SonicOS Enhanced Release Notes SonicWALL, Inc. Software Release: May 14, 2007

Similar documents
SonicOS Enhanced TZ 190 Series Early Field Trial Release Notes SonicWALL, Inc. EFT Release: May 22, 2007

Platform Compatibility

SonicOS Enhanced Release Notes

SonicOS Enhanced Release Notes

SonicOS Release Notes

Platform Compatibility... 1 Enhancements... 2 Known Issues... 3 Upgrading SonicOS Enhanced Image Procedures... 3 Related Technical Documentation...

SonicOS Enhanced Release Notes

SonicOS Enhanced Release Notes

Key Features... 2 Known Issues... 3 Resolved Issues... 5 Upgrading SonicOS Enhanced Image Procedures... 6 Related Technical Documentation...

SonicOS Enhanced Release Notes

SonicOS Enhanced Release Notes SonicWALL, Inc. Software Release: February 6, 2006

SonicOS Enhanced Release Notes SonicWALL, Inc. Software Release: February 8, 2007

Symptom Condition / Workaround Issue Full domain name is not resolved by the RDP- ActiveX Client.

SonicOS Standard Release Notes SonicWALL, Inc. Software Release: June 4, 2009

Symptom Condition / Workaround Issue No validation is provided for name and IP address fields when creating bookmarks.

SonicWALL SSL VPN 2.5 Early Field Trial

SonicOS Standard Release Notes SonicWALL Secure Anti-Virus Router 80 Series SonicWALL, Inc. Software Release: March 15, 2007

Contents. Platform Compatibility. New Features. Secure Remote Access SonicWALL SSL VPN 2.5 Early Field Trial (EFT) for SSL-VPN 200

SonicOS Enhanced Release Notes

Release Notes. Dell SonicWALL SRA Release Notes

SonicOS Release Notes

Release Notes. Dell SonicWALL SRA Release Notes

Release Notes Dell SonicWALL SRA Contents Platform Compatibility Licensing on the SRA Appliances and Virtual Appliance

Dell SonicWALL SonicOS 6.2

July SonicWall SonicOS 6.2 Upgrade Guide

SonicWall SonicOS 5.9

SonicOS Enhanced Release Notes

SonicOS Release Notes

Dell SonicWALL SonicOS 5.9 Upgrade Guide

SonicWALL Security Appliances. SonicWALL SSL-VPN 200 Getting Started Guide

Contents. Platform Compatibility. Beta SonicOS Enhanced Release Notes for NSA Series. SonicOS

SonicWALL NSA Getting Started Guide

Getting Started Guide

High Availability on the SonicWALL TZ 210

SonicOS Enhanced Release Notes SonicWALL, Inc. Firmware Release: November 3, 2008

Dell SonicWALL SonicOS

SonicOS Release Notes

Setting Up Hardware Failover

User Manual DIR-850L. Wireless AC1200 Dual Band Gigabit Router.

Multi-Function Wireless A/P Router User s Guide

SonicWALL NSA 240 Getting Started Guide

Release Notes. Release Purpose... 1 Platform Compatibility... 1 Upgrading Information... 1 Browser Support... 2 Known Issues... 3 Resolved Issues...

CHAPTER 7 ADVANCED ADMINISTRATION PC

IP806GA/GB Wireless ADSL Router

Release Notes ( ) Digi TransPort LR Product Family

AT&T USBConnect Lightning Quickstart

Platform Compatibility... 1 Known Issues... 1 Resolved Issues... 2 Deploying the SRA Virtual Appliance... 3 Related Technical Documentation...

TZ 170 Quick Start Guide

Pre-Installation Recommendations... 1 Platform Compatibility... 1 New Features... 2 Known Issues... 2 Resolved Issues... 3 Troubleshooting...

Release Notes. Release Purpose... 1 Platform Compatibility... 1 Upgrading Information... 1 Browser Support... 1 Known Issues... 2 Resolved Issues...

