<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IPS update from CSM 4.3 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081830#M54195</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks! The workaround works just fine. &lt;/P&gt;&lt;P&gt;﻿The description of &lt;A href="https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCue16970" target="_blank"&gt;CSCue16970&lt;/A&gt; at this moment is not available: it is under review.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 23 Jan 2013 07:43:31 GMT</pubDate>
    <dc:creator>sdata</dc:creator>
    <dc:date>2013-01-23T07:43:31Z</dc:date>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081827#M54191</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to download IPS updates from cisco.com using CSM (version 4.3) but it is not working. It was working fine all along until it stopped two days ago. I checked the server can connect to internet without any problems. I can use the same cisco credentials for manual updates and also works perfect. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;confirmed the setti settings on CSM, all still intact. reconfigured the details and still the same issue. I am getting the following error&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"unable to communicate with locator service to retrive available files"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Note&amp;nbsp; i just just same crendentials on my LAB IPS and did setup auto update and it worked fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;any idea what the problem might be?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 12:52:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081827#M54191</guid>
      <dc:creator>emmanuel.shoroma</dc:creator>
      <dc:date>2019-03-10T12:52:22Z</dc:date>
    </item>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081828#M54192</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have the same problem&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Jan 2013 10:53:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081828#M54192</guid>
      <dc:creator>sdata</dc:creator>
      <dc:date>2013-01-21T10:53:39Z</dc:date>
    </item>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081829#M54194</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This might be &lt;A href="https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCue16970" target="_blank"&gt;CSCue16970&lt;/A&gt; CSM: IPS Updates from Cisco.com Fail Due to Lack of Cybertrust Root Cert&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;You could check if your &lt;/SPAN&gt;Apache Tomcat log file at&lt;/P&gt;&lt;P&gt;CSCOpx\MDC\tomcat\logs\stdout.log contains entries similar to the following: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE style="font-family: monospace; font-size: 12px; white-space: -o-pre-wrap; word-wrap: break-word;"&gt;"AutoDownloadJob:: get available files.....
javax.net.ssl.SSLPeerUnverifiedException: peer not authenticated
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;at com.sun.net.ssl.internal.ssl.SSLSessionImpl.getPeerCertificateChain(Unknown Source)"
&lt;BR /&gt;&lt;BR /&gt;If so, you could try the workaround associated with the defect&lt;BR /&gt;
&lt;/PRE&gt;&lt;PRE style="font-family: monospace; font-size: 12px; white-space: -o-pre-wrap; word-wrap: break-word;"&gt;1.) Manually download the desired IPS signature update package file(s) from:
&lt;A href="http://software.cisco.com/portal/pub/download/portal/select.html?&amp;amp;mdfid=280033778&amp;amp;softwareid=282773979"&gt;http://software.cisco.com/portal/pub/download/portal/select.html?&amp;amp;mdfid=280033778&amp;amp;softwareid=282773979&lt;/A&gt;

2.) Save or copy the file(s) into the CSCOpx\MDC\ips\updates directory. Default installation drive letters and paths are:
32-bit Operating Systems:
C:\Program Files\CSCOpx\MDC\ips\updates
64-bit Operating Systems:
C:\Program Files (x86)\CSCOpx\MDC\ips\updates

