Patch 86251-08 For Rapier Series Switches

13

PCR: 03898

Module: ETH

Level: 3

An ETH interface was sometimes shown as Up in the output of the SHOW INTERFACE command when it was actually Down. This issue has been resolved.

PCR: 03902

Module: FIREWALL

Level: 3

Under some circumstances traffic did not have NAT applied if a standard subnet NAT rule was added to a public interface. Such rules did not correctly match incoming traffic when the REMOTEIP parameter in the ADD FIREWALL POLICY RULE command was not specified, and the destination IP address was not the interface’s actual IP address. If this situation occurred, traffic was redirected back out the public interface. This issue has been resolved.

PCR: 03906

Module: SWITCH

Level: 2

Software emulation of layer 3 hardware filtering was not operating correctly. Packets that the switch had no routing information for were filtered incorrectly. The first packet of a flow that should have been dropped was not dropped, and a flow that should have been allowed was being dropped. This issue has been resolved.

PCR: 03921

Module: IP ARP

Level: 3

ARP requests with invalid source MAC and IP addresses were being processed, but should have been dropped. This issue has been resolved.

PCR: 03922

Module: PIM

Level: 3

The SET PIM INTERFACE command did not succeed when the

HELLOTIMER parameter was specified. This issue has been resolved.

PCR: 03925

Module: IPV6

Level: 3

Incorrect debug information was returned when an ICMPv6 PacketTooBig message was received. This issue has been resolved.

PCR: 03928

Module: IKMP

Level: 2

ISAKMP in aggressive mode did not establish a connection when the peer client sent 10 or more payloads. This issue has been resolved.

PCR: 03931

Module: IPSEC

Level: 3

The IPSec configuration was not created correctly when the RADDRESS and LNAME parameters in the CREATE IPSEC POLICY command were used together. This issue has been resolved.

PCR: 03934

Module: IPSEC

Level: 2

The CREATE IPSEC POLICY command failed if the interface specified with the INTERFACE parameter did not have a global IPv6 interface defined. This PCR implements a workaround by using the interface’s link-local IPv6 address if no other IPv6 address can be found.

PCR: 03936

Module: IKMP

Level: 3

When ISAKMP was used with IPv6, an incorrect IP address was displayed in the output of the SHOW ISAKMP EXCHANGE command. This issue has been resolved.

Patch 86251-08 for Software Release 2.5.1 C613-10356-00 REV I

Page 13
Image 13
Allied Telesis 86251-08 manual PCR Module Switch Level, PCR Module IP ARP Level, PCR Module Ikmp Level