Release 4.3.1 (preview):
DynDNS: fixed saving of 'dyndns nobind' setting [NDM-3816]
HTTP: fixed redundant disclosure device information [NDM-3783]:
CVE-2024-4021
CVE-2024-4022
IP: fixed applying static routes in multiple IP policies [NDM-3814]
IP: fixed assignment of "conform" policy after automatic client registration [NDM-3810]
IPsec: fixed wrong "crypto map" use in L2TP/IPSec server settings [NDM-3811]
OpenConnect: added random padding to packets to improve connection resistance (reported by @dimon27254) [NDM-3791]
OpenConnect: fixed access to the VPN server's attached network [NDM-3820]
TSMB: enabled support for extended attributes (reported by @dimon27254) [NDM-3645]
VPN: added 'session-logout' command to terminate VPN sessions (reported by @CBLoner) [NDM-3788]:
crypto map l2tp-server session-logout {session}
crypto map virtual-ip session-logout {session}
sstp-server session-logout {session}
vpn-server session-logout {session}
oc-server session-logout {session}
Web: added "https://" to OpenConnect VPN server URI when camouflage is enabled [NWI-4146]
Web: added alphabetical sorting to Policy Bindings [NWI-4092]
Web: fixed various bugs and layout issues on different screen sizes (reported by @dimon27254, @spatiumstas, @enterfaza, @FLK, @mrGhotius) [NWI-4191]:
NWI-4168, NWI-4161, NWI-3901, NWI-4108, NWI-3922, NWI-4083, NWI-4085, NWI-4122, NWI-4125, NWI-4136, NWI-4134, NWI-4135, NWI-4139, NWI-4141, NWI-4130, NWI-4169, NWI-4080, NWI-4160, NWI-4151
Web: implemented display of users in file ACLs for which the system has no accounts configured [NWI-3951]