Sonicos Enhanced 5.3.0.1 Release Notes, Rev B
Total Page:16
File Type:pdf, Size:1020Kb
SonicOS SonicOS Enhanced 5.3.0.1 Release Notes Contents Platform Compatibility ................................................................................................................................................... 1 Known Issues ................................................................................................................................................................ 2 Resolved Issues ............................................................................................................................................................ 3 Upgrading SonicOS Enhanced Image Procedures....................................................................................................... 4 Related Technical Documentation .............................................................................................................................. 11 Platform Compatibility The SonicOS Enhanced 5.3.0.1 release is supported on the following SonicWALL security appliances: • SonicWALL NSA E7500 • SonicWALL NSA E6500 • SonicWALL NSA E5500 • SonicWALL NSA 5000 • SonicWALL NSA 4500 • SonicWALL NSA 3500 • SonicWALL NSA 2400 • SonicWALL NSA 240 • SonicWALL TZ 210 • SonicWALL TZ 210 Wireless-N • SonicWALL TZ 200 • SonicWALL TZ 200 Wireless-N • SonicWALL TZ 100 • SonicWALL TZ 100 Wireless-N This release currently supports the following USB devices: • Sierra Wireless Mercury C885 • Novatel 760 (Verizon) • Novatel 760 (Sprint) • Huawei E220 • Huawei 176 • Novatel U727 • Zoom USB Analog modem • US Robotics V.92 Analog modem For a complete list of supported 3G cards and USB devices, see: http://www.sonicwall.com/us/products/cardsupport.html This release supports the following Web browsers: • Microsoft Internet Explorer 6.0 and higher • Mozilla Firefox 2.0 and higher • Netscape 9.0 and higher • Opera 9.10 and higher for Windows • Safari 2.0 and higher for MacOS NOTE: On SonicWALL TZ 210 series appliances, reboot before upgrading from SonicOS Enhanced 5.1.x.x to any other version of SonicOS Enhanced. See issue #75987 below. SonicOS Enhanced 5.3.0.1 Release Notes P/N 232-001604-00 Rev B Known Issues This section contains a list of known issues in the SonicOS Enhanced 5.3.0.1 release. Anti-Spyware Symptom Condition / Workaround Issue Spyware is not consistently blocked or allowed Occurs when "Included IP Address Range", 79379 according to configuration settings on the "Excluded IP Address Range", "Included category or signature configuration window. Users/Groups", "Excluded users/Groups " and "Schedule" are set on the category or signature configuration window, but are not applied correctly to include or exclude the address range, users, or groups. Instead these settings are only applied in specific cases, such as when a user of the included or excluded type is actually logged in. Networking Symptom Condition / Workaround Issue The static management IP address of an Occurs when the interface is reconfigured for 78593 interface is removed from the Network > Portshield Switch Mode to another interface, and Address Objects list after reconfiguring the IP then is reconfigured again back to static mode. settings mode and then reverting it. Upgrading Symptom Condition / Workaround Issue On TZ 210 Series appliances only, upgrading Occurs when a steady flow of traffic is passing 75987 from SonicOS Enhanced 5.1.3.2 to SonicOS through the TZ 210 Series appliance or TZ 210 Enhanced 5.3.0.x fails under certain Series HA pair at the same time that the upgrade circumstances. is attempted. Workaround: Restart the TZ 210 Series appliance, or both appliances in an HA pair, and then perform the upgrade. VPN Symptom Condition / Workaround Issue A Firewall access rule allowing DHCP clients Occurs when a Firewall access rule allowing 78597 access from the LAN to the VPN is not DHCP clients access from the LAN to the VPN is automatically updated when the zone is first automatically created when a VPN policy is changed. created and the Local network obtains IP addresses using DHCP through this VPN Tunnel option is selected, and then the zone is changed from LAN to DMZ on the interface to which the DHCP lease is bound. SonicOS Enhanced 5.3.0.1 Release Notes P/N 232-001604-00 Rev B 2 Wizard Symptom Condition / Workaround Issue The Portshield Wizard can unassign an Occurs when the SSL VPN client IP address pool 79052 interface which is bound to the SSL VPN client is configured on an interface, such as X2, and IP address pool without displaying a warning. then the Portshield Wizard is used to configure When a NetExtender client then attempts to Portshield interfaces with the WAN/LAN/HA connect, the client connects at first, but is setting. The X2 interface is silently unassigned by disconnected after a few seconds. the Wizard. The VPN Wizard does not display the option for Occurs when configuring a WAN Group VPN 78857 you to select a network for Unauthenticated policy and not enabling User Authentication. VPN Client Access. Resolved Issues This section contains a list of issues that are resolved in the SonicOS Enhanced 5.3.0.1 release. 