Cisco Cisco Web Security Appliance S380 User Guide

Page of 606
 
26-41
Cisco IronPort AsyncOS 7.7 for Web User Guide
 
Chapter 26      System Administration
Reverting to a Previous Version of AsyncOS for Web
Note
You cannot revert to a version of AsyncOS for Web earlier than version 7.5.
Effective in version 7.5, when you upgrade to a later version, the upgrade process automatically saves 
the current system configuration to a file on the Web Security appliance. (However, Cisco recommends 
manually saving the configuration file to a local machine as a backup.) This allows AsyncOS for Web to 
load the configuration file associated with the earlier release after reverting to the earlier version. 
However, when it performs a reversion, it uses the current network settings for the management 
interface. 
When you revert AsyncOS, you can choose to revert to the currently running build. This allows you to 
clear all data on the appliance and start with a new, clean configuration.
Note
If updates to the set of URL categories are available, they will be applied after AsyncOS reversion. 
Reverting AsyncOS for an Appliance Managed by the SMA
You can revert AsyncOS for Web from the Web Security appliance. However, if the Web Security 
appliance is managed by a Security Management appliance, consider the following rules and guidelines:
  •
When Centralized Reporting is enabled on the Web Security appliance, AsyncOS for Web finishes 
transferring the reporting data to the Security Management appliance before it starts the reversion. 
If the files take longer than 40 seconds to transfer to the Security Management appliance, AsyncOS 
for Web prompts you to continue waiting to transfer the files, or continue the reversion without 
transferring all files.
  •
When the Web Security appliance is managed by a Security Management appliance and you revert 
from one version of AsyncOS for Web to an earlier version, such as reverting from version 7.6 to 
version 7.5, you must associate the Web Security appliance with the appropriate Configuration 
Master. Otherwise, pushing a configuration from the Security Management appliance to the Web 
Security appliance might fail.
Available Versions
Because upgrades cause one-way transformation of key subsystems, the reversion process is complex 
and requires qualification by Cisco Quality Assurance teams. Not all prior versions of the AsyncOS for 
Web operating system are available for reversion. The earliest AsyncOS for Web version supported for 
this functionality is AsyncOS 7.5.0. Prior versions of AsyncOS for Web are not supported.
Important Note About Reversion Impact
Reverting the operating system on a Web Security appliance is a very destructive action. This action 
destroys all configuration logs and databases. In addition, reversion disrupts web traffic handling until 
the appliance is reconfigured. 
Depending on the initial Web Security appliance configuration, this action may destroy network 
configuration. If this happens, you will need physical local access to the appliance after performing the 
reversion.