New Features and Improvements in SNS 4.8.17 LTSB

New model SNi20 firewall

Firmware version 4.8.17 LTSB ensures compatibility with the new SNi50 industrial firewalls.

To ensure service continuity in industrial environments, the SNi50 firewall is equipped with two hardware bypasses that, when enabled, allow network traffic to pass through in the event of a power outage or firewall failure.

URL classification

URLs in unknown categories are now grouped into a separate report, so that the other URL classification reports contain only URLs from known categories.

DNS servers

On a firewall reset to factory configuration (defaultconfig), the root DNS servers are no longer used by default for DNS requests. This behavior can be enabled or disabled using the CLI/Serverd CONFIG DNS USEROOT state=on|off command.

Learn more about the CONFIG DNS USEROOT command.

It is now possible to downgrade to SNS version 4.3.30 or later

It is now possible to downgrade from version 4.8 (4.8.17 and later) to version 4.3 (4.3.30 and later) using a USB flash drive configuration. The firewall must then be reset to factory configuration.

Learn more about Initial Setup via USB flash drive.

Filter policy-based routing and static routing

Filter policy-based routing (PBR) priority over static routing can be enabled or disabled using the CLI/Serverd CONFIG SECURITYINSPECTION COMMON STATEFUL PBROverrideStatic=0|1 command.

Learn more about the CONFIG SECURITYINSPECTION COMMON STATEFUL command.

EVA virtual firewalls - cloud-init support

As of SNS version 4.8.17, EVA virtual firewalls support the cloud-init configuration tool.

System events – High availability

System node name information has been added in HA-related system events.