3G Symptom Condition / Workaround Issue Sprint Novatel 3G USB cards do not allow Occurs when attempting to use a Sprint Novatel 79481 access to the Internet. 3G USB card to register the SonicWALL appliance and browse HTTPS websites on the WWAN connection. System Symptom Condition / Workaround Issue Importing system settings can cause the Occurs in certain cases when importing settings 79397 appliance to get a task suspended error. with schedules and getting an error in the schedule timer task. A stack trace is displayed on the console of a Occurs when a Sierra Wireless 880/881 3G card 79531 SonicWALL NSA 240, after which the appliance is plugged into the appliance while it is powered reboots and then functions correctly. off, and then it is powered on. As soon as the appliance comes up, the stack trace appears. SonicOS Enhanced 5.3.0.1 Release Notes P/N 232-001604-00 Rev B 3 Upgrading SonicOS Enhanced Image Procedures The following procedures are for upgrading an existing SonicOS Enhanced image to a newer version: Obtaining the Latest SonicOS Enhanced Image Version ............................................................................................. 4 Saving a Backup Copy of Your Configuration............................................................................................................... 4 Importing Preferences to SonicOS Enhanced 5.3 ........................................................................................................ 4 Importing Preferences from SonicOS Standard to SonicOS Enhanced 5.3 ................................................................. 5 Support Matrix for Importing Preferences ..................................................................................................................... 6 Upgrading a SonicOS Enhanced Image with Current Preferences .............................................................................. 9 Upgrading a SonicOS Enhanced Image with Factory Defaults .................................................................................... 9 Using SafeMode to Upgrade Firmware....................................................................................................................... 10 Obtaining the Latest SonicOS Enhanced Image Version To obtain a new SonicOS Enhanced firmware image file for your SonicWALL security appliance: 1. Connect to your mysonicwall.com account at http://www.mysonicwall.com. 2. Copy the new SonicOS Enhanced image file to a directory on your management station. You can update the SonicOS Enhanced image on a SonicWALL security appliance remotely if the LAN interface or the WAN interface is configured for management access. Saving a Backup Copy of Your Configuration Before beginning the update process, export the configuration settings for your SonicWALL security appliance. The Export Settings option saves your current configuration settings by exporting the configuration preferences file to a directory on your local management station. This file serves as an external backup of the configuration preferences, and can be imported back into the SonicWALL security appliance in the event that it becomes necessary to return to a previous configuration state. Perform the following step to export your configuration settings to a file on your local management station: 1. On the System > Settings page of the SonicWALL appliance management interface, click Export Settings to export your settings to a local file on your management computer. A popup window displays the name of the saved file. Importing Preferences to SonicOS Enhanced 5.3 Preferences importing to the SonicWALL TZ 210 Series appliances is generally supported from the following SonicWALL appliances running SonicOS Enhanced: • NSA Series • NSA E-Class Series • TZ 210/190/180/170 Series • PRO Series There are certain exceptions to preferences importing on these appliances running the SonicOS Enhanced 5.3.0.1 release. Preferences cannot be imported in the following cases: • Settings files containing Portshield interfaces created prior to SonicOS 5.x • Settings files containing VLAN interfaces are not accepted by the TZ 210 Series firewalls • Settings files from a PRO 5060 with optical fiber interfaces where VLAN interfaces have been created Full support for preferences importing from these appliances is targeted for a future release. At that time, you will need to upgrade your firmware to the latest SonicOS Enhanced maintenance release