Read Before Updating
Firmware Version 6.6
Enhancements
OpenSSL is upgraded to version 3.0 for enhanced security. [BNADC-15601]
Support for SameSite cookie attributes is added under Cookie Security. [BNADC-14885]
The GSLB service now supports the round-robin method to handle requests within the same zone. [BNADC-15474]
IO operations are minimized to improve the Hardware life. [BNADC-14985]
Added support for new SNMP OIDs for Link status, Link utilization, Link errors, Memory Usage, CPU Utilization, CPU Fan Speed, and System Fan Speed. [BNADC-15679]
Fixes
The TCP proxy service created with the port range specified in descending order is now handled correctly. [BNADC-15899]
The issue with the server certificate not being updated in the CA bundle after deletion has now been fixed. [BNADC-15886]
The server username under FTP access logs can now be configured with special characters. [BNADC-15680]
In a rare scenario, the data path was interrupted and resulted in logging IPS logs. This has been addressed. [BNADC-15553]
When the Instant SSL service is disabled, it now properly deactivates both its redirect service and the HTTPS service. [BNADC-15324]
The Custom Virtual Interface created on a bonded interface is now handled correctly. [BNADC-15108]
Custom role users can now log in to the ADC web interface after the firmware upgrade. [BNADC-15058]
Attack graphs now show the time according to the configured timezone settings. [BNADC-10084]
nghttp2 versions before 1.61.0 allowed excessive CPU usage due to the unbounded reading of CONTINUATION frames, which is mitigated in v1.61.0 by limiting their number per stream. [BNADC-15859]
Vulnerability Fix: HTTP/2 Rapid Reset Attack vulnerabilities mentioned in CVE-2023-44487 have been addressed. [BNADC-15674] [BNADC-15647]