cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
866
Views
0
Helpful
9
Replies

ESA URL FILETRING

ziziahmed9
Level 1
Level 1

Hy 

I have a problem with url filtering 

when I run telnet command here is what i got 

telnet v2.sds.cisco.com 443

Trying 146.112.255.69...
Connected to 146.112.255.69.
Escape character is '^]'.
^]
HTTP/1.1 400 Bad Request
Server: openresty/1.19.9.1
Date: Sat, 29 Apr 2023 13:15:05 GMT
Content-Type: text/html
Content-Length: 163
Connection: close
talos-dc-id: 13

<html>
<head><title>400 Bad Request</title></head>
<body>
<center><h1>400 Bad Request</h1></center>
<hr><center>openresty/1.19.9.1</center>
</body>
</html>
Connection closed by foreign host.

 

9 Replies 9

That's actually ok... that means it's up, but you didn't send it a command it likes..

because when I send an email that contain a shopping url from external , and i have created content filter that drop this type of urls I have this message after running "tail mail_logs"

Warning: URL Filtering Error. Connection to "v2.sds.cis co.com" failed.Last error: " The SSL certificate error"

What software version are you running on the ESA. While I am not 100% sure but may be affected by a field notice published last year - https://www.cisco.com/c/en/us/support/docs/field-notices/721/fn72113.html

 

my version is 9.7.0

Then the ESA is definitely affected by field notice. 9.7.0 is end of support. If you are using a supported hardware, please upgrade the ESA to latest supported software release. If you are on a unsupported hardware, explore the possibility of deploying a VM running the latest AsyncOS version.

I have a VM but I have configurations in it , if I upgrade the OS ,Will I lose these configurations ?

Upgrading the OS will not remove configuration, however you might want to review the changes to existing behaviour in the newer releases

And i work just with trial version, is this will affect my asynOS upgrade? Thanks

You need a working license on the box for upgrade to function. It can be a temporary 30 to 45 license as well, but there should be a active license for upgrade to function