Cisco Nexus

To integrate IBM® QRadar® Risk Manager with your network devices, ensure that you review the requirements for the Cisco Nexus adapter.

The following features are available with the Cisco Nexus adapter:
  • Neighbor data support
  • SNMP discovery
  • EIGRP and OSPF dynamic routing
  • Static routing
  • Telnet and SSH connection protocols

The following table describes the integration requirements for the Cisco Nexus adapter.

Table 1. Integration requirements for the Cisco Nexus adapter

Integration requirement

Description

Versions and supported OS levels

Nexus 5xxx series: 7.3 and earlier

Nexus 7xxx series: 8.4 and earlier

Nexus 9xxx series: 9.2 and earlier

SNMP discovery

Matches Cisco NX-OS and an optional qualification string that ends with Software in the SNMP sysDescr.

Example: (Cisco NX\-OS.* Software)

Required credential parameters

To add credentials in QRadar, log in as an administrator and use Configuration Monitor on the Risks tab.

Username

Password

Enable Password

If you add virtual device contexts (VDCs) as individual devices, ensure that the required credentials allow the following actions:

Access the account that is enabled for the VDCs.

Use the required commands in that virtual context.

Supported connection protocols

To add protocols in QRadar, log in as an administrator and use Configuration Monitor on the Risks tab.

Use any one of the following supported connection protocols:

Telnet

SSH

Commands that the adapter requires to log in and collect data

show hostname

show version

show vdc

show vdc current-vdc

switchto vdc <vdc> where vdc is an active vdc that is listed when you enter the command, show vdc.

dir <filesystem> where filesystem is bootflash, slot0, volatile, log, logflash, or system.

show running-config

show startup-config

show module

show interface brief

show interface snmp-ifindex

show ip access-lists

show vlan

show object-group

show interface <interface> where interface is any interface that is listed when you enter the command, show running-config.

show ip eigrp

show ip route eigrp

show ip ospf

show ip route ospf

show ip rip

show ip route rip

Telemetry commands

terminal length 0

show hostname

show vdc

switchto vdc <vdc> where vdc is an active vdc that is listed when you enter the command, show vdc.

show cdp entry all

show interface brief

show ip arp

show mac address-table

show ip route