UTM Up2Date 9.206 Released



We are pleased to announce that a new Up2Date package is available for Sophos UTM.

This update introduces several bug fixes and also introduces enhancements for the web filter as well as for SMC WiFi synchronisation.

Please read on to see the full details of this release.

Sophos UTM 9.206


  • Bugfix Release
  • Enhancement: Web filter allows to define exceptions based on User Agent
  • Enhancement: SMC Wifi synchronisation also syncs PSK


  • System will be rebooted
  • Configuration will be upgraded
  • Connected RED devices will perform firmware upgrade
  • Connected Wifi APs will perform firmware upgrade


  • 21170 Exchange 2010 OWA notifications don’t work
  • 24360 improve handling of rpmdb corruptions
  • 4556 SAVI engine scan failed: Unknown SAVI error [0x80040237]
  • 26721 WiFi: Sometimes syslogd on AP is not running after AP booted up
  • 27774 Remote access reporting shows incorrect information about duration of vpn user
  • 27861 3G USB modem intermittently not assigned after reboot
  • 29030 Prevent ulogd coredumps in case of database issues
  • 29141 Input username is not updated to directory notation in case of custom user name attribute
  • 30695 Hostnames with utf-8 characters are not shown in PDF executive report
  • 30863 PIM SM does not work between two networks
  • 30883 Graphs in Executive Report are only shown if “Daily executive report” option is enabled
  • 31252 UMTS failover doesn’t work after HA takeover
  • 31309 Make httpproxy more tolerant to invalid Content-Length value from Server
  • 31320 httpproxy coredumps during shutdown time
  • 31392 [SR] Saving blacklist/whitelist fails in User Portal
  • 31530 ulogd coredump caused by an error message from postgreSQL “integer out of range”
  • 31582 Mails stuck in work queue due to duplicate key value violates unique constraint “primary_m”
  • 31644 Segmentation fault in serve_local_file from /usr/lib/libglib-2.0.so.0
  • 31671 changing time steps of individual OTP tokens results in authentication failure
  • 31784 smtpd is restarting and creates coredumps in 9.201
  • 31806 dhcpd not started after up2date
  • 31812 Extended information from web security reporting results table shows nothing
  • 31835 It’s not possible to send automatic backups if INFO-011 is disabled
  • 31895 smtpd causes high disk I/O after update to 9.2
  • 31907 mails with attachments are causing scanner timeout or deadlock
  • 32008 Using lag interfaces in a bridge setup is not reboot save
  • 32019 Japanese double byte text in “Device Specific Text” of notification mail broken
  • 32027 Packetfilter rules numbering in webadmin and livelog doesn’t match
  • 32043 IPsec Auto-Packetfilter rules depolyed by SUM (4.2) again and again
  • 32108 Country blocking exceptions with empty country doesn’t work if destination is local to UTM
  • 32126 The SMC connection test didn’t work before applying the configuration
  • 32127 smtpd dieing without Coredump
  • 32129 RED: rewrite cert files after cert change
  • 32150 confd sync daemon runnnig on slave node
  • 32165 Don’t allow usage of disabled interface in user portal
  • 32180 smtp connection is lost during unnecessary config reload
  • 32183 RED10: potentially no reboot after firmware update
  • 32214 System freeze using uplink balancing and IPsec bind to interface
  • 32236 bounced spx encrypted mail is shown as delivered
  • 32252 Installer breaks formatting in 70-persistent-net.rules
  • 32254 Master shows slave device name as “unknown”
  • 32376 Problems with form reverse authentication in reverseproxy for OWA / ActiveSync
  • 32378 Reset Adapter and Hardware unit hang after update to v9.204 for intel ethernet controller
  • 82579 LMGigabit 32387 Change snort links to vendor homepage [9.2]
  • 32393 Denial of service in mod_deflate’s request body decompression (CVE-2014-0118)
  • 32401 dhcp option 43 , scope server is not working on one system
  • 32412 Sync WiFi preshared keys to SMC
  • 32519 vpn-reporter.pl segfault in libc-2.11.3.so
  • 32539 The default “nf_conntrack_max” value is too low for new SG550/SG650 series.


Up2date link:  ftp://ftp.astaro.com/UTM/v9/up2date/u2d-sys-9.205012-206035.tgz.gpg
Up2date MD5sum:  bde29145412f5401aed420927febcbd6
File size:  ≈133MB

Up2Date Installation:

Sophos Up2Date technology makes it easy to upgrade your Sophos UTM to the latest version.
There are two ways to apply an already-downloaded Up2Date package to the system:

  1. Log on to WebAdmin, navigate to Management >> Up2Date >> Overview and use Update to latest version now to install the Firmware Up2Date. Click on the “Watch Up2Date Progress in new window” and an extra browser window will show the progress of the Up2Date installation. (The System administrator will receive a notification email once the Up2Date process has finished.)
  2. Download the Up2Date package from our HTTP or FTP Server and install it under Management >> Up2Date >> Advanced:
Sophos UTM Up2Date FTP Mirrors:


  • If you want to provide feedback or want to discuss any of the UTM V9 features you should post it on our User Bulletin Board. Please indicate the version you are using to help us (and everyone helping you).
  • If you have any feedback on our help, manual, or any documentation (Online Help) please send it to nsg-documentations@sophos.com.
  • You are free to use our new demo server environment without hassle, nags, or registration. Enjoy!

Eric Bégoc
Senior Product Manager

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s