Примечания к выпуску для Cisco Cisco Firepower Management Center 2000

Скачать
Страница из 40
21
FireSIGHT System Release Notes
Resolved Issues
Resolved an issue where, if you applied an intrusion policy to a managed device that was not set to drop when inline
the system did not block files with a malware disposition when it should. (CSCuv12647)
Resolved an issue where troubleshoot generation from the Health Monitor page failed if you enabled both IPv6 IP 
addresses. (CSCuv27328)
Resolved an issue where the system incorrectly saved blacklist as the priority list when configuring the priority 
settings of the reputation preprocessor even if you set the configuration to whitelist. (CSCuv52955)
Improved memory utilization for access control rule memory with port ranges. (CSCuv64114)
Resolved an issue where, if you modified an attribute setting in a host profile, the system did not retain the host’s 
attribute setting after the host IP address changed. (CSCuv69748)
Improved network map generation. (CSCuv72386)
Resolved an issue where the system did not include new user accounts not mapped to a host IP address, and 
grouped access control rules configured to detect user traffic by group failed. (CSCuv78458)
Resolved an issue where your network analysis policy did not correctly load after a system update. (CSCuw44448)
Issues Resolved in Previous Versions
Previously resolved issues are listed by version.
Issues resolved in Version 5.4.0.4 and Version 5.4.1.3:
Security Issue
 Addressed a vulnerability issue in Linux, as described in CVE-2011-4131.
Security Issue
 Resolved an issue where managed devices experienced microengine failure when processing 
corrupted traffic. (CSCuu86214)
Resolved an issue where you could not reapply an intrusion policy (individually or as part of an access control policy 
reapply) a total of 4096 or more times to a single managed device was not supported. (134385/CSCze89030)
Resolved an issue where, if you imported an intrusion policy referenced by another policy as a shared layer or as a 
base policy, importing the intrusion policy failed. (144946/CSCze96151)
Resolved an issue where the system incorrectly listed twice the number of registered targets on the Intrusion Policy 
list page. (CSCus08840)
Resolved an issue where you could add old events from the clipboard to a new incident, even though the events in 
your clipboard section of the Incidents page appeared empty. (CSCus67128)
Resolved an issue where, if you edited an access control rule with multiple category conditions and attempted to 
remove one of the conditions, the system only removed the first listed category condition. (CSCut25082)
Resolved an issue where the system reported intrusion rules as inactive if the rule targeted a passive zone on an 
8000 Series device and performed the show fastpath-rules CLI command. (CSCut32479)
Resolved an issue where configuring a file policy with Inspect Archives enabled caused Snort to stop passing 
traffic.(CSCut39253, CSCuu60621)
Improved troubleshooting. (CSCut43542)
Improved Disk manager reliability. (CSCut65740)
Improved correlation rule performance. (CSCut97938)
Resolved an issue where downgrading RPM packet manager (RPM) files starting with Cisco did not correctly reset 
the RPM install history. (CSCut98525)