Aruba VIA Windows Edition

Size: px
Start display at page:

Download "Aruba VIA Windows Edition"

Transcription

1 Aruba VIA Windows Edition Release Notes

2 Copyright Information 2015 Aruba Networks, Inc. All rights reserved. Aruba Networks, Aruba NetworksTM (stylized), People Move Networks Must Follow, Mobile Edge Architecture, RFProtect, Green Island, ClientMatch, Aruba Central, Aruba Mobility Management System, ETips, Virtual Intranet Access, Aruba Instant, ArubaOS, xsec, ServiceEdge, Aruba ClearPass Access Management System, AirMesh, AirWave, Cloud WiFi, Aruba Cloud, Adaptive Radio Management, Mobility-Defined Networks, Meridian and ArubaCareSM are trademarks of Aruba Networks, Inc. registered in the United States and foreign countries. Aruba Networks, Inc. reserves the right to change, modify, transfer or otherwise revise this publication and the product specifications without notice. Open Source Code Certain Aruba products include Open Source software code developed by third parties, including software code subject to the GNU General Public License (GPL), GNU Lesser General Public License (LGPL), or other Open Source Licenses. Includes software fro Litech Systems Design. The IF-MAP client library copyright 2011 Infoblox, Inc. All rights reserved.this product includes software developed by Lars Fenneberg et al. The Open Source code used can be found at this site: Legal Notice The use of Aruba Networks, Inc. switching platforms and software, by all individuals or corporations, to terminate other vendors VPN client devices constitutes complete acceptance of liability by that individual or corporation for this action and indemnifies, in full, Aruba Networks, Inc. from any and all legal actions that might be taken against it with respect to infringement of copyright on behalf of those vendors. Warranty This hardware product is protected by the standard Aruba warranty of one year parts/labor. For more information, refer to the ARUBACARE SERVICE AND SUPPORT TERMS AND CONDITIONS. Altering this device (such as painting it) voids the warranty v1 April 2015 Aruba VIA Release Notes

3 Contents Contents 3 Overview 5 About VIA 5 Contacting Support 5 What s New in this Release 6 Resolved Issues 6 Known Issues and Limitations 6 Features Introduced in Previous Versions 7 Support for Suite-B 7 Login Banner 7 Login Banner Window Characteristics 7 Issues Resolved in Previous Versions 9 Resolved Issues in ArubaVIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Resolved Issues in Aruba VIA Aruba VIA Release Notes Contents 3

4 Known Issues in Previous Versions 17 Known Issues 17 VIA with ArubaOS 6.3.x or Earlier Versions 18 4 Contents Aruba VIA Release Notes

5 Chapter 1 Overview Aruba VIA is a software patch release that introduces fixes to the issues identified in the previous releases of Aruba VIA Windows Edition. For more information on features described in the following sections, see the latest VIA 2.0 User Guide. About VIA Virtual Intranet Access (VIA) is part of the Aruba remote networks solution targeted for teleworkers and mobile users. VIA detects the users network environment (trusted and untrusted) and automatically connects the user to their enterprise network. Trusted network typically refers to a protected office network that allows users to directly access corporate intranet. Untrusted networks are public Wi-Fi hotspots such as airports, cafes, or home network. The VIA solution comes in two parts VIA client and the controller configuration. Contacting Support Table 1: Contact Information Main Site Support Site Airheads Social Forums and Knowledge Base North American Telephone International Telephone Software Licensing Site End of Support Information Security Incident Response Team (SIRT) arubanetworks.com support.arubanetworks.com community.arubanetworks.com (Toll Free) Support Addresses Americas, EMEA, and APAC Security Incident Response Team (SIRT) support@arubanetworks.com sirt@arubanetworks.com Aruba VIA Release Notes Overview 5

6 Chapter 2 What s New in this Release This chapter lists bugs fixed in the Aruba VIA Windows release. In addition, it lists bugs found in the previous releases that are not resolved yet and/or are currently under investigation. Resolved Issues The following issues are fixed in Aruba VIA : Table 2: Aruba VIA Resolved Issues ID Symptom: VIA failed to utilize multiple DNS suffixes configured in connection profile. This issue is resolved by adding a provision to use all DNS suffixes configured. Scenario: This issue occurred when multiple DNS suffixes were configured for use. This issue was observed on Windows clients running VIA Symptom: VIA was unstable on Windows 8 and 8.1 clients when connected to the internet using a USB 3G or 4G modem adapters. This issue is resolved by changing the default route for all destination traffic to route through the VIA adapter. Scenario: This issue occurred when all destination traffic was routing through the USB modem adapter. Since, no traffic flowed in the tunnel, VIA disconnected multiple times. This issue was observed on Windows 8 and 8.1 clients running VIA Symptom: Internet did not work when VIA was connected in split-tunnel forwarding mode. This issue is resolved by handling the traffic outside split-tunnel to route only through physical interface. Scenario: This issue occurred in IKEv2 non-ppp mode when traffic outside split-tunnel was traversing through tunnel. This issue was observed on Windows clients running VIA Symptom: VIA failed to establish a connection. This issue is resolved by adding a provision to select different certificates. Scenario: This issue occurred if a previously used certificate for EAP-TLS authentication was deleted. This issue was observed on Windows clients running VIA Symptom: VIA client rejected a server certificate as bad_certificate in EAP-TLS authentication. This issue is resolved by removing key usage check for CA certificate validation and by adding the digital signature check instead of key-agreement or key-encipherment check for key usage extension of server certificate validation. Scenario: This issue was observed when the CA certificate did not have a key usage extension or when the server certificate did not contain key agreement or key encipherment flag in the key usage extension. Known Issues and Limitations There are no known issues identified in Aruba VIA Aruba VIA Release Notes What s New in this Release 6

7 Chapter 3 Features Introduced in Previous Versions The following features were introduced in the Windows version of Aruba VIA: Support for Suite-B Suite B is a new set of cryptographic algorithms that are approved by the US Government for use in classified communication. Suite B provides the highest levels of security available today in public and commercial algorithms. To enable Suite B connectivity, VIA is enhanced to support RFC 4869 (Suite B Cryptographic Suites for IPsec) and bsec, an Aruba proprietary enhancement to the Suite B version of IEEE i for secure wireless connectivity. Additionally, VIA provides support for: RFC 5246 and RFC 5430 Extensible Authentication Protocol (EAP) offload with TLS v1.2 AES-GCM 128/256 for bulk data transfer ECDSA for digital signatures, including support for X.509v3 certificates using ECDSA keys with p256/p384 curves ECDH for key agreement using p256/p384 curves SHA-256 and SHA-384 for message digests Suite B support requires a controller running ArubaOS 6.1 or later with the Advanced Cryptography License. See the Software Licenses chapter in the latest ArubaOS user guide for more information. Login Banner The login banner feature allows you to display a static Warning window that provides information related to your corporate policies or terms and conditions of using the VIA connection to your users. This login banner or the window is displayed when the VIA connection is initiated. The window contains AGREE and DISCONNECT NOW buttons. The VIA connection is processed only if the user clicks the AGREE button. The DISCONNECT NOW button will close the information window and abort the VIA connection. Login Banner Window Characteristics The window does not contain the standard icons to resize, minimize, maximize or close the windows. Only the AGREE and DISCONNECT NOW button can close this window. The window title cannot be modified and will always display Warning as the title. The Accept button is selected as default. The window will wait for the user input and will not timeout and close. Escape button will not dismiss the window. Hyperlinks in the window text can be accessed through the users default browser. If the user selects Accept, the window will not be displayed until user profile is cleared or a change in the banner message is detected. However, the administrator can configure the number of hours after which the login banner should appear. This option can be configured by specifying the VIA Banner Message Reappearance Timeout(minutes). Aruba VIA Release Notes Features Introduced in Previous Versions 7

