Cookies op Tweakers

Tweakers maakt gebruik van cookies, onder andere om de website te analyseren, het gebruiksgemak te vergroten en advertenties te tonen. Door gebruik te maken van deze website, of door op 'Ga verder' te klikken, geef je toestemming voor het gebruik van cookies. Wil je meer informatie over cookies en hoe ze worden gebruikt, bekijk dan ons cookiebeleid.

Meer informatie

Door , , 4 reacties
Bron: Astaro

De ontwikkelaars van Astaro hebben updates uitgebracht voor Astaro Security Gateway V7 & V8, met 7.507 en 8.001 als de versienummers. De Linux-distributie Astaro richt zich op beveiliging van netwerken door het interne en externe netwerk met een gateway van elkaar te scheiden. Deze gateway bevat natuurlijk een firewall, maar kan ook e-mail- en webverkeer controleren en blokkeren. Astaro kan op eigen hardware worden geïnstalleerd, maar het is ook mogelijk een kant-en-klare appliance aan te schaffen waar de distro al op is voorgeïnstalleerd. De aankondigingen van deze uitgaves zien er als volgt uit:

Up2Date 8.001 Released

Our first Up2Date package for the new Astaro Security Gateway Version 8 is ready for distribution. Version 8 has enjoyed significant popularity in the past month, with thousands of new and existing customers experiencing V8's features and stability.

You will find 8.001 available for install via Up2Date on your installation. Mainly a bug fix release, this package will enhance the stability and operation of ASG V8, and addresses an issue with Unix time affecting certificates. Read on for the full details of this Up2Date.

This release fixes some bugs with how Web Application Security handles connections for protection of Outlook Web Access servers, optimizing that communication. We have also adjusted the very popular Country Blocking to ensure traffic can flow to essential Astaro Internet resources (Eg. RED provisioning servers, global email scanning repositories etc.) so that your blocking choices won't interfere with ASG operations. In addition, some other bugs were addressed and some hardware glitches for our software users and their platforms of choice were solved.

On addressing the Unix Time issue:
ASG uses certificates for different purposes (such as for each user that is created) and CAs (certificate authorities) for signing the certificates mentioned before. When performing the initial setup, some CAs as well as the admin certificate are generated. When passing a certain point in time the theoretical end-date for our certs and CAs is beyond 19 January 2038 which will cause trouble to the system as the end-date of a cert/CA must not be before the start-date.

*SUMMARY NOTICE*
Any and all systems which have this up2date applied before the end of August 2010 will be completely free from troubles or consequences as a result of this global Linux/Unix issue. If you apply it, you can avoid needing to educate yourself further. For units which are not updated before then, we will issue a single fix for this bug via a specially crafted pattern Up2Date as well, which will be automatically patched/applied without updating the firmware version.

If you would like more education on this issue, you can read more about it here via Wikipedia's entry: Year 2038 problem.

Remarks:
  • System will be rebooted.
  • Configuration will be updated.
  • HTTP Proxy cache will deleted.
News:
  • This Up2Date should be applied before end of August 2010
  • Added: HTML rewriting in Web Application Firewall.
  • Fixed: Country based blocking can no longer block essential ASG functionality.
  • Added exceptions for spam scanning servers, ACC, notification smarthost, NTP servers, and SNMP trap sinks.
Fixes:
  • [14688]: UNIX Epoch ends in 9999 days, so certificates cannot last longer
  • [14364] ASG does not use ESMTP for "Skip TLS negotiation hosts"
  • [14400] WAF disabled in predefined reverse proxy profiles
  • [14427] No successful boot with Perc H200
  • [14469] Country Blocking blocks essential services
  • [14519] GRUB fails to install properly on some HP servers
  • [14637]: Bridge interface gets unresponsive after change of IP addresses
  • [14735]: ASG 625a with versions 8 and 8.001 recognizing NIC order wrong
  • [14759]: Setting system time forward causes WebAdmin to get unresponsive for a while


Up2Date 7.507 Released

We have released Up2Date 7.507 for ASG installations to address an issue around Unix Time which can affect the use of certificates, and thus your ASG installation. This up2date package should be applied before the end of August if possible. You can read more about this fix in the details below...

ASG uses certificates for different purposes (such as for each user that is created) and CAs (certificate authorities) for signing the certificates mentioned before. When performing the initial setup, some CAs as well as the admin certificate are generated. When passing a certain point in time the theoretical end-date for our certs and CAs is beyond 19 January 2038 which will cause trouble to the system as the end-date of a cert/CA must not be before the start-date.

*SUMMARY NOTICE*
Any and all systems which have this up2date applied before the end of August 2010 will be completely free from troubles or consequences as a result of this global Linux/Unix issue. If you apply it, you can avoid needing to educate yourself further. For units which are not updated before then, we will issue a single fix for this bug via a specially crafted pattern Up2Date as well, which will be automatically patched/applied without updating the firmware version.

If you would like more education on this issue, you can read more about it here via Wikipedia's entry: Year 2038 problem.

Remarks:
  • Configuration will not be upgraded
  • System will be rebooted
News:
  • This Up2Date should be applied before end of August 2010
Fixes:
  • Fix [14657] Overflow in certificate creation will cause invalid certificates
Versienummer:8.001 / 7.507
Releasestatus:Final
Besturingssystemen:Linux
Website:Astaro
Download:ftp://ftp.astaro.de/pub/ASG
Licentietype:Voorwaarden (GNU/BSD/etc.)
Moderatie-faq Wijzig weergave

Reacties (4)

niet installeren! ik heb de update uitgevoerd van 8.000 naar 8.001. na de update moet ik elke 24 uur mijn router rebooten omdat hij de verbinding met het internet verliest. hiervoor heb ik 2 maanden zonder problemen gedraait.
De gratis VMware variant voor thuisgebruik werkt prima bij mij, een 7 versie.
Voor de personen die al problemen hebben ervaren met hun Astaro ASG door het niet updaten van de firmware: http://up2date.astaro.com...rror_in_old_astaro_v.html
Zeer fijn stukje software om thuis een degelijke firewall op te zetten het voordeel is ook dat het gratis is voor thuis.

Zelf nog geen problemen gevonden in versie 8.001 alleen wel jammer dat de Wireless security weg is gelaten.

Op dit item kan niet meer gereageerd worden.



Apple iOS 10 Google Pixel Apple iPhone 7 Sony PlayStation VR AMD Radeon RX 480 4GB Battlefield 1 Google Android Nougat Watch Dogs 2

© 1998 - 2016 de Persgroep Online Services B.V. Tweakers vormt samen met o.a. Autotrack en Carsom.nl de Persgroep Online Services B.V. Hosting door True