Cisco Cisco IPS 4345 Sensor

Seite von 56
   
9
Release Notes for Cisco Intrusion Prevention System 7.2(1)E4
OL-27710-01
  Upgrading to IPS 7.2(1)E4
b.
Read the policy and click I Accept. The Encryption Software Export/Distribution Form appears.
If you previously filled out the Encryption Software Export Distribution Authorization form, and read 
and accepted the Cisco Systems Inc. Encryption Software Usage Handling and Distribution Policy, these 
forms are not displayed again. 
Step 11
Open the file or save it to your computer.
Step 12
Follow the instructions in the Readme or the Release Notes to install the update.
Upgrading to IPS 7.2(1)E4
This section describes how to upgrade the IPS 4345, IPS 4360, IPS 4510, IPS 4520, ASA 5500-X 
IPS SSP series, and the ASA 5585-X IPS SSP series, and contains the following topics:
Upgrade Notes and Caveats
Pay attention to the following upgrade notes and caveats when upgrading to IPS 7.2(1)E4:
If the client does not support SSHv2 or if SSHv2 is disabled, the management connectivity will be 
lost after upgrading to IPS 7.2(1) because SSHv1 is disabled by default in IPS 7.2(1).
If the management application does not support TLS1.0 or higher, the management connectivity will 
be lost after upgrading to IPS 7.2(1) because IPS 7.2(1) does not support TLS versions before 
TLS1.0.
You cannot upgrade to 7.2(1)E4 if the sensor license was generated for 6.0.x versions and earlier. 
The upgrade fails and the following message is displayed:
Error: execUpgradeSoftware : This license is a IPS version 6.0 or earlier license 
which is not compatible with platforms running 7.1.X IPS Versions. Please install a 
IPS version 6.1 or later license type. Refer to 7.2.X IPS version README or IPS 
documents for the details of generating a new license. 
The default value of the Cisco server IP address has been changed to www.cisco.com in the Auto 
Update URL configuration. If you have automatic update configured on your sensor, you may need 
to update firewall rules to allow the sensor to connect to this new address.
Anomaly detection has been disabled by default. If you did not configure the operation mode 
manually before the upgrade, it defaults to inactive after you upgrade to IPS 7.2(1)E4. If you 
configured the operation mode to detect, learn, or inactive, the tuned value is preserved after the 
upgrade. 
You must have a valid maintenance contract per sensor to download software upgrades from 
Cisco.com.
You must be running the following versions to upgrade the following platforms to IPS 7.2(1)E4: 
For the IPS 4300 series sensors and ASA 5500-X IPS SSP, you must be running IPS 7.1(3)E4 
or later. 
For the IPS 4500 series sensors, you must be running IPS 7.1(4)E4 or later. 
For the ASA 5585-X IPS SSP series, you must be running IPS 7.1(1)E4 or later.