EN-1000 Quick Configuration Guide

SonicWALL TZ 150 Wireless. Getting Started Guide

WRE6606. User s Guide. Quick Start Guide. Dual-Band Wireless AC1300 Access Point. Default Login Details. Version 1.00 (ABDU.0) Edition 1, 10/2016

High Speed Cable Modem

SonicWALL strongly recommends you follow these steps before installing Global VPN Client (GVC) 4.0.0:

IP Address and Pre-configuration Information

Contents. Platform Compatibility. Directory Connector SonicWALL Directory Services Connector 3.1.7

Voice Cable Modem User Manual

SonicWALL TZ 150 Getting Started Guide

LevelOne FBR User s Manual. 1W, 4L 10/100 Mbps ADSL Router. Ver

EN-2000 Quick Configuration Guide

LAN-Cell 3. Quick Start Guide

SonicWall SonicOS

Release Note _Netcomm_3G17Wn_10180 FW Information

Voice Cable Modem User Manual

CM500 High Speed Cable Modem User Manual

3G18WN Firmware Release Notes

Contents. Platform Compatibility. Directory Connector SonicWALL Directory Services Connector 3.1.7

Broadband Router DC-202. User's Guide

Nighthawk Multi-Gig Speed Cable Modem User Manual

SonicWALL / Toshiba General Installation Guide

IP Address and Pre-configuration Information

Quick Installation Guide

SOHO 6 Wireless Installation Procedure Windows XP with Internet Explorer 5.x & 6.0

SonicWALL strongly recommends you follow these steps before installing Global VPN Client (GVC) 4.1.0:

LevelOne WBR User s Manual. 11g Wireless ADSL VPN Router. Ver

High Speed Cable Modem

Dell SonicWALL SonicOS

NetExtender for SSL-VPN

LevelOne Broadband Routers

LTE Modem Models LB1120 and LB1121 User Manual

CONFIGURING THE CX111 FOR THE SSG SERIES

RT-AC66U Dual Band 3x AC Gigabit Router

NBG-416N. Wireless N-lite Home Router. Default Login Details. IMPORTANT! READ CAREFULLY BEFORE USE.

SUPERSTACK 3 FIREWALL FIRMWARE VERSION RELEASE NOTES

SonicWall SuperMassive 9200/9400/9600

HG658 Home Gateway. User Guide HUAWEI TECHNOLOGIES CO., LTD.

WAP3205 v2. User s Guide. Quick Start Guide. Wireless N300 Access Point. Default Login Details. Version 1.00 Edition 2, 12/2012

ZyWALL 10W. Internet Security Gateway. Quick Start Guide Version 3.62 December 2003

CM500 High Speed Cable Modem User Manual

MultiModem rcell Intelligent Wireless Router. Quick Start Guide

Embedded NGX 8.1 Release Notes Post General Availability Version. November 2010

SonicWALL TZ 180 Wireless Recommends Guide

User Guide. MiFi 3G/4G Mobile Hotspot by Novatel Wireless Browser Interface.

Wireless LAN PC Card AWL-100. User Manual. Version 1.1 June BENQ Corporation

Table of Contents. Keyspan:USB Server - User Manual

User Manual. AC ac Wireless Access Point/Router. Model WAC124. NETGEAR, Inc.

4G LTE Module User Guide

MRD-310 MRD G Cellular Modem / Router Web configuration reference guide. Web configuration reference guide

Thank you for purchasing the Mobile WiFi. This Mobile WiFi brings you a high speed wireless network connection.

Transcription:

SonicOS Enhanced 3.6.0.4 Release Notes SonicWALL, Inc. Software Release: May 14, 2007 CONTENTS Platform Compatibility Enhancements Known Issues Resolved Known Issues in SonicOS Enhanced 3.6.0.4 Resolved Known Issues in SonicOS Enhanced 3.6.0.1 Key Features SonicWALL TZ 190 Hardware Feature Highlights Resetting the SonicWALL TZ 190 Using Safemode Related Technical Documentation PLATFORM COMPATIBILITY SonicOS Enhanced version 3.6.0.4 (3.6.0.4-30) is a supported release for the following platform: SonicWALL TZ 190 ENHANCEMENTS Strong SSL and TLS Encryption The internal SonicWALL web-server now only supports SSL version 3.0 and TLS with strong ciphers (128 bits or greater) when negotiating HTTPS management sessions. SSL implementations prior to version 3.0 and weak ciphers (symmetric ciphers less than 128 bits) are not supported. This heightened level of HTTPS security protects against potential SSLv2 roll-back vulnerabilities and ensures compliance with the Payment Card Industry (PCI) and other security and risk-management standards. TIP: By default, Mozilla Firefox 2.0 and Microsoft Internet Explorer 7.0 enable SSL 3.0 and TLS, and disable SSL 2.0. SonicWALL recommends using these most recent web browser releases. If you are using a previous release of these browsers, you should enable SSL 3.0 and TLS and disable SSL 2.0. In Internet Explorer, go to Tools > Internet Options, click on the Advanced tab, and scroll to the bottom of the Settings menu. In Firefox, go to Tools > Options, click on the Advanced tab, and then click on the Encryption tab. Page 1 of 14

