Cisco Nexus
Overview
The Cisco Nexus Integration allows Cywift to securely connect with Cisco Nexus switches to collect network device inventory, configuration data, interface details, routing information, access controls, and hardening evidence.
Before starting the integration, ensure the following:
• Cisco Nexus device access
• Read-only network account
• SSH access enabled
• Device hostname or IP address
• Network connectivity between the collector and the device
• Collector configured in Cywift
Step 1: Prepare Cisco Nexus Access
- Log in to the Cisco Nexus device.
- Create a dedicated read-only user account for the integration.
- Enable the required management access method.
- • SSH
• NX-API (if applicable)
• SNMP (if applicable) - Assign permissions that allow the collection of configuration and device status information.
- Verify the device can be accessed from the Cywift Collector.
Important Notes:
• Use a dedicated read-only account whenever possible
• Restrict management access to trusted collector IP addresses
• Avoid using shared administrator accounts
• Ensure the management interface is reachable
Step 2: Navigate to Integrations in Cywift

• Log in to the Cywift Platform
• Navigate to Integration
• Select Networking/Infrastructure
• Choose Cisco Nexus
• Click Add Integration
Step 3: Add Individual Integration
Use this option when integrating a single Cisco Nexus device.

Required Fields:
• Select Individual Integration
• Select Cisco Nexus from Networking/Infrastructure
• Select a configured Collector
• Enter an Integration Alias
• Select an Integration Owner
• Enter the Device Hostname or IP Address
• Enter the Username
• Enter the Password
Step 4: Add Bulk Integration
Use this option to integrate multiple Cisco Nexus devices.

Steps:
• Select Bulk Integration
• Download the template
• Enter the required device details and credentials
• Upload the completed file
• Click Test Connection
• Save the integration
Troubleshooting Tips
• Verify SSH is enabled on the device
• Confirm the hostname or IP address is correct
• Validate the username and password
• Check management ACLs and firewall rules
• Ensure the collector can reach the device management interface