This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM 9.103 Soft-Released

Hi guys,
there is a new update on the FTP server [:)]
Has anyone installed this update?

Up2Date information	

News
· Bugfix Release
· Fixed: Permission errors for auditor rules
· Changed: Better adapt IPS configuration to machine capabilities
· Changed: Notifications for Site-to-Site VPN and RED tunnels are separate
· Changed: Wifi channel 165 is available in Taiwan 

Remarks
· System will be rebooted
· Configuration will be upgraded
· Connected Wifi APs will perform firmware upgrade

Bugfixes
24922 after reboot syslogng was not started


Here is the link: ftp://ftp.astaro.com/UTM/v9/up2date/u2d-sys-9.102008-103005.tgz.gpg


Nice greetings


This thread was automatically locked due to age.
Parents
  • We are having an issue where we are getting INDICATOR-OBFUSCATION Javascript indexOf rename attempt from IPS .... could you explain why we are getting more of these now?
  • We are having an issue where we are getting INDICATOR-OBFUSCATION Javascript indexOf rename attempt from IPS .... could you explain why we are getting more of these now?


    possible false positive on IPS...see my reply in your other thread.

    Owner:  Emmanuel Technology Consulting

    http://etc-md.com

    Former Sophos SG(Astaro) advocate/researcher/Silver Partner

    PfSense w/Suricata, ntopng, 

    Other addons to follow

Reply
  • We are having an issue where we are getting INDICATOR-OBFUSCATION Javascript indexOf rename attempt from IPS .... could you explain why we are getting more of these now?


    possible false positive on IPS...see my reply in your other thread.

    Owner:  Emmanuel Technology Consulting

    http://etc-md.com

    Former Sophos SG(Astaro) advocate/researcher/Silver Partner

    PfSense w/Suricata, ntopng, 

    Other addons to follow

Children
  • Probably false positive, as William said; the new IPS engine reacts differently to traffic than the old one, and some of the rules do as well.  For instance, there are a handful of rules that we've had to disable at every customer site that runs the UTM Endpoint package... the updates and MCS communications trigger them [:)]

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.