Update of GIS with MC and NAT

I have (yet) to try uprade my IDSM2 with MC 2.2 VMS, but review of audit logs displays a message like the following:

An error has occurred during execution of the script of update on the sensor named ID-mo-say-1. Detail = CLI error: "taken from port 443 tls trusted host 10.237.86.132 ip address connect failed [4 110].

Looks like a script tries to run from the sensor to the MC Server. The problem here generate from the PIX firewall between the sensor and the server that address the real NATs MC 10.237.86.132 for the sensor in 10.237.85.113. Changing the real address using NAT, can we solve the problem? If so, how can I do that?

Kind regards

Paolo

It's the solution that we use, and it seems to work. Change the IP address of the virtual machines to the NAT address box ' ed the sensor sees in the following files. Try it, but make sure that you keep a backup

NOTE the IDS - MC 1.2.3 isn't compatible NAT to its own interfaces when upgrading (it does not support entered a NAT address for sensors). If you need NAT the MC, PLEASE proceed as follows:

Stop the CiscoWorks Daemon Manager.

Edit the following file: \CSCOpx\MDC\etc\ids\xml\SystemConfig.xml

Find the line that looks like: x.x.x.x.

Replace x.x.x.x by the correct IP address.

If you have a MC ID installed, copy the file just to edit \CSCOpx\MDC\Tomcat\vms\ids-config\web-inf\classes\com\cisco\nm\mdc\ids\common\SystemConfig.xml.

If you have the Security Monitor installed, copy the file just to edit \CSCOpx\MDC\Tomcat\vms\ids-monitor\web-inf\classes\com\cisco\nm\mdc\ids\common\SystemConfig.xml.

Restart the CiscoWorks daemon manager.

Tags: Cisco Security

Similar Questions

  • Cannot perform updates of Windows with 641 and 80070641 error codes

    Original title: update problems

    Get 641 and 80070641 errors every time I try to download updates.  How to solve this problem?

    Hi Bob,

    Please follow the links:

    Method 1:

    I suggest to ignore the title and follow the steps as indicated in the article.

    0x80000FFFF error code when you download updates on a computer running Windows Vista by using Windows Update or Microsoft Update

    http://support.Microsoft.com/kb/946414

    Warning: Important This section, method, or task contains steps that tell you how to modify the registry. However, serious problems can occur if you modify the registry incorrectly. Therefore, make sure that you proceed with caution. For added protection, back up the registry before you edit it. Then you can restore the registry if a problem occurs. For more information about how to back up the registry, click on the number below to view the article in the Microsoft Knowledge Base:

    http://Windows.Microsoft.com/en-us/Windows-Vista/back-up-the-registry

    Method 2:

    Scan your computer by using the Microsoft Safety Scanner by clicking Download now, because this might have caused by viruses:

    http://www.microsoftsafetyscanner.com/

    Note: The data files that are infected must be cleaned only by removing the file completely, which means that there is a risk of data loss.

    I hope this helps.

  • Need help, a problem with IPSec and NAT - T

    We had a successful between a Cisco remote access client and the ASA connection.   The connection is more data transfer, but the Phase I and Phase II complete successfully.   There are several sections between separate networks for the remote user to the ASA, including hotlines of Verizon and Verizon's ISP.

    Troubleshooting Cisco guides strongly suggests, it is a problem of NAT - T, but when I turn on debugging 254 isakmp and debug ipsec 254, I get only a modest messages on NAT - T, which is "Recieved NAT-Traversal version 02 VID.   This message and connections, are when I disabled it on the ASA of NAT - T.

    If I enable NAT - T on the SAA, the remote client cannot establish Phase I or II; I was not able to gather debugs on this scenerio yet.

    The customer has a second laptop, both of them experience the same problem.  We have ensured that the Tunneling, UPD 4500 is activated.

    I suspect that an intermediary device or Verizon, changed something.

    What should be my next troubleshooting (unfortunately, I can't post the configs)?

    Kind regards

    j

    From my very limited experience, both sides must have the NAT - T enabled, otherwise the side who did not need NAT - t won't be able to read the part of the IP header because it is encrypted.

