A scheme for network programmability and backup automation using python Netmiko library on cisco; the case study of the Komfo Anokye Teaching Hospital Local Area Network

First Author\[1\]<sup>\*</sup>, Second Author<sup>2</sup>  
(Double Blind Review: Please do not type or edit anything here until final-camera ready submissions)

*<sup>1</sup>First affiliation, City and Country (Please do not type or edit anything here, our editors will do the work for you)*

*<sup>2</sup>Second affiliation, City and Country (Please do not type or edit anything here, our editors will do the work for you)*

<table>
<tbody>
<tr class="odd">
<td>ARTICLE INFO</td>
<td></td>
<td>ABSTRACT</td>
</tr>
<tr class="even">
<td><p><em>Article history:</em></p>
<p>Received XX Month 2024</p>
<p>Revised XX Month 2024</p>
<p>Accepted XX Month 2024</p>
<p>Online first</p>
<p>Published 1 September 2024</p></td>
<td></td>
<td>The need for programmability and backup automation in modern network administration has become increasingly critical. In environments that facilitate and heavily depend on essential network operations, such as hospitals, ensuring secure, stable, and reliable processes in network management is imperative. This study proposes an automated framework for the Komfo Anokye Teaching Hospital (KATH) Local Area Network (LAN), leveraging Python and the Netmiko library to streamline backups of Cisco devices, significantly improving upon the limitations of manual processes used by the hospital's networking professionals. Experimental results demonstrated that the proposed automated scheme effectively addressed the challenges posed by these conventional yet error-prone manual processes. This was validated through performance evaluation metrics such as backup completion time, success rate, and resource utilization.</td>
</tr>
<tr class="odd">
<td><p><em>Keywords:</em></p>
<p>Programmability</p>
<p>Automation</p>
<p>Python</p>
<p>Netmiko Library</p>
<p>Local Area Network</p>
<p>Automation</p>
<p><em>DOI:</em></p>
<p>10.24191/jcrinn.v10i1</p></td>
<td></td>
<td></td>
</tr>
</tbody>
</table>

1.  **INTRODUCTION**

In recent years, two key things have grown to be essential technologies in network administration; programmability and backup automation (Babaei et al., 2022; Datta, Imran, & Biswas, 2023; Gondhalekar et al., 2024; Muhammad & Munir, 2023; Mutiara et al., 2023; Pérez et al., 2023; Sacco et al., 2021). As firms increasingly rely on responsive and scalable network infrastructure, the need for effective, adaptable solutions for managing and automating network operations has also been on the rise (Arfan Efendi et al., 2023). Experts in the field of network administration, aiming to streamline complex network operations, regard scripting languages and specialized automation libraries as extremely vital. These tools help achieve efficiency, regulate the management of detailed network configurations and eliminate human error, and (Mazin et al., 2023). In this paper, we use the Python Netmiko library as the main tool to develop a specific approach for network programmability and backup automation on Cisco devices. The study focuses on the Local Area Network (LAN) infrastructure at one of Ghana’s premier healthcare institutions; Komfo Anokye Teaching Hospital (KATH). The Komfo Anokye Teaching Hospital is an exact example of the type of network setting where effective programmability and automation of tasks like backup operations, are crucial to assuring continuity in operations, managing workload and, avoiding human errors, due to its huge reliance on safe and reliable network connectivity as a health facility (Carabas et al., 2023; Kapiton et al., 2023). Notably, due to the increase in network complexity, it has become extremely difficult for administrators to configure and maintain network infrastructure like the KATH LAN, which is constituted of several devices with different manufacturers (Datta, Imran, Yeasmin, et al., 2023; Fantom et al., 2022). Therefore, in such environments, automation is a need rather than a luxury since managing setups by hand not only wastes important time but also raises the possibility of human error (Ivlev et al., 2023). Python has emerged as a crucial tool for creating programmable network frameworks due to its broad accessibility and versatility as a scripting language (Mazin et al., 2023; Peta, 2022). Network administrators can create consistent, repeatable, and error-free setups by incorporating the Netmiko Library, a tool made to make managing network devices easier using scripting. Although Cisco IOS offers some command-line automation features, administrators who might not be proficient in programming are limited by the absence of intuitive automation frameworks tailored to Cisco settings. Additionally, limited research has been conducted on the effectiveness of Python and Netmiko in automating Cisco-specific tasks within large-scale healthcare network environments. Furthermore, there are not many specific, empirical examples in various literatures of how this automation might help networks with high security and connection requirements, such as hospital networks, where data security, downtime minimization, and configuration accuracy are critical (Li et al., 2024). By concentrating on the implementation of a Python-based programmability system that may simplify network management in a hospital LAN environment, guaranteeing optimal resource allocation and safe effective operations, this study addresses these gaps. This study presents a scheme which aims at ensuring programmability and backup automation services in the Komfo Anokye Hospital LAN by leveraging the combination of Python and the Netmiko framework on Cisco devices. The proposed scheme seeks to enable the seamless, programmable configuration of Virtual LANs (VLANs), routers, Virtual Private Networks (VPNs), and Ethernet over IP (EoIP) tunnels, and addresses conventional administrative issues, such as backup and recovery operations, using the Komfo Anokye Teaching Hospital LAN as case, study. By allowing administrators to run commands across numerous devices, Netmiko's compatibility with Cisco devices offers an efficient platform for deploying Python scripts, minimizing the need for manual intervention and the possibility of setup mistakes. Our proposed scheme presents the ability to practically automate conventional network tasks, to ease the configuration process, and enhancing the entire network infrastructure management. We also examine the unique challenges of rolling out network automation in a healthcare setting by providing insights on how programmable network frameworks can promote the security, resilience, and adaptability of key infrastructure at Komfo Anokye Teaching Hospital. Finally, in this paper, we examine empirical findings from the deployment of this scheme, its operational benefits, and discuss how it could potentially contribute to the subject of network programmability. Regarding the specialized requirements of healthcare organizations, we seek to create a new approach for network administration using Python and Netmiko.

