cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
428
Views
0
Helpful
2
Replies

ASA5510 CSC Bundle blocking Symantec and Microsoft updates

rgaudet
Level 1
Level 1

Noticed after a couple of days of operation that my Symantec and Microsoft automatic updates were not taking place. I added the respective servers IP address to my ACL containing the global pop3, smtp, ftp, and http to not match IP and put those in front of the pop3, etc... I then ran my liveupdate and everything processed fine. When I look at the log files for the ASA, I notice that it treats the file from Symantec as Spyware and shows it as an unscanned corrupted zip file. I am not blocking any downloadable file type. If this was a URL filtering issue, I would just add symantec as an allowed site. But since it's seeing it as spyware, there is no management for that except to turn it on or off. Any ideas or insight? Running the latest code of everything that is downloadable and CSC is also updating def's just fine.

1 Accepted Solution

Accepted Solutions

beth-martin
Level 5
Level 5

It looks like bug to me, check the bug-id:CSCse67660. try the 'deferred scanning' on the CSC module

View solution in original post

2 Replies 2

beth-martin
Level 5
Level 5

It looks like bug to me, check the bug-id:CSCse67660. try the 'deferred scanning' on the CSC module

Yeah, had a TAC engineer tell me that yesterday. Turned off http scanning and Cisco is supposed to come out with a patch for this either end of this month or sometime next month. Thanks for your reply though.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: