Hi XG Community!

We've finished SFOS v17.0.3 MR3. This release is available from within your device for all SFOS v17.0 installations as of now.

Besides that, the release is available to all SFOS version via MySophos portal.

Issues Resolved

  • NC-25584 [IPsec] IPsec tunnel frequently gets disconnected after migration to v17
  • NC-25597 [IPsec] Disabling DPD has no effect
  • NC-25641 [IPsec] Improve IPsec failover behavior
  • NC-26024 [IPsec] Change default "Policy Keying Tries" to unlimited
  • NC-26032 [IPsec] Too many email notifications on connection retry
  • NC-25986 [Logging] Fixed CVE-2017-18014
  • NC-23214 [Wireless] XG105w failed to update channel width 80 MHz for 5Ghz band

Downloads

You can find the firmware for your appliance from in MySophos portal.

Parents
  • Just upgraded from 16.5.8-MR8 via 17.0.2-MR2 to 17.0.3-MR3. Seems like everything is working fine. Except of course VPN.

    IPsec-VPN with Cyberoam-Firewalls won't work unless you have activated 'SHA2 with 96-bit truncation' within the IPsec-profile.  Otherwise phase-1 will establish a connection perfectly but phase-2 obviously won't let any transfer go through. Logviewer wasn't very helpful to find this one; we had to contact our partner to solve this issue.

Comment
  • Just upgraded from 16.5.8-MR8 via 17.0.2-MR2 to 17.0.3-MR3. Seems like everything is working fine. Except of course VPN.

    IPsec-VPN with Cyberoam-Firewalls won't work unless you have activated 'SHA2 with 96-bit truncation' within the IPsec-profile.  Otherwise phase-1 will establish a connection perfectly but phase-2 obviously won't let any transfer go through. Logviewer wasn't very helpful to find this one; we had to contact our partner to solve this issue.

Children
No Data