Recommended Posts

Hi guys,

 

I was wondering and curious, how you guys do when you take backups of your devices? Automated or manually?

 

I am tasked to find a solution to take automated backups of our network devices and I can't decided what to do as there are some ways to do this. Rancid which I have heard ALOT of and I think it is one of the best ways to take backups as it send mails as soon as you change configuration it will notify you with the change. BUT since I have no Linux experience and the guides I have seen is difficult to follow, so I somehow have to look for another solution.

 

Cisco switches and routers have something called "archive" which sends the configuraion to a tftp, scp, ftp, etc and this is good as well, but it doesn't work with ASA. :/ ... I have tried this and it works perfect with Windows (tftp64 server) but again since we have an ssh server and want to store these there, I faced some problems, don't really know why.

 

I have done the following but none of them works when I try to send it to a tftp server in Linux. If you have done it or can assists I'd be thankful and your help will be very appreciated.

xxx-r1(config)#archive
xxx-r1(config-archive)#path tftp://10.1.1.1/$h
xxx-r1(config-archive)#exit
xxx-r1(config)#exit


xxx-r1(config)#archive
xxx-r1(config-archive)#path tftp://10.1.1.1/backup/$h
xxx-r1(config-archive)#exit
xxx-r1(config)#exit

Note: /backup/ = is the folder I have created in the tftpboot directory.

touch /tftpboot/backup

chmod 777 /tftpboot/backup AND chmod 666 /tftpboot/backup didn't really work for me. :(
 

Link to comment
https://www.neowin.net/forum/topic/1219515-network-configuration-backup/
Share on other sites

rancid is better choice, then doing it on each device.

Here is a really easy to follow guide

https://www.edge-cloud.net/2013/05/rancidtrac-on-ubuntu-12-04-lts/

I could prob setup a vm for you.. Where you would just have to edit a couple of things like your email server and addresses and your login creds and devices.

Not FREE - but pretty reasonable pricing starting at $750

http://www.solarwinds.com/kiwi-cattools.aspx

Any monkey could set it up ;)

BTW: "BUT since I have no Linux experience"

But you list Ubuntu, Debian and Backtrack right under your avatar -- btw backtrack is depreciated.. kali is the new version http://www.kali.org/

  On 26/06/2014 at 18:49, BudMan said:

rancid is better choice, then doing it on each device.

Here is a really easy to follow guide

https://www.edge-cloud.net/2013/05/rancidtrac-on-ubuntu-12-04-lts/

I could prob setup a vm for you.. Where you would just have to edit a couple of things like your email server and addresses and your login creds and devices.

Not FREE - but pretty reasonable pricing starting at $750

http://www.solarwinds.com/kiwi-cattools.aspx

Any monkey could set it up ;)

BTW: "BUT since I have no Linux experience"

But you list Ubuntu, Debian and Backtrack right under your avatar -- btw backtrack is depreciated.. kali is the new version http://www.kali.org/

LOL! This monkey couldn't do it. Yes, I do have worked with them and I find it VERY hard to understand and work with. Debian, Ubuntu and BT has a GUI and can't be used not a text based like Rancid. I used BT almost daily at my previous job, but not here. Here we use Nesus instead. :p .. I use both Debian and Ubuntu at home and never had problem with since I don't do advanced stuff, only nomal user stuff.

 

That would  be great if you could assist me with Rancid.

 

CatTools is not an option as it is expensive and since there are free options, I don't think my boss would like to pay for it. The other day I made him buy PRTG. lol

So I was walking through the guide - and looks good, but something must of changed between the 12 and version of trac he was using when the guide was written for

The rancid part is working great. even got it working with my home sg300, which not really supported out the box because its not a true cisco ios.. quick google found this https://github.com/chrpinedo/rancid-cisco-sb

But I had to add

[components]

tracopt.versioncontrol.svn.* = enabled

to the trac ini.

So looking good - had to deploy my clean linux vm, and doing this while real work keeps bugging me ;) and remotely to my home network - and still under couple hours from nothing to running system. Would of been real quick if didn't have to look up how to add my sg300 line - spent time troubleshooting why I was getting timeouts in the rancid logs when I know for a fact the login was working. Once I started manually running through the commands rancid does did I figure out why the problem and had to google for how to add the sg line to rancid.

