Cisco Cisco Web Security Appliance S190 사용자 가이드

다운로드
페이지 34
 
1-4
Cisco Advanced Web Security Reporting Installation, Setup, and User Guide
 
Chapter 1      Installation and Setup
Upgrade the Advanced Web Security Reporting Application
Step 7
Following notification that the file was imported successfully, restart the application:
a.
Navigate to Settings > Server Controls.
b.
Click Restart Splunk.
Step 8
Log into the Advanced Web Security Reporting application.
Step 9
Verify that the application was upgraded to version 4.5: the launch button in the left pane of the 
application window will display “Cisco Advanced Web Security Reporting 4.5.0.” 
You also can confirm by clicking the Manage Apps button in the top-left corner of the application 
window, and locating the “Cisco Advanced Web Security Reporting 4.5.0” listing.
Upgrading from Version 3.0 to Version 4.5
Upgrading from version 3.0 to version 4.5 is a two-step process:
1.
Complete the steps in the following section to upgrade from version 3.0 to version 4.0 
(
2.
Complete the steps in the previous section to upgrade from version 4.0 to version 4.5: 
Upgrading from Version 3.0 to Version 4.0
With the release of version 4.0, with Single Installer and the architecture re-design, you must follow the 
steps in this section to upgrade your version 3.0 installation for version 4.0 or later. Upgrading from a 
version 3.0 installation involves these basic steps:
Make a back-up copy of the existing version 3.0 indexed data.
Shut down the newly installed version 4.0 application.
Copy the version 3.0 back-up data to the new data directory.
Restart the version 4.0 or later application.
Detailed steps follow.
For these instructions, we assume that version 3.0 is running in 
/opt/splunk
 and the new version is in 
/opt/cisco_wsa_reporting
. Adjust your paths accordingly. 
Step 1
Stop the old version:
/opt/splunk/bin/splunk stop
Step 2
Edit the old 
inputs.conf
 file 
(
/opt/splunk/etc/apps/SplunkforCiscoIronportWSA/local/inputs.conf
) and disable all inputs.
Step 3
Restart the old version:
/opt/splunk/bin/splunk start
Step 4
Verify that there are no hot buckets left in the main index:
cd /opt/splunk/var/lib/splunk/defaultdb/db
ls -la hot* 
(verify no results)