The choice to patch 'all' vs updating the Console, then updating appliances in parallel comes down to the length of the maintenance window. Your Console upgrade must finish before you attempt to update any other appliances in the network. However, after the Console upgrade completes, you can then update all other appliances at the same time, saving you downtime.
As all appliances need to match the Console's version, the Console is the primary host to update first and ensure it is successful. If not, you need to contact support if the upgrade has any issues.
------------------------------
Jonathan Pechta
QRadar Support Content Lead
Support forums: ibm.biz/qradarforums
jonathan.pechta1@ibm.com------------------------------
Original Message:
Sent: Thu July 20, 2023 01:10 AM
From: Khaleel Ebrahim
Subject: IP table not working
Thankyou Prabir for your post. Can I try upgrade the console and other collectors individually or I can try upgrade all devices from the console! which one you suggest?
------------------------------
Khaleel Ebrahim
------------------------------
Original Message:
Sent: Thu July 20, 2023 12:18 AM
From: Prabir Meher
Subject: IP table not working
Hi Khaleel,
If iptables.service is not found, then this will lead to more problems. The iptables service unit file is provided by the package iptables-services. Also, it packages the ip6tables service unit as well. That would need some more investigation why iptables.service is missing.
I would suggest you to open up a support case and upload a get_logs (with -S) from console and the problematic server where iptables.service is missing.
/opt/qradar/support/get_logs -S
------------------------------
Prabir Meher