Firewall Group Management EAP 1 Known Issues and Incomplete Features
The following tables provide the latest information on known issues and their workarounds, advice for users and incomplete features for Firewall Group Management EAP1 Release
Known Issues
Component
|
Known issues with Explanation |
Workaround |
Single Firewall Management Migration |
V17.x Firewalls state is displayed as INITIALISING for indefinite period after doing Accept Service from ungrouped(Firewall groups)|Single Firewall Management Migration |
Accept Central Services for V17.x Firewalls when firewall are managed in Single Firewall Management and then join Firewall Group Management EAP program. |
Workflow from EDB |
Firewall Group Management flow does not work when customer account is launched through EDB |
The super admin can create a admin users who can enable Firewall Group Management flow with their account id |
Group Management |
Some inconsistencies may be observed if a firewall is moved from one group to another even before it fully syncs up with the first group. |
Admin should wait for the completion of Full Sync with the first group, then can move to another group. |
Workflow from EDB |
After joining EAP program there is a UI disrupt in Sub-estates Licenses and trials tabs in EDB
|
These are some UI issue which doesn’t affect the behaviour and functionality of the product |
Porting - Authentication |
Unable to create Administrator User in Authentication->Users Tab. |
Admin can configure the feature through single device management via RP SSO
|
Porting – Host and Services |
Unable to delete some default FQDN hosts (Hosts and Services | FQDN Groups) |
Admin can configure the feature through single device management via RP SSO. Admin can delete the FQDN if it is not part of any FQDN host group. |
Central Management |
Firewall is not available for central management if CM option is enabled AFTER enabling Central Reporting option |
If Admin wants to enable CM after enabling CR Option, then has to deregister the firewall and again register & enable CM. |
Porting - Web |
Unable to configure "General Settings" for web filtering (Web | General Settings) |
Admin can configure the feature through single device management via RP SSO
|
Porting - Authentication |
Option to "Enable additional settings" during RADIUS server configuration does not work (Authentication | Servers ) |
Admin can configure the feature through single device management via RP SSO
|
Feature catchup - Authentication |
Admin unable to add Radius server due to invalid parameters. |
Admin can configure the feature through single device management via RP SSO
|
Porting – Firewall Rules and Policies |
Unable to update the firewall rule name for an existing firewall rule |
Admin can configure the feature through single device management via RP SSO
|
UI |
Cosmetic changes in Firewall rule in legacy UI |
These are Cosmetic UI issues which doesn’t affect the behaviour and functionality of the product. |
Incomplete Features
Component |
Feature |
Missing Configuration Capabilities of Pages/Tabs |
Porting - Web
|
Configure and manage Web policies from Central |
· General Settings · Policy Quota Status · Content Filters |
Porting - Authentication |
Configure and manage Authentication policies from Central |
· Web Authentication · Captive Portal · Client Downloads
|
Porting – Host and Services |
Configure and manage Host and Services from Central |
· Country
|
Porting – System Services |
Configure and manage System Services from Central
|
· Log Settings · High availability · Red · Services · Notification List · Data Anonymization
|
Feature Catchup – Firewall Rules and Policies |
Configure and manage Firewall Rules & Policies from Central |
· Filters · Dynamic objects to select Zones, Network interface, Host-System Hosts in SSL/TLS rules and apply this configurations on different Firewall devices together
|
Feature Catchup – NAT Rules
|
Configure and manage NAT Rules from Central |
· Filters · Dynamic objects to select Zones, Network interface, Host-System Hosts in SSL/TLS rules and apply this configurations on diff. Firewall devices together
|
Feature Catchup – SSL/TLS Inspection Rules |
Configure and manage SSL/TLS Inspection Rules from Central |
· Dynamic objects to select Zones, Network interface, Host-System Hosts in SSL/TLS rules and apply this configurations on diff. Firewall devices together · Synchronized security applications selection in SSL/TLS rules
|
Porting - Certificates
|
Configure and manage Certificates from Central |
· Certificate Revocation Lists · Generate self-signed certificate · Generate certificate signing request (CSR)
|
Single Firewall Management Migration
|
Single Firewall Management Migration to Firewall Group Management |
Supports only below functions as of now: · Open Firewall from Central via RP-SSO · Accept firewall from Central for Central management · Connection and Config states
|
Porting - Wireless
|
Configure and manage Wireless from Central |
· Mesh Networks · Wireless Settings · Hotspot Settings · Wireless client list · Access points
|