Alma Linux Update for MDR customers with AWS Deployments
CentOS has announced the end of life for their version 6 and 8 operating systems. This means CentOS will no longer provide security patches, vulnerabilities, or bug fixes for these operating systems. As a result, Alert Logic is helping customers update all Alert Logic appliances running on out-of-date operating systems.
Update your appliance to Alma Linux using the documentation below.
As we transition all customers to Alma Linux, Alert Logic will continue to maintain necessary security updates for virtual CentOS versions 6 and 8 for a limited period, to ensure all customers remain secure. This support is valid until the following dates depending on the appliance type:
- Virtual IDS to January 31, 2023
- Virtual Log Manager to June 30, 2023
How to update for MDR customers with automatic AWS deployments
- Install a new appliance for every appliance you have in each VPC. See Amazon Web Services (AWS) Deployment Configuration—Automatic Mode (Essentials Subscription).
- Check the health of your agents and appliances on the Health page in the Alert Logic console. See Health.
It can take up to 60 minutes for the appliance to claim.
- Terminate the existing appliance. For more information, see Remove existing IDS and scanning appliances.
How to update for MDR customers with manual AWS deployments
- Install a new appliance for every IDS and scan appliance you have in each VPC. For more information, see Deploy IDS appliances and scanning appliances.
If you are an Essentials customer, you only need to Amazon Web Services (AWS) Deployment Configuration—Manual Mode (Professional Subscription) and remove existing ones.
- Check the health of your agents and appliances on the Health page in the Alert Logic console. See Health.
It can take up to 60 minutes for the appliance to claim.
- Terminate the existing appliance. For more information, see Remove existing IDS and scanning appliances.
Remove existing IDS and scanning appliances
You must terminate the existing IDS and scanning appliances. If you have a previous IDS or scanning appliance that you created with an older CloudFormation template, then you must remove the old CloudFormation template. If you cannot find the old CloudFormation template, then you can remove the components: auto-scaling group (ASG), launch configuration, and security groups (SG).
- For more instructions on how to remove an CloudFormation Template, see Deleting a stack on the AWS CloudFormation console.
- After the old appliance is terminated, verify that the Alert Logic agents are sending data to the new appliance. To verify in the Alert Logic console:
- Browse to the Health page, click Healthy, and then in the drop-down filter, choose Agents.
- On the left-panel, click on the relevant deployment(s).
- Verify that you see traffic in the last 24 hours for your agents. Data can take up to 60 minutes to be reflected in the Alert Logic console after installing the new appliance.
How to update other products
If you do not have MDR or AWS deployments, refer to the links below for specific instructions depending on your subscription and services:
- MDR customers using an OVA image: See Alma Linux Update for MDR Customers using OVA for more details.
- MDR customers with Azure deployments: See Alma Linux Update for MDR Customers with Azure Deployments for more details.
- MDR customers with Professional subscription using Google Cloud Platform: See Data Center Deployment for Google Cloud Platform (Professional Subscription)
- MDR customers with Essentials subscription using Google Cloud Platform: See Data Center Deployment Configuration for Google Cloud Platform (Essentials Subscription)
- Customers using Hyper-V or VMware IDS virtual appliances: See Install an Alert Logic IDS virtual appliance
- Customers using Log Manager virtual appliances: See Install an Alert Logic Log Manager virtual appliance
-
Cloud Defender or other legacy products customer using an AWS image: See Alma Linux Update for AWS Legacy Customers for more details.
-
Cloud Defender or other legacy products customer using an OVA image: See Alma Linux Update for Legacy Customers using OVA for more details.
-
Cloud Defender or other legacy products customer using an Azure image: See Alma Linux Update for Azure Legacy Customers for more details.
- Alert Logic Managed Web Application Firewall (WAF) subscription: Alert Logic has already contacted you, or will contact you soon, to coordinate a time to update your appliance.
- Threat Manager physical appliances: Alert Logic will contact you soon on the process and details for this transition.