Foundation Summary The "Foundation Summary" provides a convenient review of many key concepts in this chapter. If you are already comfortable with the topics in this chapter, this summary can help you recall a few details. If you just read this chapter, this review should help solidify some key facts. If you are doing your final preparation before the exam, this summary provides a convenient way to review the day before the exam.- The PIX Firewall can be accessed for management purposes in several different ways. It can be accessed through the console port, remotely through Telnet, through SSH, and through the PIX Device Manager (PDM).
- Before upgrading the Cisco PIX Firewall OS, it is important to determine your current hardware settingsnamely, the RAM and Flash memory size.
- PIX Firewall Version 6.2 and later supports up to 16 privilege levels. This is similar to what is available with IOS® Software. With this feature, you can assign PIX Firewall commands to one of 16 levels, 0 through 15.
- The privilege command sets user-defined privilege levels for PIX Firewall commands.
- The activation key is the license for the PIX Firewall OS. Before the release of PIX Firewall Version 6.2, the activation keys were changed in monitor mode. Cisco PIX Firewall Version 6.2 introduces a method of upgrading or changing the license for your PIX Firewall remotely without entering monitor mode and without replacing the software image using the activation-key command.
- There are three ways to perform the PIX Firewall OS upgrade:
- - Using copy tftp flash- Using monitor mode with a boothelper disk for PIX Firewalls with an OS version earlier than 5.0- Using an HTTP client (available only with Version 6.2)
- It is possible to recover from a lockout on a Cisco PIX Firewall caused by forgotten or lost passwords. You can download the corresponding file and boot the PIX Firewall through monitor mode.
- Using SNMP, you can monitor system events on the PIX Firewall. All SNMP values are read only (RO). SNMP events can be read, but information on the PIX Firewall cannot be changed with SNMP.
|