When the associated virtual distributed switch has IGMP or MLD snooping enabled, the distributed firewall allows IGMP or MLD messages by default. You will not need to configure related security policies manually.
Adapts to AOC high availability features and supports reusing the AOC witness node as the witness node for ANS controllers.
Supports independent description display of custom security policies, as well as search and advanced filtering.
Adds a new format validation during the configuration of security policy port numbers, and supports converting spaces automatically to English commas as separators.
Removes the character limit for security group description.
Optimizes the configuration method and description of symmetric policies in custom security policies, and specifies that this configuration allows egress traffic rules for source virtual machines in the ingress allowlist and ingress traffic rules for destination virtual machines in the egress allowlist.
The session persistence feature for virtual services now includes the server fault handling feature. The default policy is immediately switch to the new server, and can be manually adjusted to continue session persistence via the command line.