KNOWN ISSUES The following is a list of known issues in the SonicOS Enhanced 3.6.0.4 release: 45335: Symptom: The Enable Remotely Triggered Dial-Out feature does not work with the Option Globetrotter GT Max card. Condition: Occurs when an incoming call is made to the Option wireless card. 45689: Symptom: Management traffic is not allowed through the WAN interface. Condition: Occurs when the WAN Connection Model is configured for WWAN only mode. Workaround: Configure the WAN Connection Model for Ethernet with WWAN Failover and force a failover to the WWAN by unplugging the Ethernet cable. 45797: Symptom: Runtime changes to WAN/WWAN probe settings do not always take effect until restart. Condition: Occurs when the default target not reachable and WAN probing fails. The WAN stays in the failover state even after probe monitoring is successful. Workaround: Reboot the SonicWALL security device. 46327: Symptom: The WWAN interface fails to re-associate with the wireless network after the WWAN card is reset. Condition: Occurs intermittently on a SonicWALL TZ 190 security appliance using a Novatel S620 or S720 WWAN adapter. RESOLVED KNOWN ISSUES IN SONICOS ENHANCED 3.6.0.4 The following is a list of resolved known issues in the SonicOS Enhanced 3.6.0.4 release: 45514: Symptom: On the Firewall > Services page, the HTTP and HTTPS services display uneditable port ranges of 1 65535 instead of the default ports 80 and 443. Because the HTTP and HTTPS ports are not configurable, it is not possible to block traffic for non-default ports. Condition: Occurs when the SonicWALL TZ 190 security appliance is rebooted. 46322: Symptom: Reducing the number of missed probes to redial setting below the defaults can cause a Cingular WWAN card to redial more often than desired. Condition: Occurs when the WWAN Interface Monitoring Setting values are reduced from the default values of: o Check Interface every 5 seconds o Re-establish connection after 6 missed intervals Workaround: Set the WWAN Interface Monitoring Setting to the following: o Check Interface every 6 seconds o Re-establish connection after 10 missed intervals 48244: Symptom: The SonicWALL TZ 190 security appliance spontaneously reboots into SafeMode in certain corner cases. Condition: Occurs when a BSP parameter is set incorrectly on appliances running SonicOS Enhanced 3.6.0.2. Page 2 of 14

RESOLVED KNOWN ISSUES IN SONICOS ENHANCED 3.6.0.1 The following is a list of resolved known issues in the SonicOS Enhanced 3.6.0.1 release: 45829: Symptom: The WWAN > Status page displays an incorrect Signal Strength for Sprint cards. For the Novatel cards, the Signal Strength may show Initializing even when it is receiving a signal and in a call. For the Novatel S720 card, the Signal Strength may always show Excellent even if signal is unavailable. Condition: Occurs when the firmware does not get a correct reading from a Sprint card when it queries the signal strength. 45846: Symptom: The TZ 190 can occasionally lose its Internet connection when manually changing the WAN Connection Model configuration from Ethernet Only to WWAN Only. This can cause the TZ 190 to restart. Condition: Occurs when the TZ 190 initially uses an Ethernet connection on the WAN port, and then fails over to the WWAN. The user interface might still show Connected for the WWAN status. 45876: Symptom: With Policy Based Routing configured, the TZ190 may restart once when you change the WAN Connection Model from WWAN Only to Ethernet Only. Condition: Occurs after the following steps: 1. Policy Based Routing is configured for the Ethernet WAN and OPT interfaces 2. The WAN Connection Model is set to WWAN-only 3. The security appliance is manually rebooted 4. The WAN Connection Model is changed to Ethernet-only 45912: Symptom: After a WAN failover, statistics for Probe Alternate Target always show Target Unavailable. Condition: Occurs when the WAN connection fails and then comes back up while probe monitoring is set to "Probe succeeds when both Main Target and Alternate Target respond" or "Probe succeeds when either Main Target or Alternate Target respond". 45915: Symptom: On the TZ 190, WWAN dialing failure can occur when using a Novatel S620 card. Condition: Occurs when the WWAN is forced to repeatedly terminate and redial (for example, every 60 seconds). This can occur when the Maximum Connection Time is set to one minute. 45924: Symptom: For Sprint wireless cards, the Active Band (Service Type) can be incorrectly reported as 'CDMA 1xRTT'. Condition: May occur when Sprint wireless cards are used. 45972: Symptom: The TZ 190 should be able to force PAP authentication on a per-profile basis. Condition: Need option on WWAN > Connection Profiles > Add/Edit Dialog > Parameters tab. 46054: Symptom: TZ 190 firmware version 3.6.0.0-20e does not send heartbeats to GMS. Condition: Occurs when doing HTTPS management, with syslog server port set to 3003. 46123: Symptom: Option Globetrotter HSDPA may become unusable. Condition: Occurs when subjected to certain high levels of traffic. 46175: Symptom: The user interface (UI) shows incorrect default connection parameters for UAE provider Etisalat. Condition: Occurs when you use the setup wizard or connection profile Add/Edit dialog to create a profile for the UAE provider Etisalat. Page 3 of 14

