Cisco Cisco Packet Data Interworking Function (PDIF)
PSF Changes in Release 17
▀ PSF Enhancements for 17.0
▄ Release Change Reference, StarOS Release 17
410
CSCum02425 - Total DOS Attacks counter not to be updated for NAT only
enabled
Applicable Products: GGSN, HA, IPSG, PDSN, P-GW
Feature Changes
DoS Attacks Counter
When FW-and-NAT policy had only NAT configured without Firewall enabled, NAT drops were seen and these drops
were reported as DOS attacks in the
were reported as DOS attacks in the
show active-charging firewall statistics
command meant for Firewall
functionality. With this enhancement, the DoS Attacks counter will not be incremented for NAT-only calls.
Previous Behavior: The “Total DOS Attacks” counter in
show active-charging firewall statistics
command was displayed for NAT-only enabled calls.
New Behavior: The “Total DOS Attacks” counter will not be incremented for NAT-only enabled calls. Malformed
packets and header error packets will still get dropped, but will not get incremented in DOS Attacks counter.
packets and header error packets will still get dropped, but will not get incremented in DOS Attacks counter.
CSCum40056 - SFW/NAT changes for IPv6 IPSG
Applicable Products: GGSN, HA, PDSN, P-GW
Feature Changes
Firewall/NAT Support for IPv6 IPSG
Previous Behavior: IPv6 was not supported by IPSG in earlier releases.
New Behavior: In this release, IPv6 IPSG supports Firewall and NAT.