SNS version 4.3.43 QS bug fixes

System

Storage

Support reference TAC-1167

The presence of a defective SD/microSD card no longer prevents the firewall from starting.

Network - igc-based interfaces

Support reference TAC-1559

When a firewall interface that is based on the igc driver, and forced to a speed other than 2.5 Gbit/s, connects to a compatible device with throughput of 2.5 Gbit/s, the negotiation of the link at 2.5 Gbit/s will no longer be wrongly activated.

IPsec VPN

Support reference TAC-1464

In a mobile IPsec configuration with certificate authentication, when the DN field of the user certificate contains non-ASCII characters, such as accented characters, these characters will no longer be wrongly replaced with question marks when the certificate's properties are shown in logs or swanctl command line output.

Monitoring - Certificates, CAs and CRLs deployed through SMC

Support reference TAC-1399

The Monitoring module now shows the certificates, CAs and CRLs deployed through SMC when their expiry dates are imminent or reached.

Protocols

Support reference TAC-1553

When denial of service protection was enabled in the TCP/UDP protocol profile, if the maximum number of UDP child connections was reached, the firewall would unexpectedly restart. This issue has been fixed.

Filter rules

Support reference TAC-1565

In some cases, competing access to the cache would prevent a filter rule from being correctly applied. This issue has been fixed.

URL classification - Extended Web Control (EWC)

The EWC URL classification solution now uses only the ewc.stormshieldcs.eu server as its classification source. Manual requests can be made once again from the web administration interface.