Re: [fw-wiz] Scheduling PIX commands



If you already use rancid, you can make cron run clogin -c "clear xlate"
<hostname> at 2am.

Arne :)

-----Original Message-----
From: firewall-wizards-bounces@xxxxxxxxxxxxxxxxxxxxx
[mailto:firewall-wizards-bounces@xxxxxxxxxxxxxxxxxxxxx] On Behalf Of Ian
Rarity
Sent: Thursday, July 03, 2008 4:23 PM
To: Firewall Wizards Security Mailing List
Subject: [fw-wiz] Scheduling PIX commands

Hi all,

We've just made some changes to our PIX config, and we need to clear
the xlates to make the changes fully live. The only problem with this
is that we also have another system that will react badly (to put it
mildly) to the state of all its connections disappearing when we do
this. This system gets an hour's downtime at 2am, so the ideal time to
clear the xlates on the PIX seems obvious.
The only problem is that, although I'm mainly nocturnal, I really can
think of better things to be doing at 2am than sitting in our server
room. Does anyone know of a way to schedule commands to run at a
specified time on a PIX 6.3 firewall?

Ta,
IR.

*********************************
Ian Rarity
Technical Engineer
ESPC (UK) Ltd.
T: (44)131 624 8000
F: (44)131 624 8509
http://www.espc.com ( http://www.espc.com/ )


*******************************************************************
Private and Confidential: This e-mail transmission is strictly
confidential and intended solely for the addressee. It may contain
privileged and confidential information and if you are not the
intended recipient, you must not copy, disclose, distribute or
take any action in reliance on it. If you have received this
e-mail in error, please delete it and notify our E-mail Systems
Administrator on +44 (0) 131 624 8000. ESPC (UK) Ltd does not
accept any liability for any harm that may be caused to the
recipient's system or data by this message or any attachment.

ESPC (UK) Ltd is a company registered under the Companies
Acts in Scotland (Registered Number SC203535), and having its
registered office at 90A George Street, Edinburgh, Midlothian
EH2 3DF.

ESPC (UK) Limited is authorised and regulated by the Financial
Services Authority.
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • [fw-wiz] Scheduling PIX commands
    ... We've just made some changes to our PIX config, ... the xlates to make the changes fully live. ... ESPC Ltd is a company registered under the Companies ... Services Authority. ...
    (Firewall-Wizards)
  • Re: [fw-wiz] Scheduling PIX commands
    ... I've also scheduled the scripts. ... We've just made some changes to our PIX config, ... ESPC Ltd is a company registered under the Companies ... Services Authority. ...
    (Firewall-Wizards)
  • Re: [fw-wiz] Scheduling PIX commands
    ... We've just made some changes to our PIX config, ... ESPC Ltd is a company registered under the Companies ... Services Authority. ... firewall-wizards mailing list ...
    (Firewall-Wizards)
  • Re: [fw-wiz] Scheduling PIX commands
    ... Even if there was a way of executing a clear xlate (or any other connection ... We've just made some changes to our PIX config, ... the xlates to make the changes fully live. ...
    (Firewall-Wizards)