Agent skill

Nso Service Mgmt

by automateyournetwork in automateyournetwork/netclaw

Cisco NSO service management — discover service types, list service instances, orchestrate network services.

Apache-2.0Auto-check passedDevOps & Cloud

Install Nso Service Mgmt

skills CLI
$ npx skills add automateyournetwork/netclaw --skill nso-service-mgmt -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install automateyournetwork/netclaw nso-service-mgmt --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/automateyournetwork/netclaw.git skills-src && mkdir -p .claude/skills && cp -r skills-src/workspace/skills/nso-service-mgmt .claude/skills/nso-service-mgmt && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
nso-service-mgmt
GitHub stars
676
Token cost
~1.7k tokens
SKILL.md length
826 words
Files
1
Skills in repo
120
Repo updated
First seen
Licence
Apache-2.0

At a glance

Cisco NSO service management — discover service types, list service instances, orchestrate network services.

  • Works in 4 steps: Translates the service intent into… → Deploys the config to all affected… → Tracks what config belongs to which… → …
  • Listing NSO services
  • SKILL.md covers MCP Server, Available Tools, What Are NSO Services? and Workflow: Service Discovery, plus 9 more sections
  • Needs NSO_PASSWORD

What it does

Nso Service Mgmt is an agent skill from automateyournetwork/netclaw. Cisco NSO service management — discover service types, list service instances, orchestrate network services. Use when listing NSO services, checking service health, auditing deployed service instances, or asking what services NSO can provision.

Its SKILL.md is about 1.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in DevOps & Cloud. The repository describes itself as: An AI agent that claws through your network. The licence is Apache-2.0.

When your agent uses it

  • Listing NSO services
  • Checking service health
  • Auditing deployed service instances
  • Asking what services NSO can provision

Example prompts

  • “/nso-service-mgmt”

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. Translates the service intent into per-device CLI/NETCONF configuration
  2. Deploys the config to all affected devices transactionally
  3. Tracks what config belongs to which service (service meta-data)
  4. Enables rollback — delete the service and all its config is cleanly removed

What it can do on your machine

Read from SKILL.md and the folder at commit aa90e7d. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • NSO_PASSWORD

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Nso Service Mgmt loads about 1.7k tokens when it runs. Until then it costs about 65 tokens; SKILL.md has 826 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~65
When it runs · the whole SKILL.md, loaded when a task matches
~1.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from automateyournetwork/netclaw at commit aa90e7d, republished under its Apache-2.0 licence (© automateyournetwork). 826 words, ~1,739 tokens.

Download SKILL.mdSave it as .claude/skills/nso-service-mgmt/SKILL.md (or your agent's skills folder).
name
nso-service-mgmt
description
Cisco NSO service management — discover service types, list service instances, orchestrate network services. Use when listing NSO services, checking service health, auditing deployed service instances, or asking what services NSO can provision.
version
1.0.0
license
Apache-2.0
tags
nso, services, orchestration, automation

NSO Service Management

MCP Server

  • Command: cisco-nso-mcp-server (pip-installed, stdio transport)
  • Requires: NSO_ADDRESS, NSO_USERNAME, NSO_PASSWORD environment variables

Available Tools

ToolParametersWhat It Does
get_service_typesnoneList all available service types in NSO (L3VPN, VPLS, ACL, etc.)
get_servicesservice_typeList all service instances for a given service type

What Are NSO Services?

NSO services are the core value of NSO. Instead of configuring devices one at a time, you define a service (e.g., "L3VPN between Site-A and Site-B") and NSO:

  1. Translates the service intent into per-device CLI/NETCONF configuration
  2. Deploys the config to all affected devices transactionally
  3. Tracks what config belongs to which service (service meta-data)
  4. Enables rollback — delete the service and all its config is cleanly removed

Common service types include:

  • L3VPN — Layer 3 VPN provisioning across PE routers
  • L2VPN / VPLS — Layer 2 VPN / VPLS services
  • ACL Management — Centralized ACL provisioning
  • QoS Policies — Quality of service templates across devices
  • Interface Provisioning — Standardized interface configurations
  • Firewall Rules — Security policy deployment
  • Custom Services — Any service package developed for your environment

Workflow: Service Discovery

When a user asks "what services does NSO have?" or "what can NSO provision?":

  1. Get service types: get_service_types to list all available service packages
  2. For each type: get_services to list deployed instances
  3. Report: Table of service types, instance counts, and deployment status

Workflow: Service Inventory Report

When a user needs to understand what's deployed:

  1. List service types: get_service_types
  2. For each interesting type: get_services with the service type name
  3. Cross-reference with devices: Use get_device_config (nso-device-ops) to see the config NSO deployed
  4. Report: Service name, type, affected devices, deployment status

Workflow: Service Health Check

When validating that NSO services are properly deployed:

  1. List services: get_service_types → get_services for each type
  2. Check device sync: For each device in a service, run check_device_sync (nso-device-ops)
  3. Flag issues: If a device is out of sync, the service config may have drifted
  4. Report: Service health summary — in-sync vs out-of-sync devices per service

