cisco.catalystcenter.network_devices_insecure_configurations_info module -- Information module for Network Devices Insecure Configurations

Note

This module is part of the cisco.catalystcenter collection (version 2.11.0).

To install it, use: ansible-galaxy collection install cisco.catalystcenter. You need further requirements to be able to use this module, see Requirements for details.

To use it in a playbook, specify: cisco.catalystcenter.network_devices_insecure_configurations_info.

New in cisco.catalystcenter 2.11.0

Synopsis

  • Get all Network Devices Insecure Configurations. - > Retrieves the list of insecure CLI configurations currently applied on the network device identified by network device `id`. Insecure configurations are CLI commands that use deprecated, weak, or non-compliant security settings and are restricted on IOS-XE devices beginning with release `26.1.1`. These include configurations that rely on outdated security protocols, insecure authentication mechanisms, or any commands flagged as non-secure by the device.

Note

This module has a corresponding action plugin.

Requirements

The below requirements are needed on the host that executes this module.

  • catalystcentersdk >= 3.2.3.0.0

  • python >= 3.12

Parameters

Parameter

Comments

catalystcenter_debug

aliases: dnac_debug

boolean

Flag for Cisco Catalyst Center SDK to enable debugging.

Choices:

catalystcenter_host

aliases: dnac_host

string / required

The Cisco Catalyst Center hostname.

catalystcenter_password

aliases: dnac_password

string

The Cisco Catalyst Center password to authenticate.

catalystcenter_port

aliases: dnac_port, catalystcenter_api_port

integer

The Cisco Catalyst Center port.

Default: :ansible-option-default:`443`

catalystcenter_username

aliases: dnac_username, user

string

The Cisco Catalyst Center username to authenticate.

Default: :ansible-option-default:`"admin"`

catalystcenter_verify

aliases: dnac_verify

boolean

Flag to enable or disable SSL certificate verification.

Choices:

catalystcenter_version

aliases: dnac_version

string

Informs the SDK which version of Cisco Catalyst Center to use.

Default: :ansible-option-default:`"3.1.6.0"`

headers

dictionary

Additional headers.

id

string

Id path parameter. Unique identifier of the network device.

limit

integer

Limit query parameter. The number of records to show for this page.

module

list / elements=string

Module query parameter. The module names associated with insecure configurations. Examples AAA, BOOTP, HTTP, CDP, IP, TRANSPORT, TFTP, TELNET, RCMD, LINE, FTP, NTP, SNMP, SANET, CTS, PARSER, LOGGING, DSPFARM_PROFILE, STCAPP, SSH, HSRP, CAPWAP, MSDP, KEY_CHAIN, KEY_CHAIN_MACSEC, VOICE, HTTPCLIENT, CALLMANAGER, SIPUA, PMIPv6, TLS_TUNNEL, DEVICE_SENSOR, EPC, DHCP, SYSTEM, IFS, MPLS_LDP, ISIS, BGP, NMSP, EIGRP, OSPFV2, OSPFV3, IVR, GATEWAY_ACCOUNTING, CALL_LEG, APPLICATION_MONITOR, WEB_SERVICE, VRRP, GLBP, WCCP, LISP. Up to 10 filter values are allowed.

offset

integer

Offset query parameter. The first record to show for this page; the first record is numbered 1.

order

string

Order query parameter. Whether ascending or descending order should be used to sort the response.

sortBy

string

SortBy query parameter. A property within the response to sort by, if not provided default sorts by module.

validate_response_schema

boolean

Flag for Cisco Catalyst Center SDK to enable the validation of request bodies against a JSON schema.

Choices:

Notes

Note

  • SDK Method used are devices.Devices.get_network_device_insecure_configurations,

  • Paths used are get /dna/intent/api/v1/networkDevices/{id}/insecureConfigurations,

  • Supports check_mode

  • The plugin runs on the control node and does not use any ansible connection plugins,

  • but instead uses the embedded connection manager from Cisco CATALYST SDK

  • Requires Python >= 3.10, matching the controller Python versions supported by the collection's minimum ansible-core version (see the collection README for the current ansible-core / Python compatibility range)

See Also

See also

Cisco Catalyst Center documentation for Devices GetNetworkDeviceInsecureConfigurations

Complete reference of the GetNetworkDeviceInsecureConfigurations API.

Examples

---
- name: Get all Network Devices Insecure Configurations
  cisco.catalystcenter.network_devices_insecure_configurations_info:
    catalystcenter_host: "{{catalystcenter_host}}"
    catalystcenter_username: "{{catalystcenter_username}}"
    catalystcenter_password: "{{catalystcenter_password}}"
    catalystcenter_verify: "{{catalystcenter_verify}}"
    catalystcenter_port: "{{catalystcenter_port}}"
    catalystcenter_version: "{{catalystcenter_version}}"
    catalystcenter_debug: "{{catalystcenter_debug}}"
    headers: "{{my_headers | from_json}}"
    module: ['AAA', 'SNMP', 'SSH']
    limit: 0
    offset: 1
    sortBy: module
    order: asc
    id: string
  register: result

Return Values

Common return values are documented here, the following are the fields unique to this module:

Key

Description

catalystcenter_response

dictionary

Authors

  • Bryan Vargas (@bvargasre)