Cisco Cisco Firepower Management Center 2000 Notas de publicación
15
FireSIGHT System Release Notes
Installing the Update
Installing the Update on Clustered Devices
When you install an update on clustered devices, the system performs the update on the devices one at a time. When the update starts, the
system first applies it to the secondary device, which goes into maintenance mode until any necessary processes restart and the device is
processing traffic again. The system then applies the update to the primary device, which follows the same process.
system first applies it to the secondary device, which goes into maintenance mode until any necessary processes restart and the device is
processing traffic again. The system then applies the update to the primary device, which follows the same process.
Installing the Update on Stacked Devices
When you install an update on stacked devices, the system performs the updates simultaneously. Each device resumes normal operation
when the update completes. Note that:
when the update completes. Note that:
If the primary device completes the update before all of the secondary devices, the stack operates in a limited, mixed-version state until
all devices have completed the update.
all devices have completed the update.
If the primary device completes the update after all of the secondary devices, the stack resumes normal operation when the update
completes on the primary device.
completes on the primary device.
After the Installation
After you perform the update on either the Defense Center ormanaged devices, you must reapply device configuration and access control
policies. Applying an access control policy may cause a short pause in traffic flow and processing, and may also cause a few packets to pass
uninspected. For more information, see the FireSIGHT System User Guide.
policies. Applying an access control policy may cause a short pause in traffic flow and processing, and may also cause a few packets to pass
uninspected. For more information, see the FireSIGHT System User Guide.
Note:
If you plan on updating the system to Version 6.0, you must install the FireSIGHT System Version 6.0 Pre-Installation package prior
to updating the Version 6.0. For more information, see the
There are several additional post-update steps you should take to ensure that your deployment is performing properly. These include:
verifying that the update succeeded
making sure that all appliances in your deployment are communicating successfully
updating to the latest patch for Version 5.4.1.5, if available, to take advantage of the latest enhancements and security fixes
optionally, updating your intrusion rules and vulnerability database (VDB) and reapplying your access control policies
making any required configuration changes based on the information in
The next sections include detailed instructions not only on performing the update, but also on completing any post-update steps. Make sure
you complete all of the listed tasks.
you complete all of the listed tasks.
Updating Defense Centers
Use the procedure in this section to update your Defense Centers, including virtual Defense Centers. For the Version 5.4.1.5 update, Defense
Centers reboot.
Centers reboot.
Caution:
You must update your DC2000 and DC4000 BIOs to Version 2.0.1b in order to update your appliances to Version 5.4.1.1 or later.
Download the BIOs update via the Cisco Support site.
Caution:
Before you update the Defense Center, reapply access control policies to any managed devices. Otherwise, the eventual update
of the managed device may fail.
Caution:
Do not reboot or shut down your appliances during the update until after you see the login prompt. The system may appear
inactive during the pre-checks portion of the update; this is expected behavior and does not require you to reboot or shut down your
appliances.
appliances.
Note:
If you plan on updating the system to Version 6.0, you must install the FireSIGHT System Version 6.0 Pre-Installation package prior
to updating the Version 6.0. For more information, see the
Note:
Updating a Defense Center to Version 5.4.1.5 removes existing uninstallers from the appliance.