8 In the controller WebUI, navigate to Configuration > Security > Authentication > L3 Authentication > VIA Connection. Click on one of the listed VIA Connection Profile > Advanced tab, enter value for the VIA Banner Message Reappearance Timeout(minutes) parameter. 8 Features Introduced in Previous Versions Aruba VIA Release Notes

9 Chapter 4 Issues Resolved in Previous Versions The following issues were resolved in the previous releases of VIA: Resolved Issues in ArubaVIA The following issues are fixed in ArubaVIA : Table 3: ArubaVIA Resolved Issues Symptom: VIA system tray icon and connection logs displayed the Network unstable, monitoring or Network is back message intermittently. The fix ensures that this message appears only in the log file but not on the VIA system tray icon and connection logs. Scenario: This issue occurred whenever VIA failed to ping an internal IP address. This issue was specific to VIA Symptom: VIA disconnected after 5 minutes of idle time in IKEv2 SSL fallback mode. This issue is resolved by adding Network Address Translation (NAT) Keepalive packet handling logic in an internal module. Scenario: This issue was observed when a VIA client connected to the controller through a NAT device. After 5 minutes of idle time, the NAT device sent a NAT Keepalive packet to VIA, which was not handled correctly in IKEv2 SSL fallback mode. As as result, VIA disconnected. Resolved Issues in Aruba VIA The following issues are fixed in Aruba VIA : Table 4: Aruba VIA Resolved Issues Symptom: When the customer clicked the Clear Profile button, VIA selected the default profile instead of providing the new set of Auth profiles configured using Web Auth Profile. The fix ensures that VIA selects the appropriate profile after the current profile is cleared. Scenario: This issue was observed when an existing profile was cleared and a new profile was downloaded Symptom: When the customer was connected through a private network, VIA detected a trusted local network as untrusted and established a VPN connection. This issue is resolved by enhancing the VIA trust check to avoid network errors. Scenario: This issue was observed when VIA did not complete the network trust check before it determined the network type Symptom:VIA used an old authentication profile name although VIA received a connection profile without an authentication profile name. The fix ensures that existing authentication profile names in the cache is not used. Scenario: This issue was observed when VIA used an old authentication profile name for a new connection profile without an authentication profile name. Aruba VIA Release Notes Issues Resolved in Previous Versions 9

10 Table 4: Aruba VIA Resolved Issues Symptom: The VPN connection was not established for Windows 8.1 clients when connected to the internet with newer USB 3G or 4G modem adapters such as Airtel 4G or MTS 3G adapter. The fix ensures that a new API in Windows 8.1 is used to create appropriate route table entries. Scenario: This issue was specific to clients running Windows 8.1 and using USB Internet adapters Symptom: The VIA command line process errors out when VIA was installed remotely by another user whose privileges were upgraded to an admin user. The fix ensures that installing VIA by another user upgraded to admin privileges is handled correctly. Scenario: This issue was observed when VIA was installed remotely by non-admin users Symptom:VIA used an incorrect username when a third-party application simulated the user login. This issue is resolved by dismissing the false login and only capturing the proper login. Scenario: This issue was observed in VIA or earlier Symptom:VIA does not connect with SHA1-160 for hash. The fix ensures that SHA1-160 and SHA1-96 are handled correctly in VIA. Scenario: This issue was observed when SHA-160 was used for hash in an IKE crypto map Symptom:VIA was proposing unsupported IKE proposals. This issue is resolved by supporting new DH Group 14 and also handling the error condition correctly if unsupported groups are proposed. Scenario: This issue was observed when DH Group 14 were proposed by a controller Symptom: Whenever the network interface tries to renew the ip address while VIA is connected in full tunnel mode, it fails and VIA gets disconnected with the error - Virtual Adapter got disabled. Please reestablish the secure connection. This issue is resolved by making changes where the DHCP traffic is excluded from the IPSec tunnel. Scenario: The customer was unable to renew the IP address of the network interface after VIA establishes IPSec connection in full tunnel mode Symptom:VIA did not notify the end user about network issues while connected to a controller. This issue is resolved by notifying the user about network disruption and monitoring the connection. VIA notifies the user if the network is restored, else the session disconnects after approximately 70 to 80 seconds. Scenario: This issues was observed when VIA was unable to reach the controller during an established session. For example, when a network cable is unplugged from the controller. Resolved Issues in Aruba VIA The following issues were fixed in Aruba VIA : Table 5: Aruba VIA Resolved Issues Symptom:VIA did not use the network adapter in which the IPv4 address of the third octet is set to 254. Scenario:VIA miscalculated the adapter as unusable, as a result VPN was not established. This issue was observed in Windows VIA or prior versions Symptom: Domain Pre-Connection (DPC) failed and multiple entries were added with a log on role to the user table. Scenario: This issue was observed when the controller /authentication server presented a chained certificate for the client trust check Symptom: The VIA application failed to authenticate, when the client entered a special character (German) in the password. Scenario: This issue occurred when authentication was off-loaded to the RADIUS server. This issue was observed in Windows VIA or prior versions. 10 Issues Resolved in Previous Versions Aruba VIA Release Notes

11 Table 5: Aruba VIA Resolved Issues Symptom: After a role is derived with the help of the Clearpass server, VIA users did not get a new connection profile. This issue is resolved when the user gets a new authentication profile during profile refresh. Scenario: During the process of dynamic role assignment with the help of Clearpass server, VIA users should be assigned a connection profile that is associated to a corresponding new role. This issue was observed in Windows VIA Symptom: When a smart card was used for authentication, an error message was displayed when the system tried to connect after a restart. Scenario: This issue is observed as the application looses the smart card details on a system restart. This issue was observed in Windows VIA or prior versions. Resolved Issues in Aruba VIA The following issues were resolved in Aruba VIA : Table 6: Aruba VIA Resolved Issues Symptom: In systems running Windows XP, the CPU usage increased by 25% five minutes after the VPN tunnel was established. This issue is fixed by accurately handling NAT keep alive messages to ensure optimal CPU utilization. Scenario: The issue occurred due to improper handling of NAT keep alive messages sent by the controller. The issue is observed in systems running Windows XP Symptom: VIA did not check the expiry date of certificates before using the certificate for authentication. After the certificate expired, VIA tried to use same certificate and failed to connect to IPsec. The issue is fixed by adding a check and prompting for a new certificate, if the certificate is expired. Scenario: This issue occurred when certificate-based authentication methods were used for VIA IPsec connections. This issue was triggered if the certificates used in authentication were expired Symptom: A pop up was displayed indicating the Accessing Protected Resource message for VIA users with certificate authentication. This issue is fixed by handling the previously saved profile correctly. Scenario: This issue was observed when a previously saved profile was not decrypted correctly. This issue is observed in systems running Windows XP Symptom: In SSL fallback mode, VIA was transmitting corrupt packets if multiple SSL packets were sent in a single TCP packet. This issue is fixed by making changes to the code, ensuring every packet is sent with a proper SSL header. Scenario: This issue was observed when VIA did not format the SSL headers correctly. This issue is observed in systems running Windows Symptom: During IPSec rekey VIA used the AES_GCM_128 algorithm, though the connection profile was set to AES_GCM 256. This issue is fixed by correcting the function that returns the algorithm during IPSec rekey. Scenario: This issue was observed during IPSec rekey, when VIA did not use the AES_GCM_256 algorithm that was configured, but used AES_GCM_128. This issue is observed in systems running Windows platforms Symptom: Chained server certificates sent by a controller during certificate-based authentication were not in the correct order and caused the IPsec tunnel connection failure. The issue is fixed by rearranging the chained certificated before validating the authenticity. Scenario: This issue was observed when VIA could not validate the authenticity of the server certificate. This issue is observed in systems running Windows 7. Aruba VIA Release Notes Issues Resolved in Previous Versions 11

