Known issues

VPN topologies deployment

It is not possible to deploy a VPN topology from the SMC server if the name of a firewall is too long. The names of the VPN topologies on firewalls cannot contain more than 64 characters.

SMC server diagnostics report

Whenever the SMC server diagnostics report is downloaded via command line, errors such as sysctl: reading key "xxx" would be highlighted in the report. These errors do not negatively impact the diagnosis.

Configuring routing from SMC

Several of the interfaces used for contacting the SMC server can be configured, but only one default gateway can be declared on a single interface. Routing must be configured manually for the other interfaces. An article in the Stormshield Knowledge base sets out the procedure to follow.

Using global network objects in a local configuration

On SN firewalls, global objects may be used in local configurations. However, when SMC deploys a configuration on a firewall, existing global objects on the firewall will be deleted and replaced with objects defined in the SMC configuration. To keep the local configuration running, you need to impose the deployment of necessary global objects on affected firewalls.

For more information, refer to the section Warning before connecting SN firewalls to the SMC server.