KEY FEATURES The following are the key features supported in SonicOS Enhanced 3.6: Wireless WAN Support SonicOS Enhanced 3.6 for the SonicWALL TZ 190 introduces support for 3G (Third Generation) and other Wireless WAN connections that utilize data connections over cellular networks. The Wireless WAN (WWAN) can be used for: WAN Failover to a connection that is not dependent on wire or cable. Temporary networks where a pre-configured connection may not be available, such as tradeshows and kiosks. Mobile networks, where the TZ 190 is based in a vehicle. Primary WAN connection where wire-based connections are not available and cellular is. Wireless WAN support requires a wireless card and a contract with a wireless network provider. Internet Service Providers (ISPs) and Data Plans You should carefully read and analyze the rate plans provided by various ISPs. Some ISPs fully endorse the use of WWAN cards in firewall/router type deployments, while other vendors specifically discourage such usage. You should read the full terms and conditions of each plan to determine whether your deployment is compatible with the ISP licensing requirements. In North America, Sprint specifically endorses the use of firewall/router deployments and offers true Unlimited Data plans. SonicWALL currently supports both the Novatel S620 and Novatel S720 cards on the Sprint network. Due to the flexibility of the data plans, SonicWALL highly recommends that you consider activating your unit with a Sprint service contract. Other ISPs may or may not endorse the use of WWAN cards in firewall/router deployments and may have more limited data plans that are either capped or charge by the amount of data transmitted. SonicOS Enhanced 3.6 and the TZ 190 support the following wireless network providers (this list is subject to change): Cingular Wireless H3G Sprint PCS Wireless Verizon Wireless Vodafone Telecom Italia Mobile Telefonica T-Mobile TDC Song Orange Page 4 of 14

SonicWALL Supported WWAN Cards Before installing your WWAN card, be sure to confirm that your card is on the SonicWALL approved card list. This section of the release notes contains the initial list of approved cards, which is subject to change. You can find updates to the list of approved WWAN cards on the SonicWALL Web site: http://www.sonicwall.com/products/tz190_details.html You should check the SonicWALL Web site frequently for updates to the supported card list. SonicOS Enhanced 3.6 and the SonicWALL TZ 190 currently support the following wireless cards: GSM Wireless Carriers (with the exception of Cingular) o Option GlobeTrotter HSDPA o Option GlobeTrotter GT MAX o Option GlobeTrotter GT MAX 7.2 Ready (new in SonicOS 3.6.0.2) o Sierra Wireless AirCard 860 CDMA Wireless Carriers (with the exception of Sprint and Verizon) o Novatel Wireless Merlin 620 o Novatel Wireless Merlin PC720 Cingular o Option GT Max o Option GT Max 3.6 (new in SonicOS 3.6.0.2) o Sierra Wireless AirCard 860 Sprint o Novatel Wireless Merlin S620 (Sprint Mobile Broadband Card) o Novatel Wireless Merlin S720 (Sprint Mobile Broadband Card) Verizon Wireless o Verizon Wireless V620 o Novatel Wireless Merlin V620 User Interface Features for WWAN Support This section provides a brief introduction to the WWAN user interface. For detailed information on configuring the WWAN, see the Configuring Wireless WAN and Configuring Interfaces chapters in the SonicOS Enhanced 3.6 Administrator s Guide, which is available at the SonicWALL support site: http://www.sonicwall.com/us/support.html Page 5 of 14