12 Resolved Issues in Aruba VIA The following issues were resolved in Aruba VIA : Table 7: Aruba VIA Resolved Issues Symptom: A VIA client disconnects after the IKE phase 1 times out. Support for IKE rekey resolves the issue. Scenario: The issue was observed when the IKE phase 1 timer reached its maximum limit. The issue was not limited to a specific VIA client software version or Windows version Symptom: Users were unable to download the VIA profile containing a special issuer attribute field. Support to the SERIALNUMBER certificate issuer attribute resolves the issue. Scenario: The issue was observed when a certificate contains a special issuer attribute SERIALNUMBER. The issue was not limited to a specific VIA client software version or Windows version Symptom: When using VIA, clients were unable to connect to EAP-TLS based X SSIDs. Corrections to the VIA driver resolves the issue. Scenario: The issue was observed when VIA used TLS based authentication, and when enabled, clients were unable to connect to the SSIDs. The issue was specific to VIA versions that support the bsec feature Symptom: The VIA client crashed when downloading the profile. Supporting more than 63 characters for WLAN key size length resolves the issue. Scenario:The issue was observed when the WLAN key size exceeded 63 characters. The issue was not limited to a specific VIA client software version or Windows version Symptom: VIA disconnected frequently in tunnel and split-tunnel modes. After a successful VIA connection, adding a direct route for DHCP server resolves the issue. Scenario: The issue was observed when the DHCP renewal request of the network interface was routed to controller gateway and there was no response from the controller gateway. The issue was not limited to a specific VIA client software version or Windows version. Resolved Issues in Aruba VIA The following issues were resolved in Aruba VIA : Table 8: Aruba VIA Resolved Issues Symptom: VIA client did not pick up proxy server configuration from IE browser when proxy auto config (PAC) was used. Scenario: This issue occurred when IE sent traffic to the proxy server using the configuration in the Proxy.pac file. As a result, VIA was unable to detect these proxy settings. The issue was found in VIA client 2.0 and earlier versions Symptom: Microsoft Outlook did not work correctly with VIA 3G clients such as Sierra Wireless AirCard 250U and Huawei EC150 if the mail server was also accessible over Internet. Scenario: The issue occurred when network sub system failed to set the correct binding order for 3G devices for the VIA virtual network adapter. This issue was found on Windows Vista and Windows 7 running VIA 2.0 or earlier Symptom: New users were prompted to enter the gateway IP, username, and password although VIA client was configured to automatically connect to the network. Scenario: This issue occurred when VIA did not automatically download the configurations and profile settings for the new user. This issue was found on Windows Vista and Windows 7 running VIA 2.0 or earlier. 12 Issues Resolved in Previous Versions Aruba VIA Release Notes

13 Table 8: Aruba VIA Resolved Issues Symptom: VIA client established connection without server certificate CA. Scenario: The issue occurred when there were no server certificates CA installed on a client system. When the user clicked the Connect button, the VIA connection was established. This issue was found on Windows 7 running VIA 2.0 or earlier. Resolved Issues in Aruba VIA The following issues were resolved in Aruba VIA : Table 9: Aruba VIA Resolved Issues VIA displays certificate selection window when the connection profile mandates using certificate authentication. If there are no certificates available for selection and the user clicks the Select button, this window becomes unresponsive. This issue has now been fixed VIA crashed due to an inability to handle fragmented packets. This issue is resolved in VIA VIA did not prompt clients for a reboot after upgrading from VIA to VIA This issue is resolved in Aruba VIA , although reboots may no longer be required Clients using VIA were continuously prompted for a password. This issue has been resolved in Aruba VIA Clients running Windows XP were unable to use VIA to connect to a controller running ArubaOS 6.2. The VIA log file displayed the error IPSec processing could not be enabled. This issue was resolved in Aruba VIA Resolved Issues in Aruba VIA The following issues were resolved in Aruba VIA : Table 10: Aruba VIA Resolved Issues Incorrect displayed for connected user s name in the Diagnose tab of the VIA client has been fixed. This issue was noticed when the Use Windows Credentials option was enabled in the VIA connection profile and the username of the user and the common name in the certificate used for connection had a mismatch System restart is required in a VIA upgrade that involves cleaning old drivers. In such cases the VIA installer did not prompt users for system restart. Without a system restart such upgrades are not successful. This issue was noticed in Windows VIA 2.0 and above has now been fixed After a network disruption, VIA did not display the correct network type. This issue has now been fixed. VIA now displays the correct network type as either Trusted or Not-Trusted VIA did not process authentication if either the username or the password is not entered in the VIA authentication box. Aruba VIA Release Notes Issues Resolved in Previous Versions 13

14 Table 10: Aruba VIA Resolved Issues VIA displayed certificate selection window when the connection profile mandates using certificate authentication. If there are no certificates available for selection and the user clicks the Select button, this window becomes unresponsive. This issue has now been fixed When bsec (support for Suite-B protocol) was enabled VIA incorrectly displayed the connected time as 00:00:00. This issue has been fixed An issue where VIA did not use the IE (Internet Explorer) proxy settings in SSL mode has been fixed In computers running Windows 7 and Windows Vista, VIA (version 2.1 and above) did not auto-launch after an upgrade. This issue has now been fixed An issue where configurations are not preserved during a downgrade has been fixed. This was noticed in the Windows version of VIA An issue where VIA does not connect in SSL mode if valid proxy settings are not configured in Internet Explorer has been fixed. Resolved Issues in Aruba VIA The following issues were resolved in Aruba VIA : Table 11: Aruba VIA Resolved Issues An issue where Windows VIA could not connect to an SSID with more than 19 characters has been fixed Connection issues caused by multiple HTTP errors have been fixed. The HTTP errors could have occurred due to invalid SSL certificate, incorrect hostname in SSL certificate, or expired SSL certificate Issue with machine certificate (2048-bit and 1024-bit) based authentication resulting in VIA error 6000 in Windows XP and Windows 7 computers has been fixed In some occasions Windows 7 assigns the same metric value to the physical interface and the VIA virtual adapter. In such cases, VIA increases the physical interface metric value. When this happens, the VIA connection is lost. This issue has been fixed. Resolved Issues in Aruba VIA The following issue was resolved in Aruba VIA : Table 12: Aruba VIA Resolved Issues An issue where VIA did not connect due to an expired service certificate has been fixed. 14 Issues Resolved in Previous Versions Aruba VIA Release Notes

15 Resolved Issues in Aruba VIA The following issues were resolved in Aruba VIA : Table 13: Aruba VIA Resolved Issues The issue with VIA not supporting EAP-TLS with ECDSA certificate has been fixed VIA can now establish secure connection in a network connected using the AT&T EVDO data card VIA will now upgrade and reboot the system only if the user selects the reboot option The issue with VIA users getting the default role instead of the server-derived role has been fixed The issue with unresponsive VIA window when gateway is not reachable has been fixed VIA can now connect over IKEv2 with EAP-TLS using 2048-bit key certificates Certificate display issues under Profile Details > Certificates section has been fixed The Connect / Disconnect button will not be disabled after a network outage VIA can now establish connection with EAP TLS authentication method using RSA or ECDSA certificate On systems running Microsoft Windows 7, VIA can now successfully authenticate using RSA certificates with authentication type set to user certificates The issue with VIA not establishing connection using the EAP MSCHAPv2 authentication method has been fixed Authentication profiles are now displayed as ordered list according to the priority value You can now use Elliptic curve certificates, RSA 2048-bit certificates, and RSA 4096-bit certificates for authentication The issue with options for managing certificates not being displayed for RSA 2048-bit certificates has been fixed The issue with network details for some adapters not being displayed in the Connection tab has been fixed VIA can now connect using certificates over slower networks VIA can now switch from SSL to IPSec connection mode when the user connects to a different gateway or clears the profiles. Aruba VIA Release Notes Issues Resolved in Previous Versions 15