## Paper’s Contribution

The key contributions of this work are:

1)  > We develop a framework that uses Netmiko's programmatic interface to automate configuration retrieval from Cisco devices, eliminating the inefficiencies and error-proneness of the manual, command line-based backups. This agentless approach simplifies deployment and reduces management overhead.

2)  > We implement an automated backup solution within the framework that ensures consistent and timely backups of Cisco router configurations. This solution addresses the limitations of manual backups and built-in RouterOS scripting by providing a more robust and reliable method for safeguarding critical network configurations.

3)  > By automating the backup and recovery process, our framework improves the resilience of the healthcare network. It minimizes downtime by enabling rapid recovery of configurations in case of failures or misconfigurations, ensuring the continued availability of critical network services.

4)  > We demonstrate the practical application of our framework in a real-world healthcare network; the KATH LAN, showcasing its effectiveness in addressing the specific challenges and requirements of such an environment.

The rest of the paper is organized as follows; in Section 2 we present dome preliminaries of integral concepts at the core of our proposed framework. In Section 3 we present the proposed framework. Section 4 focusses on the analysis of results presented, and finally Section 5 provides the Summary and Conclusion of the paper.

2.  **BACKGROUND AND LITERATURE REVIEW**
    
    1.  ## The Unique Services of Cisco Devices in Networking 

Cisco routers are integral to global network infrastructure, recognized for their robust performance, extensive features, and scalability (Ehigbochie & Omoze, 2024). In (Dong et al., 2023; Zolkin et al., 2023.), the authors affirm that Cisco is widely use in the field of networking. They highlighted that Cisco's operating system called Internetworking Operating System (IOS) used in this study’s framework and its variants, such as IOS XE and NX-OS, provide extensive management and configuration capabilities, making them suitable for diverse deployments such as enterprise networks, service provider cores, and data centers. These systems are designed to address real-world challenges faced by network engineers, offering a wealth of documentation and support resources(Dong et al., 2023; Zolkin et al., 2023). We also note in (Filsfils et al., 2019; MAHMOOD, 2020) that Cisco's support for Intermediate System-to-Intermediate System (IS-IS) and Routing Information Protocol (RIP) contributes to its routers' versatility. IS-IS as a link-state protocol is often preferred by service providers for its efficient scaling and flooding (Filsfils et al., 2019), while RIP is more suited for smaller and less complex networks(Wachid et al., 2020). As highlighted in (Dewi et al., 2022; Prosviryakova et al., 2024), the efficient data handling of Cisco routers makes them a popular choice for networks of all sizes. Cisco routers also support advanced routing protocols, including Open Shortest Path First (OSPF)(Neeru Kumari & Dr. Tilak Raj, 2024) for efficient internal routing, Cisco's proprietary Enhanced Interior Gateway Routing Protocol (EIGRP) for fast convergence and scalability(Novradinata et al., 2022) and Border Gateway Protocol (BGP)(Wang et al., 2023) for internet and inter-network connectivity. According to Consul & Bunakiye, (2023) these Cisco router features enable the development of robust, high-performance, and scalable networks to meet changing business needs. Beyond routing, Anwar & Ahmad, (2019) and (Michael Oladipo Akinsanya et al., 2024) emphasize that Cisco routers offer key features like VLANs for network segmentation and security, and various tunneling technologies (including IPsec, Dynamic Multipoint Virtual Private Network (DMVPN) and Generic Routing Encapsulation (GRE)) for secure connections and extending networks across different locations. These capabilities enable robust and secure data communication in complex network topologies. In summary, Cisco routers are often favored in mission-critical networks like a hospital’s LAN, due to their advanced features, reliable performance and robust security; the reason for which they are used in this study’s framework. Adding up to the justification for the choice of Cisco routers is a key feature noted in (Ergenç et al., 2023). They pointed out that Cisco routers support service-oriented architectures and time-sensitive networking, which are crucial for ensuring deterministic communication and resilience against failures.

