SFOS 16.01.3 MR2 Released

Hi XG Community!

We've finished SFOS v16.01.3 MR2. This release is available for all SFOS v15.01 and SFOS v16.01 installations without limitations.
Note for SFOS v16.05 users: The fixes are already included in SFOS 16.05 GA and later.

Issues Resolved

  • NC-12759 [Authentication] Segmentation Fault of access server
  • NC-13930 [Authentication] Access_server segmentation fault
  • NC-14160 [Authentication] Netbios packages sent out via WAN port
  • NC-13394 [Clientless Access(HTTP/HTTPS)] Japanese character issue in HTTP bookmark of clientless access
  • NC-13665 [Firewall] Skipping load balancing for missing heartbeat drop traffic
  • NC-13702 [Firewall] Block Page with captive portal link shown for users when webfilter + user based rules are used
  • NC-13987 [Firewall] Wizard failed after configure DOS rule using src-zone
  • NC-14137 [Firewall] 'Internet Scheme' page loading failed
  • NC-13280 [Framework(UI)] Not able to add scrollbar in Select Box
  • NC-13858 [Framework(UI)] Improve XG Firewall dashboard diagrams
  • NC-14649 [Framework(UI)] Possible SQL injection in EventViewerHelper
  • NC-14671 [Framework(UI)] XSS in LiveConnectionDetail.jsp in SFOS
  • NC-15101 [Framework(UI)] Apache service stop in case of certificate names contain space characters
  • NC-8116 [Framework(UI)] Disable TLS1.0 and TLS1.1 support for Webadmin and Userportal
  • NC-14995 [Galileo Heartbeat] Heartbeat - Service restarting automatically
  • NC-15570 [Galileo Heartbeat] heartbeatd segfaults constantly
  • NC-13610 [IDS + AppControl] Psiphon Proxy application is not blocked
  • NC-13496 [IPS] Wrong ip address shown in web filter logviewer when device configured in TAP-Mode
  • NC-14231 [IPS] Internet traffic dropped by IPS if network subscription is missing
  • NC-15573 [IPS] Traffic latency issue due to IPS max packets set to 80 by default
  • NC-11677 [License] License : evaluated modules subscription status is subscribed in place of Evaluating
  • NC-12228 [Mail Proxy] MIME whitelist box is not large enough to display the entire text
  • NC-14093 [Mail Proxy] Proxy stops processing mails if IP reputation is enabled with action "Reject"
  • NC-14098 [Mail Proxy] Delivery failure notification not sent if sender or recipient email address contains space character
  • NC-14178 [Mail Proxy] SMTP proxy dies to due to specific characters in return path of delivery failure notification
  • NC-14213 [Mail Proxy] Read only profile should be set in Email protection in HA mode
  • NC-13599 [RED] Transparent Split and 3G Failover should not be possible to configure
  • NC-14164 [RED] Implement "TLS 1.2 only" mode
  • NC-15883 [RED_Firmware] RED10 with static WAN config are offline after update
  • NC-14337 [Reporting] Reports is not loading when language is spanish
  • NC-15025 [UI] Uploads in Webadmin not possible with Firefox 50
  • NC-13995 [VPN] VPN failover group stops retrying after couple of minutes
  • NC-14118 [WAF] SFM MR-2 can not push web server configuration to SFv16 device
  • NC-16041 [WINGc] Proxy categorization not working; all websites show category = none
  • NC-11111 [Web] Captive Portal settings: unauthenticated users redirection does not work


You can find the firmware for your appliance from in MySophos portal.

  • What are the difference between SFOS 16.01.3 MR2 and SFOS 16.05.1 MR1 and SFOS 16.05.0 GA ? beside sandstorm (not going to use) ?

    We are using XG210 SFOS 16.01.2 production environment.....which one of these should we upgrade to ?

  •  SFOS 16.05 is the new release steam. Featurewise Sandstorm is the most prominent feature in SFOS 16.05. We will provide bug fixes for the latest release streams first, then for the previous release stream and phase out those older versions over time. So on long term view I would recommend to move to the latest release stream.

  • Do we have any release notes for the version SFOS 16.01.4 MR-3?