16 Resolved Issues in Aruba VIA The following issues were resolved in Aruba VIA : Table 14: Aruba VIA Resolved Issues The issue with the VIA system tray Connect button not creating a VIA connection has been fixed You can now connect to an internal resource with a VIA connection The button state for the Connect and Reconnect button will be disabled if there is network connectivity. The issue with VIA not reconnecting after the client comes back from hibernation has been fixed The issue with VIA not being able to download configuration from the controller while in a home network has been fixed The issue with VIA not reconnecting after the client comes back from hibernation has been fixed The issue with auto-upgrade executing without user permission has been fixed The issue with the VIA service crashing under heavy traffic has been fixed You can now configure VIA to execute a scripts after VIA connection is established or terminated. These logon and logoff script details must be configured in the VIA controller VIA will now connect using SSL if the SSL fallback is enabled on the controller by the administrator A minimize button is now added to the VIA connection manager. The minimize button will minimize the VIA connection manager to the task bar The virtual adapter would use the default IP address ( x.x) instead of a VIA assigned IP address which resulted in VIA not tunneling traffic or retrieving configuration details. This issue has been fixed Administrators can now easily upload VIA installers to the controller The issue with VIA crashing due to large PSK has been fixed Aruba VIA installer now shows the build number in its first screen VIA can now handle server names typed in configuration download dialog correctly, even if there are spaces before or after the names The issue with IKE authentication failing on a slow network connection has been fixed The issue with VMWare authorization service disabling auto-login has been fixed The issue with VIA crashing immediately after connecting over IPSec has been fixed In the SSL fall back mode, two VIA clients (with same IP address) behind two different NAT devices can now connect to the controller. 16 Issues Resolved in Previous Versions Aruba VIA Release Notes

17 Chapter 5 Known Issues in Previous Versions The known issues and limitations identified in previous releases of VIA are described in the following tables: Known Issues Table 15: Aruba VIA- Previous Known Issues ID Symptom: In Domain Pre-Connect (DPC), credential-based machine authentication does not work on systems running Windows 8 or later. Scenario: This issue is observed in systems running Windows 8 or later. Domain Pre- Connect (DPC) does not establish VPN when machine authentication is used instead of certificates. Workaround: Apply the patch available in the Microsoft KB article Symptom:VIA continuously tries connecting and fails with the ERR-8949 FAILED TO ESTABLISH TUNNEL error in the GUI. In the controller logs, the IKEv2 IKE Proposal mismatched for peer. status=-8960 merror: Notify: NO_PROPOSAL_ CHOSEN error is seen. Scenario: This issue is observed when a profile mapped to the IKEv2 policy uses SHA1-96 HASH algorithm in the controller s connection profile settings. This issue is specific to controllers running ArubaOS 6.3.x or earlier version. Workaround: In the controller, create a new IKEv2 policy with HASH algorithm as SHA instead of SHA1-96. All other configurations like Authentication algorithm, DH group and Encryption algorithm can remain same. For example, if your default proposal is / AES128/ SHA1-96/ RSA/ PRF-HMAC-SHA1/ G2, create a new policy as / AES128/ SHA/ RSA/ PRF-HMAC-SHA1/ G2. For the complete procedure, see VIA with ArubaOS 6.3.x or Earlier Versions on page Symptom: VIA does not work on Windows 8.1 after upgrade from Windows 8 until VIA service is restarted. Scenario: This issue was observed post upgrade from Windows 8 to Windows 8.1. Workaround: Do one of the following: After upgrading to Windows 8.1, go to Task Manager and select anuacui.exe in the Processes tab and select End Process. Restart VIA. Or Uninstall VIA and reinstall after Windows upgrade is complete FIPS initialization causes VPN plug-in to load very slowly The show crypto isakmp sa command does not display the V flag even if the client is connected using VIA If the VIA client uses a 2048-bit RSA certificate and the server certificate key length is not 2048-bit, VIA will not establish VPN tunnel over IKEv2 using the user certificate authenticate method The VIA installer cannot be uploaded to the controller using IE 9 browser A VIA connection using a non-default server-group in its auth-profile still derives role from the default server-group. Aruba VIA Release Notes Known Issues in Previous Versions 17

18 Chapter 6 VIA with ArubaOS 6.3.x or Earlier Versions VIA connection may fail on ArubaOS 6.3.x or earlier versions if all of the following are true: A profile mapped to the IKEv2 policy using SHA1-96 HASH algorithm in the controller s connection profile settings. VIA is newly installed The controller is upgraded or downgraded to ArubaOS 6.3.x or earlier versions. If an earlier version of VIA ( or earlier) was already installed and worked correctly on ArubaOS 6.3.x or earlier versions, then the upgrade to VIA will also work correctly. VIA fails to connect if a profile mapped to the IKEv2 policy uses SHA1-96 HASH algorithm in the controller s connection profile settings. To solve this, create a new IKEv2 Policy with HASH algorithm as SHA instead of SHA1-96, and assign the new policy to connection profile. All other configurations like Authentication algorithm, DH group, and Encryption algorithm remain same. The following steps describe the procedure: 1. In the controller, a. Go to Advanced services > VPN Services > IKE Policies > Add. b. Set Priority= 9500 (example), Version = v2, Encryption=AES128, Hash Algorithm=SHA, Authentication = RSA, DH Group = Group2. c. Click the Done button. d. Assign the new policy 9500 to your proposal, by going back to Security > Authentication > L3 Authentication > VIA Connection > Connection Profile name. e. Click the Advanced tab. Go to VIA IKEv2 Policy. f. Select the new policy 9500 from the drop down list. g. Click in the Apply button. A new profile is created 2. In the VIA GUI, a. Click the Change button. b. Click the Clear profile button. c. Enter your credentials and server name to download the profile. d. Click Connect. VIA connection is established. Upgrading to VIA is complete. Aruba VIA Release Notes VIA with ArubaOS 6.3.x or Earlier Versions 18

Aruba VIA Android Edition

Aruba VIA Android Edition Aruba VIA 3.0.3 Android Edition a Hewlett Packard Enterprise company Release Notes Copyright Information Copyright 2017 Hewlett Packard Enterprise Development LP. Open Source Code This product includes

More information

Aruba VIA Windows Edition

Aruba VIA Windows Edition Aruba VIA 3.2.2 Windows Edition a Hewlett Packard Enterprise company Release Notes Copyright Information Copyright 2018 Hewlett Packard Enterprise Development LP. Open Source Code This product includes

More information

Aruba VIA Windows Edition

Aruba VIA Windows Edition Aruba VIA 3.0.0 Windows Edition a Hewlett Packard Enterprise company User Guide Copyright Information Copyright 2017 Hewlett Packard Enterprise Development LP. Open Source Code This product includes code

More information

Aruba VIA 2.1.x. User Guide

Aruba VIA 2.1.x. User Guide Aruba VIA 2.1.x User Guide Copyright Information Copyright 2015 Hewlett Packard Enterprise Development LP. Open Source Code This product includes code licensed under the GNU General Public License, the

More information

Aruba Instant Release Notes

Aruba Instant Release Notes Aruba Instant 6.2.1.0-3.4 Release Notes Copyright 2013 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the Mobile Edge Company logo,

More information

AirGroup Configuration How- To with ClearPass Technical Note

AirGroup Configuration How- To with ClearPass Technical Note AirGroup Configuration How- To with ClearPass 6.0.1 Technical Note Copyright 2012 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the

More information

Aruba Instant Release Notes

Aruba Instant Release Notes Aruba Instant 6.2.1.0-3.4.0.1 Release Notes Copyright 2013 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the Mobile Edge Company

