This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos UTM v.9.005016 GA

Angelo's Edit: We've made a small change between this release and the soft-release (which will be pushed anyways to those that installed the SR using our new incremental Up2Date system introduced in UTM9). The only change has been to fix a bug whereby systems with the command-line local content filter database enabled may have had their proxy enter a race condition until it was stopped/started once. This no longer happens. Other than that, enjoy the 9.005 release!


Sophos UTM v.9.005016 GA
News

  • Support for RED50 appliances
  • Stability fixes for Web Filter
  • Stability fixes for Wireless APs
  • Bug fixes for Application Control
  • Updated timezone definitions


Remarks

  • System will be rebooted
  • Configuration will be upgraded
  • Connected Wifi APs will perform firmware upgrade
  • Connected RED devices will perform firmware upgrade


Bugfixes

  • 21785 Transparent Authentication does not work for IPv6 when SSL scanning is active
  • [V9] Form Hardening blocks request due to missing token, although URL Hardening Exception should allow access
  • 22456 Empty graphs in Hardware and Network Usage
  • 23179 Form Hardening doesn't support image type input form buttons

Manual Downloads and MD5s can be found at Index of /UTM/v9/up2date/


This thread was automatically locked due to age.
  • Ahh... and now that I've watched the automatic up2date logs... 
    You can manually update your 9.004-29 (or higher) installation by dowloading, from the FTP site, /UTM/v9/up2date/u2d-sys-9.004029-005016.tgz.gpg

    If you already have 9.005-15 installed, you can manually download /UTM/v9/up2date/u2d-sys-9.005015-005016.tgz.gpg

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

  • I get the Same issue. I tried on our 425 and the 320. same if in HA or not.

    I can't seem to install this update either automatically or manually.  The livelog reports that the problem is my current version.  Apparently there is no upgrade path from 4034 ?

    Fatal: Version conflict: required version: 9.005015  current version: 9.004034

    Edit: Looking more closely at the listing on the FTP site, it seems to confirm that 4-34 is currently a dead end.
  • Mine also fixed it self, (pfew [;)])
  • So the strange thing is this. All the sudden I got emails saying both updates were installed. This was not me trying again. It just happen. Also no reboot and I don't know for sure if the updates were installed correctly or not. This is not a good update this time.
  • Urgent: No SPAM and Urlfiltering after Ugrade to v.9.005016.:

    request="(nil)" function="sc_server_cmd" file="scr_scanner.c" line="611" message="cffs05.astaro.com: decrypt failed"
    2013:03:04-22:00:59 UTM9 httpproxy[4510]: id="0003" severity="info" sys="SecureWeb" sub="http" request="0x1215bcc8" function="sc_categorize_url_remote" file="scr_scanner.c" line="926" message="no categorization received for url: now.eloqua.com/.../svrGP.aspx
    --------------
    Pop-Spam-Filter fails too:
    ctasd response: HTTP/1.0 500 Internal Server Error

    Is there a way back?
  • I've not seen that error on any systems I've updated to 9.005-15 or 9.005-16 ... that error is likely a temporary error with the content filter server your system is contacting, it should recover and use a responsive one on it's own.

    To answer your other question, "is there a way back?" ... not an easy one.  You would need to reload the system and get it back to 9.004-34, and restore a backup from that version as well.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

  • I checked my logs. Any server it tries generates the same message. So no recycle and no functionality.
  • Hmmm... haven't seen that with any installs I've updated, at all.  Possibly something was corrupt on the system before  you ran the update, now it's broken?  Might want to try a reload and restore.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

  • Does 9.005 fix the issue with intel nics go offline as mentioned in this thread? Our ASG 120 are suffering from this, but the release notes don't report this as fixed:

    https://community.sophos.com/products/unified-threat-management/astaroorg/f/51/t/21759

    Franc.