New features in SNS 3.10.2

WARNING
Firewalls must not be upgraded from SNS in version 3.10.x or higher to a 4.0.x version. This operation is not supported.
For further information, refer to Recommendations.

Initial configuration via USB

New sethostname operation

A new sethostname operation has been added to the initial configuration via USB key, and makes it possible to set the firewall's host name. The CSV format of the command file has been enriched for this purpose.

For further information regarding the sethostname operation, refer to the technical note Initial configuration via USB key.

Bird dynamic routing

Dynamic routing can now be configured by importing bird.conf configuration files for IPv4 and bird6.conf configuration files for IPv6. The CSV format of the command file has also been enriched for this purpose.

For further information regarding the preparation of .bird and .bird6 files, refer to the technical note Initial configuration via USB key.

IPsec VPN and LDAP groups

During IPsec VPN connections via SSO authentication, the firewall now retrieves the groups associated with users added from the LDAP, so that these groups can be used in filter rules.

System

Exclusion of the proxy for automatic backups

Automatic backups can now be configured to avoid going through the proxy set on the firewall.

This new parameter can only be modified through the CLI / Serverd command:

CONFIG AUTOBACKUP SET

For more information on the syntax of this command, refer to the CLI Serverd Commands Reference Guide.

WebGUI file signature

A signature has been added for SNS WebGUI files to strengthen SMC communication mechanisms.