SNS 3.2.1 bug fixes

System

CRL verification

Support reference 64074

The firewall no longer performed DNS resolution in order to obtain the address of certificate revocation list distribution points. This issue has been fixed.

Network objects

Support reference 64023

Validating a new network object using the "Create and duplicate" button would deactivate this button as well as the "Create" button for the following object. This anomaly has been fixed.

URL filtering

Support reference 64489

During a connection to an SNS firewall's administration interface via Stormshield Management Center, the request generated by clicking on Add rules by category in the URL filtering module would not succeed. This anomaly has been fixed.

Intrusion prevention

HTTP

Support reference 61269

Analyzing web pages that use HTML tags containing a large character string to define certain attributes would set off the block alarm "Buffer overflow in HTML attribute". While this reaction is justified, it could potentially cause the firewall to freeze. This issue has been fixed.

 

Support reference 64941 - 64920

Whenever Web 2.0 scans were enabled (Inspect HTML code and Inspect Javascript code options selected in the Protocols module > HTTP > IPS tab), looking up pages that contained commented VBScript code could cause the firewall to freeze. This issue has been fixed.