## Python's Role in Network Automation

The wide use of Python in network automation is largely due to its versatile nature, readability, and the available rich ecosystem that supports various networking activities (Mazin et al., 2023; Miller et al., 2022; Pike et al., 2022; Tiwari et al., 2024; Zhu et al., 2024). In (Mazin et al., 2023; Miller et al., 2022; Pike et al., 2022; Tiwari et al., 2024; Zhu et al., 2024) , authors explained that Python’s prominence, allows developers to efficiently automate network configurations and management, significantly reducing manual effort and errors. While its cross-platform compatibility ensures consistent script execution across diverse operating systems, the language's clear makes it even more suitable for network professionals (Zhu et al., 2024) . In (Akbar et al., 2023; Hassan et al., 2023; Hunt, 2023) , the authors argued that Python's extensive standard library, particularly modules like Paramiko for SSH (Karki, 2021; Mutiara et al., 2023; Zadka, 2022) and Requests for HTTP(Farias et al., 2024), provides essential tools for network interaction. It can then be inferred that these libraries facilitate secure communication and data transfer, hence making Python a preferred choice for network programming in various literature and industries. Crucially, Python's vibrant community and active development contribute to a wealth of specialized libraries for network automation (Gondhalekar et al., 2024). In (Xu & Russello, 2022), it is indicated that an example of the aforementioned libraries is the NAPALM (Network Automation and Programmability Abstraction Layer with Multivendor support), which offers high-level abstractions for configuration management. Moreover, for this study, Netmiko's granular control and specific Cisco support makes Python an even more suitable choice, providing greater flexibility for device-specific customization.

##  Netmiko: An Overview

As explained in (Gondhalekar et al., 2024) , Netmiko is built upon *Paramiko* (Zadka, 2022), and simplifies SSH-based network device interactions by providing a higher-level abstraction layer. Secure Shell (SSH), which is widely adopted in our experimentation, is a cryptographic network protocol that allows secure remote login and other secure network services over an unsecured network. It provides confidentiality and integrity through encryption and authentication mechanisms, ensuring secure communication between the automation scripts and the network devices(C et al., 2023; Michel & Bonaventure, 2023; Toledo, 2023). On the benefits of Netmiko, beyond establishing these secure SSH sessions, Mazin et al., (2023) highlights that Netmiko’s broad vendor support, encompassing Cisco, MikroTik, Juniper, Arista, and others, proves invaluable in heterogeneous network environments, such as the one at Komfo Anokye Teaching Hospital. Additionally, methods like *send\_command* and *send\_config\_set* facilitate command execution and structured output retrieval, minimizing the need for the complex, custom parsing logic(Elezi & Karras, 2023; Gondhalekar et al., 2024). Furthermore, Gondhalekar et al., 2024) noted that Netmiko handles session persistence, timeouts, and retries, ensuring script stability and resilience. Again, they stated that Netmiko intelligently manages vendor-specific command syntax, simplifying script development and avoiding cumbersome conditional branching based on vendor. Such advantages of Netmiko are evident within this paper’s methodological framework. As already mentioned, while NAPALM offers higher-level abstractions suitable for general configuration management, Netmiko's focus on granular control and vendor-specific customization noted in (Gondhalekar et al., 2024), makes it more appropriate for tasks requiring fine-tuned interaction with CISCO devices. Its relative simplicity and strong community support further enhance its suitability for this study.

3.  **METHODOLOGY & EXPERIMENTATION**

This research employs a mixed-methods approach, combining qualitative analysis of the existing KATH LAN infrastructure with quantitative evaluation of the proposed automated backup solution's performance.

##  Network Infrastructure Overview

![](67627f4d34ef8_media/media/image1.jpg)

