Cyberoam Release NotesRelease Notes Version: 10.04.0 Build 433 Date: 11th January, 2013 Release Dates th Version 10.04.0 Build 433 – 11 January, 2013 Release Information Release Type: Maintenance Release Upgrade prerequisite: 24 x 7 OR 8 x 5 valid Support license Applicable to Cyberoam Version: V 10.01.0XXX or 10.01.X Build XXX All the versions V 10.02.0 Build XXX 047, 174, 176, 192, 206, 224, 227, 409, 473 V 10.04.0 Build XXX 214, 304, 311, 338 Upgrade procedure To upgrade the existing Cyberoam Appliance follow the procedure below: Logon to https://customer.cyberoam.com Click “Upgrade” link under Upgrade URL. Choose option “Select for Version 10.00.0xxx to current GA Version 10.00.0xxx Firmware”. For Cyberoam versions prior to 10.01.0472 For Cyberoam version 10.01.0472 or higher Upgrade the Cyberoam to 10.01.0472 selecting option “Below 10.01.0472” and follow on-screen instruction. By doing this, the customer will not be able to roll back. Upgrade Cyberoam to latest version by selecting option “10.01.0472 or higher” and follow onscreen instruction. Compatibility Annotations Firmware is Appliance model-specific firmware. Hence, firmware of one model will not be applicable on another model and upgrade will not be successful. You will receive an error if you are trying to upgrade Appliance model CR100ia with firmware for model CR500ia. This Cyberoam version release is compatible with the Cyberoam Central Console. Please always check http://docs.cyberoam.com for availability of latest CCC firmware to deal with this compatibility issue. Document Version – 1.00 -10/01/2013 1 No.01 – 25/01/2013 Enhancements Modes for Reception Document Version – 1. Old Revision Number New Revision Number Reference Section Revision Details 1 1.Cyberoam Release Notes Revision History Sr.00 – 10/01/2013 1.00 -10/01/2013 SSL VPN Passphrase 2 . . 6 High Availability ....Cyberoam Release Notes Contents Release Dates .......................................................................................................................................... 7 Network .......................................................... 4 Enhancements .................................................. Manage Cyberoam Appliance(s) behind any NATed Device Through CCC .............. 7 SSL VPN ...................... 4 3............................................................................................................................................................................... Modes for SSL VPN Passphrase Reception ................................................................................................................................................................................................................................ Report Export Customization ......................................................................................................................................................................................................................................................... 8 User .......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................... 10 Technical Support Documents ........................................................................................ 6 Firewall .......................................................00 -10/01/2013 3 .................... 10 Technical Assistance ................ 6 GUI ................................................................. 6 DHCP Relay ...... 1 Release Information ................................................................................................................................................................................................................................................................................ 8 General Information ................................. 6 Anti Spam .......................... 4 2............................................ 1 Introduction .................. 10 Document Version – 1.......................................................................................................................................................................................................................................... 8 System ......................................................................... 8 VPN ........... 5 Bugs Solved ...................................................... 4 1..................................................................................................................................................... Document Version – 1. Enhancements 1. reliability and performance.Cyberoam Release Notes Introduction This document contains the release notes for Cyberoam Version 10. Modes for SSL VPN Passphrase Reception From this version onwards. If SSL VPN Passphrase is chose to be received via Email. Client Bundle 2. Manage Cyberoam Appliance(s) behind any NATed Device Through CCC From this version onwards. go to System Administration - Settings and select from the options available against parameter "Receive Passphrase via" of section SSL VPN Settings. By default. 