You should really take a shot at the guide I linked too - just walked through it and other than the [components] part I posted above its still right on for a ubuntu 14.04 install.

But sure if you want I could create a working vm for you with info of what to edit to have it talk to your boxes.

post-14624-0-36382000-1403817596.png

Again - walk through that guide its really spot on, you really don't have to understand anything about linux to copy and paste, etc.

Thanks BudMan. I just finished with a new VM and now I am going to walk through the guide you linked and if I have some question, believe me I am going to bug you. lol

 

Edit: Already stuck at "Device login credentials via cloginrc"

That file doesn't exists and they didn't mention how to create it.

yeah dude just do

 

vi .cloginrc

 

I use vim i just prefer it but nano is also good :)

 

this might help with commands :) takes a bit of getting used to

 

http://www.tldp.org/LDP/intro-linux/html/sect_06_02.html

Just noticed you even list the touch command in your OP, and chmod.. And you don't know how to create a file? Well now that I reread that - touch backup would create a file called backup, not a dir. But you use /backup/$h which would say backup is a dir to me and would need to be created with mkdir not touch.

If you want I can clean up my VM I created yesterday and get it to you. It vanilla, bare min install of ubuntu server 14.04 - rancid and trac running on it. I didn't bother to setup email - but could do that before I make it a rancid appliance.. Wonder if others would have use of that - never really figured as much since there are so many guides on setup of rancid and it really only takes a couple of seconds to get it going. And you don't really need a web interface to look at the configs if your just wanting to have backups. You can view them right in the rancid dir.

post-14624-0-69973800-1403868938.png

The nice thing with using something like trac is the easy clean way to view what actually changed.. Here I just admin downed a port not using - turned off snmp and set the port to protected.. And that is clear as day when looking at diffs between revisions.

post-14624-0-44438400-1403869327.png

Ah, I thought that it should be there and I don't need to create it myself. Since it had .cloginrc I thought I can't create it with touch (i don't even know what that means). Anyway, I am going to work with it now and see if I can go anywhere, otherwise I will post again. :D

 

I'd like to try it myself, but I get stuck I am going to ask you to send me yours. I like the GUI so I want it too.

Nah, this is pissing me off more and more.

BudMan, how about doing some TV instead of doing it in your own VM of course if you have time and willing to do so. :)

Yeah we could do that - lets setup a time.. My wife is gone all weekend (girls weekend), but I am going to the track tmrw! My son knows the owner of horse in the 8th race at Arlington tmrw.. Going to go watch it run.. Stopping for beers on way home tonight, but sure we can find a time.

