This document provides an overview of the various types of update files a FireSIGHT System installs in order to keep a system up-to-date. Some files update the software and operating system of your FireSIGHT System, while some files enhance security.
There are no specific requirements for this document.
The information in this document is based on these hardware and software versions:
The information in this document was created from the devices in a specific lab environment. All of the devices used in this document started with a cleared (default) configuration. If your network is live, make sure that you understand the potential impact of any command.
On FireSIGHT Systems, these types of updates can be installed:
Description | Example | |
---|---|---|
Upgrade |
|
Sourcefire_3D_Defense_Center_S3_Upgrade-5.4.0-763.sh |
Patch |
|
Sourcefire_3D_Defense_Center_S3_Patch-5.4.1-59.sh |
Sourcefire Rule Update (SRU) |
|
Sourcefire_Rule_Update-2015-05-20-001-vrt.sh |
Vulnerability Database (VDB) |
|
Sourcefire_VDB_Fingerprint_Database-4.5.0-241.sh |
SourceFire GeoLocation Database Update (GeoDB) |
|
Sourcefire_Geodb_Update-2015-05-09-001.sh |
Security Intelligence Feed |
|
Feeds are downloaded periodically and automatically from the cloud by the FireSIGHT Management Center. |
URL Filtering Data |
|
Feeds are downloaded periodically and automatically from the cloud by the FireSIGHT Management Center. |
In order to update a FireSIGHT Management Center, you might have to navigate to various pages of the web interface. It depends on the type of update you want to download. This section provides the navigation to various update pages.
In order to upload or install these components, choose System > Updates, and choose the Product Updates tab:
If you want to download an upgrade, patch, or VDB file from the Cisco Support site directly, click Download Updates. The button is available at the bottom of the page. Alternatively, if you manually downloaded a file from the Cisco Support site and you want to upload it to the FireSIGHT System, click Upload Update.
In order to update the SRU, choose System > Updates, and choose the Rule Updates tab.
In order to update the GeoDB, choose System > Updates and choose the Geolocation Updates tab.
In order to update the Security Intelligence Feed, choose Objects > Object Management. Choose the Security Intelligence option from the left panel, and click Update Feeds. If you want to update your custom feed or you want to create a custom list, click Add Security Intelligence.
In order to update the URL Filtering database, choose System > Local > Configuration. Choose Cloud Services and click Update Now.