Sophos UTM: Up2date 9.509-3 released

Sophos has released 9.509-3 today, this is a 1,2MB small fix, that addresses the following issues: Up2Date Information News Maintenance Release Remarks System will be rebooted Bugfixes NUTM-9619 [Email] CVE-2018-6789: buffer overflow in base64d function in SMTP listener NUTM-9698 [Network] After upgrade to 9.508 in VPC IPsec BGP status shows “state error” NUTM-9713 [Network] BGP not advertising network to all neighbors […]

Read more

Active Directory: Move FSMO roles with PowerShell

When moving FSMO roles the old fashioned way, you use MMC and move the roles each individually, it takes a little time, but it’s somewhat troublesome. BUT, this can be achieved much quicker with Powershell 🙂 Here is how to transfer all 5 FSMO roles: Move-ADDirectoryServerOperationMasterRole -Identity DC01 –OperationMasterRole PDCEmulator,RIDMaster,InfrastructureMaster,SchemaMaster,DomainNamingMaster Where “DC01” above is the TARGET DC. Check with netdom […]

Read more

Update to enable TLS 1.1 and TLS 1.2 as a default secure protocols in WinHTTP in Windows

With PCI compliance scans, one are often told to move TLS version to 1.2, but many clients cannot connect through a proxy to ex. Exchange. Let’s say Windows 7 with Outlook 2010. What you get when you enforce TLS 1.2, is that Outlook can no longer connect (Outlook Anywhere), it because the OS does not support higher that TLS 1.0 […]

Read more

Sophos XG: SFOS 17.0.6 MR6 Released

Sophos has just released the long awaited MR6, for SFOS v17, I have installed it, and it looks like the VPN dropouts, finally stopped 🙂 Release notes: Note: On v16 to v17 update, SFOS does not set SHA2 truncation on custom IPSec policy. Please see https://community.sophos.com/kb/127867 for details. Issues Resolved NC-26520 [Base System] Logviewer exceeds allotted diskspace NC-26601 [Base System] validatePort didn’t validate […]

Read more

Sophos UTM: Up2date 9.507 and 9.508 released

Sophos has released two updates today (only ftp atm. not staged rool out), for the UTM software, here are the release notes: 9.507: Up2Date 9.507001 package description: Remark: System will be rebooted News: Maintenance Release Bugfixes: Fix [NUTM-6920]: [Basesystem] Support for new SG1xx(w) models Fix [NUTM-9174]: [WAF] Certificate dropdown is visible for virtual webserver using HTTP RPM packages contained: pciutils-ids-2015.10.07-3.1.1884.g871a7b6.rb9.noarch.rpm […]

Read more