The Model 5400 Series Symantec Gateway Security 2.0 has released hotfixes that address the denial of service attack issue reported against isakmpd.
deffa512afcdbd22f1b06b95302cfb62e4a31cd4a5998bed1edad3270d8d4f09
Product: Symantec Gateway Security 2.0 - Model 5400 Series
Copyright © 2004 Symantec Corporation August, 2004
************************************************************************************
Hotfix: SG8000-20040715-00 - Entrust updates
************************************************************************************
This document contains the following information about the Symantec Gateway Security
2.0 - Model 5400 Series:
* Prerequisites
* Included modules
* Fix description
* Installation instructions
* Uninstallation instructions
************************************************************************************
Prerequisites:
HB8000-20031023-00 - December 2003 patch
SG8000-20040405-00 - April 2004 patch
************************************************************************************
Included modules:
isakmpd
libEntrust.so
libkmp.so
************************************************************************************
Fix description:
Corrects problem with Denial of Service attack reported against isakmpd in
CAN-2004-0369.
************************************************************************************
Installation instructions:
The April 2004 patch must be installed prior to installing this hotfix.
To install the patch
1. Download the entrust-sgs20.tgz file to a location that is accessible from
the Security Gateway Management Interface (SGMI).
2. In the SGMI, on the Action menu, click HotFix.
3. In the left pane of the Hotfix Management window, click Install hotfix.
4. In the right pane of the Hotfix Management window, click Browse.
5. In the Choose file dialog box, browse to and select the entrust-sgs20.tgz file,
and then click Open.
6. In the right pane of the Hotfix Management window, click Install.
7. Wait until a message appears in the right pane of the Hotfix Management window.
(Note: there is no visible indication of activity.)
8. If the message includes a "Restart" link, click the link and wait until the
"Security gateway is restarting" message appears.
9. Close the Hotfix Management window.
************************************************************************************
Uninstallation instructions:
To uninstall the patch
1. In the SGMI, on the Action menu, click HotFix.
2. In the left pane of the Hotfix Management window, click Uninstall hotfix.
3. In the right pane of the Hotfix Management window, click the radio button next
to hotfix ID SG8000-20040715-00.
4. In the right pane of the Hotfix Management window, click Uninstall.
5. Wait until a message appears in the right pane of the Hotfix Management window.
(Note: there is no visible indication of activity.)
6. If the message includes a "Restart" link, click the link and wait until the
"Security gateway is restarting" message appears.
7. Close the Hotfix Management window.
************************************************************************************