Resolved Issues for 25.2.20-VEN
Issue | Fix Description |
---|---|
E-127137 | VEN Platform Handler is now responsive on systems with Name Resolution Policy enabled The VEN Platform Handler became non-responsive on systems with Name Resolution Policy enabled. In this case, the issue prevented the user from uninstalling the VEN but it could have appeared in other situations. This issue is resolved. |
E-126071 | Linux and AIX VEN activation issue is now fixed in SOCKS Proxy environment Where a web proxy server was configured for a VEN, activation could fail on Linux and AIX workloads if the web proxy server also supported the SOCKS Proxy protocol. |
E-125300 | Traffic directionality and source/destination representation is fixed When the Container Inherits Host Policy (CIHP) feature is enabled on a workload hosting a container, the VEN reports traffic flowing into the workload (that is, traffic flowing both to the host and to the hosted containers). The VEN collects and reports all traffic flows in the host network namespace. In some cases, the host and the PCE interpreted the directionality of the traffic differently. For example, the host interpreted traffic flowing inbound to the container as outbound traffic because it flowed out from the host. Conversely, the PCE interpreted the same traffic as flowing inbound to the container. Prior to VEN release 24.2.30, such traffic was depicted on the PCE Traffic page as outbound traffic (consistent with the host's interpretation), which caused confusion. Beginning with VEN release 24.2.30, traffic in this case is now shown as inbound traffic, consistent with the customer and the PCE’s interpretation. |
E-124199 | VEN deactivation now works as expected On a Citrix PVS workload running VEN software versions 24.2.10, 24.2.11, or 24.2.20, when attempting to deactivate the VEN, the deactivation operation became non-responsive in some cases, requiring a hard reboot to remedy. |
E-123154 | FQDN rules now function properly FQDN rules did not function properly on systems using IPv6 DNS servers and nftables firewall. This issue is resolved. |
E-123210 | Policy no longer fails when Machine Auth and Rule Hit Count are enabled on Windows On Windows workloads, VENs failed to generate policy if Machine Authentication (AdminConnect) and Rule Hit Count were enabled. This issue is fixed. |
E-122188 | Policy sync error no longer occurs where VEN operates in a web proxy environment In environments where a web proxy was configured to direct the VEN to use the proxy to communicate with the PCE and the VEN was switched to Selective mode, new policy is now accepted even if there is no Deny rule blocking communication to the proxy. |