2. few enhancements and several bug fixes to improve quality. the administrator can configure and manage those Cyberoam appliance(s) which are deployed behind any NATed device.0 Build 433. On-screen Link 3. the Administrator receives the Passphrase in the SSL VPN Client Bundle. The Administrator can select from one of the following modes to receive the SSL VPN Passphrase: 1. Prior to this version. it is mandatory to configure Email Address from Identity Users Users and SMTP Mail Server from System Configuration Notification in the section Mail Server Settings. Email SSL VPN tunnel is established once the user is authenticated with SSL VPN Client and the Certificate is authenticated using the Passphrase. This release comes with new features.04.00 -10/01/2013 4 . The following sections describe the release in detail. Cyberoam provides option to select a mode using which the Administrator receives SSL VPN Certificate Passphrase. To configure the mode for receiving the Passphrase. passphrase for certificate authentication was delivered in SSL VPN client bundle. This feature was not available in prior versions. Document Version – 1. Cyberoam iView allows the administrator to customize maximum limit of records to be exported to MS-Excel. It is recommended to export the records during the time interval when the network traffic is minimal as this process will increase system resource utilization and it might adversely affect the appliance performance. To enable Export Customization option. By default this option is disabled and the record export limit is 1000 records. go to System → Configuration → Data Management and enable „Export to Excel Parameters Customization‟.4 Build 072 3. the administrator was allowed to export maximum of 1000 records at a time. Prior to this version. Now this limit can be set as follows: Model Number CR 25ia/25wi Maximum Records per Widget 10000 CR 25iNG/6P CR 25wiNG/6P CR 35ia/35wi CR 35iNG/35wiNG CR 50ia CR 100ia CR 50iNG 25000 CR 100iNG CR 200i CR 300i CR 500ia/RP/F/10F 50000 CR 750ia/1F/10F CR1000ia/10F CR 1500ia/10F CR 2500iNG The administrators can also set „Start Record‟ number and „End Record‟ number to be exported if all the records are not needed. go to System Administration Central Management. CCC Firmware Version Supported: 02.01. Report Export Customization With this version.00 -10/01/2013 5 .Cyberoam Release Notes To manage configuration updates. per report type. Bug ID – 11564 Description – Virtual Host ceases to function on migrating Cyberoam appliance to 10. Firewall Bug ID – 11328 Description – Virtual Host for VPN zone cannot be created on migration from Version 9 to Version X. DHCP Relay Bug ID – 10645 Description – DHCP Relay service do not start when IPSec VPN is configured on dynamic interface and DHCP Relay is configured on it. Bug ID – 10499 Description – An error message “Web Server not exists to Add Exception” is displayed while Document Version – 1. even though option "Lock Admin Session" is selected.0. Bug ID – 10443 Description – Test connection result for Guest User SMS Gateway displays the country code of Afghanistan. if SMTP or POP3 or IMAP scanning is enabled from the Firewall Rule.Cyberoam Release Notes Bugs Solved Anti Spam Bug ID – 11388 Description – Commtouch (CTCH) headers are displayed in the auto generated Emails. if it is configured on multiple WAN PPPoE interfaces to single mapped IP Address. on editing a Firewall Rule having QoS policy already applied to it. if it is tested without providing a country code. leading to a mismatch in zone type and zone ID.04. if there exist customized zones before the migration. Bug ID – 9494 Description – The parameter “QoS” on the Firewall Rule page displays “None”.304.00 -10/01/2013 6 . GUI Bug ID – 9010 Description – Web Admin Console is accessible if user navigates to it using "Back" and "Forward" button in succession. the 3G modem is unplugged.04.00 -10/01/2013 7 . Bug ID – 11145 Description – A keyword configured with space in Custom Web Filter Category of Web Filter prior to firmware version 10.214 cannot be deleted. Bug ID – 11533 Description – Background colors are not reflected on Captive Portal header and footer while viewing the preview of its configuration.0.Cyberoam Release Notes configuring an exception from the WAF Alert page.0. if the LAN and WLAN are in same subnet.04. Bug ID – 11555 Description – The Category parameter “Action” do not get updated to “Allow Packet” on editing. if the backup file of CR25ia is restored on CR25iNG and both of the appliances have different themes configured. High Availability Bug ID – 11345 Description – IP Address based Virtual Host ceases to function when the WAN interface is configured