    Good luck!

    Pedro

  • Updated my nameservers with GoDaddy and now the Contact form (Muse) does not work. Is there a solution?

    He worked while the site was hosted on Adobe Business Catalyst, but when I updated to direct to my domain on GoDaddy:

    Nameserver 1: NS1.worldsecuresystems.com

    Nameserver 2: ns2.worldsecuresystems.com

    Nameserver 3: NS3.worldsecuresystems.com

    Contact form is no longer the contact sent me. How can I fix it?

    Thank you!

    Thanks Maurice! I changed the address of electronic mail of domain GoDaddy ([email protected]) to my Time Warner email address ([email protected]) and it seems to work.

  • Missing Windows Installer, updates are back with the error Code 80070641 and 641 of the Code

    My count started with windows update issues. My updates come back with Code and 80070641 Code error 641But when I went to check my windows installer, I couldn't find the file. I tried to restore before I had the problem with no luck. Also, I tried a lot of wany to try to find the file. Any suggestions?

    See the RESPONSE message in this thread-online http://answers.microsoft.com/en-us/windows/forum/windows_vista-windows_update/error-codes-641-and-80070641-net-frame-sp1/874c45b5-9446-457a-b0f1-44bbbcdb8517

  • Extend a network of comments with AEBS and TC set up a connection

    Hi all-

    I was wondering if anyone has had any success with that extends a network invited on two airports or more that are wired together.  I use currently a Time Capsule as my main router (802.11ac), and have it configured with DHCP and NAT like fashion.  It connects via a connection wired to an Airport Extreme Base Station (802.11ac), which is set in Bridge mode and configured with a static IP address to the primary time Capsule.  The time Capsule is configured with a network of comments that is fully functional, and the AEBS extends the primary network using the same SSID and encryption on 2.4 and 5 GHz.  However, when I turn on the AEBS remote networking reviews, I can connect to the AEBS, but cannot obtain an IP address (the computer displays an automatic address assigned).  The SSID and the encryption is the same for both networks of comments.  I tried to use "extend a wireless network" on the AEBS and that will extend the network, but it is extremely slow due to the wireless connection it creates between two access points (I have the TC and wired together AEBS to offer increased coverage, because my house is not very "friendly wifi").

    I would greatly appreciate any help or insight anyone can provide, even if it's to tell me that a cable extension of the network of comments is not possible.

    Thank you

    Mike

    Wired to the guest network feature extension is indeed possible and should be implemented and enabled automatically if you are using "Assistant" Installation from Apple to expand the networks main and guests.

    I had this set up on the 2 airports and sometimes 3 for a few years and not a single hiccup.

    Suggest that you reset the AEBS back to default settings and then use configuration Apple "Wizard" to set up the AEBS again. It automatically adapts the AEBS to expand networks main and guests.  Everything you really need to do is enter a name of device to the AEBS, the wizard takes care of everything else for you.  It is one of the simplest game ups ever.

    Once you have the updated AEBS up and running, you can assign a static unit IP address if you want to, but it should not be necessary.

    After the back if you need some advice on the use of the Apple Setup Assistant to do the work for you.

  • I tried to update firefox secuity this morning and got stuck with Voseran off site in Mozilla

    I went directly to Mozilla for updating security settings of Firefox and ended up finding the Vosteran browser. I'm pretty tech savvy and monitored very closely all the things he did and never saw coming until I rebooted and there it was. I took all measures to remove them, even deleted Firefox for now. But you might want to look into this.

    It's very frustrating, I use the paid version of the ultimate AVG virus of the Ant and it's still out there.

    Tom C

    Yes, something is happening - you have probably malware on your pc (via a different infection vector as a download from mozilla.org), that is why I recommended you analyzing your pc with various security tools!

  • updated ipad 2 with ios 9.3.2 and killed my ipad

    I have a 2 32GB ipad

    I downloaded update of Ios9.3.2 and could not get my ipad turns on for

    I have had with your last update Ios 9.3.1 simaler problem and had to take the ipad at best buy

    and completely recharge, 8 to 10 hours

    Try a forced reboot. Hold down the home and Sleep/Wake buttons simultaneously for about 15-20 seconds , until the Apple logo appears. You won't lose anything.

