PLEASE READ Advisory: Kernel memory issue affecting multiple OS (aka F**CKWIT, KAISER, KPTI, Meltdown & Spectre) for the latest updates.
We'd love to hear about it! Click here to go to the product suggestion community
HiAfter upgrade to 17 beta2, the UI interface is too slow to list firewall rules. Almost 15s to list 41 rules. too bad...Also the firewall rules were not working after the upgrade. It was necessary enable/disable all firewall rules.
Can someone else confirm this behavior?
I see high CPU and RAM consumption after upgrade to v17 beta 1 and 2. e-mail business rule is blocking incoming mail.
Did you by any chance look at your cpu usage etc. top output on console would have been nice to see which process was choking. I personally had no problems after the update. The cpu runs a little higher in the beginning due to all the background stuff still going on but I had no problems with firewall rules.
In reply to Billybob:
I can confirm that with beta2, the Firewall menu takes more seconds to open (like network menu time took on beta1 and even now).
In reply to darnoK:
check if you have enabled in a SMTP Policy a Greylisting. I had to turn off the Greylisting in the SMTP Policy.
In reply to alda:
Thank You Alda for Your response, but I haven't any greylist in SMTP Policy.Please look at screens above.
do you mean the screens in the thread https://community.sophos.com/products/xg-firewall/sophos-xg-beta-programs/sfos-v170-beta/f/sfos-v170-beta-issues-bugs/96592/known-issue-with-blocking-incoming-e-mails---what-to-do ?
Please send your setting for your default-smtp-av policy and setting from menu Administration - Device Access. In this menu you have to enable SMTP Relay for WAN zone. Do you have it?
Yes, I'm sorry, I have mistaken the threads ;-) I thought the screenshots I posted here ;-)
Yes, I have checked the relay to SMTP in Administration -> Device Access. This did not fix the problem.
Today after work I did one thing. I installed a clean version of SFOS v17 Beta-1 and I match the option to automatically install the latest version (now It's Beta-2). After rebooting and installing the patterns, I noticed that the dashboard was loading fast and the CPU usage was normal. To check my son started downloading on Steam at full speed and the results were very satisfactory. Previously, the processor consumed 25-30% with minimal network traffic.
Is this a case?
Now anything works fine. There is only one problem - a mail policy that did not work. I do not know what to do.Screens of my policies are here: https://community.sophos.com/products/xg-firewall/sophos-xg-beta-programs/sfos-v170-beta/f/sfos-v170-beta-issues-bugs/96592/known-issue-with-blocking-incoming-e-mails---what-to-doThank You for Your reply.
Thank you for the feedback
I have tested with XG85 with 40 rules and it takes 3-4 sec.
In reply to deeptibhavsar:
Which appliance model , are you using and accessing it from internal network or external network?
I'm using a virtual XG appliance ( XEN ) and accessing it from internal network.
In reply to Rodrigo Pereira:
We have tried with same for v17 Beta1 and v17Beta2 it is talking 2-3 seconds to load 40 firewall rules.
In reply to Rana Sharma:
In my case, 6/7 seconds are required to load roughly 25 firewall rules.
Beta1 took 2 seconds
In reply to lferrara:
is your appliance have the "Firewall Group" created.
no firewall group implemented on my XG SW version installation.
Yes, I have firewall group created after upgrade to beta 2.