cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1580
Views
5
Helpful
6
Replies

Problemens updating Sophos

Hi,

I have 2 Cisco C170 on diffrent site's. Both of them stopt on the same day with being able to update the Sophos definitions. This was on December 8 2021. They both run version 11.0.4-004 and have an valid Feature Keys. If I run avupdate force I get: 

 

Sophos Anti-Virus updates:
Requesting forced update of Sophos Anti-Virus.
McAfee Anti-Virus updates:
McAfee Anti-Virus scanning not enabled. McAfee virus definitions not updated

Then I look in the updater_logs I see nothing in relation to Sophos and the definitions are not updated:

Screenshot 2022-03-23 163102.png
Greetings,
Jos

 

1 Accepted Solution

Accepted Solutions

dmccabej
Cisco Employee
Cisco Employee

Hello,

 

Yes, we've turned off updates on x170/x80 hardware recently, so this would be expected. You can find the EoL/EoS notice here: https://www.cisco.com/c/en/us/products/collateral/security/web-security-appliance/eos-eol-notice-c51-737103.html.

 

To resolve this, you would need to either buy newer supported hardware or perhaps more easily obtain a virtual license and then deploy a new virtual ESA. As you have an active license, you can work with our licensing team to share the existing keys and receive a virtual license. 

 

We have some info on this here: https://www.cisco.com/c/en/us/support/docs/security/email-security-virtual-appliance/118301-technote-esa-00.html

 

Thanks!

-Dennis M.

View solution in original post

6 Replies 6

balaji.bandi
Hall of Fame
Hall of Fame

since you confirmed you have features keu check one more time :

Since dec its long :

 

> featurekey 

 

> antivirusstatus sophos
> antivirusupdate force
> tail updater_logs
check the status as below : > antivirusstatus

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hi,

Thanks for your quick reply!! I've run the commands:

Screenshot 2022-03-23 165550.png

End of Software maintenance on 11.0 was October 2021... you might need to upgrade to get a new base Sophos engine to move forward...
I'm not finding docs that state that yet... but it has happened before.

dmccabej
Cisco Employee
Cisco Employee

Hello,

 

Yes, we've turned off updates on x170/x80 hardware recently, so this would be expected. You can find the EoL/EoS notice here: https://www.cisco.com/c/en/us/products/collateral/security/web-security-appliance/eos-eol-notice-c51-737103.html.

 

To resolve this, you would need to either buy newer supported hardware or perhaps more easily obtain a virtual license and then deploy a new virtual ESA. As you have an active license, you can work with our licensing team to share the existing keys and receive a virtual license. 

 

We have some info on this here: https://www.cisco.com/c/en/us/support/docs/security/email-security-virtual-appliance/118301-technote-esa-00.html

 

Thanks!

-Dennis M.

Hi Dennis,

Thanks for your reply. I was already afraid of that! We will lookin for replacing the units. One question. After we rebooted the unit the mail of this warning started to be send. That's why I raised this ticket. Is there a way to disable the warning mail?

 

Greetings,

Jos

Hello,

 

The easiest method would be to just create a rule in your email client to delete these emails. However, you can also go into the alert configuration and then uncheck/disable any type of alert messages you do not wish to be sent out. You can find this in the WUI under System Administration --> Alerts.

 

Thanks!

-Dennis M.