WWAN Interface configuration and management on the Network > Interfaces page of the SonicOS Enhanced 3.6 management interface: o On the Network > Interfaces page, you can click the configure icon in the Interface Settings table to open the WWAN Settings dialog box: Page 6 of 14

o You can click the Manage button in the Interface Settings table to disconnect, reconnect, or view statistics on the connection. WWAN Configuration on the WWAN pages of the SonicOS Enhanced 3.6 management interface: o WWAN > Status: Page 7 of 14

o WWAN > Settings Page 8 of 14

o WWAN > Advanced The Remotely Triggered Dial-out feature is only supported with the following hardware: Novatel S620/720 Sierra Wireless 860 o WWAN > Connection Profiles Page 9 of 14

o WWAN > Data Usage Page 10 of 14

PortShield Interfaces SonicOS Enhanced 3.6 introduces PortShield Interfaces for the TZ 190. A PortShield interface is a virtual interface with a set of ports assigned to it. You can configure a separate security context for each PortShield interface. Data Usage Limiting In SonicOS Enhanced 3.6, you can enable data usage limiting to automatically disable the WWAN interface when the specified data or time limit for the month has been reached. If your WWAN account has a monthly data or time limit, data usage limiting can help you avoid excessive billings or terms-ofservice violations. You can enable data limiting on a per-profile basis. Page 11 of 14

SONICWALL TZ 190 HARDWARE FEATURE HIGHLIGHTS WWAN: 1 PCMCIA slot for wireless cards WAN: 1 10/100 Ethernet port OPT: 1 10/100 Ethernet port LAN: 8 10/100 Ethernet ports The TZ 190 is a new platform. The TZ 190 runs SonicOS Enhanced, starting with SonicOS Enhanced 3.6. Page 12 of 14

RESETTING THE SONICWALL TZ 190 USING SAFEMODE If you are unable to connect to the SonicWALL security appliance s management interface, you can restart the SonicWALL security appliance in SafeMode. The SafeMode feature allows you to quickly recover from uncertain configuration states with a simplified management interface that includes the same settings available on the System > Settings page. To reset the SonicWALL security appliance, perform the following steps: 1. Connect your management station to a LAN port on the SonicWALL security appliance and configure your management station IP address with an address on the 192.168.168.0/24 subnet, such as 192.168.168.20. Note: The SonicWALL security appliance can also respond to the last configured LAN IP address in SafeMode. This is useful for remote management recovery or hands off recovery in a datacenter. 2. Use a narrow, straight object, like a straightened paper clip or a toothpick, to press and hold the reset button on the security appliance for five to ten seconds. The reset button is in a small hole next to the connector for the power supply. Reset Button TZ 190 Tip: If this procedure does not work while the power is on, turn the unit off and on while holding the reset button until the Test light starts blinking. The Test light starts blinking when the SonicWALL security appliance has rebooted into SafeMode. Page 13 of 14

3. Connect to the management interface: Point the Web browser on your management station to 192.168.168.168. The SafeMode management interface displays. 4. If you have made any configuration changes to the security appliance, make a backup copy of your current settings. Click Create Backup Settings. Note that this will overwrite any previous backup settings. 5. Try rebooting the SonicWALL security appliance with your current settings. Click the boot icon in the same line with Current Firmware. 6. After the SonicWALL security appliance has rebooted, try to open the management interface again. If you still cannot open the management interface, use the reset button to restart the appliance in SafeMode again. In SafeMode, restart the SonicOS image with the factory default settings. Click the boot icon in the same line with Current Firmware with Factory Default Settings. 7. After the SonicWALL security appliance has rebooted, try to open the management interface again. If you are able to connect, you can recreate your configuration or try to reboot with the backup settings: Restart the security appliance in SafeMode again, and click the boot icon in the same line with Current Firmware with Backup Settings. RELATED TECHNICAL DOCUMENTATION SonicWALL user guide reference documentation is available at the SonicWALL Technical Documentation Online Library: http://www.sonicwall.com/us/support.html SonicOS Enhanced 3.6 Administrator s Guide SonicOS Log Event Reference Guide SonicOS CLI Reference Guide Document Version: May 14, 2007 Page 14 of 14