.7, Copyright ©2000-2013, vBulletin Solutions, Inc.