Figure 1: KATH LAN Topology

Source: Author’s own data

The Komfo Anokye Teaching Hospital (KATH) LAN is a perfect example of the complex and interconnected world of modern healthcare infrastructure, where dependable and secure communication is critical. In order to satisfy these requirements, its hierarchical architecture which includes core, collapsed distribution, and access layers, aims for scalability and controllable complexity. The core layer houses the vital virtualized Netserver and offers the high-bandwidth backbone. It is constructed on redundant Cisco Layer 3 switches. Due to serious repercussions that can be resulted from small interruptions, centralizing vital services like firewalling, DHCP, and DNS is not only a best practice but also required to ensure constant operation in a hospital setting. Additionally, in the KATH LAN the distribution layer has been collapsed into the core to simplify management and maximize hardware resources without sacrificing performance. The many Cisco access switches that make up the access layer are also connected to this robust core via 10Gbps fiber cables. These switches use a star topology to link end-user devices around the hospital campus, including VoIP phones, PCs, and essential medical equipment. Due to the need for reduced downtime and the ensuring the continuity of vital services on the hospital’s network, rapid troubleshooting and localized management are highly prioritized. However, KATH's reliance on a comprehensive wireless network that is backed by 70 Cisco Access Points (APs) and a central Wireless LAN Controller, indicates the need for a strong and effectively maintained infrastructure. There is the presence of a Dual-band Wi-Fi that serves the wide range of devices in the hospital ecosystem, while a single SSID implementation makes it easier for workers and clinicians to move about. Continuous monitoring and optimization of wireless signals, employing spectrum analyzers and strategically positioned repeaters and APs, are paramount for guaranteeing reliable connectivity, particularly given the potentially life-critical nature of certain applications. Also, given the sensitive nature of patient data and the increasing reliance on real-time applications, network security at KATH is of utmost importance. Comprehensive protection is offered via a next-generation firewall (NGFW) functioning as the unified threat management (UTM) system, which includes advanced malware protection, web filtering, VPN access for remote employees, and intrusion detection and prevention. By strictly regulating network access, network access control (NAC) implemented with a Cisco ISE enhances security and is essential in the connected healthcare environment of today. Active Directory, DNS, and DHCP, in addition to all-inclusive network monitoring tools like Cisco Prime Infrastructure and SolarWinds NMS, enable efficient network administration. Furthermore, out-of-band access to vital devices is made possible via a separate management network, guaranteeing ongoing monitoring and control even in the event of major network outages; a feature that is becoming more and more crucial for preserving uninterrupted operation. The hospital's dedication to maintaining operational continuity is further demonstrated by the power redundancy provided by PoE, UPS systems, and high-availability arrangements for essential components. This multi-layered approach to fault tolerance and redundancy emphasizes how crucial the network infrastructure is to sustaining KATH's vital mission. The manual processed for configuration backup in the hospital’s network poses a couple of limitations. To begin with, the absence of automation presents the high likelihood of downtime during device breakdowns and loss of data. Again, due to the absence of a centralized, automated backup solution there is a notable audits complication, and hinders troubleshooting abilities. Additionally, the devices are logged into and manually backed up separately, with an average of *60 minutes* required for each. This manual process poses a risk of yielding inconsistency and human error. in addition to causing operational inefficiencies. This study addresses these highlighted challenges on the KATH LAN via the proposed automated scheme that blends Python and Netmiko library. The methodology presented demonstrates how the proposed scheme can enhance network management methods on the network of vital healthcare infrastructure. The study highlights practicality on how the framework we present can boost network resilience in a real-world scenario, simplifies backups and increase consistency on networks.

##  Network Assessment and Requirements Analysis

For the purposes of understanding the intricacies of the architecture challenges in operation, and connected devices of the Komfo Anokye Teaching Hospital LAN, a comprehensive assessment was conducted. The assessment was pivotal to noting the challenges of the widely used manual process and hence establishing the need and urgency of the automated backup solution presented in this study. It involved interviewing network administrators, review of network diagrams, and network performance data analysis. More precisely, it was gathered from these assessment procedures that the choice of a proposed scheme to address limitations of manual configurations on the KATH LAN, needed to satisfy factors such as secure authentication capabilities, centralized backup file storage, compatibility Cisco IOS devices and automatic scheduling.

## Framework Development

Based on the requirements analysis, a Python-based automation framework was developed leveraging the Netmiko library. As explained earlier, Netmiko was chosen for its specific support for Cisco IOS, its ability to handle SSH connections securely, and its simplified approach to command execution and output parsing (Gondhalekar et al., 2024). The framework was designed to address the limitations of manual backups and provide a more robust and efficient solution. *Figure 2* below represents the implemented script for the proposed Framework while *Figure 3* illustrates a flowchart that summarizes it. The backup script as presented in *Figure 2* automates Cisco IOS configuration backups using Python and the Netmiko library, incorporating performance monitoring to record backup duration and resource utilization. It reads device IP addresses from *data.txt* and iterates through them. For each device, it establishes an SSH connection via *netmiko.ConnectHandler*, providing device-specific credentials and type. This involved creating a privileged user account (“storm” is used in our experimentation but a strong, unique password is required in a real-world deployment), setting the SSH version to 2, configuring appropriate network access parameters, and enabling SSH access on the Virtual Teletype (vty) lines. The script retrieves the hostname using *send\_command("show running-config | include hostname")*. After completing the backup, the end time is recorded, and the total backup time is calculated and logged. Resource utilization (CPU and memory usage) is measured using the *psutil* library before and after the backup process for each device. The differences in CPU and memory usage are then calculated and recorded, providing insights into the script's resource footprint. Error handling is implemented through *try-except* blocks, and the script is designed for extensibility, allowing integration with scheduling mechanisms. Strong, unique credentials are required for secure production use and should be managed outside the script using secure methods like environment variables or dedicated configuration files.

![](67627f4d34ef8_media/media/image3.emf)

Figure 2:Core Framework Implementation (backup script)

Source: Source: Author’s own data

Figure 3: Automated Backup Framework Flowchart

Source: Author’s data

## Experimental Setup

The automated backup solution was deployed and tested on the KATH LAN. Before deployment, SSH was enabled and configured on all 10 target Cisco devices using the commands for configuring “SSH” on remote devices shown in Figure 4. The figure demonstrates the configuration of SSH version 2, creation of a user account with privilege level 15, setting the password, assigning an IP address to VLAN 1, and enabling local login and transport input for VTY lines 0-4. The backup script as presented in Figure 2 was executed from a management workstation running Windows 11 with Python 3.9.13 and Netmiko 4.0.2 installed. The script's output was logged to the console as presented subsequently.