More information

ClearPass QuickConnect 2.0

ClearPass QuickConnect 2.0 ClearPass QuickConnect 2.0 User Guide Copyright 2013 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the Mobile Edge Company logo,

More information

Aruba Instant Release Notes

Aruba Instant Release Notes Aruba Instant 6.2.1.0-3.4.0.2 Release Notes Copyright 2013 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the Mobile Edge Company

More information

Pulse Secure Desktop Client

Pulse Secure Desktop Client Pulse Secure Desktop Client Release Notes Pulse Secure Desktop Client v5.1r11 Build For more information on this product, go to www.pulsesecure.net/products. Release, Build Pulse 5.1R11, Published January

More information

Aruba Instant

Aruba Instant Aruba Instant 6.4.4.4-4.2.3.2 Release Notes Copyright Copyright 2016 Hewlett Packard Enterprise Development LP Open Source Code This product includes code licensed under the GNU General Public License,

More information

Aruba Instant

Aruba Instant Aruba Instant 6.4.3.4-4.2.1.0 Release Notes Copyright Copyright 2015 Hewlett Packard Enterprise Development LP Open Source Code This product includes code licensed under the GNU General Public License,

More information

Aruba Instant Release Notes

Aruba Instant Release Notes Aruba Instant 6.2.1.0-3.3 Release Notes Copyright 2013 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the Mobile Edge Company logo,

More information

Aruba VIA for Mobility Master

Aruba VIA for Mobility Master Aruba VIA 3.0.0 for Mobility Master a Hewlett Packard Enterprise company User Guide Copyright Information Copyright 2016 Hewlett Packard Enterprise Development LP. Open Source Code This product includes

More information

Aruba Instant Release Notes

Aruba Instant Release Notes Aruba Instant 6.2.1.0-3.4.0.4 Release Notes Copyright 2013 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the Mobile Edge Company

More information

Aruba Central Switch Configuration

Aruba Central Switch Configuration Aruba Central Switch Configuration User Guide Copyright Information Copyright 2016 Hewlett Packard Enterprise Development LP. Open Source Code This product includes code licensed under the GNU General

More information

SonicWALL strongly recommends you follow these steps before installing Global VPN Client (GVC) 4.1.0:

SonicWALL strongly recommends you follow these steps before installing Global VPN Client (GVC) 4.1.0: GVC SonicWALL Global VPN Client 4.1.0 Contents Pre-installation Recommendations Platform Compatibility New Features Known Issues Resolved Known Issues Troubleshooting Pre-installation Recommendations SonicWALL

More information

Deploy APs in a Centralized Controller-Based Network

Deploy APs in a Centralized Controller-Based Network AP Software Quick Start Guide This document outlines the various deployment scenarios for Unified Access Points (UAPs) and the procedures involved in deploying the APs in controller-based and Instant operating

More information

NCP Secure Entry macos Client Release Notes

NCP Secure Entry macos Client Release Notes Service Release: 3.20 r43098 Date: March 2019 Prerequisites Apple macos operating systems: The following Apple macos operating systems are supported with this release: macos Mojave 10.14 macos High Sierra

More information

ArubaOS 6.2. Quick Start Guide. Install the Controller. Initial Setup Using the WebUI Setup Wizard

ArubaOS 6.2. Quick Start Guide. Install the Controller. Initial Setup Using the WebUI Setup Wizard ArubaOS 6.2 Quick Start Guide This document describes the initial setup of an Aruba user-centric network that consists of an Aruba controller and Aruba Access Points (APs). The installation consists of

More information

Data Sheet. NCP Secure Entry Mac Client. Next Generation Network Access Technology

Data Sheet. NCP Secure Entry Mac Client. Next Generation Network Access Technology Universal VPN Client Suite for macos/os X Compatible with VPN Gateways (IPsec Standard) macos 10.13, 10.12, OS X 10.11, OS X 10.10 Import of third party configuration files Integrated, dynamic Personal

More information

August 2015 Aruba Central Getting Started Guide

August 2015 Aruba Central Getting Started Guide Aruba Central Copyright Information Copyright 2015 Hewlett Packard Enterprise Development LP. Open Source Code This product includes code licensed under the GNU General Public License, the GNU Lesser General

More information

NCP Secure Enterprise macos Client Release Notes

NCP Secure Enterprise macos Client Release Notes Service Release: 3.20 r43098 Date: March 2019 Prerequisites Apple macos operating systems: The following Apple macos operating systems are supported with this release: macos Mojave 10.14 macos High Sierra

More information

Aruba Instant

Aruba Instant Aruba Instant 6.1.3.1-3.0.0.2 Release Notes Aruba Instant 6.1.3.1-3.0.0.2 is a patch software release that introduces fixes to many previously outstanding issues. For details on all of the features described

More information

Configuring Cisco VPN Concentrator to Support Avaya 96xx Phones Issue 1.0. Issue th October 2009 ABSTRACT

Configuring Cisco VPN Concentrator to Support Avaya 96xx Phones Issue 1.0. Issue th October 2009 ABSTRACT Avaya CAD-SV Configuring Cisco VPN Concentrator to Support Avaya 96xx Phones Issue 1.0 Issue 1.0 30th October 2009 ABSTRACT These Application Notes describe the steps to configure the Cisco VPN 3000 Concentrator

More information

SonicWALL strongly recommends you follow these steps before installing Global VPN Client (GVC) 4.0.0:

SonicWALL strongly recommends you follow these steps before installing Global VPN Client (GVC) 4.0.0: GVC SonicWALL Global VPN Client 4.0.0 Contents Pre-installation Recommendations... 1 Platform Compatibility... 1 New Features... 2 Known Issues... 3 Resolved Known Issues... 4 Troubleshooting... 5 Pre-installation

More information

Pulse Secure Desktop Client

Pulse Secure Desktop Client Pulse Secure Desktop Client Release Notes Release, Build Published Revision 5.1R7, 61533 December 2015 1.0 Table of Contents Introduction 3 Interoperability and Supported Platforms 3 Problems Resolved

More information

NCP Secure Enterprise macos Client Release Notes

NCP Secure Enterprise macos Client Release Notes Service Release: 3.10 r40218 Date: July 2018 Prerequisites Apple OS X operating systems: The following Apple macos operating systems are supported with this release: macos High Sierra 10.13 macos Sierra

More information

NCP Secure Client Juniper Edition (Win32/64) Release Notes

NCP Secure Client Juniper Edition (Win32/64) Release Notes Service Release: 10.10 r31802 Date: September 2016 Prerequisites Operating System Support The following Microsoft Operating Systems are supported with this release: Windows 10 32/64 bit Windows 8.x 32/64

More information

NCP Secure Client Juniper Edition Release Notes

NCP Secure Client Juniper Edition Release Notes Service Release: 10.11 r32792 Date: November 2016 Prerequisites Operating System Support The following Microsoft Operating Systems are supported with this release: Windows 10 32/64 bit Windows 8.x 32/64

More information

Series 1000 / G Cellular Modem / Router. Firmware Release Notes

Series 1000 / G Cellular Modem / Router. Firmware Release Notes Series 1000 / 2000 3G Cellular Modem / Router Firmware Release Notes Document Number: 0013-001-000138 () Firmware Version: v1.42 Dcoumentation Control Generation Date: October 29, 2010 Cybertec Pty Limited

More information

Administrator's Guide

Administrator's Guide Administrator's Guide Contents Administrator's Guide... 7 Using Web Config Network Configuration Software... 8 About Web Config... 8 Accessing Web Config... 8 Changing the Administrator Password in Web

More information

Release Notes. NCP Secure Enterprise Mac Client. 1. New Features and Enhancements. 2. Improvements / Problems Resolved. 3.

