Cisco Cisco IPS 4255 Sensor

Seite von 44
 
4
Release Notes for Cisco Intrusion Prevention System 6.2(2)E4
OL-21670-01
  Supported Servers
Supported Servers
The following FTP servers are supported for IPS software updates:
WU-FTPD 2.6.2 (Linux) 
Solaris 2.8
Sambar 6.0 (Windows 2000)
Serv-U 5.0 (Windows 2000)
MS IIS 5.0 (Windows 2000)
The following HTTP/HTTPS servers are supported for IPS software updates:
CMS - Apache Server (Tomcat)
CMS - Apache Server (JRun) 
ROMMON and TFTP
ROMMON uses TFTP to download an image and launch it. TFTP does not address network issues such 
as latency or error recovery. It does implement a limited packet integrity check so that packets arriving 
in sequence with the correct integrity value have an extremely low probability of error. But TFTP does 
not offer pipelining so the total transfer time is equal to the number of packets to be transferred times 
the network average RTT. Because of this limitation, we recommend that the TFTP server be located on 
the same LAN segment as the sensor. Any network with an RTT less than a 100 milliseconds should 
provide reliable delivery of the image. Be aware that some TFTP servers limit the maximum file size that 
can be transferred to ~32 MB.
For More Information
For the procedure for downloading IPS software updates from Cisco.com, see 
For the procedure for configuring automatic upgrades, for the CLI refer to 
, and for IME refer to 
IPS Management and Event Viewers
Use the following tools for configuring Cisco IPS 6.2(2)E4 sensors:
Cisco IDM 7.0(3)
Cisco IME 6.2 and 7.0
IPS CLI 6.2
ASDM 5.2 and later
CSM 3.3 and later
Note
We recommend that ASDM users upgrade to ASDM 6.3 or later. The Java VM upper 
memory limit of ASDM 6.3 has been increased. Older versions of ASDM may not have 
enough available memory for IDM and 7.0(3) to function properly.