![](67627f4d34ef8_media/media/image4.png)

Figure 4: SSH Configuration

Source: Author’s data

5.  ## Performance Evaluation
    
    1.  ### Backup Completion Time

The script's output was used to record the overall time spent on the automated backup process, which was then compared to the baseline manual backup time of *60 minutes*.

### Success Rate

The proportion of devices that were successfully backed up was determined by examining the script's output log and verifying the existence of matching backup files.

### Resource Utilization

The CPU and memory consumption of the management workstation during script execution were monitored to assess the framework's efficiency and resource footprint.

Additional analysis was carried out to evaluate the framework's flexibility to manage modifications in the network architecture, configuration consistency, content validation, and the solution's scalability to support future network expansion.

4.  **RESULTS & ANALYSIS**

This section presents the results of the experimental validation of the automated backup framework deployed on the KATH LAN. The analysis focuses on key performance metrics, such as backup completion time, success rate, and resource utilization. It incorporates direct output from the backup script, as presented in Figure 2, to provide concrete evidence of the framework's effectiveness. The console output from a sample run of the script is shown in Figure 5 below, with individual aspects analyzed.

1.  **Backup Completion Time**

The automated framework dramatically reduced the time required for network-wide configuration backups. As shown in *Figure 6*, manual backups required an average of *60 minutes* for each device (hence *600 minutes* for 10 devices). In stark contrast, the automated script completed the entire process in approximately *1.34* to *1.56* *seconds* per device, totaling around *15 seconds* for all ten devices. This represents a substantial reduction of over *99%* in backup completion time. This drastic improvement stems from the automation of previously manual steps, including device logins, command execution, and file saving, facilitated by the Netmiko library. The observed connection times of *1.34-1.56 seconds* demonstrate the efficiency of establishing SSH connections using Netmiko.

2.  **Success Rate**

The automated framework achieved a *100%* success rate in backing up the targeted Cisco devices. The console output as shown in *Figure 5* after the script execution clearly demonstrates this, showing successful backup messages for each device. For instance, the output includes lines as indicated in *Figure 7*.

These lines are the confirmation of a successfully automated backup of each device. This perfect success rate eliminates the risk of missed or incomplete backups inherent in the manual process observed.

3.  **Resource Utilization**

The script's resource utilization was analyzed by measuring CPU and memory consumption before and after each device backup. The results (*Figure 5*) show that the script has a minimal resource footprint. Memory usage increased marginally (between 0.7MB and 29MB) during each backup, reflecting the temporary storage of the configuration file. CPU utilization fluctuated but remained low, demonstrating the script's efficiency. The low resource utilization ensures that the backup process does not negatively impact the performance of the management workstation.

4.  **Configuration Consistency and Content Validation**

Analysis of the generated backup files for all switches on the KATH LAN confirms consistent and complete retrieval of device configurations. The backup files consistently include critical configuration elements, demonstrating the reliability and accuracy of the automated backup process. Key elements present in all backup files include:

1)  Hostname: The \`hostname\` command output correctly identifies each device (e.g., \`hostname core-switch-1\`). This is crucial for distinguishing between devices and ensuring the correct configuration is restored to the appropriate device during recovery.

<!-- end list -->

5)  > Interface Configurations: The interface configurations, including IP addresses and subnet masks (e.g., \`ip address 192.168.137.2 255.255.255.0\` for \`Vlan1\`), are consistently captured in the backups. This ensures that network connectivity parameters are preserved.

6)  > SSH Version: The SSH version configuration (\`ip ssh version 2\`) is present, verifying that the secure communication protocol settings are backed up. This is important for maintaining secure access to the devices.

7)  > User Credentials and Privileges: The configuration includes the username (\`storm\`) and encrypted password information (e.g., \`username storm privilege 15 secret 5 $1$cXMi$RWwPW9rv0hOFUxbjg7e3h/\`), indicating that user access and privilege levels are preserved in the backups.

8)  > Other System Settings: The backups also include other important system settings such as logging configurations (\`logging buffered 50000\`, \`logging console discriminator EXCESS\`), service timestamps, and various IP-related settings (\`no ip domain-lookup\`, \`ip domain-name storm.org\`). This comprehensive backup ensures that the full system state is captured, facilitating complete recovery in case of failure.

![](67627f4d34ef8_media/media/image5.png) ![](67627f4d34ef8_media/media/image6.png)

Figure 5: Console Output After Script Execution

<span class="chart">\[CHART\]</span>

Figure 6: Comparison of Backup Times: Manual vs. Automated

![](67627f4d34ef8_media/media/image7.png)

Figure 7:Successful Backup Confirmation

![](67627f4d34ef8_media/media/image8.png)

Figure 8: Backup file output

The presence of the key elements such as hostname, interface configurations, and SSH version, (as seen in *Figure 7*) across all backup files, validates the accuracy and completeness of the automated backups, making them suitable for disaster recovery and configuration audits.

1.  **Scalability and Adaptability**

The framework is designed for scalability and adaptability. The use of an external *data.txt* file for device IP addresses enables easy modification of the target device list. The modular design of backup script in *Figure 2* facilitates future enhancements, including support for various device types and integration with scheduling mechanisms. For example, to support different Cisco IOS *show* commands, one would simply modify the *send\_command()* calls within the script. This adaptability ensures its long-term viability in evolving network environments.

