
19
Cisco PIX Security Appliance Release Notes Version 7.2
OL-10104-01
Important Notes
Caution If you share the Stateful Failover update link with a link for regular traffic such as your inside interface,
you must change your configuration before upgrading. Do not upgrade until you have corrected your
configuration, as this is not a supported configuration and Version 7.2(1) treats the LAN failover and
Stateful Failover update interfaces as special interfaces. If you upgrade to Version 7.2(1) with a
configuration that shares an interface for both regular traffic and the Stateful Failover updates, configuration
related to the regular traffic interface will be lost after the upgrade. The lost configuration may prevent you
from connecting to the security appliance over the network.
Readme Document for the Conduits and Outbound List Conversion Tool 1.2
The security appliance Outbound and Conduit Conversion tool assists in converting configurations with
outbound or conduit commands to similar configurations using ACLs. ACL-based configurations
provide uniformity and optimize the ACL feature set. ACL-based configurations provide the following
benefits:
• ACE insertion capability — Provides simplified system configuration and management, which
allows you to add, delete or modify individual ACEs.
• Outbound ACLs and time-based ACLs— Provides administrators with improved flexibility for
defining access control policies by adding support for outbound ACLs and time-based ACLs.
• Enabling and Disabling of ACL entries — Provides a convenient troubleshooting tool that allows
administrators to test and fine-tune ACLs without the need to remove and replace ACL entries.
MIBs Support
The Cisco Unified Firewall MIB offers a unified SNMP standards-based monitoring interface for
functionality on the security appliances. The Unified Firewall MIB offers statistics collection and
monitoring for Stateful Packet Inspection, URL Filtering, and Application Inspection.
For more information on MIB Support, go to:
http://www.cisco.com/public/sw-center/netmgmt/cmtk/mibs.shtml
Features not Supported in Version 7.2(1)
The PPTP feature is not supported in Version 7.2(1).
Downgrade to Previous Version
To downgrade to a previous version of the operating system software (software image), use the
downgrade command in privileged EXEC mode.
For more information and a complete description of the command syntax, see the Cisco Security
Appliance Command Reference.
Comentarios a estos manuales