Content updates
Content updates keep your deployment current with changing security and contextual information. The system uses this information to evaluate network activity and respond to changes in the threat landscape. Automatic content updates are often enabled by initial configuration or when you enable the related feature.
Types of content updates
Cloud-Delivered Firewall Management Center uses these types of content updates:
-
Vulnerability database (VDB): A database of known vulnerabilities to which hosts may be susceptible, as well as fingerprints for operating systems, clients, and applications. The system uses the VDB to help determine whether a particular host increases your risk of compromise.
Refer to Vulnerability database (VDB) updates.
-
Geolocation database (GeoDB): Maps IP addresses to countries and continents.
Refer to Geolocation database (GeoDB) updates.
-
Intrusion rules (LSP/SRU): Intrusion rule updates provide new and updated intrusion and preprocessor rules and can modify rule states, categories, variables, and default policy settings.
Refer to Intrusion rule updates.
-
Security Intelligence feeds: Collections of IP addresses, domain names, and URLs used to filter matching traffic.
Refer to List and feed updates for security intelligence feeds.
-
URL categories and reputations: Classification and risk information used to control access to websites.
Refer to Enable URL filtering using category and reputation.
Feedback