    Dan Belcic

    I am looking for some info about how a firepower appliance and ASA are pulling updates for Snort(IPS signatures) and black lists from CISCO servers, but I am unable to find anything relevant.
    I am trying to understand if the appliance (managed device) needs direct access to the internet for the updates, or if it gets them though the Firepower Management Center, when updates are set to automatically.