5.  > **SUMMARY & CONCLUSION**

This study addressed the critical need for efficient and reliable configuration backups within the Komfo Anokye Teaching Hospital (KATH) LAN. The conventional backup process as employed by the hospital’s network administrators had notable challenges. The manual process was identified to be likely to result in errors, consumed a lot of time, and lacked centralized management. These limitations posed significant risks to the stability and operational continuity of the KATH LAN. In this paper, we presented an automated backup framework, which was developed using Python and the Netmiko library as a solution to these aforementioned challenges. Our framework provides benefits such as automation of conventional network processes such as backup, elimination of human errors, and implement centralized storage for backup consistency. The proposed automated solution utilized the integration of python with Netmiko library, and their compatibility with Cisco IOS devices. Experiments conducted on the KATH LAN demonstrated the framework's significant strengths over the existing manual process. Results from experiments conducted in the study show a slightly above 99% reduction in backup completion time; 60 minutes to a maximum of 1.56 seconds per device, a 100% success rate in backup configuration, and an optimized resource utilization. Furthermore, through analysis of the created backup files, the consistency and completeness of the retrieved configurations were confirmed. Finally, it was again revealed through the analysis of the main backup script that the framework was flexible enough to adapt to future infrastructure changes and scalable enough to handle network expansion.

6.  > **ACKNOWLEDGEMENT/FUNDING**

(DOUBLE-BLIND reviewing. Leave the section as is. Only include Acknowledgements text in the final submission paper)

7.  > **CONFLICT OF INTEREST STATEMENT**

(DOUBLE-BLIND reviewing. Leave the section as is. Only include CONFLICT OF INTERESTS text in the final submission paper)

8.  > **AUTHORS’ CONTRIBUTIONS**

9.  > **REFERENCES**

Akbar, M. G., Witriyono, H., Apridiyansyah, Y., & Abdullah, D. (2023). Implementation Of The Inter Tk Package, Sub-Process And Os In The Network Management Application Development With Python Programming Language. *Jurnal Komputer, Informasi Dan Teknologi*, *3*(1). https://doi.org/10.53697/jkomitek.v3i1.1210

Anwar, S. J., & Ahmad, I. (2019). Design and Deployment of IPSec VPN Using CISCO Network Infrastructure. *International Journal of Scientific Research in Computer Science, Engineering and Information Technology*, 237–247. https://doi.org/10.32628/cseit195630

Arfan Efendi, Diyanatul Husna, & I Gde Dharma Nugraha. (2023). Advancing Network Infrastructure: Integrating VXLAN Technology with Automated Circuit Operations and NOS Configurations. *International Journal of Electrical, Computer, and Biomedical Engineering*, *1*(2), 32–53. https://doi.org/10.62146/ijecbe.v1i2.30

Babaei, A., Kebria, P. M., & Nahavandi, S. (2022). A survey on Automation Technologies used in Network Control and Management. *2022 15th International Conference on Human System Interaction (HSI)*, 1–6. https://doi.org/10.1109/HSI55341.2022.9869444

C, G., Patil, V. D., Singh, D. K., Kumar, R., T, N., & Kalra, H. (2023). Investigating the Benefits of Adopting Secure Shell (SSH) in Wireless Network Security. *2023 IEEE International Conference on Paradigm Shift in Information Technologies with Innovative Applications in Global Scenario (ICPSITIAGS)*, 309–315. https://doi.org/10.1109/ICPSITIAGS59213.2023.10527461

Carabas, M., Mihai, D., & Brebene, A. (2023). Automated Infrastructure Provisioning. *2023 22nd RoEduNet Conference: Networking in Education and Research (RoEduNet)*, 1–5. https://doi.org/10.1109/RoEduNet60162.2023.10274922

Consul, J. . I., & Bunakiye, J. . R. (2023). Survey of the Influence of Routing Protocols to Network Performance Enhancement. *Advances in Multidisciplinary and Scientific Research Journal Publication*, *10*(4), 13–28. https://doi.org/10.22624/AIMS/MATHS/V11N4P2

Datta, A., Imran, A. T. M. A., & Biswas, C. (2023). Network Automation: Enhancing Operational Efficiency Across the Network Environment. *ICRRD Quality Index Research Journal*, *4*(1). https://doi.org/10.53272/icrrd.v4i1.1

Datta, A., Imran, A. T. M. A., Yeasmin, F. F., & Taher, K. A. (2023). Developing an Integrated Platform for Different Network Devices. *2023 IEEE International Conference on Telecommunications and Photonics (ICTP)*, 1–5. https://doi.org/10.1109/ICTP60248.2023.10490910

Dewi, S., Firmansyah, F., & Hasan, U. (2022). Penerapan Metode Access Control List Pada Jaringan VLAN Menggunakan Router Cisco. *IMTechno: Journal of Industrial Management and Technology*, *3*(1), 37–41. https://doi.org/10.31294/imtechno.v3i1.927

