Sunday, December 30, 2012

Upgrade SIEM from 9.1.1 to 9.1.3

  1. Always download upgrade files using internet explorer or Mozilla. Don’t use Chrome.
  2.  Verify download file has been placed in the correct directory with correct file extension. To do so go to “cd /usr/local/NitroGuard” and verify the download file is placed in this directory with .tgz extension. If not then change the file extension to .tgz with command “mv RECEIVER_Update_9.1.3.signed.gz RECEIVER_Update_9.1.3.signed.tgz”.
  3. Compare hash values of downloaded files with original hash values provided at McAfee website.
  4. Upgrade ESM first then ELM and then any one of the rest of the devices.
  5. After upgrading each single device, verify version in system properties. Also verify device health check status. To do so select the device e.g ADM then select the “device status” dashboard from the menu.
  6. Also check device logs of each device after upgrade. If there is a problem then you can see it in the logs. Ensure that the files in the directory "/usr/local/NitroGuard/updates" are updated with the latest version, use the command “ls -lrt” to list the files. You will observe many files with version 9.1.3 will appear stating that the files have been upgraded with the latest version.(As we were upgrading to version 9.1.3 from 9.1.1)
  7. Make sure there is no red flag with any device. If there is any click on it to see device log stating the reason.
  8. Open policy editor and roll out policy on all devices so that changes in the new version are applied on to all devices and data sources.
  9. Take Full backup.
  10. Apply any necessary patches or hotfix that have been recommended by the vendor.

0 comments:

Post a Comment

Share

Twitter Delicious Facebook Digg Stumbleupon Favorites More