ZyXEL ZYWALL USG 50 Security Gateway Firmware 3.30(BDS.7)C0

Manufacturer:

Description

DOWNLOAD NOW

Fixes:

- Add SNMP VPN status and connection counter MIBs.
- Default turn off SSLv3 Support in Built-in Service. Using CLI “ip http secure-server sslv3” to turn on it.
- Update the bash binary to fix BASH Vulnerability issue, CVE-2014-6271 (original shellshock), CVE-2014-7169 (taviso bug), CVE-2014-7186 (redir_stack bug), CVE-2014-7187 (nested loops off by one), CVE-2014-6277 (lcamtuf bug #1), and CVE-2014-6278 (lcamtuf bug #2).
- Show IPsec debug message to SSH.
- PKI support import certificate with SHA384 and 512 hash algorithm.
- Support "space" for certificate in the following field: Organizational Unit, Organization, Town, State (Province), Country.
- The session will be automatically disconnected (Firewall rule takes effect immediately) when reaching the schedule.
- Enhance IPsec Authentication with certificate to validate X509v1 CA certificate.
- Add CLI command 'app-watch-dog mem-drop-cache-threshold XX', where XX is in the range 50..90, to configure app watchdog to inform kernel to drop caches in order to free more memory when memory usage exceeds the threshold.
- Diagnostic info enhancement.
- Enlarge the value of nf_ct_expect_max to avoid SIP packets from dropping.
- Description: Modify usg100-plus maximum disk threshold WAS: maximum disk threshold was 95% IS: maximum disk threshold is 99%.
- Symptom: IPsec sshipsecpm daemon is dead. The issue is usually happened while VPN failover and fallback is triggered.
- Symptom: IKE packet sent from wrong interface and wrong IP.
- Symptom: [File Manager] rename configuration file to 64 characters will fail.
- Symptom: L2TP can't login user and with crazy log message.
- Symptom: Static ARP entry will disappear if enabling device HA.
- Symptom: VPN connect fail and hang.
- Symptom: It shows incorrect expiration date of licenses on GUI.
- Symptom: When using SHA256 as intermediate certificate, the certificate path shows "incomplete path".
- Symptom: CPU high issue caused by CCD daemon on 3.30 patch6.
- Symptom: Fix IPsec VPN IOP issue with FortiGate: VPN cannot build after rekeying.
- Symptom: [GUI] The DHCP pool size didn‟t update immediately after changing the IP / subnet mask setting.
- Symptom: DynDNS DNS update fail if the password length is longer than 31 digitals.
- Symptom: Device HA fails to synchronize backup device with master device if master configuration has CLI command "client-side-vpn-failover-fallback activate".
- Symptom: IDP signature cannot be updated in China.
- Symptom: Traffic cannot pass through VPN tunnel while fallback to primary gateway.
- Symptom: DDNS profile doesn‟t allow username with leading numbers such as “266oSx-vam” but in real case DynDNS server allow this kind of username to register.

ZyXEL USG 50 Security Gateway Firmware ZyWALL USG 50 Security Gateway Firmware ZyXEL ZyWALL USG 50 Firmware ZyWALL USG 50 Firmware ZyXEL Security Gateway