Workflow: Pre-Change Service Impact Analysis

Before making manual device changes:

  1. List services: get_service_types → get_services for each type
  2. Identify affected services: Which services touch the device being changed?
  3. Warn the user: "R1 has 3 active L3VPN services — manual changes may conflict with NSO"
  4. Recommend: Use NSO services for changes instead of direct CLI, or re-sync after manual changes

Integration with Other Skills

ScenarioSkills Involved
Audit deployed servicesnso-service-mgmt + nso-device-ops (verify device configs match services)
Service drift detectionnso-service-mgmt + nso-device-ops (check_device_sync)
Document servicesnso-service-mgmt → github-ops (commit service inventory to repo)
Service impact analysisnso-service-mgmt + pyATS (verify service is working at network level)
Service report deliverynso-service-mgmt → msgraph-teams or Slack (post service inventory)
Lab service testingnso-service-mgmt + cml-lab-lifecycle (test services against CML lab)
Show full SKILL.md (372 more words)Show less

NSO Service Concepts

ConceptMeaning
Service TypeA service package (e.g., l3vpn) — defines what parameters are needed and how to translate to device config
Service InstanceA deployed service (e.g., "l3vpn-siteA-siteB") — a specific instantiation with actual parameters
Service Meta-DataNSO tracks which config lines belong to which service — enables clean rollback
FASTMAPNSO's algorithm that maps service intent to device config — handles create, modify, delete
Reactive FASTMAPServices that react to external events (e.g., device state changes)
Nano ServicesMulti-step services with state machines for complex provisioning workflows
Service PackageThe code (YANG models + templates + logic) that defines a service type

Example Slack Conversations

"What services are running on NSO?" → get_service_types → list of available service packages → get_services for each type → count of deployed instances → Report: "NSO has 4 service types: l3vpn (12 instances), acl-mgmt (8 instances), qos-policy (5 instances), interface-std (20 instances)"

"Show me all L3VPN services" → get_services("l3vpn") → list of all L3VPN instances with their parameters → Report: "12 L3VPN services deployed across 6 PE routers"

"Are any services out of sync?" → get_service_types → get_services for each → get affected devices → check_device_sync for each affected device → Report: "2 of 12 L3VPN services have out-of-sync devices: PE1, PE3"

"What services touch router PE1?" → get_service_types → get_services for each → filter for PE1 → Report: "PE1 participates in: l3vpn-customer-a, l3vpn-customer-b, qos-gold, acl-mgmt-edge"

Important Rules

  • Services are read-only in this MCP — you can discover and inspect services but not create/modify/delete them
  • Service drift is critical — if check_device_sync shows out-of-sync, service config may not match intended state
  • Manual changes conflict with services — warn users that direct CLI changes on NSO-managed devices can break service tracking
  • Record in GAIT — log all service discovery and audit operations for audit trail

Environment Variables

Same as nso-device-ops:

  • NSO_SCHEME, NSO_ADDRESS, NSO_PORT, NSO_USERNAME, NSO_PASSWORD, NSO_VERIFY, NSO_TIMEOUT

Failure Behavior

  • On a tool error (timeout, unreachable host, malformed response), report the failure and its error message directly to the user rather than fabricating or guessing at results.
  • For a confirmed read-only call, check connectivity and retry once if appropriate. For any call that changes state or sends a message, a timeout does not prove the action failed: inspect current state or delivery status before retrying, preserve the required approval/change gates, and do not repeat an action whose outcome is unknown.

© automateyournetwork, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in workspace/skills/nso-service-mgmt of automateyournetwork/netclaw.

Open the folder on GitHubat commit aa90e7d

Compare with similar skills

Nso Service Mgmt next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Nso Service Mgmt compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Nso Service Mgmt this skillautomateyournetwork/netclaw676—~1.7kAutomated safety check: PassApache-2.0
Monitor CInrwl/nx29k6 repos~4.7kAutomated safety check: PassMIT
Terraform and OpenTofu Guideagentscope-ai/QwenPaw36k6 repos~4.2kAutomated safety check: PassApache-2.0
Vercel Optimize Auditvercel-labs/agent-skills32k8 repos~4.3kAutomated safety check: PassNone
Analyze GitHub Action Logswithastro/astro63k1 repos~1.3kAutomated safety check: PassCustom licence
Openclaw Live Updateropenclaw/openclaw392k—~3.7kAutomated safety check: PassMIT

Similar skills

  • Monitor CI

    nrwl/nx

    Monitor Nx Cloud CI pipeline and handle self-healing fixes. An agent skill from nrwl/nx.

    29k GitHub starsUsed in 6 repos~4.7k tokens
    DevOps & CloudAuto-check passed
  • Terraform and OpenTofu Guide

    agentscope-ai/QwenPaw

    Guidance for writing and testing Terraform and OpenTofu code: module structure, naming, test approaches, CI/CD workflows, state handling and security scanning.

    36k GitHub starsUsed in 6 repos~4.2k tokens
    DevOps & CloudAuto-check passed
  • Vercel Optimize Audit

    vercel-labs/agent-skills

    Official

    Runs a metrics-first audit of a deployed Vercel project, gating investigations on real signals to produce ranked, citation-backed cost and performance recommendations.

