Guest User!

You are not Sophos Staff.

[9.260][NOTABUG] Restoring Configuration Results in no Firewall or NAT Rules Imported

When I import an old "Test" UTM configuration I created under UTM Version 9.100-16 into the 9.260 instance I just setup, it appears the Firewall and NAT rules (Masquerading) are not imported.  Web Filter, Wireless, IP addresses on hardware, old service and network definitions, etc. all appear to be imported OK, just missing the Firewall items.
Parents
  • I'll go out on a limb here and declare I typically don't lie importing configurations from very old versions of software into a newer version.  

    I understand that backwards compatibility should be maintained, however, it does increase burden on QA.

    Is this a test you're conducting for 'I wonder if...' or is this something you need for clients?  What about a 9.201 configuration?

    I'm still waiting to play with 9.3...

    ==

    When in doubt, Script it out.

  • Some customers are still on 9.1xx for instance (even a few 8.3xx holdouts) ... it just happens my same Test configuration (we have a test lab here) is what I try to use every time for the betas, and the last time I used it was for 9.1xx.   I think it should be looked into.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

Reply
  • Some customers are still on 9.1xx for instance (even a few 8.3xx holdouts) ... it just happens my same Test configuration (we have a test lab here) is what I try to use every time for the betas, and the last time I used it was for 9.1xx.   I think it should be looked into.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

Children
  • Well, dug around a bit more... apparently there was some bug (think I remember reading about it being fixed) that in early 9.1xx versions the backups were not always good)... after further testing, I've determined that the backup is actually bad... no errors reporting during import, I think the backup process in some of the older versions actually failed to put the firewall data in the backup file!

    Sooooo... not a bug, marking it as such now.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.