SNS version 4.3.38 LTSB bug fixes
System
IPsec VPN
Support reference 85940
Previously, IKE security associations would sometimes be duplicated if peers attempted to renegotiate them at the same time, causing performance issues as a result. The calculation of when SAs are renegotiated has been modified to prevent them from being duplicated.
Optimization
Support reference 84995 - 85981 - 86070
The reloading of the configuration immediately after a deployment in SMC, or after a configuration has been restored, is now optimized.
Support reference 86070
In a configuration that contains a large number of objects, the list of objects would take a long time to appear in the administration interface. The mechanism has been optimized to reduce the display time.
SMC server redundancy
Support reference 86112
When the main SMC server fails, the SNS firewall will connect to the backup server. Previously, when the main server recovered, no operations (deployment, firewall access, etc.) could be performed from it. This issue has been fixed.
Command-based configuration server (serverd)
Support reference 84546
When Logs - Audit logs modules are opened, the command-based configuration server (serverd) would sometimes unexpectedly close. This issue has been fixed.
EWC (Extended Web Control)
Support reference 86059
Previously, when the IP address that was configured for the object ewc-sns.stormshieldcs.eu did not match the address obtained through DNS resolution, the EWC URL filtering service would not automatically apply the IP address obtained by DNS resolution. This issue has been fixed.
Support reference 85849
The IP address of the object ewc-sns.stormshieldcs.eu has been updated in the firewall configuration.
Web administration interface
Network objects
Support reference 86044
Previously, when you checked the usage of an object in Configuration > Configuration > Objects > Network, and then clicked on a Filter - NAT rule ID in the side panel, in some cases, a window would appear with an error message indicating that the rule did not exist, and the side panel would not function. This issue has been fixed.
Antivirus
Support reference 86144
Write privileges
Support reference 86058
Previously, when a firewall was managed by SMC, and if an administrator other than the super-administrator connected to the web administration interface without going through the SMC proxy mode and requested write privileges, an error message would appear, and the user would not be able to obtain these privileges. This issue has been fixed.