Release Notes. NCP Secure Enterprise Mac Client. 1. New Features and Enhancements. 2. Improvements / Problems Resolved. 3. NCP Secure Enterprise Mac Client Service Release 2.05 Rev. 32317 Date: January 2017 Prerequisites Apple OS X Operating System: The following Apple OS X operating system versions are supported with this

More information

NCP Secure Managed Android Client Release Notes

NCP Secure Managed Android Client Release Notes Service release: 4.11 r42317 Date: January 2019 Prerequisites Android 9 to Android 4.4 Prerequisites for the central management via Secure Enterprise Management (SEM) To manage the client software centrally

More information

Pulse Secure Desktop Client

Pulse Secure Desktop Client Pulse Secure Desktop Client Release Notes Release, Build Published Revision 5.1R6, 61491 October 2015 1.0 Table of Contents Introduction 3 Interoperability and Supported Platforms 3 Problems Resolved in

More information

Pre-Installation Recommendations... 1 Platform Compatibility... 1 New Features... 2 Known Issues... 2 Resolved Issues... 3 Troubleshooting...

Pre-Installation Recommendations... 1 Platform Compatibility... 1 New Features... 2 Known Issues... 2 Resolved Issues... 3 Troubleshooting... Global VPN Client SonicWALL Global VPN Client 4.6.4 Contents Pre-Installation Recommendations... 1 Platform Compatibility... 1 New Features... 2 Known Issues... 2 Resolved Issues... 3 Troubleshooting...

More information

Series 5000 ADSL Modem / Router. Firmware Release Notes

Series 5000 ADSL Modem / Router. Firmware Release Notes Series 5000 ADSL Modem / Router Firmware Release Notes Document Number: 0013-001-000201 () Firmware Version: v1.49 Dcoumentation Control Generation Date: April 5, 2012 Cybertec Pty Limited All rights Reserved.

More information

Aruba Central Switch Configuration

Aruba Central Switch Configuration Aruba Central Switch Configuration User Guide Copyright Information Copyright 2017Hewlett Packard Enterprise Development LP. Open Source Code This product includes code licensed under the GNU General Public

More information

Table of Contents 1 IKE 1-1

Table of Contents 1 IKE 1-1 Table of Contents 1 IKE 1-1 IKE Overview 1-1 Security Mechanism of IKE 1-1 Operation of IKE 1-1 Functions of IKE in IPsec 1-2 Relationship Between IKE and IPsec 1-3 Protocols 1-3 Configuring IKE 1-3 Configuration

More information

CLEARPASS CONFIGURING IPsec TUNNELS

CLEARPASS CONFIGURING IPsec TUNNELS TECHNICAL NOTE CLEARPASS CONFIGURING IPsec TUNNELS Revised By Date Changes Jerrod Howard Nov 2015 Draft Controller to ClearPass Tech Note Dennis Boas Dennis Boas Jan 2016 Version 1 1344 CROSSMAN AVE SUNNYVALE,

More information

Release Notes. NCP Secure Enterprise Mac Client. 1. New Features and Enhancements. 2. Improvements / Problems Resolved. 3.

Release Notes. NCP Secure Enterprise Mac Client. 1. New Features and Enhancements. 2. Improvements / Problems Resolved. 3. NCP Secure Enterprise Mac Client Service Release 2.05 Build 14711 Date: December 2013 Prerequisites Apple OS X Operating System: The following Apple OS X operating system versions are supported with this

More information

Configuring Security for VPNs with IPsec

Configuring Security for VPNs with IPsec This module describes how to configure basic IPsec VPNs. IPsec is a framework of open standards developed by the IETF. It provides security for the transmission of sensitive information over unprotected

More information

Junos Pulse 2.1 Release Notes

Junos Pulse 2.1 Release Notes Access Solutions Junos Pulse 2.1 Release Notes Junos Pulse Build# 14305 Secure Access Build# 7.1R5 JWOS Build# 6.2R1.4 Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, CA 94089 USA 408 745

More information

ArubaOS FIPS. Release Notes

ArubaOS FIPS. Release Notes ArubaOS 6.1.4.8-FIPS Release Notes Copyright 2014 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the Mobile Edge Company logo, Aruba

More information

AT&T Global Network Client for Mac User s Guide Version 2.0.0

AT&T Global Network Client for Mac User s Guide Version 2.0.0 Version 1.7.0 AT&T Global Network Client for Mac User s Guide Version 2.0.0 experience may vary. This document is not an offer, commitment, representation or warranty by AT&T and is subject to change..

More information

NetIQ SecureLogin 8.7 enhances the product capability and resolves several previous issues.

NetIQ SecureLogin 8.7 enhances the product capability and resolves several previous issues. NetIQ SecureLogin 8.7 Release Notes December 2018 NetIQ SecureLogin 8.7 enhances the product capability and resolves several previous issues. Many of these improvements were made in direct response to

More information

Viewing System Status, page 404. Backing Up and Restoring a Configuration, page 416. Managing Certificates for Authentication, page 418

Viewing System Status, page 404. Backing Up and Restoring a Configuration, page 416. Managing Certificates for Authentication, page 418 This chapter describes how to maintain the configuration and firmware, reboot or reset the security appliance, manage the security license and digital certificates, and configure other features to help

More information

This version of the des Secure Enterprise MAC Client can be used on Mac OS X 10.7 Lion platform.

This version of the des Secure Enterprise MAC Client can be used on Mac OS X 10.7 Lion platform. NCP Secure Enterprise MAC Client Service Release 2.02 Build 11 Date: August 2011 1. New Feature Compatibility to Mac OS X 10.7 Lion This version of the des Secure Enterprise MAC Client can be used on Mac

More information

Configuration of Shrew VPN Client on RV042, RV042G and RV082 VPN Routers through Windows

Configuration of Shrew VPN Client on RV042, RV042G and RV082 VPN Routers through Windows Configuration of Shrew VPN Client on RV042, RV042G and RV082 VPN Routers through Windows Objective A Virtual Private Network (VPN) is a method for remote users to virtually connect to a private network

More information

Administrator's Guide

Administrator's Guide Administrator's Guide Contents Administrator's Guide... 7 Using Web Config Network Configuration Software... 8 About Web Config... 8 Accessing Web Config... 8 Changing the Administrator Password in Web

More information

MDS Orbit MCR/ECR COVERING FIRMWARE REV 6.1.2

MDS Orbit MCR/ECR COVERING FIRMWARE REV 6.1.2 PRODUCT RELEASE NOTES Rev U RELEASE NOTE For: MDS ORBIT MCR/ECR Firmware Version 6.1.2 RELEASE DATE: May 12, 2017 Overview 2017 GE MDS LLC, 175 Science Parkway, Rochester, NY 14620 USA Phone +1 (585) 242-9600,

More information

Pulse Secure Mobile Android Release 6.3.0

Pulse Secure Mobile Android Release 6.3.0 Pulse Secure Mobile Android Release 6.3.0 Pulse Secure Mobile 6.3R1 for Android (build # 6.3.0. r235864.19) Pulse Secure Client Release 6.3R1 Document Revision 1.0 Published: 2017-07-10 2017 by Pulse Secure,

More information

Aruba VIA 3.x (for ArubaOS 6.5.x)

Aruba VIA 3.x (for ArubaOS 6.5.x) Aruba VIA 3.x (for ArubaOS 6.5.x) a Hewlett Packard Enterprise company User Guide Copyright Information Copyright 2018 Hewlett Packard Enterprise Development LP. Open Source Code This product includes

More information

Series 1000 / G Cellular Modem / Router. Firmware Release Notes

Series 1000 / G Cellular Modem / Router. Firmware Release Notes Series 1000 / 2000 3G Cellular Modem / Router Firmware Release Notes Document Number: 0013-001-000138 () Firmware Version: v1.40 Dcoumentation Control Generation Date: April 28, 2010 Cybertec Pty Limited

