Download Print this page

Nortel 6000 Series Manual page 8

Switched firewall

Advertisement

Release Summary
1.
Release Date : June 2008
Purpose
: Software maintenance release to address customer software issues.
Important Notes Before Upgrading to This Release
2.
Upgrade to 4.2.2 is supported from 4.0.1 or later versions. 4.2.2 requires 500 MBytes free space on the
/isd partition. To check the available free space, login as root, run "
"Avail" column. If you do not have enough free space, you will get an error saying "
..." when you try to download the .pkg file.
software
If there is not enough free space for upgrade, please export the current configuration using "
do a clean install from CD, and then import the configuration using "
exported from 4.0.2 or below is imported into 4.1.1, you will lose all configured static routes. Please see
Q01158579 on how to recover the static routes.
When upgrading from 4.0.x to 4.2.2, please keep the following things in mind. 4.2.2 is a combined
L2/L3 firewall. If you have multiple ports in the same VLAN, the default behavior of 4.2.2 is to apply
the firewall policy to traffic that is bridged between the ports. This is different from the 4.0.x behavior,
which applied the firewall policy only to routed traffic. If you would like to keep the 4.0.x behavior,
please disable L2 firewall processing on these VLANs using the "/cfg/net/vlan <n>/l2fw" CLI item
after upgrade. After upgrade from 4.0.x, please make sure the accelerators are configured by running
"/info/det". If an error is reported, please see Q01157140 to recover.
Procedure to upgrade from CLI
• Use "/boot/software/download" to download R60 or R65 upgrade package
NSF_Director_4.2.2.0_R60.pkg or NSF_Director_4.2.2.0_R65.pkg).
• Activate 4.2.2 image using "/boot/software/activate".
• This should be done only in one SFD.
• Please wait until SFDs reboot and all upgrade process is complete.
• Re-establish the trust for each director by,
o Reset sic on the firewall director (/cfg/fw/sic).
o Unload the default policy on the firewall director (/maint/diag/uldplcy).
o On the CP management server, Reset and re-initialize sic on the firewall director object
Notes: 1.Upgrade from 4.0.1-x to 4.2.2 is not supported. Please perform a clean install using .iso image. For all
later versions the above procedure works.
2. Upgrade to 4.2.2 from any previous versions is not supported through BBI. Only CLI upgrade is
supported.
©2007-2008 Nortel Networks Limited
NORTEL SWITCHED FIREWALL 6000 Series
Software Release 4.2.2
" and look under the
df –H /isd
Failed to unpack
/cfg/ptcfg
". When configuration
/cfg/gtcfg
",
8

Advertisement

loading