Dong, X., Yu, Y., & Zhou, J. (2023). *Cisco*. Springer Nature Singapore. https://doi.org/10.1007/978-981-19-7870-8

Ehigbochie, D., & Omoze, E. (2024). CISCO vs Other Networking Tools: A Comprehensive Study on Current Network Simulators and Categorizing Them Based on Their Performances. *Journal of Computer Sciences and Informatics*, *1*(1), 33. https://doi.org/10.5455/JCSI.20240523125542

Elezi, A., & Karras, D. A. (2023). On Detailed Network Systems Configuration Management Automation using Python. *WSEAS TRANSACTIONS ON COMMUNICATIONS*, *22*, 1–16. https://doi.org/10.37394/23204.2023.22.1

Ergenç, D., Brülhart, C., & Fischer, M. (2023). *Towards Developing Resilient and Service-oriented Mission-critical Systems*. http://arxiv.org/abs/2304.00128

Fantom, W., Alcock, P., Simms, B., Rotsos, C., & Race, N. (2022). A NEAT way to test-driven network management. *NOMS 2022-2022 IEEE/IFIP Network Operations and Management Symposium*, 1–5. https://doi.org/10.1109/NOMS54207.2022.9789909

Farias, W. A. S., Melo, D. M. A., Santos, L. M. dos, de Oliveira, Â. A. S., Medeiros, R. L. B. A., & Silva, Y. K. R. O. (2024). *Web Scraping as a scientific tool for theoretical reference*. https://doi.org/10.21203/rs.3.rs-3854342/v1

Filsfils, C., Bashandy, A., Gredler, H., & Decraene, B. (2019). *IS-IS Extensions for Segment Routing*. https://doi.org/10.17487/RFC8667

Gondhalekar, B., Manna, H., Kothi, S., & Borsae, D. B. (2024). Network Automation With Multithreading Using GNS3 and Netmiko. *Indian Journal of Computer Science*, *9*(2), 18. https://doi.org/10.17010/ijcs/2024/v9/i2/173860

Hassan, G. M., Hussien, N. M., & Mohialden, Y. M. (2023). Python TCP/IP libraries: A Review. *International Journal Papier Advance and Scientific Review*, *4*(2), 10–15. https://doi.org/10.47667/ijpasr.v4i2.202

Hunt, J. (2023). *Sockets in Python* (pp. 557–569). https://doi.org/10.1007/978-3-031-40336-1\_49

Ivlev, V., Nikiforov, I., & Yusupova, O. (2023). Automation method for configuring IT infrastructure for IT projects. In A. Gibadullin & G. Khalmatjanova (Eds.), *International Conference on Digital Transformation: Informatics, Economics, and Education (DTIEE2023)* (p. 22). SPIE. https://doi.org/10.1117/12.2680779

Kapiton, A. M., Skakalina, O. V., Tyshchenko, D. O., & Franchuk, T. M. (2023). Automated Setup System Security Configuration of Network Equipment. *Èlektronnoe Modelirovanie*, *45*(3), 28–42. https://doi.org/10.15407/emodel.45.03.028

Karki, S. (2021). *Performance Comparison of SSH Libraries*.

Li, G., Dong, Z., & Wang, Y. (2024). Information security of hospital computer network based on SAE deep neural network. *Applied Mathematics and Nonlinear Sciences*, *9*(1). https://doi.org/10.2478/amns.2023.1.00466

MAHMOOD, A. (2020, September 16). *Performance Analysis of Routing Protocols RIP, EIGRP, OSPF and IGRP using Networks connector*. https://doi.org/10.4108/eai.28-6-2020.2298167

Mazin, A. A., Abidin, H. Z., Mazalan, L., & Mazin, A. M. (2023). Network Automation Using Python Programming to Interact with Multiple Third-Party Network Devices. *2023 10th International Conference on Information Technology, Computer, and Electrical Engineering (ICITACEE)*, 59–64. https://doi.org/10.1109/ICITACEE58587.2023.10277400

Michael Oladipo Akinsanya, Cynthia Chizoba Ekechi, & Chukwuekem David Okeke. (2024). VIRTUAL PRIVATE NETWORKS (VPN): A CONCEPTUAL REVIEW OF SECURITY PROTOCOLS AND THEIR APPLICATION IN MODERN NETWORKS. *Engineering Science & Technology Journal*, *5*(4), 1452–1472. https://doi.org/10.51594/estj.v5i4.1076

Michel, F., & Bonaventure, O. (2023). Towards SSH3: how HTTP/3 improves secure shells. *ArXiv.Org*.

