Views:
Important:

Apex One supports the use of HTTPS as the communication protocol between Update Agents and the Security Agents configured to receive updates from Update Agents. You must upgrade Update Agents and all Security Agents that report to the Update Agents to Apex One (or later) before changing the communication protocol to HTTPS.

  1. Go to Updates > Agents > Update Source.
  2. Select Customized Update Source.
  3. Select how Update Agents and Security Agents receive updates.
    • Update Agents update components, domain settings, and agent programs and hot fixes, only from the Apex One server

    • Security Agents update the following items from the Apex One server if all customized sources are unavailable or not found:

      • Components

      • Domain settings

      • Security Agent programs and hot fixes

    For more information, see Security Agent Update Process.

  4. If you specified at least one Update Agent as an update source, click Update Agent Analytical Report to generate a report that highlights the update status of endpoints.

    For details about the report, see Update Agent Analytical Report.

  5. Add or edit Customized Update Source List.
    • Click Add to specify a new update source.

    • Click a value in the IP Range column to edit an existing update source.

      Note:

      Edit an existing update source to change the communication protocol of an existing Apex One (or later) Update Agent to HTTPS.

    The Add/Edit IP Range and Update Source screen appears.

  6. Configure the IP addresses of endpoints that receive updates from the update source.
    • IPv4: Specify the IPv4 address range of the endpoints that use the update source

    • IPv6: Specify the IPv6 prefix and length of the endpoints that use the update source

    Note:

    Ensure that the Security Agents can connect to the update source using their IP addresses. For example, if you specified an IPv4 address range, the update source must have an IPv4 address. If you specified an IPv6 prefix and length, the update source must have an IPv6 address.

    For details about IPv6 support for endpoint updates, see Security Agent Update Sources.

  7. Specify the update source. You can select an Update Agent if one has been assigned or type the URL of a specific source.
    • URL: Specify the URL of the update source

      Note:

      To change a preexisting Update Agent protocol from HTTP to HTTPS, modify the URL value.

    • Update Agent: Select a preconfigured Update Agent from the drop-down and choose how Security Agents connect to the Update Agent

      • Use the Update Agent IP address to connect

      • Use the Update Agent hostname to connect

      Note:

      Apex One automatically configures the External Source URL to use HTTPS protocol if the Update Agent has been updated to Apex One or later.

  8. Click Save.
  9. Manage the Customized Update Source List.
    1. Remove an update source from the list by selecting the check box and clicking Delete.
    2. To move an update source, click the up or down arrow. You can only move one source at a time.
  10. Click Notify All Agents.