Cisco Cisco Security Manager 4.11 Guía Del Usuario
Cisco Security Manager 4.11 API Specification (Version 2.3)
Page 171
3.2.26.1
Request
The request should have the policy data, the device id and csmSessionID. The request can have multiple policy data
and each request operates in a single transaction in fail-fast mode. The gid attribute within the policy should not be
given in the request.
and each request operates in a single transaction in fail-fast mode. The gid attribute within the policy should not be
given in the request.
Figure 134: AddPolicyConfigByGID Request URL Example
Table 91:AddPolicyConfigByGID Element and Attribute Description
HTTP/XML Content
Definition
setPolicyConfigRequest
Add policy containing request arguments
URL:
https://hostname/nbi/configservice/addPolicyConfigByGID
HTTP Header:
Set-Cookie: asCookie=732423sdfs73242; expires=Fri, 3-Sep-2013 23:59:59 GMT; path=/;
domain=.hostdomain.com
XML Argument:
<?xml version="1.0" encoding="UTF-8"?>
<p:setPolicyConfigRequest xmlns:p="csm">
https://hostname/nbi/configservice/addPolicyConfigByGID
HTTP Header:
Set-Cookie: asCookie=732423sdfs73242; expires=Fri, 3-Sep-2013 23:59:59 GMT; path=/;
domain=.hostdomain.com
XML Argument:
<?xml version="1.0" encoding="UTF-8"?>
<p:setPolicyConfigRequest xmlns:p="csm">
<csmSessionGID>00000000-0000-0000-0000-008589934739</csmSessionGID>
<deviceGID>00000000-0000-0000-0000-008589934595</deviceGID>
<deviceAccessRuleUnifiedFirewallPolicy>
<deviceGID>00000000-0000-0000-0000-008589934595</deviceGID>
<deviceAccessRuleUnifiedFirewallPolicy>
<name/>
<type>DeviceAccessRuleUnifiedFirewallPolicy</type>
<orderId>0</orderId>
<isMandatoryAggregation>true</isMandatoryAggregation>
<description> </description>
<configState>committed</configState>
<isEnabled>true</isEnabled>
<direction>In</direction>
<permit>false</permit>
<interfaceRoleObjectGIDs>
<gid>00000000-0000-0000-0000-000000000213</gid>
</interfaceRoleObjectGIDs>
<sources>
<ipData>2.2.2.1</ipData>
</sources>
<destinations>
<type>DeviceAccessRuleUnifiedFirewallPolicy</type>
<orderId>0</orderId>
<isMandatoryAggregation>true</isMandatoryAggregation>
<description> </description>
<configState>committed</configState>
<isEnabled>true</isEnabled>
<direction>In</direction>
<permit>false</permit>
<interfaceRoleObjectGIDs>
<gid>00000000-0000-0000-0000-000000000213</gid>
</interfaceRoleObjectGIDs>
<sources>
<ipData>2.2.2.1</ipData>
</sources>
<destinations>
<networkObjectGIDs>
<gid>00000000-0000-0000-0000-000000000100</gid>
</networkObjectGIDs>
<gid>00000000-0000-0000-0000-000000000100</gid>
</networkObjectGIDs>
</destinations>
<services>
<services>
<serviceObjectGIDs>
<gid>00000000-0000-0000-0000-000000001041</gid>
</serviceObjectGIDs>
<gid>00000000-0000-0000-0000-000000001041</gid>
</serviceObjectGIDs>
</services>
<logOptions>
<isFirewallLoggingEnabled>true</isFirewallLoggingEnabled>
<isDefaultLogging>true</isDefaultLogging>
</logOptions>
<iosOptions>None</iosOptions>
<logOptions>
<isFirewallLoggingEnabled>true</isFirewallLoggingEnabled>
<isDefaultLogging>true</isDefaultLogging>
</logOptions>
<iosOptions>None</iosOptions>
</deviceAccessRuleUnifiedFirewallPolicy>
</p:setPolicyConfigRequest>