Manual Chapter :
New Features in this Version
Applies To:
Show Versions
F5OS-C
- 1.2.2, 1.2.1
New Features in this Version
Tenants
For information about supported tenants, see the
VELOS
platforms
section of the The F5 hardware/software
compatibility matrix.Software
Additional IPv6/IPv4 and FQDN Address
Support
This release enables you to use IPv4, IPv6, or FQDN
addresses for NTP servers, remote log servers, DNS servers, RADIUS
servers, LDAP servers, and external file servers (for importing/exporting
files to/from the system).
Network QoS on VELOS systems
This release adds support for QoS queues selected based
on traffic classification using either L3 or L2 mechanisms: IP
Differentiated Services Code Points (DSCP) or 802.1p priorities. This
feature maps 802.1p priority levels in Ethernet frames or DSCP in IP
packets to traffic classes and associated queueing mechanisms within the
VELOS system. For more information, see
VELOS
Systems: Prioritizing Traffic using QoS
.Rolling Upgrade of System Controller and Chassis
Partition Software
This release adds support for a rolling upgrade of the
system controller software and for a rolling upgrade of individual chassis
partition software. In prior F5OS-C releases, these upgrades impacted both
active and standby instances of the respective software stacks at the same
time. Now, the standby and active instances are upgraded sequentially,
allowing for continued manageability and operation across the upgrade
process. For more information, see
VELOS
Systems: Installation and Upgrade
.Active Directory Support for LDAP
Authentication
This release allows you to configure LDAP including
Active Directory servers to authenticate VELOS users. Configuration is
performed from the system controller CLI.
Support for SPDAG
This release adds hardware support for Service Provider
Disaggregation (SP-DAG) on VELOS. To use this feature, in your BIG-IP
tenant, configure a DAG mode (cmp-hash) on a specific VLAN. This selects
an IP address mode for disaggregation rather than the default L4 port
mode. For more information on configuring this feature for your BIG-IP
tenant, see the "BIG-IP DAG Modes for Scalability" section of
BIG-IP Service Provider: Generic Message
Administration
.sPVA Hardware Support for AFM
This release adds hardware support for sPVA features for
AFM, including enabling hardware DoS protection at a per-endpoint
granularity, enabling individual IP addresses to be allow-listed or
deny-listed, and enabling hardware-supported DoS protection profiles on a
per-fully-qualified virtual server basis. For more information on
configuring this feature for your BIG-IP tenant, see
BIG-IP Advanced Firewall Manager: Getting
Started
.TCAM Support for Hardware-based Subnet Virtual
DDoS Protection
This release adds support for hardware-based subnet
virtual DDoS protection, using a TCAM inside the VELOS FPGAs. This feature
enables DoS protection at the subnet level rather than for a fully
qualified IP address; wildcard Allow-Lists and Deny-List which allows or
denies IP subnets; and hardware syn-cookie support for wildcard virtual
servers.
SNMP Support for Monitoring Chassis
Partitions
This release adds support for the standard MIB for
managing Ethernet-like interfaces, as well as an F5 enterprise MIB
F5-PLATFORM-STATS-MIB.
Zone-based DDOS
This release enables the use of zone-based DDOS
prevention using hardware lookups for tenant software installations.
Remote Authentication support
This release supports TACACS+ and Active Directory as
remote authentication methods for VELOS users. Configuration is performed
from either the system controller or chassis partition CLI. For more
information on configuring this feature for your VELOS system, see the
"User Management" section of
VELOS Systems:
Administration and Configuration
System Internal Health Monitoring
This release enables you to query on the health of the
system as a whole or on individual components. You can use the
show system health
command from either the system controller or chassis partition CLI to view
the status (OK, Unhealthy, or NA).Trunk awareness at tenant
This release adds the capability to synchronize trunk information between VELOS
systems and tenants, enhancing the tenant HA health check.