Take 80 - Ongoing

List of Resolved Issues and New Features

Note - This Take contains all fixes from all earlier Takes.

ID

Product

Description

Take 80

Released on 27 May 2019

PRJ-96,
PRHF-2762

Security Management

In some scenarios, the postgres.elg file grows and fills up the disk space. Refer to sk143852.

PMTR-34832,
CPM-2137

Security Management

In a rare scenario, policy installation from a previous revision fails with "Internal error".

PMTR-27539,
PMTR-27797

Multi-Domain Management

False message "peer <name> failed to synchronized me" appears in Multi-Domain Server HA window although machines are successfully synced. Refer to sk151392.

PMTR-35703,
PRHF-3127

SmartConsole

"Legacy URL Filtering not supported" error pops up when installing policy.. Refer to sk110116.

PMTR-25295,
PMTR-14661

SmartConsole

"SessionInWorkLoginException" error when using the API "discard" to discard a connected session other than the current session. Refer to sk142534.

PMTR-30862,
PRHF-2252

SmartConsole

"Get Gateway Data" returns "Execution error" for cluster object in SmartUpdate.

PMTR-29658,
VPNRA-189

SmartView Monitor

In some scenarios, SNX client is not seen in SmartView Monitor tracking page after connecting to the Security gateway.

PMTR-33424,
SL-1997

SmartView Monitor

SmartView Time filter does not work correctly if the server Time Zone is different than the client Time Zone.

PMTR-32677,
PMTR-31278

Security Gateway

Connectivity issues on some HTTPS sites (as login pages) when Security gateway is configured as proxy. Refer to sk147878

PMTR-34742,
PMTR-34543

Security Gateway

OpenSSL is vulnerable to Padding Oracle Timing / Side Channel Attack.

PMTR-35948,
PMTR-34489

Security Gateway

Security gateway crashes in a certain rare scenario.

PMTR-33337,
PMTR-33143

Security Gateway

In a rare scenario, setting interface topology to "Network defined by routes" causes policy installation failures or traffic drops.

PRJ-378,
PMTR-31289,
PMTR-26959

Security Gateway

In some scenarios, Security Gateway drops ICMP traffic with "fw_conn_post_inspect Reason: First server side outbound packet is an ICMP" message.

PMTR-34114,
PMTR-32168

Logging

In a rare scenario, Security gateway starts to log locally even if logs are sent to backup server.

PRJ-833,
PRJ-748

Logging

In a rare scenario, cannot open new tab in SmartView after exporting data using a relative time filter.

PMTR-34126,
PMTR-31493

Logging

In some scenarios, a Domain picker is displayed when logging in to the SmartView web application on a dedicated SmartEvent server.

PMTR-34878,
PRJ-69,
PRJ-105

Threat Emulation

Management Server upgrade from R80.10 to R80.20 fails in these scenarios:

  • There are Threat Emulation settings, which remained from Security Gateway objects that were already removed.
  • There are Threat Emulation settings, which are configured in the cluster member objects and not in the cluster object.

Refer to sk150793.

PMTR-31036,
IDA-1689

Identity Awareness

In some scenarios during Identity Agent or Terminal Server Agent IP change, PEP database becomes corrupted.

PMTR-35095,
MB-30

ClusterXL

New validation added: Starting from R80.20, ClusterXL does not support Load Sharing mode. SmartConsole blocks such configuration with a warning message.

PMTR-33209,
PMTR-30582

ClusterXL

Unable to access ClusterXL Standby members over an IPSec tunnel or when the connections are routed through the Active member. Refer to sk147493.

PMTR-32708,
PMTR-33852

SecureXL

Security gateway forwards re-transmitted TCP reset packets although fw_disable_rst_replay property is enabled.

PMTR-33335,
MBS-5210,
PRHF-3647

VSX

In a rare scenario, VSX reboots when running with 40G NICs.

PMTR-35083,
PMTR-26556,
PMTR-30291

CPView

In some scenarios, the CPView tool does not display any sensor information under the "Hardware Health" tab.

PMTR-33418,
PRJ-292,
PRJ-3535

CoreXL

In a rare scenario, Security gateway freezes when Priority Queue is enabled.
Refer to sk149413.