<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Signature Update Failure - Error Code 52 in Endpoint Security</title>
    <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4939224#M7887</link>
    <description>&lt;P&gt;I have a lot of Endpoints that have failed to update their Signatures within the last 24 hours. After looking into it, the Error Code showing for these events is 52 but I have no reference material to address this.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyone know what the error code means? It doesn't appear to transition to anything in the HEX for the Microsoft Document.&lt;/P&gt;</description>
    <pubDate>Thu, 12 Oct 2023 14:00:52 GMT</pubDate>
    <dc:creator>J Hefner</dc:creator>
    <dc:date>2023-10-12T14:00:52Z</dc:date>
    <item>
      <title>Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4939224#M7887</link>
      <description>&lt;P&gt;I have a lot of Endpoints that have failed to update their Signatures within the last 24 hours. After looking into it, the Error Code showing for these events is 52 but I have no reference material to address this.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyone know what the error code means? It doesn't appear to transition to anything in the HEX for the Microsoft Document.&lt;/P&gt;</description>
      <pubDate>Thu, 12 Oct 2023 14:00:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4939224#M7887</guid>
      <dc:creator>J Hefner</dc:creator>
      <dc:date>2023-10-12T14:00:52Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4942487#M7896</link>
      <description>&lt;P&gt;I'm also having this issue with a handful of endpoints. Do you happen to run a self-hosted update server or are you pulling TETRA updates from Cisco cloud?&lt;/P&gt;</description>
      <pubDate>Tue, 17 Oct 2023 18:51:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4942487#M7896</guid>
      <dc:creator>Josh M</dc:creator>
      <dc:date>2023-10-17T18:51:15Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4942534#M7899</link>
      <description>&lt;P&gt;Would you guys happen to have any screenshot from the SE Console?&lt;BR /&gt;&lt;BR /&gt;Usually these errors about tetra update will clear out with in 24 hrs if the endpoint is connected to the internet and update interval is to too long. In other words if we miss the "internal clock" window lets say its 1 hour the endpoint will try again in 1 hour if he miss that window it will again try after 1 hour goes by and so on.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 17 Oct 2023 21:24:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4942534#M7899</guid>
      <dc:creator>Roman Valenta</dc:creator>
      <dc:date>2023-10-17T21:24:39Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943064#M7903</link>
      <description>&lt;P&gt;Quick Note: &lt;BR /&gt;&lt;BR /&gt;If the error is presented as Signature Set Update Successful or &lt;SPAN&gt;Signature Set Update Failed this update is related to the BP (Behavioral Protection) engine.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Same rules pretty much applies here as well. We need to make sure that endpoint is connected to the network and we don't block connection to the update server. Again if the issue starts clearing out on its own then there is nothing to worry about. &lt;BR /&gt;&lt;BR /&gt;However to troubleshoot diagnostic bundle in debug will definitely help to at least parse through the logs for clues.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Oct 2023 14:05:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943064#M7903</guid>
      <dc:creator>Roman Valenta</dc:creator>
      <dc:date>2023-10-18T14:05:36Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943070#M7904</link>
      <description>&lt;P&gt;That's super helpful info, thanks Roman.&lt;/P&gt;&lt;P&gt;I was just curious because I've rolled out a self-hosted TETRA definition server for our org recently and was double checking to ensure that signatures were being properly updated. Attached below is a screenshot of a few Error 52s from our console that occurred this morning. So far I haven't noticed any adverse impact due to this, but was concerned about future signature set failures.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Signature set update failed" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/199973iD60B7918190EB7A1/image-size/large?v=v2&amp;amp;px=999" role="button" title="SignatureSetupdate.png" alt="Signature set update failed" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;Signature set update failed&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I'm happy to post debug or diagnostic logs if you guys are taking a deeper look into this.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Oct 2023 14:15:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943070#M7904</guid>
      <dc:creator>Josh M</dc:creator>
      <dc:date>2023-10-18T14:15:58Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943078#M7905</link>
      <description>Is the org server publicly available? Was this machine inside/vpn connected when it tried to update?&lt;BR /&gt;</description>
      <pubDate>Wed, 18 Oct 2023 14:19:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943078#M7905</guid>
      <dc:creator>Ken Stieers</dc:creator>
      <dc:date>2023-10-18T14:19:40Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943092#M7906</link>
      <description>&lt;P&gt;Hey Ken,&lt;/P&gt;&lt;P&gt;No, the update server is only available to internal addresses. No, these are general usage workstations that are accessed on-site via our corporate network.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Oct 2023 14:31:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943092#M7906</guid>
      <dc:creator>Josh M</dc:creator>
      <dc:date>2023-10-18T14:31:16Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943185#M7908</link>
      <description>&lt;P&gt;Thank you, Roman. It did clear up after about a day. I did file a TAC case on it. Thank you for your quick response here!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Oct 2023 17:31:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4943185#M7908</guid>
      <dc:creator>J Hefner</dc:creator>
      <dc:date>2023-10-18T17:31:55Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4944430#M7919</link>
      <description>&lt;P&gt;OK so this is definitely BP update and its not related to your TETRA on-perm server since TETRA on-perm server only updates TETRA definition. BP is through the cloud. If you keep getting this error and it's not clearing out I would suggest opening TAC case and upload bundle there . I would not post your diagnostic bundle on public forum.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Oct 2023 17:13:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4944430#M7919</guid>
      <dc:creator>Roman Valenta</dc:creator>
      <dc:date>2023-10-19T17:13:28Z</dc:date>
    </item>
    <item>
      <title>Re: Signature Update Failure - Error Code 52</title>
      <link>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4944432#M7920</link>
      <description>&lt;P&gt;Hi Jason, glad that the issue resolved its self for you.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Oct 2023 17:16:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/signature-update-failure-error-code-52/m-p/4944432#M7920</guid>
      <dc:creator>Roman Valenta</dc:creator>
      <dc:date>2023-10-19T17:16:52Z</dc:date>
    </item>
  </channel>
</rss>

