Cisco Cisco Firepower Management Center 2000

Página de 42
15
FireSIGHT System Release Notes
Installing the Update
Installing the Update on Clustered Devices
When you install an update on clustered devices, the system performs the update on the devices one at a time. When the update starts, the 
system first applies it to the secondary device, which goes into maintenance mode until any necessary processes restart and the device is 
processing traffic again. The system then applies the update to the primary device, which follows the same process.
Installing the Update on Stacked Devices
When you install an update on stacked devices, the system performs the updates simultaneously. Each device resumes normal operation 
when the update completes. Note that:
If the primary device completes the update before all of the secondary devices, the stack operates in a limited, mixed-version state until 
all devices have completed the update. 
If the primary device completes the update after all of the secondary devices, the stack resumes normal operation when the update 
completes on the primary device.
After the Installation
After you perform the update on either the Defense Center ormanaged devices, you must reapply device configuration and access control 
policies. Applying an access control policy may cause a short pause in traffic flow and processing, and may also cause a few packets to pass 
uninspected. For more information, see the FireSIGHT System User Guide.
Note:
 If you plan on updating the system to Version 6.0, you must install the FireSIGHT System Version 6.0 Pre-Installation package prior 
to updating the Version 6.0. For more information, see the 
There are several additional post-update steps you should take to ensure that your deployment is performing properly. These include:
verifying that the update succeeded
making sure that all appliances in your deployment are communicating successfully
updating to the latest patch for Version 5.4.1.5, if available, to take advantage of the latest enhancements and security fixes
optionally, updating your intrusion rules and vulnerability database (VDB) and reapplying your access control policies
making any required configuration changes based on the information in 
The next sections include detailed instructions not only on performing the update, but also on completing any post-update steps. Make sure 
you complete all of the listed tasks.
Updating Defense Centers
Use the procedure in this section to update your Defense Centers, including virtual Defense Centers. For the Version 5.4.1.5 update, Defense 
Centers reboot.
Caution:
 You must update your DC2000 and DC4000 BIOs to Version 2.0.1b in order to update your appliances to Version 5.4.1.1 or later. 
Download the BIOs update via the Cisco Support site.
Caution:
 Before you update the Defense Center, reapply access control policies to any managed devices. Otherwise, the eventual update 
of the managed device may fail.
Caution:
 Do not reboot or shut down your appliances during the update until after you see the login prompt. The system may appear 
inactive during the pre-checks portion of the update; this is expected behavior and does not require you to reboot or shut down your 
appliances.
Note:
 If you plan on updating the system to Version 6.0, you must install the FireSIGHT System Version 6.0 Pre-Installation package prior 
to updating the Version 6.0. For more information, see the 
Note: 
Updating a Defense Center to Version 5.4.1.5 removes existing uninstallers from the appliance.