beautypg.com

Idp and anti-virus database updating, Database console commands – Amer Networks E5Web GUI User Manual

Page 749

background image

Providing a log server has been configured, a log message will be sent which indicates that
subscription renewal is required.

Important: Renew subscriptions in good time!

Make sure a subscription is renewed well before the expiry date. This avoids the
possibility of the system becoming unavailable due to license expiry.

IDP and Anti-Virus Database Updating

These service operate by downloading "signature" patterns which are used by cOS Core to
search for the most recently recognized security threats in Internet traffic as well as viruses in
downloads.

New threats are being identified every day and the signature databases in these modules needs
to be updated regularly. A subscription means that cOS Core will periodically access a central
server and update the copy of the database on the local Clavister Security Gateway with the
latest signatures. Database updates can involve as many as 20 signature changes or more in a
single day.

By default, cOS Core will check for updates every 12 hours. The frequency of checking for
updates can be explicitly set. It can be set to zero if updates are not to be done automatically.

Updating with Transparent Mode

If transparent mode is being used then special considerations have to be made so that cOS Core
has a way to access the public Internet. This involves setting up "normal" non-switch routes in
the routing table to allow. This is described further in Section 4.8.2, “Enabling Internet Access”.

Database Console Commands

IDP and Anti-Virus (AV) databases can be controlled directly through a number of console
commands.

Pre-empting Database Updates

An IDP database update can be forced at any time by using the command:

Device:/> updatecenter -update idp

An Anti-Virus update can similarly be initiated with the command:

Device:/> updatecenter -update av

Querying Update Status

To get the status of IDP updates use the command:

Device:/> updatecenter -status idp

To get the status of AV updates:

Device:/> updatecenter -status av

Appendix A: Update Subscriptions

749

This manual is related to the following products: