80-8
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter80 Managing Software and Configurations
Configuring Auto Update
If HTTPS is chosen as the protocol to communicate with the Auto Update Server, the ASA uses SSL,
which requires the ASA to have a DES or 3DES license.
To configure the Auto Update feature, choose Configuration > Device Management > System
Image/Configuration > Auto Update. The Auto Update pane consists of an Auto Update Servers table
and two areas: the Timeout area and the Polling area.
The Auto Update Servers table lets you view the parameters of previously configured Auto Update
Servers. The ASA polls the server listed at the top of the table first. To change the order of the servers
in the table, click Move Up or Move Down. The Auto Update Servers table includes the following
columns:
Server—The name or IP address of the Auto Update Server.
User Name—The user name used to access the Auto Update Server.
Interface—The interface used when sending requests to the Auto Update Server.
Verify Certificate—Indicates whether the ASA checks the certificate returned by the Auto Update
Server with the CA root certificates. The Auto Update Server and the ASA must use the same CA.
Double-clicking any of the rows in the Auto Update Server table opens the EditAuto Update Server
dialog box, in which you can modify the Auto Update Server parameters. These changes are immediately
reflected in the table, but you must click Apply to save them to the configuration.
The Timeout area lets you set the amount of time the ASA waits for the Auto Update Server to time out.
The Timeout area includes the following fields:
Enable Timeout Period—Check to enable the ASA to time out if no response is received from the
Auto Update Server.
Timeout Period (Minutes)—Enter the number of minutes the ASA will wait to time out if no
response is received from the Auto Update Server.
The Polling area lets you configure how often the ASA will poll for information from the Auto Update
Server. The Polling area includes the following fields:
Polling Period (minutes)—The number of minutes the ASA will wait to poll the Auto Update Server
for new information.
Poll on Specified Days—Allows you to specify a polling schedule.
Set Polling Schedule—Displays the Set Polling Schedule dialog box where you can configure the
days and time-of-day to poll the Auto Update Server.
Retry Period (minutes)—The number of minutes the ASA will wait to poll the Auto Update Server
for new information if the attempt to poll the server fails.
Retry Count—The number of times the ASA will attempt to retry to poll the Auto Update Server for
new information.
Setting the Polling Schedule
The Set Polling Schedule dialog box lets you configure specific days and the time-of-day for the ASA
to poll the Auto Update Server.
The Set Polling Schedule dialog box includes the following fields:
Days of the Week—Check the days of the week that you want the ASA to poll the Auto Update Server.
The Daily Update pane group lets you configure the time of day when you want the ASA to poll the Auto
Update Server, and includes the following fields: