Huawei USG6000 Upgrade Manual page 35

Hide thumbs Also See for USG6000:
Table of Contents

Advertisement

HUAWEI USG6000&USG9500
Upgrade Guide
3.
4.
5.
6.
7.
Issue 01 (2018-01-16)
<sysname>dir /charset_backup/
Idx
Attr
Size(Byte)
FileName
0
-rw-
usermanage.db
1
-rw-
– To roll back to the previous encoding format, copy the file to the hda1 root
directory and then set charset_back.cfg as the configuration file for next startup,
copy usermanage.db to the umdb/umsystem/ directory to overwrite the user
database file, and run the delete log sdb command in the system view to delete log-
related files. Then restart the device.
– In the hot standby scenario, the encoding format switching can be performed only
in the active/standby hot standby environment but not the load-balancing hot
standby environment.
– In the hot standby scenario, complete the encoding format switching on the standby
device, perform an active/standby device switchover, and then complete the
encoding format switching on the new standby device.
DSVPN
DSVPN is incorporated in V500R001C50 and later versions. However, DSVPN does not
support hot standby.
NOTE
Although DSVPN does not support service backup between two devices, active/standby hot
standby can be implemented for load balancing or fault tolerance. If the active device or the link of
a service interface fails, an active/standby device switchover can be performed. The standby
device automatically takes over services. Traffic interruption may occur during the active/standby
device switchover.
The service restoration time on the active and standby devices is related to the registration interval
configured using the nhrp registration interval command and entry aging time configured using
the nhrp entry holdtime seconds command.
Impact on MIB nodes:
Use the mapping MIB database.
Impact on the signature databases:
After the software version is upgrade, you must upgrade the signature databases as well.
Impact on ACLs:
If ACLs are used to control SNMP, SSH, TELNET, WEB, API, FTP, and NTP access,
check whether the referenced ACL and accessed interface are in the same VPN instance.
If not, the administrator cannot log in to the device. In this case, modify the
configuration. To be specific, bind the ACL to the corresponding VPN instance. The
problem will not occur after V1 is upgraded to V500R001C30. For the upgrade from
V500R001C00 to V500R001C30 to the current version, check whether the configuration
meets the preceding rule. If the ACL should be bound to a VPN instance, bind it. For
example, the ACL is not bound to the VPN instance (acl number 3000). After the
modification, the ACL is bound to the corresponding VPN instance (acl number 3000
vpn-instance default).
Impact on the SSL VPN client:
– When a plug-in is updated, the local device needs to obtain the new SecoClient.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
Date
35,840
Nov 03 2017 15:30:34
59,141
Nov 03 2017 18:20:00
Time
charset_back.cfg
1 USG6000
26

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Usg9500

Table of Contents