SNS version 4.3.38 LTSB bug fixes

System

IPsec VPN

Support reference 85940

Previously, IKE security associations would sometimes be duplicated if peers attempted to renegotiate them at the same time, causing performance issues as a result. The calculation of when SAs are renegotiated has been modified to prevent them from being duplicated.

Optimization

Support reference 84995 - 85981 - 86070

The reloading of the configuration immediately after a deployment in SMC, or after a configuration has been restored, is now optimized.

Support reference 86070

In a configuration that contains a large number of objects, the list of objects would take a long time to appear in the administration interface. The mechanism has been optimized to reduce the display time.

SMC server redundancy

Support reference 86112

When the main SMC server fails, the SNS firewall will connect to the backup server. Previously, when the main server recovered, no operations (deployment, firewall access, etc.) could be performed from it. This issue has been fixed.

Command-based configuration server (serverd)

Support reference 84546

When Logs - Audit logs modules are opened, the command-based configuration server (serverd) would sometimes unexpectedly close. This issue has been fixed.

EWC (Extended Web Control)

Support reference 86059

Previously, when the IP address that was configured for the object ewc-sns.stormshieldcs.eu did not match the address obtained through DNS resolution, the EWC URL filtering service would not automatically apply the IP address obtained by DNS resolution. This issue has been fixed.

Support reference 85849

The IP address of the object ewc-sns.stormshieldcs.eu has been updated in the firewall configuration.

Web administration interface

Network objects

Support reference 86044

Previously, when you checked the usage of an object in Configuration > Configuration > Objects > Network, and then clicked on a Filter - NAT rule ID in the side panel, in some cases, a window would appear with an error message indicating that the rule did not exist, and the side panel would not function. This issue has been fixed.

Antivirus

Support reference 86144

Write privileges

Support reference 86058

Previously, when a firewall was managed by SMC, and if an administrator other than the super-administrator connected to the web administration interface without going through the SMC proxy mode and requested write privileges, an error message would appear, and the user would not be able to obtain these privileges. This issue has been fixed.