New features and enhancements in SNS version 4.3.42 QS

IPsec VPN

A column indicating the Traffic Flow Confidentiality (TFC) has been added to the IPsec policy grid . This column is hidden by default.

Logs

SCTP protocol

Support reference TAC-1343

SCTP logs, similarly to TCP and UDP logs, now contain the names and numbers of source and destination ports.

Authentication

Logs now show events relating to failed administrator authentication attempts when the maximum number of simultaneous administration sessions has been reached.

Authentication

RADIUS

Support reference TAC-1027

The NAS-Identifier can now be customized. This allows the firewall serial number to be used as the NAS-Identifier, for example. To change this configuration, use the CLI/Serverd command: CONFIG AUTH RADIUS CustomNasId=<string>.

More information on the command CONFIG AUTH RADIUS.

SNMP - BIOS version

STORMSHIELD-PROPERTY-MIB now returns the BIOS version.

Monitoring

Support references TAC-5 - TAC-1185

Messages indicating that a physical component has recovered an "operational" status ("CPU health status recovered" messages) are no longer wrongly generated when the previous status of the component was "minor" and not "critical".