More information

SSL VPN - IPv6 Support

SSL VPN - IPv6 Support The feature implements support for IPv6 transport over IPv4 SSL VPN session between a client, such as Cisco AnyConnect Mobility Client, and SSL VPN. Finding Feature Information, on page 1 Prerequisites

More information

Data Sheet. NCP Secure Enterprise macos Client. Next Generation Network Access Technology

Data Sheet. NCP Secure Enterprise macos Client. Next Generation Network Access Technology Universal, centrally managed VPN Client Suite for macos/os X Central Management and Network Access Control Compatible with VPN Gateways (IPsec Standard) Integrated, dynamic Personal Firewall VPN Path Finder

More information

Juniper Networks Access Control Release Notes

Juniper Networks Access Control Release Notes Juniper Networks Access Control Release Notes Unified Access Control 4.4R8 UAC Build # 23799 OAC Version 5.60.23799 This is an incremental release notes describing the changes made from C4.4R1 release

More information

Use Shrew Soft VPN Client to Connect with IPSec VPN Server on RV130 and RV130W

Use Shrew Soft VPN Client to Connect with IPSec VPN Server on RV130 and RV130W Use Shrew Soft VPN Client to Connect with IPSec VPN Server on RV130 and RV130W Objective IPSec VPN (Virtual Private Network) enables you to securely obtain remote resources by establishing an encrypted

More information

SSL VPN - IPv6 Support

SSL VPN - IPv6 Support The feature implements support for IPv6 transport over IPv4 SSL VPN session between a client, such as Cisco AnyConnect Mobility Client, and SSL VPN. Finding Feature Information, page 1 Prerequisites for,

More information

HP Instant Support Enterprise Edition (ISEE) Security overview

HP Instant Support Enterprise Edition (ISEE) Security overview HP Instant Support Enterprise Edition (ISEE) Security overview Advanced Configuration A.03.50 Mike Brandon Interex 03 / 30, 2004 2003 Hewlett-Packard Development Company, L.P. The information contained

More information

Sophos Connect. help

Sophos Connect. help help Contents About... 1 Installing...1 Uninstalling... 1 Connections...3 Import connection... 3 Connect...4 Connection options...7 Events...9 Troubleshooting events... 10 General troubleshooting... 13

More information

Cradlepoint to Palo Alto VPN Example. Summary. Standard IPSec VPN Topology. Global Leader in 4G LTE Network Solutions

Cradlepoint to Palo Alto VPN Example. Summary. Standard IPSec VPN Topology. Global Leader in 4G LTE Network Solutions Cradlepoint to Palo Alto VPN Example Summary This configuration covers an IPSec VPN tunnel setup between a Cradlepoint Series 3 router and a Palo Alto firewall. IPSec is customizable on both the Cradlepoint

More information

Aruba Instant

Aruba Instant Aruba Instant 6.4.0.3-4.1.0.1 Release Notes Copyright 2014 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Networks, the registered Aruba the Mobile Edge Company

More information

Pulse Secure Client for Chrome OS

Pulse Secure Client for Chrome OS Pulse Secure Client for Chrome OS Quick Start Guide Published March, 2018 Release 5.2r1 Version 1.6 2018 by Pulse Secure, LLC. All rights reserved 1 Pulse Secure, LLC 2700 Zanker Road, Suite 200 San Jose,

More information

Aruba Central Guest Access Application

Aruba Central Guest Access Application Aruba Central Guest Access Application User Guide Copyright Information Copyright 2017Hewlett Packard Enterprise Development LP. Open Source Code This product includes code licensed under the GNU General

More information

RealPresence Access Director System Administrator s Guide

RealPresence Access Director System Administrator s Guide [Type the document title] Polycom RealPresence Access Director System Administrator s Guide 2.1.0 March 2013 3725-78703-001A Polycom Document Title 1 Trademark Information POLYCOM and the names and marks

More information

How to Configure Mobile VPN for Forcepoint NGFW TECHNICAL DOCUMENT

How to Configure Mobile VPN for Forcepoint NGFW TECHNICAL DOCUMENT How to Configure Mobile VPN for Forcepoint NGFW TECHNICAL DOCUMENT Table of Contents TABLE OF CONTENTS 1 BACKGROUND 2 WINDOWS SERVER CONFIGURATION STEPS 2 CONFIGURING USER AUTHENTICATION 3 ACTIVE DIRECTORY

More information

AppGate 11.0 RELEASE NOTES

AppGate 11.0 RELEASE NOTES Changes in 11.0 AppGate 11.0 RELEASE NOTES 1. New packet filter engine. The server-side IP tunneling packet filter engine has been rewritten from scratch, reducing memory usage drastically and improving

More information

NetExtender for SSL-VPN

NetExtender for SSL-VPN NetExtender for SSL-VPN Document Scope This document describes how to plan, design, implement, and manage the NetExtender feature in a SonicWALL SSL-VPN Environment. This document contains the following

More information

AT&T Global Network Client for Mac User s Guide Version 1.7.3

AT&T Global Network Client for Mac User s Guide Version 1.7.3 Version 1.7.0 AT&T Global Network Client for Mac User s Guide Version 1.7.3 experience may vary. This document is not an offer, commitment, representation or warranty by AT&T and is subject to change..

More information

Aruba Networks and AirWave 8.0

Aruba Networks and AirWave 8.0 Aruba Networks and AirWave 8.0 Controller Config Copyright 2014 Aruba Networks, Inc. Aruba Networks trademarks include, Aruba Networks, Aruba Wireless Net works, the registered Aruba the Mobile Edge Company

More information

Sophos Firewall Configuring SSL VPN for Remote Access

Sophos Firewall Configuring SSL VPN for Remote Access Sophos Firewall Configuring SSL VPN for Remote Access Product Version: 1 Document date: October 2014 Contents 1 Introduction 3 2 Configuring Sophos Firewall 4 2.1 Defining a User Account 4 2.2 Configuring

More information

Aventail Connect Client with Smart Tunneling

Aventail Connect Client with Smart Tunneling Aventail Connect Client with Smart Tunneling User s Guide Windows v8.9.0 1996-2007 Aventail Corporation. All rights reserved. Aventail, Aventail Cache Control, Aventail Connect, Aventail Connect Mobile,

More information

VI. Corente Services Client

VI. Corente Services Client VI. Corente Services Client Corente Release 9.1 Manual 9.1.1 Copyright 2014, Oracle and/or its affiliates. All rights reserved. Table of Contents Preface... 5 I. Introduction... 6 II. Corente Client Configuration...

More information

Grandstream Networks, Inc. GWN7000 Multi-WAN Gigabit VPN Router VPN Configuration Guide

Grandstream Networks, Inc. GWN7000 Multi-WAN Gigabit VPN Router VPN Configuration Guide Grandstream Networks, Inc. GWN7000 Multi-WAN Gigabit VPN Router VPN Configuration Guide Table of Contents SUPPORTED DEVICES... 5 INTRODUCTION... 6 GWN7000 VPN FEATURE... 7 OPENVPN CONFIGURATION... 8 OpenVPN

More information

In the event of re-installation, the client software will be installed as a test version (max 10 days) until the required license key is entered.

In the event of re-installation, the client software will be installed as a test version (max 10 days) until the required license key is entered. NCP Android Secure Managed Client can be commissioned for use in one of two environments: NCP Secure Enterprise Management as an NCP Secure Enterprise Android VPN Client or NCP Volume License Server as

More information

New in Secomea Release Nice to know information about this release: - Secomea TrustGate 16.0 build public Version: 1.

