Release Notes > What’s Changed and/or Modified > Changed Features in Version 31.0.3.0
Changed Features in Version 31.0.3.0
Management Access on a Data Port
The default value for access management services on a data port (/cfg/sys/access/port) has changed from enable to disable on all ports. Starting with this version, you must enable the management access on data ports whenever required (/cfg/sys/access/port/add).
SSL Enhancements
OpenSSL Upgrade
The OpenSSL version on Alteon XL and Extreme models has been updated to OpenSSL 1.0.2l for both data and management paths.
Note: On Alteon S and SL models, non-HW SSL acceleration models, and Alteon VA, the OpenSSL version is 1.1.0f.
CDP Status Monitoring
The last failed and last successful CRL file download timestamp can now be viewed per CDP group using the info/slb/ssl/cdp CLI command or the WBM pane Monitoring > Application Delivery > SSL > CDP.
After CRL file download failure, an error message is sent via all active logging mechanisms.
NFR ID: prod00249464.
Large CRF File Download
Alteon now supports downloading a large CRL file up to 200 MB.
NFR ID: prod00245263
Client Certificate Enhancements
Alteon now supports UTF-8 encoding and reverse order for Issuer Names and Subject Names when passing the client certificate details to the server in an HTTP header.
NFR ID: prod00249462
Connection Handling When Service is Down
By default, Alteon drops new TCP connections that arrive at the virtual service while the service is down, unless there is treatment at Layer 7 (for example, a “Sorry page” AppShape++ script).
Now you can configure Alteon to answer such new connections (SYN) with an RST. The way TCP connections are handled when the service is down can be defined using the new Connection Handling on Service Down parameter.
Note: When a service with the Connection Handling on Service Down parameter set to Reset goes down, and as a consequence the virtual server also goes down, the VIP is still kept in Layer 2/Layer 3 tables to allow client attempts of new connections to reach Alteon.
NFR ID: prod00247825
GSLB Enhancements
GSLB Hash Metric
The GSLB hash metric used for site selection in the DNS phase takes both the IP address and domain name as input. The new DNS Rule Persist/Hash Parameters flag (cfg/slb/gslb/rule X/persist) allows defining whether the hash input is Source IP address + domain or the Source IP address only.
This is relevant for hash, phash, and minmiss GSLB metrics (gmetric).
NFR ID: prod00251243
DSSP for Standalone GSLB device
With the introduction of the DSSP health check for remote real servers it is now possible for a standalone GSLB device to receive remote real servers availability via DSSP with a simplified configuration (without the need for dummy virtual servers and services).
NFR ID: prod00253132