41-22
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Chapter 41 Managing Software, Licenses, and Configurations
Configuring Auto Update Support
Configuring Client Updates as an Auto Update Server
The
client-update
command lets you enable the update for security appliances configured as Auto
Update clients. It lets you specify the type of software component (asdm or boot image), the type or
family of security appliance, revision numbers to which the update applies, and a URL or IP address
from which to get the update.
To configure the security appliance as an Auto Update server, perform the following steps:
Step 1
In global configuration mode, enable client update by entering the command:
hostname(config)#
client-update enable
hostname(config)#
Step 2
Configure the parameters for the client update that you want to apply for the security appliances using
the
client-update
command:
client-update
{
component
{
asdm
|
image
} |
device-id
dev_string
|
family
family_name
|
type
type
}
url
url-string
rev-nums
rev-nums
}
component
{
asdm
|
image
} specifies the software component, either ASDM or the boot image of the
security appliance.
device-id
dev_string
specifies a unique string that the Auto Update client uses to identify itself. The
maximum length is 63 characters.
family
family_name
specifies the family name that the Auto Update client uses to identify itself. It can
be asa, pix, or a text string with a maximum length of 7 characters.
rev-nums
rev-nums
specifies the software or firmware images for this client. Enter up to 4, in any order,
separated by commas.
type
type
specifies the type of clients to notify of a client update. Because this command is also used to
update Windows clients, the list of clients includes several Windows operating systems. The security
appliances in the list include the following:
•
pix-515: Cisco PIX 515 Firewall
•
pix-515e: Cisco PIX 515E Firewall
•
pix-525: Cisco PIX 525 Firewall
•
pix-535: Cisco PIX 535 Firewall
•
asa5505: Cisco 5505 Adaptive Security Appliance
•
asa5510: Cisco 5510 Adaptive Security Appliance
•
asa5520: Cisco 5520 Adaptive Security Appliance
•
asa5540: Cisco Adaptive Security Appliance
url
url-string
specifies the URL for the software/firmware image. This URL must point to a file
appropriate for this client. For all Auto Update clients, you must use the protocol “http://” or “https://”
as the prefix for the URL.
Configure the parameters for the client update that you want to apply to all security appliances of a
particular type. That is, specify the type of security appliance and the URL or IP address from which to
get the updated image. In addition, you must specify a revision number. If the revision number of the
remote security appliance matches one of the specified revision numbers, there is no need to update—the
client ignores the update.
The following example configures a client update for Cisco 5520 Adaptive Security Appliances:
Содержание 500 Series
Страница 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Страница 45: ...P A R T 1 Getting Started and General Information ...
Страница 46: ......
Страница 277: ...P A R T 2 Configuring the Firewall ...
Страница 278: ......
Страница 354: ...17 38 Cisco Security Appliance Command Line Configuration Guide OL 12172 03 Chapter 17 Configuring NAT NAT Examples ...
Страница 561: ...P A R T 3 Configuring VPN ...
Страница 562: ......
Страница 891: ...P A R T 4 System Administration ...
Страница 892: ......
Страница 975: ...P A R T 5 Reference ...
Страница 976: ......