Prob got an hour left here, no much going on -- send me a pm with the details if now is good.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • LOL. Hard to believe people still fall for this. If you are having some sort of issue, I would work on fixing that instead turning off these settings.
    • That is a great option for compatibility, but in my opinion, that isn't the future. Xorg/Xserver is outdated with massive security holes and limitations built into the core design, which cannot be easily fixed. The reason Wayland exists is because it was apparent that no one had the resources/will to revamp Xorg, so it was basically put into a support only mode until it was eventually abandoned. Yes, X11Libre has taken up the mantal, but I don't expect to see anything from them other than basic support.
    • I agree with your frustrations, but after nearly a decade of Wayland ideologs debating how software they don't write should work...its time to rip the band aid of X11 off and let Wayland sink or swim on its own. Its not like Linux can just fail at this point, so devs will flock together to find solutions. It is my opinion that a lot of these silly debates about things like window decorations take place because they can. People feel like they have time to have these academic conversations to "get it right." However, the conversation will change very quickly when the issue is "###### don't work." People will quickly find fixes once we are forced into that mode. I draw a parallel to the infancy of the internet going public in the late 1980s. It became quickly apparent that IPv4 really wasn't up to the task. The ivory tower response to the issues was basically "your doing it wrong, you shouldn't want that" while debating long-off solutions like IPv6. Then some rando cames along and invited NAT, the standards people saw it as an abomination and absolutely refused to include it. He didn't care, sold the product anyway under the name PIX, which he later sold to Cisco. It was not only a massive success, but it changed the entire concept of the internet, basically inventing the idea of public and privet addresses, which totally reformed the way the internet works. The standards guys were forced to adopt it once they realized it was impossible to put the cat back in the bag.
    • Download How to Engage Buyers and Drive Growth in the Age of AI (worth $22.95) for free by Steven Parker Claim your complimentary eBook worth $22.95 for free, before the offer ends on July 1. Develop stronger, more profitable relationships with your buyers in the digital era. Right now, how we buy and sell is evolving dramatically. People have fundamentally changed the way they do business. To put it simply: buyers no longer interact with sellers in the same way. To ensure a profitable future, sales leaders and teams need to embrace this transformation. In the face of globalisation, ecommerce, subscription services, and new digital tools for buyers and sellers alike, you need new strategies to generate successful sales and better bottom lines. Deep Selling shares the cutting-edge sales model you need to create a buyer-obsessed, high-performance culture. Your team urgently needs to embrace the growing suite of digital and AI technologies. But new technologies alone won’t solve all your selling problems. To really maximise your success, you need to evolve your selling frameworks and behaviours. You need to use these new tools in smart ways, embedding them into your sales execution models. In this book, you’ll discover how to: Audit the current sales techniques and cycles in your organisation Transform your sales execution models Achieve organisational buy-in through new performance measures and shared goals for success Use data to drive strategy, and revolutionise your selling with the latest digital and AI tools Build deeper buyer relationships that create more value and improve buyer outcomes With Deep Selling, you and your team will learn how to meet buyers on today’s real-world terms — and engage them more fully and successfully than ever before. This free to download offer expires July 1. How to get it Please ensure you read the terms and conditions to claim this offer. Complete and verifiable information is required in order to receive this free offer. If you have previously made use of these free offers, you will not need to re-register. While supplies last! Download How to Engage Buyers and Drive Growth in the Age of AI (worth $22.95) for free Offered by Wiley, view other free resources The below offers are also available for free in exchange for your (work) email: Excel Quick and Easy ($12 Value) FREE – Expires 6/24 The Inclusion Equation: Leveraging Data & AI ($21 Value) FREE – Expires 6/24 Microsoft 365 Copilot At Work ($60 Value) FREE – Expires 6/25 Natural Language Processing with Python ($39.99 Value) FREE – Expires 6/25 How to Engage Buyers and Drive Growth in the Age of AI ($22.95 Value) FREE – Expires 7/1 Using Artificial Intelligence to Save the World ($30.00 Value) FREE – Expires 7/1 Essential: How Distributed Teams, Generative AI, [...] ($18.00 Value) FREE – Expires 7/2 The Chief AI Officer's Handbook: Master AI leadership with strategies to innovate, overcome challenges, and drive business growth ($9.99 Value) FREE for a Limited Time – Expires 7/2 The Ultimate Linux Newbie Guide – Featured Free content Python Notes for Professionals – Featured Free content Learn Linux in 5 Days – Featured Free content Quick Reference Guide for Cybersecurity – Featured Free content We post these because we earn commission on each lead so as not to rely solely on advertising, which many of our readers block. It all helps toward paying staff reporters, servers and hosting costs. Other ways to support Neowin The above deal not doing it for you, but still want to help? Check out the links below. Check out our partner software in the Neowin Store Buy a T-shirt at Neowin's Threadsquad Subscribe to Neowin - for $14 a year, or $28 a year for an ad-free experience Disclosure: An account at Neowin Deals is required to participate in any deals powered by our affiliate, StackCommerce. For a full description of StackCommerce's privacy guidelines, go here. Neowin benefits from shared revenue of each sale made through the branded deals site.
    • Totally off topic, but... I have poked around with Ubuntu a few times, it works as expected, but I never was really into the ultra-minimalist UI. I much prefer Kubuntu! KDE feels far more at home to me than Gnome. Not just because it is more Windows-like, but because its approach of putting things on the screen to see, instead of hiding them and making you search feels so much more approachable.
  • Recent Achievements

    • Week One Done
      fredss earned a badge
      Week One Done
    • Dedicated
      fabioc earned a badge
      Dedicated
    • One Month Later
      GoForma earned a badge
      One Month Later
    • Week One Done
      GoForma earned a badge
      Week One Done
    • Week One Done
      ravenmanNE earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      656
    2. 2
      Michael Scrip
      226
    3. 3
      ATLien_0
      219
    4. 4
      +FloatingFatMan
      146
    5. 5
      Xenon
      138
  • Tell a friend

    Love Neowin? Tell a friend!