Miller, A., Kobylski, N., Qamar, E., Xiao, J., Veal, N., Kenney, R., Wysocki, N., & Mahmoud, M. (2022). Automating File Operations via Python. *2022 International Conference on Computational Science and Computational Intelligence (CSCI)*, 1907–1913. https://doi.org/10.1109/CSCI58124.2022.00343

Muhammad, T., & Munir, M. (2023). Network Automation. *European Journal of Technology*, *7*(3), 23–42. https://doi.org/10.47672/ejt.1547

Mutiara, D. A., Isnaini, K. N., & Suhartono, D. (2023). NETWORK PROGRAMMABILITY FOR NETWORK ISSUE USING PARAMIKO LIBRARY. *Jurnal Teknik Informatika (Jutif)*, *4*(4), 751–758. https://doi.org/10.52436/1.jutif.2023.4.4.691

Neeru Kumari, & Dr. Tilak Raj. (2024). OSPF Metric Convergence and Variation Analysis During Redistribution with Routing Information Protocol. *International Research Journal on Advanced Engineering and Management (IRJAEM)*, *2*(06), 1985–1991. https://doi.org/10.47392/irjaem.2024.0293

Novradinata, R., Riyadi, S., & Adrian, R. (2022). Evaluating the Hybrid Multi-Protocol Label Switching (MPLS) on the Enhanced Interior Gateway Routing Protocol (EIGRP). In *Emerging Information Science and Technology* (Vol. 3, Issue 2).

Pérez, S. C., Facchini, H. A., Roberti-Ferri, B. A., Stefanoni, M. E., & Césari, M. I. (2023). Towards the Automation of Data Networks. *ITECKNE*, *20*(1). https://doi.org/10.15332/iteckne.v20i1.2918

Peta, S. (2022). Python- An Appetite for the Software Industry. *International Journal of Programming Languages and Applications*, *12*(4), 1–14. https://doi.org/10.5121/ijpla.2022.12401

Pike, T., Colter, R., Bailey, M., Kazil, J., & Meyers, J. S. (2022). *Social Networks as a Collective Intelligence: An Examination of the Python Ecosystem*.

Prosviryakova, L. V., Osipov, K. A., & Dmitriev, A. A. (2024). New opportunities for studying digital information transmission technologies using Cisco equipment. *E3S Web of Conferences*, *548*, 03010. https://doi.org/10.1051/e3sconf/202454803010

Sacco, A., Esposito, F., & Marchetto, G. (2021). On Control and Data Plane Programmability for Data-Driven Networking. *2021 IEEE 22nd International Conference on High Performance Switching and Routing (HPSR)*, 1–6. https://doi.org/10.1109/HPSR52026.2021.9481859

Tiwari, M. K., Pal, R., Chauhan, V., Singh, V., Singh, V., Dhamodaran, Dr. S., & Sharma, Dr. S. (2024). A python programming widely utilized in the development of a twitter bot as a sophisticated advance technical tool. *International Journal of Computing and Artificial Intelligence*, *5*(1), 102–108. https://doi.org/10.33545/27076571.2024.v5.i1b.88

Toledo, S. (2023). SSH tunneling to connect to remote computers. *Software Impacts*, *17*. https://doi.org/10.1016/j.simpa.2023.100545

Wachid, N., Majid, A., & Fuada, S. (2020). RIP VS. OSPF ROUTING PROTOCOLS: WHICH ONE IS THE BEST FOR A REAL-TIME COMPUTER NETWORK? *Jurnal SIMETRIS*, *11*(1).

Wang, X., Liu, Z., Li, Q., Guo, Y., Ling, S., Zhan, J., Xu, Y., Xu, K., & Wu, J. (2023). *Secure Inter-domain Routing and Forwarding via Verifiable Forwarding Commitments*. http://arxiv.org/abs/2309.13271

Xu, J., & Russello, G. (2022). Automated Security-focused Network Configuration Management: State of the Art, Challenges, and Future Directions. *2022 9th International Conference on Dependable Systems and Their Applications (DSA)*, 409–420. https://doi.org/10.1109/DSA56465.2022.00061

Zadka, M. (2022). Paramiko. In *DevOps in Python* (pp. 139–148). Apress. https://doi.org/10.1007/978-1-4842-7996-0\_9

Zhu, R., Wang, X., Liu, C., Xu, Z., Shen, W., Chang, R., & Liu, Y. (2024). ModuleGuard: Understanding and Detecting Module Conflicts in Python Ecosystem. *Proceedings of the IEEE/ACM 46th International Conference on Software Engineering*, 1–12. https://doi.org/10.1145/3597503.3639221

Zolkin, A. L., Sarycheva, S. A., Tarasova, A. E., Bityutskiy, A. S., & Azarenko, G. Yu. (2023). Development of a system for building computer networks on a CISCO PACKET TRACER software emulator. In A. Gibadullin & S. Sadullozoda (Eds.), *2nd International Conference on Computer Applications for Management and Sustainable Development of Production and Industry (CMSD-II-2022)* (p. 46). SPIE. https://doi.org/10.1117/12.2669500

 

<table>
<tbody>
<tr class="odd">
<td><blockquote>
<p><img src="67627f4d34ef8_media/media/image9.png" style="width:1.01042in;height:0.36111in" alt="A picture containing text, clipart Description automatically generated" /></p>
</blockquote></td>
<td>© 2024 by the authors. Submitted for possible open access publication under the terms and conditions of the Creative Commons Attribution (CC BY) license (http://creativecommons.org/licenses/by/4.0/).</td>
</tr>
</tbody>
</table>

1.  <sup>\*</sup> Corresponding author. *E-mail address*: <donottypehere@email.com> (Add the e-mail in the final camera-ready submission)
