Cisco SDM – Security Device Manager
The Cisco Security Device Manager (SDM) is an intuitive, Web-based device management tool integrated within Cisco IOS access routers. Cisco SDM simplifies router and security configuration through sophisticated wizards, enabling customers to quickly and easily deploy, configure, and monitor a Cisco access router without involving knowledge of the Cisco IOS Software command-line interface (CLI).
Cisco SDM provides users to easily configure Cisco IOS Software security features on Cisco access routers on a device-by-device basis, while enabling proactive management over performance monitoring. Whether deploying a new router or installing Cisco SDM on an existing router, users can now remotely configure and supervise Cisco 830, 1700, 2600xm, 3600, and 3700 series routers without using the Cisco IOS Software command-line interface (CLI).
The Cisco IOS Software CLI is an effective means of router configuration but necessitates a degree of technique and expertness. The Cisco SDM GUI assists nonexpert users of Cisco IOS Software in their daily processes, providing easy-to-use intelligent wizards, automatic router security management, and wide online help and tutorials.
Cisco SDM wizards take users step-by-step over router configuration and security configuration workflow by consistently configuring LAN and WAN interfaces, firewalls, and VPNs. Cisco SDM wizards can intelligently notice incorrect configurations and propose reparations, such as providing Dynamic Host Control Protocol (DHCP) traffic through a firewall if the WAN interface is DHCP addressed. Online help included within Cisco SDM carries appropriate background data, in addition to step-by-step procedures to help exploiters enter correct data in Cisco SDM application program windows. Networking and security terms and definitions that users might encounter are involved in a live glossary.
For network professionals familiar Cisco IOS Software and its security features, Cisco SDM provides a sophisticated mode to quickly configure and fine-tune router security features, letting network professionals to review the commands returned by Cisco SDM before delivering the configuration changes to the router. Advanced users can
also quickly fine-tune configurations using features such as the access control list (ACL) editor. Cisco SDM enables all types of users to configure and monitor routers from distant locations using Secure Sockets Layer (SSL) connections. This technology enables a secure connection, over the Internet, between the user’s web browser and the router. When deployed at a branch office, a Cisco SDM-enabled router can be configured and monitored from corporate main offices, cutting down the need for IT support at the branch.
When deploying a new router, Cisco SDM can be used to rapidly configure Cisco IOS Firewall using best practices recommended by the International Computer Security Association (ICSA) and the Cisco Technical Assistance Center (TAC). Cisco SDM users can configure the best VPN defaults, and automatically executes security audits. In addition, Cisco SDM users can do one-step router lockdown for firewalls and one-step VPN for quick deployment of safe site-to-site connections.
When installed on an existing router, Cisco SDM allows users to perform one-step security audits to measure the strengths and weaknesses of their router configurations against common security vulnerabilities. Using the advanced mode, administrators can fine-tune their present security configurations to better suit their business needs. Cisco SDM can also be employed for online monitoring, fault management, and troubleshooting.