3.) From the CSM Configuration Manager (client application) &amp;gt; Tools menu &amp;gt; Security Manager Administration... &amp;gt; IPS Updates section, click the Refresh button.
4.) Deploy the package as desired (per normal).&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Jan 2013 10:25:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081829#M54194</guid>
      <dc:creator>mronayne</dc:creator>
      <dc:date>2013-01-22T10:25:06Z</dc:date>
    </item>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081830#M54195</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks! The workaround works just fine. &lt;/P&gt;&lt;P&gt;﻿The description of &lt;A href="https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCue16970" target="_blank"&gt;CSCue16970&lt;/A&gt; at this moment is not available: it is under review.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Jan 2013 07:43:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081830#M54195</guid>
      <dc:creator>sdata</dc:creator>
      <dc:date>2013-01-23T07:43:31Z</dc:date>
    </item>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081831#M54196</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI there, I had the same problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is due to CSM going to &lt;A href="https://community.cisco.com/www.cisco.com" target="_blank"&gt;www.cisco.com&lt;/A&gt; for its updates where everything else goes to cisco.com&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If your server is going direct for updates then add the following into the host file&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;72.163.4.161&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; www.cisco.com&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If using a proxy and your able then add that entry onto the proxys host file.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Im back online now with no problems.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Jan 2013 19:52:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081831#M54196</guid>
      <dc:creator>Ross Phillips</dc:creator>
      <dc:date>2013-01-23T19:52:59Z</dc:date>
    </item>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081832#M54197</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi, I tried updating the hostfile but no luck. However, I did follow the workaround as on the link below, now the certificare error seem to be sorted as I don't see that anymore but I am getting the following error&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Fatal, Description: Handshake Failure) when tracing with wireshack.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCue16970"&gt;https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCue16970&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Jan 2013 10:13:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081832#M54197</guid>
      <dc:creator>emmanuel.shoroma</dc:creator>
      <dc:date>2013-01-25T10:13:34Z</dc:date>
    </item>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081833#M54200</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Sorry my bad. the certificate had some HTML code added. now resolved. the following workaround worked perfect.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCue16970" rel="nofollow"&gt;https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCue16970&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Jan 2013 10:42:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081833#M54200</guid>
      <dc:creator>emmanuel.shoroma</dc:creator>
      <dc:date>2013-01-25T10:42:30Z</dc:date>
    </item>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081834#M54202</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There is a new workaround for &lt;A href="https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCue16970" target="_blank"&gt;CSCue16970&lt;/A&gt;, based on adding the required certificate to the CSM server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE style="font-family: monospace; font-size: 12px; white-space: -o-pre-wrap; word-wrap: break-word;"&gt;1.) Manually download Cybertrust's CA certificate from &lt;A href="https://www.cybertrust.ne.jp/SureServer/file/root_ca/BCTRoot.txt"&gt;https://www.cybertrust.ne.jp/SureServer/file/root_ca/BCTRoot.txt&lt;/A&gt; .

2.) Save this file as 'trusted.998.crt' in text format and ensure that no extra characters or new lines are added to the original content. Keep in mind that certain Web browsers may add HTML codes when saving text files, so be sure to edit them out.

3.) Exit/close any/all instances of CSM client applications (Configuration Manager, Event Viewer, Health and Performance Monitor, Report Manager, etc.)

4.) On the CSM server, stop the 'Cisco Security Manager Daemon Manager' service by issuing the following command: 'net stop CRMDmgtd'.

5.) On the CSM server, copy the 'trusted.998.crt' file to the 'CSCOpx\MDC\Apache\conf\ssl' directory.

6.) On the CSM server, start the 'Cisco Security Manager Daemon Manager' service by issuing the following command: 'net start CRMDmgtd'.
&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Jan 2013 10:44:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081834#M54202</guid>
      <dc:creator>mronayne</dc:creator>
      <dc:date>2013-01-25T10:44:41Z</dc:date>
    </item>
    <item>
      <title>IPS update from CSM 4.3</title>
      <link>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081835#M54203</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; I installed 4.3 SP2 in this release the IPS Update function should work.&lt;/P&gt;&lt;P&gt;I have in the 'CSCOpx\MDC\Apache\conf\ssl' the cert trusted.998.crt installed.&lt;/P&gt;&lt;P&gt;But still get this error when I try to Check for Updates via CSM:&lt;/P&gt;&lt;P&gt;Auto download log:&lt;/P&gt;&lt;P&gt;Trying to get available files on server ......&lt;/P&gt;&lt;P&gt;Unable to communicate with locator service to retrieve available files.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 23 May 2013 08:30:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-update-from-csm-4-3/m-p/2081835#M54203</guid>
      <dc:creator>Sonderegger Patrik</dc:creator>
      <dc:date>2013-05-23T08:30:11Z</dc:date>
    </item>
  </channel>
</rss>

