<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPS Auto update in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564654#M66570</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN&gt;Error: autoUpdate successfully selected a package (&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://myaccount@198.133.219.243//swc/esd/04/273556262/contract/IPS-sig-S511-req-E4.pkg"&gt;http://myaccount@198.133.219.243//swc/esd/04/273556262/contract/IPS-sig-S511-req-E4.pkg&lt;/A&gt;&lt;SPAN&gt;) from the cisco.com locator service, however, package download failed: HTTP connection failed&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I only had https allowed, I have allowed http also now.. should this fix it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also all my IPS's are 10.x.1.10 (with x being the subnet).. can you write an ACL in the format:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list inside_in permit ip 10.0.1.10 255.0.255.255 any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 08 Sep 2010 14:07:50 GMT</pubDate>
    <dc:creator>networker99</dc:creator>
    <dc:date>2010-09-08T14:07:50Z</dc:date>
    <item>
      <title>IPS Auto update</title>
      <link>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564652#M66567</link>
      <description>&lt;P&gt;I have configured the internal IDSM cards for auto update, and I see hits against our firewall ACL for this traffic but the update seems out of date on the IPS.. can anyone tell me how to troubleshoot this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;many thanks&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 12:07:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564652#M66567</guid>
      <dc:creator>networker99</dc:creator>
      <dc:date>2019-03-10T12:07:17Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Auto update</title>
      <link>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564653#M66569</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the IDSM, can enter the command "show statistics host" and it should tell you all details regarding auto-update and the reason for failure as well. Please paste the entire output over here and we can have a look.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prapanch&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 08 Sep 2010 13:39:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564653#M66569</guid>
      <dc:creator>praprama</dc:creator>
      <dc:date>2010-09-08T13:39:04Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Auto update</title>
      <link>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564654#M66570</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN&gt;Error: autoUpdate successfully selected a package (&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://myaccount@198.133.219.243//swc/esd/04/273556262/contract/IPS-sig-S511-req-E4.pkg"&gt;http://myaccount@198.133.219.243//swc/esd/04/273556262/contract/IPS-sig-S511-req-E4.pkg&lt;/A&gt;&lt;SPAN&gt;) from the cisco.com locator service, however, package download failed: HTTP connection failed&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I only had https allowed, I have allowed http also now.. should this fix it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also all my IPS's are 10.x.1.10 (with x being the subnet).. can you write an ACL in the format:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list inside_in permit ip 10.0.1.10 255.0.255.255 any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 08 Sep 2010 14:07:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564654#M66570</guid>
      <dc:creator>networker99</dc:creator>
      <dc:date>2010-09-08T14:07:50Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Auto update</title>
      <link>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564655#M66572</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;yes once you have HTTP also allowed, you should see auto update working.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The way you have configured the ACL is interesting &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; and i dont see any reason why it should not work. Lets wait for the next auto-update attempt by the IPS and see what happens. let me know how it goes!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards,&lt;/P&gt;&lt;P&gt;prapanch&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 09 Sep 2010 03:42:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564655#M66572</guid>
      <dc:creator>praprama</dc:creator>
      <dc:date>2010-09-09T03:42:57Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Auto update</title>
      <link>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564656#M66574</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Was wondering if you managed to get the Auto Update working. If so, please do mark this thread as Answered.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prapanch&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Sep 2010 08:07:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564656#M66574</guid>
      <dc:creator>praprama</dc:creator>
      <dc:date>2010-09-17T08:07:14Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Auto update</title>
      <link>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564657#M66576</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well, yes and no.&amp;nbsp; Enabling http did not solve the issue, but if I permit ip they update.. so I am not quite sure what other ports are needed.&amp;nbsp; I will have to create a packet capture to find out.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Sep 2010 12:23:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564657#M66576</guid>
      <dc:creator>networker99</dc:creator>
      <dc:date>2010-09-17T12:23:44Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Auto update</title>
      <link>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564658#M66578</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hmmm. That's interesting. What did the access-list look like when you ocnfigured it to allow HTTP alone? The captures will certainly help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prapanch&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Sep 2010 15:19:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ips-auto-update/m-p/1564658#M66578</guid>
      <dc:creator>praprama</dc:creator>
      <dc:date>2010-09-17T15:19:25Z</dc:date>
    </item>
  </channel>
</rss>

