Only boot images signed with a trusted signature should be allowed, otherwise the appliance may run malicious or unknown code. Normally boot images are downloaded directly from FireEye but offline update mechanisms are possible.
Solution
Edit the configuration and add this line:\n image options require-sig