All
We've run into a odd situation involving running vs startup config comparisons for Cisco firewalls. When we do a config comparison we see that on some lines the entry for the startup config shows up two lines down. by the I mean that in the running config the entry might show up on line 40 but in the startup config it shows up on line 42. I can't see any particular pattern to this but in every firewall config comparison we are getting any where fro 10 to 15 entries like this and these show up in the "Overall Running vs. Startup Config Conflicts" chart for NCM. We do not see the same issue with Cisco Routers or Switches. These are all newer Cisco firewalls not the old PIX firewalls. The configs are actually correct just showing as different. Unless we can fix this we're going to have to stop monitoring firewall configs. From my perspective this is not a comparison criteria issue since that is really just a method to ignore lines. Any one have any ideas?