Red Hat SATELLITE 5.0.0 RELEASE NOTES Manuel d'utilisateur Page 5

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 52
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 4
Palo Alto Networks PAN-OS 6.1 Release Notes 5
PAN-OS 6.1 Release Information Features Introduced in PAN-OS 6.1
Management Features
The following Management features are introduced in PAN-OS 6.1.0. For more details about these features and
for instructions on configuring them, refer to Management Features in the New Features Guide.
New Management
Feature
Description
Security Policy Rulebase
Enhancements
The security policy rulebase enhancements enable more streamlined control over intrazone
(within a zone) and interzone (between zones) traffic. With these enhancements, you can
now create rules that enable visibility and control over intrazone or interzone traffic for
multiple zone pairs in a single rule rather than having to create separate rules for each pair.
To enable this flexibility, a new Rule Type classification indicates whether the rule matches
intrazone traffic, interzone traffic, or both intrazone and interzone (called universal) traffic.
The default Rule Type is universal. When you upgrade to PAN-OS 6.1, all existing rules in
your security rulebase will be converted to universal rules.
In addition, the implicit default rules the firewall uses for handling intrazone and interzone
traffic that doesn't match any other rules have now been exposed, allowing you to override
select settings—including logging, action, and threat inspection settings—on these rules.
App Scope
Enhancements
App Scope has been updated to allow for improved security and a lighter footprint. This
change supports enhancements that enable you to:
Export maps, charts and images (.png or .pdf); export requires a browser that supports
HTML 5
Zoom-in and out of charts
Toggle legend entries in a chart to select the data that is displayed on the screen
Authenticated NTP
You can now configure the firewall to authenticate time updates from the NTP server used
to synchronize the firewall clock. You can enable Authenticated NTP to use symmetric key
exchange (shared secrets) or autokey (public key cryptography) authentication. Use
Authenticated NTP to prevent tampering with the firewall clock and resulting disruptions
to logging and schedule-based policies and services.
Multiple M-100 Interfaces
The Panorama™ M-100 appliance now supports the use of separate interfaces for
management, device log collection, and collector group communication. Configure the eth0
(MGT), eth1, and eth2 interfaces interchangeably for one, two or all three functions. By
default, the MGT interface performs all three functions but configuring separate interfaces
is a best practice to improve security, control traffic prioritization, performance, and
resilience.
Related Log Detail View
Enhancements
To make it easier to correlate log information from a session, you can now click through the
related logs in the Detailed Log View without closing the window and switching views. You
can switch between the URL Filtering, Threat, Traffic, and Data Filtering logs associated
with a session and the Detailed Log View window will dynamically update to display
pertinent information for the selected log.
Log Forwarding
Optimization
Log Forwarding has been enhanced to be more efficient and to use less CPU on all
platforms.
Vue de la page 4
1 2 3 4 5 6 7 8 9 10 ... 51 52

Commentaires sur ces manuels

Pas de commentaire