Release Notes Threat Management Services zl Module ST.1.2.110427 06-2011

93
Known Issues
Release ST.1.0.090213
10. Again add VLAN 40 to the VLAN Association page.
Actual Result: VLAN 40 is displayed on OSPF and Multicast pages.
Expected Result: VLAN 40 should only be displayed on the VLAN Associations page.
PR_11856When using the web browser interface, an error message is displayed when
a valid IP Address is trying to be set in some pages, such as RADIUS, IPsec Policies, and so
forth. For example, this may occur when an otherwise valid IP address is added with a final
space at the end. As a workaround, be sure there are no white space characters in the IP
address. This behavior is seen in web browser interface fields such as the following:
RADIUS (server address)
IKEv1 (local and remote gateway, local and remote Id IPsec Policies (Traffic Selectors)
GRE (IP Tunnel, local and remote IP, selector IP and MASK)
SCEP (SCEP server)
PR_12477 — When logging in as an operator in the web browser interface, some drop
down selections are not disabled. This behavior does not allow an operator to perform any
management functions, but the drop down selections should be disabled to prevent the
impression that management operations can be performed.
Example:
1. Log in as an operator.
2. Go to Maintenance > Update Software > Server Type drop down selection box.
or
Go to Authentication > RADIUS > Protocol drop down selection box.
PR_12250 — In environments where high connection rates and high connection counts
are in use, management interfaces can be slow or locked up. This will occur when the
administrator has not specified a Priority VLAN for management in their configuration. A
Priority VLAN ensures that the administrator will always have management access from the
specified VLAN.
PR_12607ICMP replay will generate a log entry even when the setting is disabled.
PR_12802When adding an NSSA or STUB area to the OSPF configuration, leading zeros
in the area ID are flagged as an error. For instance, 10.10.01.10 would not be accepted but
10.10.1.10 would be accepted.
PR_12838Using SNMP, the values of system name, contact, and location via the RFC
1213 system table cannot be changed.
PR_12937In a certain condition, when the TCP RST timeout value is set to zero and
IPS is enabled, the TMS zl Module will not forward a TCP RST packet from one peer to
another. If there is a TCP session established or half-established between client and server,
and the server sends an RST Packet to close the session, the TMS zl Module will mark the