The tool for downloading updates is bundled with Policy Manager and can be extracted with the provided scripts. When you run it on any machine with Internet access, the tool downloads the latest updates and required diffs to generate an all-in-one archive.
You can import the generated archive to a Policy Manager Server that is configured to not connect to the Internet for requested definitions updates, but to instead distribute only updates that are imported from the archive.
By default, the tool uses the
to store the downloaded update binaries. It also stores the update history to
use as a reference for downloading the relevant diffs to the latest version.
The versions history is
important for the tool, as it defines the number of diffs to provide to Policy
Manager and then serve to managed clients. The default history depth is 10 and
is modified using the
property. The longer the history, the more time it takes to download diffs from
F-Secure Cloud, because it takes time to generate the diffs from older
versions. You can configure the number of download attempts and the time
between them in
The process can be automated by scheduling the download and subsequent import operations. You can customize the path to the updates archive to make it easier to transfer, for example using a shared network drive.
Note: Make sure that Policy Manager Server has permission to delete the updates archive, as it removes it after completing the import.
To update the malware definitions:
HKLM\SOFTWARE\Wow6432Node\Data Fellows\F-Secure\Management Server 5\additional_java_args.
fspms.confconfiguration file and look for the additional_java_args parameter.
<F-Secure installation folder>\Management Server 5\bin\prepare-fspm-definitions-update-tool.bat <destination folder>
/opt/f-secure/fspms/bin/prepare-fspm-definitions-update-tool <destination folder>
conf\channels.json: this contains a list of the channels to be updated. By default, it includes updates for all the supported clients managed by Policy Manager, so we recommend that you leave only those that are necessary for your environment.
conf\configuration.properties: among other settings, you can specify a HTTP proxy here, if needed.
data\f-secure-updates.zipby default) to the Policy Manager Server machine:
Note: Do not change the archive file name or destination path, as they are hardcoded.
<F-Secure installation folder>\Management Server 5\data\f-secure-updates.zip
<F-Secure installation folder>\Management Server 5\bin\import-f-secure-updates.bat