New in Secomea Release Nice to know information about this release: - Secomea TrustGate 16.0 build public Version: 1. New in Secomea Release 16.0 Nice to know information about this release: - Secomea TrustGate 16.0 build 17434 public 2017.10.28 Version: 1.0, 2017 NewInRelease16.0.docx Page 1 of 14 Contents 1. TrustGate

More information

Release Notes - Barracuda NAC/VPN Client for Windows

Release Notes - Barracuda NAC/VPN Client for Windows Release Notes - Barracuda NAC/VPN Client for Windows Before installing the new software version, back up your configuration and read all of the release notes that apply to the versions that are more current

More information

The EN-4000 in Virtual Private Networks

The EN-4000 in Virtual Private Networks EN-4000 Reference Manual Document 8 The EN-4000 in Virtual Private Networks O ne of the principal features of routers is their support of virtual private networks (VPNs). This document discusses transmission

More information

Integrating the Hardware Management Console s Broadband Remote Support Facility into your Enterprise

Integrating the Hardware Management Console s Broadband Remote Support Facility into your Enterprise System z Integrating the Hardware Management Console s Broadband Remote Support Facility into your Enterprise SC28-6880-00 System z Integrating the Hardware Management Console s Broadband Remote Support

More information

IKE and Load Balancing

IKE and Load Balancing Configure IKE, page 1 Configure IPsec, page 9 Load Balancing, page 22 Configure IKE IKE, also called ISAKMP, is the negotiation protocol that lets two hosts agree on how to build an IPsec security association.

More information

PMS 138 C Moto Black spine width spine width 100% 100%

PMS 138 C Moto Black spine width spine width 100% 100% Series MOTOROLA and the Stylized M Logo are registered in the US Patent & Trademark Office. All other product or service names are the property of their respective owners. 2009 Motorola, Inc. Table of

More information

Virtual Private Network. Network User Guide. Issue 05 Date

Virtual Private Network. Network User Guide. Issue 05 Date Issue 05 Date 2018-03-30 Contents Contents 1 Overview... 1 1.1 Concepts... 1 1.1.1 VPN... 1 1.1.2 IPsec VPN...1 1.2 Application Scenarios...2 1.3 Billing Standards... 3 1.4 VPN Reference Standards and

More information

Configuring OpenVPN on pfsense

Configuring OpenVPN on pfsense Configuring OpenVPN on pfsense Configuring OpenVPN on pfsense Posted by Glenn on Dec 29, 2013 in Networking 0 comments In this article I will go through the configuration of OpenVPN on the pfsense platform.

More information

VPN Overview. VPN Types

VPN Overview. VPN Types VPN Types A virtual private network (VPN) connection establishes a secure tunnel between endpoints over a public network such as the Internet. This chapter applies to Site-to-site VPNs on Firepower Threat

More information

Data Sheet. NCP Exclusive Remote Access Mac Client. Next Generation Network Access Technology

Data Sheet. NCP Exclusive Remote Access Mac Client. Next Generation Network Access Technology Centrally managed VPN Client Suite for macos/os X For Juniper SRX Series Central Management macos 10.13, 10.12, OS X 10.11, OS X 10.10 Dynamic Personal Firewall VPN Path Finder Technology (Fallback IPsec/HTTPS)

More information

Amigopod Release Notes. Updating to Amigopod Document Overview. Overview of the Update Process. Verify the System s Memory Limit

Amigopod Release Notes. Updating to Amigopod Document Overview. Overview of the Update Process. Verify the System s Memory Limit Amigopod 3.5.4 Release Notes This document contains release information for version 3.5.4 of the Aruba Amigopod visitor management appliance. Document Overview This document is organized into the following

More information

Encrypted Phone Configuration File Setup

Encrypted Phone Configuration File Setup This chapter provides information about encrypted phone configuration files setup. After you configure security-related settings, the phone configuration file contains sensitive information, such as digest

More information

Cisco Terminal Services (TS) Agent Guide, Version 1.1

Cisco Terminal Services (TS) Agent Guide, Version 1.1 First Published: 2017-05-03 Last Modified: 2017-10-13 Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800 553-NETS (6387)

More information

Pulse Connect Secure. Network Connect and Windows Secure Access Manager (WSAM) Error Messages. Product Release 8.1

Pulse Connect Secure. Network Connect and Windows Secure Access Manager (WSAM) Error Messages. Product Release 8.1 Pulse Connect Secure Network Connect and Windows Secure Access Manager (WSAM) Error Messages Product Release 8.1 Document Revision 1.0 Published: 2015-02-10 2015 by Pulse Secure, LLC. All rights reserved

More information

ipassconnect 3.65 Release Notes

ipassconnect 3.65 Release Notes ipassconnect 3.65 Release Notes Version 1.0, October 2008 Version History Version Date Notes 1.0 October 2008 General release availability document Introduction This document contains the latest information

More information

Release Notes. NCP Android Secure Managed Client. 1. New Features and Enhancements. 2. Improvements / Problems Resolved. 3.

Release Notes. NCP Android Secure Managed Client. 1. New Features and Enhancements. 2. Improvements / Problems Resolved. 3. NCP Android Secure Managed Client can be commissioned for use in one of two environments: NCP Secure Enterprise Management, or NCP Volume License Server. Release: 2.32 build 067 Date: May 2013 1. New Features

More information

Data Sheet NCP Exclusive Remote Access Client Windows

Data Sheet NCP Exclusive Remote Access Client Windows Centrally Administrable VPN Client Suite for Windows For Juniper SRX Series Central Management Microsoft Windows 10, 8.x, 7 and Vista Dynamic Personal Firewall VPN Bypass VPN Path Finder Technology (Fallback

More information

Contents. Configuring SSH 1

Contents. Configuring SSH 1 Contents Configuring SSH 1 Overview 1 How SSH works 1 SSH authentication methods 2 SSH support for Suite B 3 FIPS compliance 3 Configuring the device as an SSH server 4 SSH server configuration task list

More information

Manual Overview. This manual contains the following sections:

Manual Overview. This manual contains the following sections: Table of Contents Manual Overview This manual contains the following sections: Section 1 - Product Overview describes what is included with the DIR-130 router, and things to consider before installing

More information

How to Configure the Barracuda VPN Client for Windows

How to Configure the Barracuda VPN Client for Windows How to Configure the Barracuda VPN Client for Windows Barracuda VPN Control is the user interface of the VPN Client for Windows for configuring VPN profiles and Barracuda VPN adapter settings as well as

More information

ZyWALL 70. Internet Security Appliance. Quick Start Guide Version 3.62 December 2003

ZyWALL 70. Internet Security Appliance. Quick Start Guide Version 3.62 December 2003 ZyWALL 70 Internet Security Appliance Quick Start Guide Version 3.62 December 2003 Introducing the ZyWALL The ZyWALL 70 is the ideal secure gateway for all data passing between the Internet and the LAN.

More information

IPsec NAT Transparency

IPsec NAT Transparency sec NAT Transparency First Published: November 25, 2002 Last Updated: March 1, 2011 The sec NAT Transparency feature introduces support for Security (sec) traffic to travel through Network Address Translation

More information

AOS-W 6.4. Quick Start Guide. Install the Switch. Initial Setup Using the WebUI Setup Wizard

AOS-W 6.4. Quick Start Guide. Install the Switch. Initial Setup Using the WebUI Setup Wizard AOS-W 6.4 Quick Start Guide This document describes the initial setup of an Alcatel-Lucent user-centric network that consists of an Alcatel-Lucent switch and Alcatel-Lucent Access Points (APs). The installation

More information

Table of Contents. Cisco Cisco VPN Client FAQ

Table of Contents. Cisco Cisco VPN Client FAQ Table of Contents Cisco VPN Client FAQ...1 Document ID: 45102...1 Questions...1 Introduction...2 Q. Why does the VPN Client disconnect after 30 minutes? Can I extend this time period?...2 Q. I upgraded

More information