Applies To:
Show Versions
BIG-IQ Security
- 4.3.0
Summary:
This release note documents the version 4.3.0 release of BIG-IQ Network Security.
Contents:
- User documentation for this release
- Browser support
- Software installation
- Support for BIG-IP devices
- Upgrading BIG-IQ Network Security
- Licensing BIG-IQ systems
- Removing BIG-IQ system services from a BIG-IP device
- New features in 4.3.0
- Fixes in release 4.3.0
- Known issues in release 4.3.0
- Contacting F5 Networks
- Legal notices
User documentation for this release
For a comprehensive list of documentation that is relevant to this release, refer to the BIG-IQ Security 4.3.0 Documentation page.
Browser support
BIG-IQ Network Security supports the following browsers and browser versions:
- Microsoft Internet Explorer version 9.0.x
- Mozilla Firefox, 26.x or later
- Google Chrome 32.x or later
Software installation
BIG-IQ Network Security runs as a virtual machine in specifically-supported hypervisors. After you set up your virtual environment, you can incorporate BIG-IQ Network Security into your network as you would any other F5 Networks device.
For procedures about specifying network options and performing initial configuration, refer to the BIG-IQ System: Licensing and Initial Configuration guide.
Support for BIG-IP devices
For details about BIG-IQ Network Security support for BIG-IP devices at various version levels, see the BIG-IQ Compatibility Matrix solution note:
http://support.f5.com/kb/en-us/solutions/public/14000/500/sol14592.html
Upgrading BIG-IQ Network Security
Currently, an upgrade path from BIG-IQ Security 4.2 to BIG-IQ Network Security 4.3 is not supported. To upgrade from BIG-IQ Security 4.2 to BIG-IQ Network Security 4.3, users must reinstall the BIG-IQ systems and rediscover the previously-managed devices.
Licensing BIG-IQ systems
Maximized Enterprise Application Delivery Value
To make it easier and more affordable to get the Software Defined Application Services capabilities all organizations need, F5 introduces three software bundle offerings: Good, Better, and Best.- Good
- Provides intelligent local traffic management for increased operational efficiency and peak network performance of applications.
- Better
- Good plus enhanced network security, global server load balancing, and advanced application delivery optimization.
- Best
- Better plus advanced access management and total application security. Delivers the ultimate in security, performance, and availability for your applications and network.
Removing BIG-IQ system services from a BIG-IP device
New features in 4.3.0
BIG-IQ Network Security provides central firewall management for multiple BIG-IP systems that have Advanced Firewall Manager (AFM) installed and provisioned. The following features are new to release 4.3.0.
- New features for high-availability (HA) configurations
- BIG-IQ Network Security now performs asynchronous replication, which means that data is replicated continuously, asynchronously, as changes are made or commands are run on the active system.
BIG-IQ Network Security also provides automatic failback, which means that if the active node goes down, the standby node takes over and when the active node comes back up, it resumes control automatically.
- Nested address lists and port lists
- This feature enables BIG-IQ users to centrally manage nested address and port lists by providing a means to combine and aggregate addresses and ports into manageable lists/hierarchies.
- Duplicating shared objects, including rule lists and firewall policies
- This enhancement provides users an easy way to replicate (or clone) existing configuration data. It is common for a firewall policy update to be very similar to an existing policy or rule and this enhancement helps to reduce the turnaround time for firewall policy or rule list changes.
- Automatic warning when navigating away from an edit screen if no save performed
- The GUI now provides an automatic warning message that advises the user to save work in progress when navigating away from an open edit screen. This enhancement helps to prevent the accidental loss of work-in-progress configuration changes.
- Graphical difference of shared object conflicts found during the discovery and import/reimport processes
- Note: A conflict is defined as two shared objects in the same partition having the same name, but containing different data.For conflict resolution, the system provides a list of conflicts found. The firewall manager is then presented with a list of actions to resolve the identified conflicts. To in this process, the firewall manager is shown the detailed difference between the existing and incoming object contents between the two shared objects.
- Scale audit logs
- The system enables administrators to set an interval for automatic purging of old entries, and provides an archive mechanism to store old entries as text files.
Fixes in release 4.3.0
Known issues in release 4.3.0
Contacting F5 Networks
Phone: | (206) 272-6888 |
Fax: | (206) 272-6802 |
Web: | http://support.f5.com |
Email: | support@f5.com |
For additional information, please visit http://www.f5.com.
Additional resources
You can find additional support resources and technical documentation through a variety of sources.
- The F5 Networks Technical Support web site: http://www.f5.com/support/
- The AskF5 web site: http://support.f5.com/kb/en-us.html
- The F5 DevCentral web site: http://devcentral.f5.com/
- AskF5 TechNews
F5 Networks Technical Support
Free self-service tools give you 24x7 access to a wealth of knowledge and technical support. Whether it is providing quick answers to questions, training your staff, or handling entire implementations from design to deployment, F5 services teams are ready to ensure that you get the most from your F5 technology.
AskF5
AskF5 is your storehouse for thousands of solutions to help you manage your F5 products more effectively. Whether you want to search the knowledge base periodically to research a solution, or you need the most recent news about your F5 products, AskF5 is your source.
F5 DevCentral
The F5 DevCentral community helps you get more from F5 products and technologies. You can connect with user groups, learn about the latest F5 tools, and discuss F5 products and technology.
AskF5 TechNews
- Weekly HTML TechNews
- The weekly TechNews HTML email includes timely information about known issues, product releases, hotfix releases, updated and new solutions, and new feature notices. To subscribe, click TechNews Subscription, complete the required fields, and click the Subscribe button. You will receive a confirmation. Unsubscribe at any time by clicking the Unsubscribe link at the bottom of the TechNews email.
- Periodic plain text TechNews
- F5 Networks sends a timely TechNews email any time a product or hotfix is released. (This information is always included in the next weekly HTML TechNews email.) To subscribe, send a blank email to technews-subscribe@lists.f5.com from the email address you are using to subscribe. Unsubscribe by sending a blank email to technews-unsubscribe@lists.f5.com.