TMS zl Module Release Notes ST.1.1.100430

57
Known Issues
Release ST.1.1.100226/ST.1.1.100330
Notice a log similar to this one:
time="2009-09-24 17:19:33" severity=minor pri=3
fw=ProCurve-TMS-zl-Module id=fw_l2l3_attack msg="Invalid source &
destination: dropping packet" srczone=ZONE6 src=172.15.2.254 srcport=0
dstzone=ZONE5 dst=172.15.2.250 dstport=0 proto=GRE subfamid=dosattack
mtype=attack mid=1530
PR_45634 — An incorrect IP address is accepted in the destination field when editing a
multicast policy. Steps:
1. Go to Firewall/Access policies/Multicast
2. Click on Add a policy
3. On the source field, go to Options button and select Enter custom IP,IP/mask or IP-Range and
enter a non-multicast IP address.
4. On the destination field, go to Options button and select Enter custom IP,IP/mask or IP-Range
and enter a multicast IP address.
5. Before you click on Apply button and Close button, make sure you make a note of what zones
you picked for the policy.
6. Click on Apply button.
7. Pick the previously created policy and click on the edit icon.
8. In the destination field, specify a Unicast IP address.
Unicast IP address in the destination field should cause an error message. Instead, no error
message is displayed and the incorrect IP address is accepted.
PR_45671 — In the Web browser interface, Firewall>Access Policies>Addresses, duplicate
Network (IP/mask) entries can be added for a given name. For instance, 10.10.10.0/24,
10.10.20.0/24, 10.10.10.0/24 could be added under a given name.
PR_45757 — The spinning icon in the bottom left hand corner of the Firewall - Schedule
dialog does not show when adding/editing a schedule.
PR_47774 — A GRE tunnel name limited to 10 characters, which is not enough for a good
descriptive name.
PR_47952 — IPsec Certificates Signing Requests are not being saved or restored. Steps to
recreate:
1. Launch TMS zl Module app
2. Go to the VPN section
3. Select the Certificates link
4. Go to the IPsec Certificates tab