New features and enhancements in SNS 4.3.33 LTSB

Certificates and PKI

In Objects > Certificates and PKI, the Hashes section has been renamed Details, and three new fields have been added: Key type, Key size and Extended Key Usage.

Filter - NAT

When a filter rule in the Filter - NAT module is edited, an information icon appears in the Action tab of the editing window, warning the user that a log level other than the standard level may cause log saturation.

Expired Certificate Revocation Lists (CRL)

Support reference 85690

A warning message now appears in the Message widget in the dashboard to warn the user when the configuration allows SSL VPN tunnels to be set up with an expired CRL.

IPsec VPN

Support reference 85633

The IkeDeleteDelay configuration token can now be directly configured using the CLI/serverd command:

CONFIG IPSEC UPDATE

This token makes it possible to set an interval (in seconds) between a request to shut down an IKE security association and its actual shutdown during a reauthentication. The token accepts values between 0 and 20.