TMS zl Module Release Notes ST.1.1.100330

33
Known Issues
Release ST.1.1.100226
time="2009-05-21 14:15:05" severity=info pri=6
fw=ProCurve-TMS-zl-Module id=fw_l2l3_attack msg="Reassembly is
currently disabled" srczone=UNKNOWN_ZONE src=88.1.20.151 srcport=0
dstzone=UNKNOWN_ZONE dst=88.1.10.7 dstport=0 proto=TCP subf-
amid=intergritycheck mtype=attack mid=1005
PR_41293 — The log message for mid=617 incorrectly reports TCP information for ICMP
packets:
time="2009-06-02 22:20:15" severity=warning pri=5
fw=ProCurve-TMS-zl-Module id=fw_access_control ruleid=10 msg="FW: tcp
sequence number translation failed, packets dropped" srczone=INTERNAL
src=192.0.20.100 dstzone=INTERNAL dst=192.0.10.100 proto=ICMP rcvd=0
rcvdsc=0 sent=36 sentsc=0 srcnatport=0 destnatport=0 destnati-
paddr=0.0.0.0 subfamid=accessdeny mtype=access_control mid=617 srcna-
tipaddr=0.0.0.0
PR_42210 — The local users cannot login to the TMS zl Module Web browser interface via
HTTP. Steps:
1. Open the browser and connect to TMS zl Module Web browser interface via http.
2. Set the local user's name into the User name text field.
3. Set the local user's password into the Password text field.
4. Press the Login button.
The logon fails; the TMS zl Module Web browser interface displays Invalid Login!. The same
local user can login successfully via HTTPS.
PR_42656 — If access policies permit, TCP Port 65105 can be discovered as open. TCP port
65105 is open for participants in a cluster to receive signature download updates from the
master. In cluster mode, it is only the master which downloads the signatures and then
synchronizes the updates with participant over the TCP connection on port 65105.
PR_42667 — Stateful firewall connections do not get closed promptly when their lifetime
reaches 0. From the TMS zl Module CLI, the show connections command will show
connections with a lifetime of 0 but which have not been removed. The sessions eventually
should be deleted, in most circumstances. If the number of sessions with 0 lifetime gets to
a very high level, a scheduled maintenance reboot of the TMS zl Module is required.
PR_42682 — In the Web browser interface, DHCP relay settings for VLANs are not grayed
out when they are globally disabled. As a result, the DHCP relay settings can be changed for
any of the VLANs but these settings would have no effect.
PR_42951 — In the TMS zl Module CLI, show ip igmp config does not show VLAN with igmp
enabled. Steps
1. Add a vlan to a zone.