cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
213
Views
0
Helpful
1
Replies

Can Cisco IDS automatically downloaded new patches

tpahuja
Level 1
Level 1

Hello,

We have a freshly installed cisco IDS censor and we are using policy manager to gather logs, can the IDS be cofigured in a way that it automatically updates it self whenever a new patch comes put. Also, a new cisco vunerability came out few days ago, do we need to install a patch for it as well.

Thanks

1 Reply 1

jamesand
Cisco Employee
Cisco Employee

The sensor can automatically pull updates from a server using ftp or scp. You have to provide the server and manually copy update files to it from the cisco CCO site first. Then configure the sensor for autoupdates.

To configure auto updates using cli:

conf t

ser host

optionalAutoUpgrade

active auto

auto

(provide user/pw/serverIp/serverDirectory/fileProtocol)

schedule

act

(provide params for cal or hourly updates)

Yes, there is a signature update that catches the cisco IOS vulnerability: IDS-sig-4.1-1-S48.rpm.pkg