New features and enhancements in SNS 4.8.3 EA
IPsec VPN - SN-XL-Series-5200 and SN-XL-Series-6200 models
Some settings in the IPsec tunnel manager have been changed to significantly increase the number of IPsec tunnels that can be set up simultaneously on SN-XL-Series-5200 and SN-XL-Series-6200 model firewalls.
Packet management has also been enhanced to increase IPsec throughput.
High availability - System report (sysinfo)
The sysinfo command that is run on the active firewall in a cluster can now generate and retrieve the system report on the passive firewall.
This operation can be performed by using the CLI/Serverd command SYSTEM INFORMATION [fwserial=(<serial>|passive|active|local)] by selecting the parameter passive.
More information on the SYSTEM INFORMATION command.
SSL proxy
The SSL proxy now supports these two encryption suites:
- TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384,
- TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384.
Changing the admin account password through SSH
In console mode on the firewall using an SSH connection, the old password of the admin account now has to be entered in order to change it.