Cisco Cisco Security Manager 4.0 Notas de publicación
4
Release Notes for Cisco Security Manager 4.0.1
OL-23469-02
Installation Notes
Cisco Security Manager 4.0.1
In addition to resolved caveats, this release includes the following new features and enhancements:
•
Support for these new Cisco ASA-5500 Series Adaptive Security Appliance models: 5585-X, all
models.
models.
•
Support for ASA Software release 8.2(3) on the ASA 5585-X platform.
Note
Security Manager 4.0.1 Service Pack 1 enables support for ASA Software Release 8.2(3) on all
ASA platforms.
ASA platforms.
•
Support for these Cisco 3800 Series Integrated Services Routers: 3825 NOVPN, 3845 NOVPN. You
cannot configure VPN policies or other policies that require encryption on these devices.
cannot configure VPN policies or other policies that require encryption on these devices.
•
Support for these Cisco 3900 Series Integrated Services Routers: 3925E, 3945E.
•
Support for Cisco IOS Software release 15.1(1)T.
•
Support for Cisco IOS XE Software releases 2.5 and 2.6. These releases are known as 12.2(33)XNE
and 12.2(33)XNF, respectively, in Security Manager. The only new feature supported in these
releases is for DMVPN phase 3, which allows direct communication between spokes. Otherwise,
software support is equivalent to release 2.4 (known as 12.2(33)XND).
and 12.2(33)XNF, respectively, in Security Manager. The only new feature supported in these
releases is for DMVPN phase 3, which allows direct communication between spokes. Otherwise,
software support is equivalent to release 2.4 (known as 12.2(33)XND).
•
Support for Cisco ASA 5585 IPS Security Services Processor.
•
Support for changes to the mechanism used for downloading sensor and signature updates from
Cisco.com.
Cisco.com.
•
You can now configure AAA access control using a RADIUS server for IPS devices running IPS
Software release 7.0(4).
Software release 7.0(4).
•
A new device property, License Supports Failover, for ASA 5505 and 5510 devices that indicates
whether an optional failover license is available on the device. The property is set when you discover
device policies, or you can manually set the property. Failover policies are deployed to these devices
only if the property indicates that the device has a failover license installed. This helps eliminate
deployment failures due to failover licensing issues.
whether an optional failover license is available on the device. The property is set when you discover
device policies, or you can manually set the property. Failover policies are deployed to these devices
only if the property indicates that the device has a failover license installed. This helps eliminate
deployment failures due to failover licensing issues.
•
Performance Monitor adds support for Cisco ASA-5500 Series Adaptive Security Appliance model
5585-X, and Cisco 3900 Series Integrated Services Routers 3925E and 3945E.
5585-X, and Cisco 3900 Series Integrated Services Routers 3925E and 3945E.
•
IPS signature tuning has been enhanced. If you modify a signature policy with more than one tuning
contexts, Security Manager can copy the policy to other contexts when appropriate and with your
permission.
contexts, Security Manager can copy the policy to other contexts when appropriate and with your
permission.
Installation Notes
Do not modify casuser (the default service account) or directory permissions that are established during
the installation of the product. Doing so can lead to problems with your being able to do the following:
the installation of the product. Doing so can lead to problems with your being able to do the following:
•
Logging in to the web server
•
Logging in to the client
•
Performing successful backups of all databases
Internet Explorer 8 is supported, but only in Compatibility View. To use Compatibility View, open
Internet Explorer 8, go to Tools > Compatibility View Settings, and add the Security Manager server as
a “website to be displayed in Compatibility View.”
Internet Explorer 8, go to Tools > Compatibility View Settings, and add the Security Manager server as
a “website to be displayed in Compatibility View.”