    32k GitHub starsUsed in 8 repos~4.3k tokens
    DevOps & CloudAuto-check passed
  • Official

    Analyze recent GitHub Actions workflow runs to identify patterns, mistakes, and improvements.

    63k GitHub starsUsed in 1 repo~1.3k tokens
    DevOps & CloudAuto-check passed
  • Openclaw Live Updater

    openclaw/openclaw

    Maintain the canonical live OpenClaw main checkout, macOS LaunchAgent-managed Gateway, local macOS app, exact-head main CI, and recurring full release validation.

    392k GitHub stars~3.7k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Docs Learn PR Preview

    netdata/netdata

    Use only when the user explicitly asks to build, run, preview, inspect, or validate learn.netdata.cloud locally using the contents of a PR or documentation branch before merge.

    81k GitHub stars~2k tokensUpdated today
    DevOps & CloudAuto-check passed

More from automateyournetwork/netclaw

All 120 skills in this repo
  • EVE-NG Lab Topology Design

    automateyournetwork/netclaw

    Entry point for designing EVE-NG network labs: classifies the request, gathers missing requirements, proposes options and validates the resulting topology.

    677 GitHub stars~612 tokensUpdated today
    Auto-check passed
  • ACI Policy Change Deployment

    automateyournetwork/netclaw

    Deploys Cisco ACI policy changes only behind an approved ServiceNow Change Request, capturing pre and post-change fault baselines and rolling back automatically on a fault delta.

    677 GitHub stars~4.2k tokensUpdated today
    Auto-check passed
  • Cisco ACI Fabric Health Audit

    automateyournetwork/netclaw

    Runs a phased health audit of a Cisco ACI fabric through MCP tools: node status, links, tenant and policy review, faults and endpoint learning.

    677 GitHub stars~2.9k tokensUpdated today
    Auto-check passed
  • Anta Validation

    automateyournetwork/netclaw

    Validate Arista EOS network state against ANTA's pre-built 208-test catalogue, with structured pass/fail verdicts.

    677 GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Arista Cvp

    automateyournetwork/netclaw

    Arista CloudVision Portal (CVP) automation via REST API — device inventory, events, connectivity monitoring, tag management (4 tools).

    677 GitHub stars~2.2k tokensUpdated today
    Auto-check: notes
  • AWS Cloud Monitoring

    automateyournetwork/netclaw

    AWS CloudWatch monitoring — metrics, alarms, log queries, VPC flow log analysis, network performance.

    677 GitHub stars~1k tokensUpdated today
    Auto-check passed

Categories

Questions about Nso Service Mgmt

What does Nso Service Mgmt do?

Cisco NSO service management — discover service types, list service instances, orchestrate network services. Nso Service Mgmt is an agent skill from automateyournetwork/netclaw. Cisco NSO service management — discover service types, list service instances, orchestrate network services.

When should I use Nso Service Mgmt?

Nso Service Mgmt fits situations like: listing NSO services; checking service health; auditing deployed service instances; asking what services NSO can provision.

How do I install Nso Service Mgmt in Claude Code?

Run `npx skills add automateyournetwork/netclaw --skill nso-service-mgmt -a claude-code`. Or copy the skill folder (workspace/skills/nso-service-mgmt in automateyournetwork/netclaw) into .claude/skills/nso-service-mgmt in your project. Claude Code loads it when a task matches its description.

How do I install Nso Service Mgmt in Codex?

Run `npx skills add automateyournetwork/netclaw --skill nso-service-mgmt -a codex`. Or copy the skill folder (workspace/skills/nso-service-mgmt in automateyournetwork/netclaw) into .agents/skills/nso-service-mgmt in your project. Codex loads it when a task matches its description.

Can I use Nso Service Mgmt in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add automateyournetwork/netclaw --skill nso-service-mgmt -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/nso-service-mgmt, .gemini/skills/nso-service-mgmt, .github/skills/nso-service-mgmt and .opencode/skills/nso-service-mgmt in your project.

What does Nso Service Mgmt need to run?

Going by SKILL.md and its folder, Nso Service Mgmt needs credentials named NSO_PASSWORD.

Does Nso Service Mgmt access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Nso Service Mgmt safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Nso Service Mgmt use?

Nso Service Mgmt is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Nso Service Mgmt use?

About 1.7k tokens (SKILL.md is roughly 7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Nso Service Mgmt?

Skills that share tags, products or a category with Nso Service Mgmt: Monitor CI (nrwl/nx, 29k stars), Terraform and OpenTofu Guide (agentscope-ai/QwenPaw, 36k stars), Vercel Optimize Audit (vercel-labs/agent-skills, 32k stars) and Analyze GitHub Action Logs (withastro/astro, 63k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Nso Service Mgmt?

automateyournetwork (a GitHub user) maintains it in automateyournetwork/netclaw, which has 676 GitHub stars. The repository holds 120 skills in this directory. The repository was last updated on October 9, 2026.

Source: automateyournetwork/netclaw on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.