    This forced restart does not help then try a system restore. First save your device via iTunes. Also import your photos on your computer and copy all the important data. Reconstruction of the support first test and test. If this does not help, you may need to restore as a new and reconfigure from scratch as the backup may be damaged. It is important to have your photos and your saved data separately from the backup. Here are the steps for a restoration:

    https://support.Apple.com/en-us/HT201252

  • I'm having a lot of problems with firefox and cannot figure out how to get help. It all started when I updated to 13. I get all kinds of advertising popups, I can't play a

    I'm having a lot of problems with firefox and cannot figure out how to get help. It all started when I updated to 13. I get all kinds of advertising popups, I can't play a game on FaceBook called Farm Town at all, and I get a popup of AVG on the cookies that I can't get rid of. These issues are causing me to use Chrome quite often, although I like Fox better. I've searched and searched how to get help and find nothing. How can I get personalized technical help? These problems will not occur in Chrome at all. Thank you.

    Do a check with some malware malware, analysis of programs on the Windows computer.

    You need to scan with all programs, because each program detects a different malicious program.

    Make sure that you update each program to get the latest version of their databases before scanning.

    Alternatively, you can write a check for an infection rootkit TDSSKiller.

    See also:

  • I'm using Firefox Portable and lack the 'Extra' _Menue been updated to Version 11. And "No, I can not add with the toolbar customization."

    I am using Firefox Portable and lack the menu "Extra"since updated to Version 11. And "No, I can not add with the toolbar customization."

    What is this extra menu?

    In some languages of the menu Tools is called Extra, so you can watch in this menu to see if you can find what you are looking for.

  • Error since update with Kik and images.

    So, I recently updated to the latest iOS and reopened Kik. But when I opened my overview of the Gallery to send a photo,

    I am greeted by gray screens with icons of cloud on them. I tried several solutions with iCloud because I assumed that it comes to the question,

    but in vain. Any help? Here is a picture to show what my issue is.

    Hello King of ice,

    Thank you for using communities Support from Apple!

    Leave your post looks Kik application does not work as expected when you view your gallery. To resolve this situation, I recommend reading over and working through the steps in the following article.

    If an application you have installed unexpectedly closes, unresponsive, or will not open - Apple Support

    See you soon!

  • iOS 9 and all its updates have ruined my iPhone and iPad. Now my iPhone works hurt more than my Galaxy 6 Edge. Best Apple he meet, or I won't spend more money with them!

    iOS 9 and all its updates have ruined my iPhone and iPad. Now my iPhone works hurt more than my Galaxy 6 Edge. Best Apple he meet, or I won't spend more money with them!

    If you have any questions, then explain your problem in detail and ask him.

  • I've updated for picture with the captain and when I plug in my iPhone it loads the same pictures twice each time how it stop loading the same things every day?

    I've updated for picture with the captain and when I plug in my iPhone it loads the same pictures twice each time how it stop loading the same things every day?  I tried to make the old default iphoto but picture still open when I plug in my iPhone?

    I tried to make the old default iphoto but picture still open when I plug in my iPhone?

    When the iPhone is connected and Photos opens, select iPhone in sideba of the windowr of Photos. Then, uncheck the option 'Open for this iPhone Photos' below the toolbar.  Do this for all your iPhones. The hook should be unmarked for each device individually.

  • Asslam o aliakum. I have a problem with itunes 12.3.2 it is not downloaded the 10 windows and when I connect m iphone with itunes and want to update to 9.2 says please download itunes new version for ios 9.2... help me with this... How to solve this probl

    Asslam o aliakum. I have a problem with itunes 12.3.2 it is not downloaded the 10 windows and when I connect m iphone with itunes and want to update to 9.2 says please download itunes new version for ios 9.2... help me with this... How to solve this problem.

    Greetings Dani56777,

    Thank you for using communities Support from Apple!

    I understand that you run Windows 10 and you must update iTunes to the latest version so that your iPhone will be recognized when connected. I do not know if you receive an error when you try to update iTunes or not.

