Issues Fixed Since 3.0.8-08:
- If DUT has a user is the same to External Authentication server user,ssl vpn authenticate failed with the External Authentication server user.
- Use SSL VPN Wizard configration the "Port Forwarding" page appear null record.
- When use the SSL VPN Wizard configration,the input box always exist record.
- Device is displaying null entry in "List of configured Host names for port forwarding" in port forwarding page if port forwarding is not selected through ssl wizard.
Issues Fixed Since 3.0.8-06:
- Respond to ping on WAN interface for ANY IP and a single IP Address.
- Idle timeout field is NOT needed for IPSec users.
- Cannot add a ipsec user with space.
- After adding Secondary LAN IP , IP Address and Subnet mask aren't blank.
- After changing gateway vpn to client vpn,the tunnel cannot be up.
- IPSec policy lose when remote id is 0.0.0.0 after DUT reboot.
- Increase this month limit can't disable.
- The reboot time ummatch between popup message and the reboot page.
- In "SSL VPN" page can't find the PPTP/L2TP server jump links.
- If LDAP username is the same as the local database, ssl vpn login failed.
- SRX5308 NTP logs needs to remove debug logs.
- Edit the name for "service group" unsuccessfully.
Issues Fixed Since 3.0.7-43:
- Remote Management - Restrict incoming https administration from the WAN to certain addresses and/or address range(s).
- Customer service table max. to 56.
- DHCP log can be sent to Syslog Server.
- Customize client ID for M12 products.
- Add the ability to group multiple LAN or WAN IP addresses into an IP group for use in firewall rule creation.
- Does not allow the admin to modify an existing IKE policy while it is in use.
- Support SNMPv3.
- FW default drop down list should be same for all products.
- Show IPSec tunnel UP time.
- Remote Management.
- When setup a WAN connection it resets all the WAN connections.
- DHCP Server is wrong , when add a secondary LAN IP.
- Add a inbound rule,when WAN Destination IP Address is range,At that time,wan client access dut wan ip address,connect success.
- IPSec connection status displays "connect" instead of "drop" when SA is in expiring state.
- Traffic metering increase this monthly limit is not getting uncheck.
- Ability to restore the router to boot with the Secondary Firmware image.
- Increase to 24 Secondary IP's to a WAN interface.
- Should allow user to configure email port.
- Remote site through IPSec VPN tunnel can go to Internet by local another WAN interface.
- System Log page need add DHCP log check box.
- Need add Customer SMTP port.
- Email notifications to multiple addresses.
- When use Qos rate control, inbound and outbound conflict issue.
- Send E-mail logs by Schedule, If the schedule is set to 'never',have send any automatic mails.
- All traffic cannot go through IPSec tunnel.
- User can login from Firefox and Opera after reboot when Deny Login from Defined Browsers including Firefox and Opera.
- When E-Mail Server Address is domain name,reboot dut,can't save E-Mail Logs configure.
- Add PPTP/L2TP server.
- SRX5308 static route support up to 300.
- If DUT has a username is the same to ladp username, ssl vpn authenticate failed with the ldap username(duplicate of 1085).
- Support for IGMP in Load Balancing mode.
- When setup a WAN connection it resets all the WAN connections.
Known Issues and limitations:
- In "Edit Lan Groups" page, ip validation javascript error message is wrong.
- Unable to delete the configured host names in port forwarding if the number of characters are more than 50.
- Able to add static routes though the wan interface is down.
- HTTP traffic is not running when port forwarding tunnel is established using Firefox. - workaround available.
- User cannot be deleted when user name contains character: + and not showing user name in edit page.
- Routing entry added for WAN-ETHERNET interface showing as WAN-VIRTUAL interface.
- Routes are getting added on Virtual and ethernet interfaces, when connected as DHCP and PPPoE respectively.
- When changing 'Select User Type' from 'Administrator' to 'SSL VPN User', DUT is not showing error message.
- Reboot screen after upgrade is not showing the DUT name.
- IGMP information need to be updated in attack check help page.
- PPTP idle time out is not working when IGMP proxy enabled.
- Bandwidth profile is not working over vpn tunnel.
- SIP clients at other end of tunnel are unable to register through VPN tunnel when SIP server is in LAN side of DUT.
- For blocking keyword "co", and trusted domain google.co.in, user is not able to open https://google.co.in and http://gmail.com.
- HTTPS port is notified even when the Stealth mode is enabled.
- Session expiry - default timeout value is 5min, but it takes 10min to take effect.
Installation Instructions:
- Download the link below and save it to a convenient place such as your desktop.
Note: Reboot the firewall before begining the update process.
- Select Administration > Settings Backup and Firmware Upgrade from the main/submenu.
- In the Router Upgrade section, click Browse.
- Locate the downloaded file and click Upload.
This will start the software upgrade to your VPN firewall. This may take some time. Do not interrupt the upgrade process.
At the conclusion of the upgrade, your firewall will reboot.