as a monitoring port in Active-Active mode of HA and both the appliances are rebooted simultaneously. if Cyberoam firmware is upgraded to firmware version 10. if the Web Server name contains a special character “underscore (_)”. Document Version – 1. Bug ID – 11545 Description – DHCP Server do not lease IP Address to WLAN Clients. Bug ID – 11586 Description – The words “Anti Virus” and “Definition” are mis-spelled as “Antivurs” and “Defination” on the Log Viewer page of Logs & Reports. Network Bug ID – 11383 Description – 3G Gateway status is displayed as “Active” although. if the “Recommended Action” against the signature is “Drop Packet” in the IPS Policy. Bug ID – 11602 Description – The Web Admin Console becomes inaccessible and an error message “Internal server Error” is displayed.214. if the number of channels exceeds the protocol h323‟s default unidirectional channel limit of 4. User Bug ID – 10286 Description – Guest users do not get purged automatically on expiry of user validity though the option "auto purge" is enabled. Bug ID – 11403 Description – An error message is displayed while testing the Authentication Server connection on the French language Web Admin Console.00 -10/01/2013 8 . if IPSec routes do not get flushed from Cyberoam on Dead Peer Detection (DPD). Bug ID – 9935 Description – Cyberoam do not allow opening the configuration management of L2 switch while deploying Cyberoam in Bridge Mode. if the parameter “Select Client Certificate” is blank while configuring Tunnel Access from SSL VPN. Document Version – 1. Bug ID – 11444 Description – VPN to Static link failover occurs 10 minutes after the tunnel goes down. if L2 switch is configured in LAN Network of the Head Office and is accessed via the Branch Office. One has to manually re-connect or set re-key margin as zero. System Bug ID – 11448 Description – Picture fails to appear during a video conference.Cyberoam Release Notes SSL VPN Bug ID – 11486 Description – Application Access Mode fails to initiate. VPN Bug ID – 5438 Description – Branch office does not re-initiate the connection automatically once disconnected even when Action on VPN Restart is set to “Initiate”. Bug ID – 11557 Description – Connection list of IPSec-VPN traffic do not get flushed on disabling an IPSec-VPN connection from any peer end. if the parameter “Display Name Attribute” is left blank while adding it. 00 -10/01/2013 9 . if VPN Connection is configured with name as VPN and added in VPN Failover Group. Document Version – 1.Cyberoam Release Notes Bug ID – 11640 Description – Dead Gateway Detection (DGD) service ceases to function. contact customer support using one of the following methods: Email ID: [email protected] -10/01/2013 10 .com Document Version – 1.0368 Europe: +44-808-120-3958 India: 1-800-301-00013 USA: +1-877-777.Cyberoam Release Notes General Information Technical Assistance If you have problems with your system. including the situation where the problem occurs and its impact on your operation Product version.cyberoam.cyberoam. This helps to ensure that our support staff can best assist you in resolving problems: Description of the problem.com Documentation set: http://docs.com Telephonic support (Toll free) APAC/EMEA: +1-877-777. including any patches and other software that might be affecting the problem Detailed steps on the methods you have used to reproduce the problem Any error logs or dumps Technical Support Documents Knowledgebase: http://kb.0368 Please have the following information available prior to contacting support. Ahmedabad – 380006. Users must take full responsibility for their application of any products. Corporate Headquarters Cyberoam Technologies Pvt. has supplied this Information believing it to be accurate and reliable at the time of printing. Silicon Tower.com Document Version – 1. Cyberoam logo are trademark of Cyberoam Technologies Pvt.com/documents/EULA. expressed or implied. assumes no responsibility for any errors that may appear in this document. C.cyberoam. Cyberoam.cyberoam. Ltd.00 -10/01/2013 11 .html and the Warranty Policy for Cyberoam UTM Appliances at http://ikb. Cyberoam Technologies Pvt. Road. without notice to make changes in product design or specifications. Information is subject to change without notice. You will find the copy of the EULA at http://www.cyberoam.Cyberoam Release Notes Important Notice Cyberoam Technologies Pvt. INDIA Phone: +91-79-66065606 Fax: +91-79-26407640 Web site: www. Cyberoam Technologies Pvt. USER‟S LICENSE Use of this product and document is subject to acceptance of the terms and conditions of Cyberoam End User License Agreement (EULA) and Warranty Policy for Cyberoam UTM Appliances. Ltd.2013 Cyberoam Technologies Private Ltd. 901.G. Ltd. RESTRICTED RIGHTS Copyright 1999 . reserves the right.com . Ltd. Off. but is presented without warranty of any kind. All rights reserved. Ltd.