    If you need information on how to update iTunes, please follow the instructions in the following link.

    Download the latest version of iTunes for Windows - Apple Support

    If you receive an error or alert, you can consider removing iTunes and all of its associated components and then reinstalling fresh iTunes on your computer. That would give you the latest version of iTunes. If you need execute this process, please follow the steps described in the following article.

    Remove iTunes Control Panel and its associated components

    Use the control panel to uninstall iTunes and software components in the following order:

    1. iTunes
    2. Apple Software Update
    3. Apple Mobile Device Support
    4. Hello
    5. Apple Application Support 32-bit
    6. Apple Application Support 64-bit

    On some systems, iTunes can install two versions of the Apple Application Support. What is expected. If both are present, do not forget to uninstall both versions.

    Do these elements in a different order, uninstall or uninstall only some of them. This could have unintended effects. After you uninstall a component, you may be asked to restart your computer. Wait to restart your computer until you finish remove all components.

    Remove and reinstall iTunes and software for Windows 7 and later versions - Apple Support components

    Have a great day!

  • After the update to el Capitan my iMac will not be asleep. I put it to sleep and turn off the mouse and keyboard that goes with it, and 5-10 minutes later, he wakes up on his own. Now, I have to stop it after use and each time only. Major pain

    After the update to el Capitan my iMac will not be asleep. I put it to sleep and turn off the mouse and keyboard that goes with it, and 5-10 minutes later, he wakes up on his own. Now, I have to stop it after use and each time only. The Major pain. Any help would be greatly appreciated.

    Please test after taking each of the steps that you have already tried:

    Step 1

    Take all of the measures suggested in this support article, including those under the title "If the previous steps do not work." It is the starting point for a new effort to solve the problem.

    Note that, as stated in the article, the computer will not sleep, if some sharing services are enabled. In the menu bar, select

     ▹ System Preferences... ▹ Sharing

    Disable all sharing services.

    Step 2

    If sharing music iTunes home sharing is enabled, disable it or quit iTunes. Do the same with third-party applications that have a similar feature.

    Step 3

    Select

     ▹ System Preferences... ▹ Accessibility ▹ Speakable Items: Off

    Step 4

    Select

     ▹ System Preferences... ▹ ▹ Advanced Bluetooth...

    and uncheck the two boxes marked

    Open Bluetooth Setup Assistant at startup if...

    Step 5

    Reset the printing system.

    Step 6

    Back up all data.

    Triple-click on the line below on this page to select, then copy the text to the Clipboard by pressing Control-C key combination:

    /var/vm

    In the Finder, select

    Go ▹ go to the folder...

    from the menu bar and paste it into the box that opens by pressing command + V. You won't see what you pasted a newline being included. Press return.

    A folder named 'vm' should open. Inside, there may be a file named 'drag '. Move this file and only this one in the trash, but do not yet empty. You will be asked for your password. Close the folder window.

    Restart the computer and empty the trash.

Maybe you are looking for

  • Problems with civilization II

    so today I just bought Civilization II. I know there are versions more recent but ireally enjoy this old version. My problem is that I play the game very well until I try to build me a city and then an error pops up saying "civ2.exe has stopped worki

  • Some of my emails come through

    Original title: "Email". Some of my emails come through.  I don't know how to find out if I am their blocking of some users.  I usually get the answer of 2nd or 3rd in a threaded conversation but not the original, even if I'm on the list.

  • ink level report

    I have a HP4630 which has worked flawlessly.  I'm curious to know what the numbers in depict her report of ink level... currently it shows "62" under the color cartridge and black cartridge.  What is the number of pages left? Thank you.

  • Lenovo W700 + hard drives

    Hey finally got my W700 must say a beautiful piece of hardware. You have a question, adding a second hard drive of my W700... How should I proceed in doing this? Where can I buy the hard drive at a reasonable price and rails to mount? Can I use any b

  • Bugs blackBerry smartphones? the 9810 torch?

    Hello I've been playing with my new torch 9810 and now the battery seems to be draining like crazy (up to 10% after having just three hours hanging out, not a single call done) - and some programs play AND I get a message indicating that the camera p