cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4996
Views
4
Helpful
17
Replies

IDS-4215-K9 Upgrade

mstyfernandez
Level 1
Level 1

Hi, 

I have been trying to load "IPS-engine-E4-req-6.0-6" & "IPS-sig-S536-req-E4.pkg" onto the IDS boxes that at present have "IPS-K9-6.0-6-E3" & "IPS-sig-S479-req-E3.pkg" installed.

However, when I tried to Upgrade the signature, I get:

"Cannot upgrade software on the sensor.

-This update may only be installed on a sensor with and engine version of 4.

The currently installed engine version is 3."

So I upgrade the engine and get:

"Cannot upgrade software on the sensor.

errSystemError-idsPackageMgr: digital signature of the update file was nt valid, use CCO to replace corrupted file This update may only be instlled on a sensor with and engine version fo 4.

The currently installed engine version is 3."

Could you please advise why this is happening and how I resolve this?

Thank you.

Trish

17 Replies 17

Like I mentioned, its not possible to troubleshoot this issue over this thread.


If you wish, you can re-image the IPS and install 6.0.6(E4), but this will wipe the configuration clean.

Please open a TAC case to troubleshoot this issue.

- Sid

How are you applying this upgrade – FTP through CLI, FTP through IDM or “upgrade from local PC” through IDM?

I usually:

Apply Service Packs or software upgrades by FTP from CLI.

Upgrade signature files through “upgrade from local PC” in IDM.

So SSH to the box, then:

sensor# conf t
sensor(config)# upgrade ftp://grant@10.1.1.1/IPS-K9-6.0-6-E4.pkg
Password: ******
Warning: Executing this command will  The system may be rebooted to complete the
upgrade.
Continue with upgrade? []: yes

Hi,

I did not read every post maybe someone already answered it, I did the same thing upgraded my 4215 with IPS-K9-6.0-6-E4.pkg and then reboot applied signature file IPS-sig-S566-req-E4.pkg the engine # of the OS has to match the engine # of the signature, you are trying to apply E3 signature to a E4 OS.

I have been trying to load "IPS-engine-E4-req-6.0-6" & "IPS-sig-S536-req-E4.pkg" onto the IDS boxes that at present have "IPS-K9-6.0-6-E3" & "IPS-sig-S479-req-E3.pkg" installed.

Try what i did it worked for me. here is a snapshot of the system information

Partition: application
  Build Version: 6.0(6)E4
  Host:
    Realm Keys      key1.0
  Signature Definition:
    Signature Update      S566.0    2011-05-09
  Os Version: 2.4.30-IDS-smp-bigphys

Goodluck.

Review Cisco Networking for a $25 gift card