<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Patch ACS 5.3 in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981581#M190554</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dwane,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have installed the patch on any box, but you start with monitoring ACS (since that can take a little longer) to start the upgrade.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes you will need to create a repository first before installing a patch:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;SSH: login &amp;gt; config t &amp;gt; repository name &lt;NAME&gt; &amp;gt; url &lt;/NAME&gt;&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="ftp://x.x.x.x/" rel="nofollow"&gt;ftp://x.x.x.x/&lt;/A&gt;&lt;SPAN&gt; &amp;gt; username &lt;USERNAME&gt; password plain &lt;PASSWORD&gt;&lt;/PASSWORD&gt;&lt;/USERNAME&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After you create the repository,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;acs patch install &lt;PATCHNAME.TAR.GPG&gt; repository &lt;NAME&gt;&lt;/NAME&gt;&lt;/PATCHNAME.TAR.GPG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;that should get you going.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here are the steps:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.2/release/notes/acs_52_rn.html#wp151352"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.2/release/notes/acs_52_rn.html#wp151352&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 10 Sep 2012 22:48:24 GMT</pubDate>
    <dc:creator>Tarik Admani</dc:creator>
    <dc:date>2012-09-10T22:48:24Z</dc:date>
    <item>
      <title>Patch ACS 5.3</title>
      <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981576#M190547</link>
      <description>&lt;P&gt;Currently, we are configured in a Primary/Secondary with two Cisco ACS 1121 Applainces running&amp;nbsp;&amp;nbsp; Version 5.3.40.1.&amp;nbsp; We want to uipgrade to teh lastest patch, which was patch 5. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I know I need to deregister the backup and then upgrade the primary.&amp;nbsp; While that is rebooting, the secondary should take over and then I would upgrade the secondary.&amp;nbsp; At this point, I would then register the secondary with the primary to create redundancy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are there any lessons to be learned from this?&amp;nbsp; I do not expect an outage at all because of the redundancy.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are there any written steps to complete this process without a hitch?&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks to all.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Dwane&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;</description>
      <pubDate>Thu, 10 Mar 2022 07:15:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981576#M190547</guid>
      <dc:creator>dpatkins</dc:creator>
      <dc:date>2022-03-10T07:15:36Z</dc:date>
    </item>
    <item>
      <title>Patch ACS 5.3</title>
      <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981577#M190549</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dwane,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think you have upgrading the ACS version and installing a patch confused. I have installed patches without breaking apart the distributed deployment. I usually start with the secondary, install the patch and wait for the services to start.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can use cli commands from one of the ASAs or IOS device to test the authentication, once it passes that check, then I move to the primary and repeat the same steps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If for some reason you run into issues with the sync, you can force a full replication.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Here are the steps on how to install the patch - &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.3/release/notes/acs_53_rn.html#wp198690"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.3/release/notes/acs_53_rn.html#wp198690&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 18:32:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981577#M190549</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-03T18:32:16Z</dc:date>
    </item>
    <item>
      <title>Patch ACS 5.3</title>
      <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981578#M190551</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Thank you Tarik.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If it has been a while, is there like a show repository so I can get the name of the repository that we created during set up?&amp;nbsp; Also, if we are in redundant mode, do you or the group feel that we will experience an outage or a loss of service?&amp;nbsp; Patch 5 has been stable for all?&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Dwane&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 19:31:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981578#M190551</guid>
      <dc:creator>dpatkins</dc:creator>
      <dc:date>2012-08-03T19:31:58Z</dc:date>
    </item>
    <item>
      <title>Re: Patch ACS 5.3</title>
      <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981579#M190552</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can issue a show run to get name of the configured repository.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My environment has patch 4 installed and works just fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As long as both server entries are configured on all your network devices and you follow my steps above you are good to go.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you experience any issues with patch 5 you can always remove it by using the acs patch remove command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 20:40:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981579#M190552</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-03T20:40:49Z</dc:date>
    </item>
    <item>
      <title>Patch ACS 5.3</title>
      <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981580#M190553</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tarik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My apologies for taking so long to respond.&amp;nbsp; I have done a show run on both devices and there is no mention of a repository.&amp;nbsp; I need to create one prior to upgrading patches, correct?&amp;nbsp; Can I do this by doing a configuration terminal and then just typing in a repository FTP and write memory?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And once that is done, I can FTP the file to the repository at this point by using the acs patch install?&amp;nbsp; How do I get the file from my desktop to the repository?&amp;nbsp; I cannot seem to find step by step instructions on the Cisco page but i will continue looking.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Dwane&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Sep 2012 21:47:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981580#M190553</guid>
      <dc:creator>dpatkins</dc:creator>
      <dc:date>2012-09-10T21:47:07Z</dc:date>
    </item>
    <item>
      <title>Re: Patch ACS 5.3</title>
      <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981581#M190554</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dwane,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have installed the patch on any box, but you start with monitoring ACS (since that can take a little longer) to start the upgrade.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes you will need to create a repository first before installing a patch:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;SSH: login &amp;gt; config t &amp;gt; repository name &lt;NAME&gt; &amp;gt; url &lt;/NAME&gt;&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="ftp://x.x.x.x/" rel="nofollow"&gt;ftp://x.x.x.x/&lt;/A&gt;&lt;SPAN&gt; &amp;gt; username &lt;USERNAME&gt; password plain &lt;PASSWORD&gt;&lt;/PASSWORD&gt;&lt;/USERNAME&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After you create the repository,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;acs patch install &lt;PATCHNAME.TAR.GPG&gt; repository &lt;NAME&gt;&lt;/NAME&gt;&lt;/PATCHNAME.TAR.GPG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;that should get you going.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here are the steps:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.2/release/notes/acs_52_rn.html#wp151352"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.2/release/notes/acs_52_rn.html#wp151352&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Sep 2012 22:48:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981581#M190554</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-09-10T22:48:24Z</dc:date>
    </item>
    <item>
      <title>Re: Patch ACS 5.3</title>
      <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981582#M190558</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tarik: Is that correct even for version 5.3.0.40 without patched? can I upgrade to patch 8 (which is the latest now) by applying the patch to the secondary (then reboot) then the primary (then reboot) without having to remove the redunduncy configuration between them? and I can maintain the service up?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: blue;"&gt;Rating useful replies is more useful than saying &lt;SPAN style="color: green;"&gt; "&lt;SPAN style="text-decoration: underline;"&gt;Thank you&lt;/SPAN&gt;"&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 07:17:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981582#M190558</guid>
      <dc:creator>Amjad Abdullah</dc:creator>
      <dc:date>2012-12-17T07:17:53Z</dc:date>
    </item>
    <item>
      <title>Re: Patch ACS 5.3</title>
      <link>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981583#M190583</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Yes you can&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 07:48:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/patch-acs-5-3/m-p/1981583#M190583</guid>
      <dc:creator>jrabinow</dc:creator>
      <dc:date>2012-12-17T07:48:52Z</dc:date>
    </item>
  </channel>
</rss>

