New Features
Fireware v12.11.1
Fireware v12.11.1 firmware is publicly available for Fireboxes in WatchGuard Cloud. This release includes a number of new features and enhancements.
For more information, go to What's New in Fireware in Help Center.
WatchGuard IPSec Mobile VPN Client (NCP) for Windows Support for IKEv2
With this feature, you can now import an IKEv2 VPN profile to the WatchGuard IPSec Mobile VPN client for Windows.
For more information, go to Download the Mobile VPN with IKEv2 Client Profile in Help Center.
Support for the Message-Authenticator Attribute for RADIUS Authentication Servers
With this feature, you can now configure RADIUS authentication servers in WatchGuard Cloud to require the Message-Authenticator attribute.
For more information, go to Add an Authentication Domain to WatchGuard Cloud in Help Center.
Configure a Cloud-Managed Firebox as a NetFlow Exporter
With this feature, you can configure a cloud-managed Firebox as a NetFlow exporter. You can use NetFlow data to gain more insights into your network traffic. For example, you can use NetFlow data to troubleshoot network performance issues or investigate security concerns.
For more information, go to Configure NetFlow Settings for a Cloud-Managed Firebox in Help Center.
Policy-Based BOVPNs in WatchGuard Cloud
With this feature, you can configure IKEv2 BOVPNs that use policy-based tunnel configurations to provide and maintain interoperability with third-party VPN gateways.
For more information, go to Configure a Policy-Based BOVPN to a Locally-Managed Firebox or Third-Party VPN Endpoint in Help Center.
Set a Connection Rate Limit in a Cloud-Managed Firebox Policy
With this feature, you can create a limit on a cloud-managed Firebox policy so that it filters only a specified number of connections per second. When you configure a limit, the Firebox denies traffic for any additional connections and generates log messages and optional notifications.
For more information, go to Configure a Connection Rate Limit in a Firewall Policy in Help Center.
Enable SafeSearch Enforcement, Fastvue, Google Apps Allowed Domains, and URL Path Keyword Filtering (Beta)
With this feature, you can now enable and configure SafeSearch Enforcement, Google Apps Allowed Domains, Fastvue, and URL Path Keyword Filtering when Decrypt HTTPS Traffic is enabled on an Outbound policy.
To learn more or to report an issue, go to the WatchGuard Cloud Firebox Management Beta test community.
Resolved Issues
- When you enable WebBlocker Override, it no longer causes content categories with Bypass Decryption enabled to be inspected. [FCCM-9789]
- When WebBlocker is configured on a cloud-managed Firebox to filter web traffic, the WebBlocker deny page now correctly appears in the browser instead of a connection error when WebBlocker blocks outgoing HTTPS traffic. [FCCM-5277]
- Log searches that include the word "any" no longer fail with a 400 error. [FCCM-9937]
- Minor updates and bug fixes. [FCCM-9923, FCCM-9970]