The auto update is not working on the IPS. The current signature version is S502 but my IPS is S479
show statistics host output
------------------------------------------------------
Auto Update Statistics
lastDirectoryReadAttempt = 05:35:12 GMT-05:00 Mon Jul 26 2010
= Read directory: https://198.133.219.25//cgi-bin/front.x/ida/locator/locator.pl
= Success: No installable auto update package found on server
lastDownloadAttempt = N/A
lastInstallAttempt = N/A
nextAttempt = 05:35:00 GMT-05:00 Tue Jul 27 2010
Auxilliary Processors Installed
------------------------------------------------------
------------------------------------------------------
show version output
------------------------------------------------------
Application Partition:
Cisco Intrusion Prevention System, Version 6.1(1)E3
Host:
Realm Keys key1.0
Signature Definition:
Signature Update S479.0 2010-03-19
Virus Update V1.4 2007-03-02
OS Version: 2.4.30-IDS-smp-bigphys
Platform: ASA-SSM-10
Serial Number: JAF10241017
Licensed, expires: 03-Sep-2010 UTC
S479.
It looks like the issue is that the IPS is running the E3 engine (6.1(1)E3). All new updates require the E4 engine, so you'll have to update the sensor to 6.2(2)E4 or 7.0(4)E4. Upgrade links and instructions can be found here: