Issue:
New Linux Security(2024-03-18) fails offline database update
Resolution:
New Linux Security(2024-03-18) update includes changes which will affect the procedure to install future malware definition or product updates from ZIP archives. Please continue reading if you are currently making use of ZIP archives to install updates using the offline-update program.
After updating your product installation to the new version, follow these steps to prepare update ZIP archives in the future:
- Log on to the endpoint on which you intend to install updates from a ZIP archive.
- Run the command
/opt/f-secure/fsbg/bin/withsecure-migrator status
- Check the last line of output from the above command.
- If the system reports that the command does not exist, or the command reports “not-performed” or “not-ready”, you can prepare a new f-secure-updates.zip archive for updates by using any version of fspm-definitions-update-tool and channels.json files you might already have available, and install the updates as before from the f-secure-updates.zip file using the offline-update program. Before starting to prepare another ZIP archive later, however, return to step 1 of these instructions.
- If the command at step 2 reports "migrated", the procedure for installing the updates changes as follows:
- First, please verify that you are using a recent enough version of fspm-definitions-update-tool for creating update archives.
- If you are using fspm-definitions-update-tool from a Policy Manager Server 16 installation, you are already at a new enough version.
- If you are not using Policy Manager 16, or are unsure about the version of fspm-definitions-update-tool, download the latest version of fspm-definitions-update-tool from the product download page, and extract the files to a directory.
Support - Linux Security
- Second, download the latest version of the channels.json file to use to configure fspm-definitions-update-tool:
https://download.f-secure.com/corpro/ls64/current/channels.json
As before, replace the channels.json file under fspm-definitions-update-tool's conf/ subdirectory with the downloaded file, remove the data/ directory if it exists. - Run the fspm-definitions-update-tool program. fspm-definitions-update-tool will create a fresh data/ subdirectory with two ZIP archives: f-secure-updates.zip and withsecure-updates.zip. You must now use the withsecure-updates.zip file to install updates on the endpoint using the offline-update program.
(The f-secure-updates.zip file should no longer be used for installing updates on that endpoint. When run, fspm-definitions-update-tool will however continue to create this file to support packaging updates for endpoints which still need this file.) - After installing the product updates for the first time from the withsecure-updates.zip file on an endpoint, it won't be necessary to verify the status of the installation again on that endpoint (step 2); all later product updates can be installed using the withsecure-updates.zip file.
If you still experience update error, please refer this knowledge as well.
https://community.withsecure.com/en/kb/articles/31302-the-latest-linux-security-64-update-fails-to-install
Article no: 000044280