Today we've released UTM 9.503. The release will be rolled out in phases. In phase 1 you can download the update package from our FTP server, in phase 2 we will spread it via our Up2Date servers.
Update 2017-08-25: Unfortunately the update package has an issue with a missing config file for Samba and we needed to pull the update package down from the FTP server. We are working on a replacement urgently.
Update 2017-08-31: New update files with the fix for the missing Samba config (NUTM-8702) are available on our FTP server. There are two update files available now:
Update 2017-09-07: Update is available for all via Up2Date servers.
Can't rejoin to domain, after this update.
Seems that the IPv6 ICMP issue is back...
This is where the " Allow ICMP through Gateway from external networks" is unticked, destination machines are still visible by ICMP.
I have the results from "ip6tables -vnL AUTO_FORWARD" and " cc get icmp" and will drop them directly to you now.
The libraries for Kerberos and Samba are missing in the shared libraries. Sophos seems to have missed something there. After manually copying those libraries from /opt/samba/usr/lib/samba and /opt/samba/usr/lib/samba/private to /usr/lib works quite well, but this should not be the solving of this issue. As it won't sync throughout a HA Cluster.
Please make a Revision of this update.
We had the same issue with the update like you. According to the sophos support the better workaround is to create a file with the needed library paths in /etc/ld.so.conf.d/
echo -e "/opt/samba/usr/lib/samba\n/opt/samba/usr/lib/samba/private" > /etc/ld.so.conf.d/samba.conf && ldconfig -f /etc/ld.so.conf -C /etc/ld.so.cache
Is there a small possibility that theupdates run through a complete quality check before throwing them "on the market"?
All of the last 3 or 4 updates since 9.413 were broken in some functionality...
Aaaaaaand it's gone, pulled ......
Talex was it buggy since it's been removed?
When can we expect a fixed release of the update package?
has anyone these pulled Update downloaded and can send me this via Mail or FTP?
We need a quick solution for our Sophos.
Hi, there are new updates available. Please see the updated post above.
Has anyone already tested the new Updates?
we are currently on 9.413-4. Will this update force us to rejoin the device into the active directory again as mentioned in the KB article community.sophos.com/.../126819 ?
All these buggy updates lateley are not much encouraging to just go and do it "quickly"...
We installed the update 2 days ago and it is working well so far. We had several issues with locked active directory users when there applications were using our proxy and this is history now. I think NUTM-8353 was the issue for that. Authentication was failing and locking the users in active directory.
Still haven't fixed the long boot times with entry level UTMs. Case ID: [#7432293] - Please fix!
After patching, the clients in LAN aren't able to ping our ISPs Default Gateway.
Running a traceroute shows it listed.
ICMP settings are enabled. External I can ping the GW, also with support tools in the UTM I can ping directly from the UTMs External interface to the GW.
But with selecting a client on internal interface it's not possible.
Before patching we had 9.501 no issuses there, same config.
Btw we use the ping to default gateway with our monitoring software ....