Monthly Release Notes - August 2018

Jump to:

GoAnywhere


GoAnywhere MFT

Version: 5.7.5
  • Added a new function to generate a Message Authentication Code (MAC) of a value using a key.
  • Added a new function to Hex encode a value.
  • Added a new function to decode a Hex value.
  • Added a new function to generate the Hash of a value.
  • Added the ability to configure the SSL/TLS protocol version used when connecting to an SMTP server using SSL/TLS encryption. This enhancement was made to SMTP Resources, Email Tasks, and the Global SMTP configuration.
  • Added support for importing web users with passwords hashed using the PBKDF2 (Password-Based Key Derivation Function 2) algorithm.
  • Improved the efficiency of loading keys from a Key Vault by reusing already open DB connections when available.
  • Updated the WebDAV Resource to omit the port in the Host header of the HTTP/S request when the Port field is left blank.
  • Updated the Base64 encode function to accept raw binary input.
  • Upgraded the embedded Apache Tomcat web server from 7.0.85 to 7.0.90
  • Upgraded the Spring libraries from version 4.3.14 to 4.3.18.
  • Fixed an issue with viewing the Completed Jobs log for an Agent or Agent Group where certain databases would show no results when the paginated queries are bypassed.
  • Fixed an issue with the Expiring Certificates gadget where sorting of the certificates fails on later versions of Java.
  • Fixed an issue where an expired PGP in the key management system with a stored password could prevent PGP decryption projects from running.
  • Fixed an issue where invalid query syntax was used on Oracle 11g for loading job log and audit log pages.
  • Fixed an issue where AS2 messages sent requesting an asynchronous MDN would not properly log the calculated MIC to the job log or the message output variable.
  • Fixed an issue where the primary proxy host was logged to a job log when the alternate proxy host was used during a connection.
  • Fixed an issue where Secure Mail package passwords where not properly encoded when sent in an HTML formatted email.
  • Fixed a message typo that appeared when no Cloud Connectors match the search criteria in the Cloud Connector Marketplace.
  • Fixed an issue where passwords emailed for new Web Users and reset Web User passwords where not properly encoded for HTML formatted emails.
  • Fixed an issue where the SOAP task was not properly applying the content encoding when sending an MTOM formatted message.
  • Fixed an issue with the page load speed of the Triggers list page when a large number of triggers are defined. This issue was caused by upgrading JQuery UI in version 5.7.0.
  • Fixed a NullPointerException that would occur when verifying the signature of a PGP signed file and the public verification key does not exist.
  • Fixed an issue where the allowed authentication types feature of the SFTP service and Web Client branding for the HTTPS service were not working properly in IPv6 environments.

GoDrive for Android

Version: 1.4.0
Release Resources

Download the Android Update!

  • Added support for TLSv1.1 and TLSv1.2.
  • Multiple UI improvements related to syncing and unsyncing items, as well as when previewing files.
  • Fixed an application crash that could occur when the device approval has been denied by the administrator.
  • Improved the user experience when attempting to delete shared files.
  • Fixed an issue where locked files could be previewed or downloaded.
  • Significantly reduced the overall size on disk of the application.
  • Added multiple file selection and upload functionality for "Upload files" and "Upload from Photos" features.
  • Added "https://" as the server default value on account registration.
  • Multiple UI improvements related to user notifications.
  • Enhanced the refreshing of the file list page after uploading a file.
  • Fixed an issue where multiple accounts could be registered at the same time.
  • Improved the permission handling when using "Upload Files", "Upload from Camera" and "Upload from Photos" features.

Back to Top

 

Powertech


Command Security

Version: 1.13
New Features
  • A new command, PCSMONSTS, has been created to allow certain resources to be disabled and enabled. The Deferred Action Queue monitor job can be disabled. Once disabled, the PCSDAQMON job will not be allowed to start by any means, thus preventing the PTWRKMGT subsystem from being started automatically. During the time the Deferred Action Monitor is disabled, deferred Actions will be enqueued but will not be executed until the Deferred Action Monitor is started.
  • Two new reports have been developed that display the list of Monitored Commands that make use of each Named Condition or Named Action. These reports are accessible from the Work with Named Condition and Work with Named Action panels, or via the PCSPRTCNDU (Print Named Condition Usage) and PCSPRTACTU (Print Named Action Usage) commands.
  • A new view has been added to the Work with Monitored Commands list that shows the number of times each Monitored Command has been used in a short, recent time period (today, yesterday, or last 24 hours).
  • Three new commands have been added to support automated creation and deletion of Monitored Commands, PCSCPYCMD, PCSNEWCMD, and PCSDLTCMD.
  • Command security now notices damage to the PCS Deferred Action Monitor data queue (PCSDAQ) and repairs it automatically.
Enhancements
  • Options have been added to the Work with Monitored Commands, Work with Named Conditions, and Work with Named Actions list displays to allow a selected item and its rules to be printed. Each of the list displays also now supports F17 to print the complete listing of items. The Work with Monitored Commands display has been further enhanced with the ability to invoke the PCS Journal Report (PCSJRNRPT) for a specific Monitored Command.
  • The name of the program that executed a Monitored Command is now printed on the PCS Journal Report.
  • Each rule printed on the Monitored Command listing, the Named Conditions listing, and the Named Actions listings will now include the status (*ACTIVE or *INACTIVE) for that rule.
  • All reports run from Command Security panels are now submitted to batch using the job description on the administrator's user profile. On the Reports Menu, you have the option to run them immediately or in batch.
  • For all "Compare to" values, any value that begins with an asterisk will be allowed. If the "Compare to" value does not begin with an asterisk, it must match the data type of the command keyword (date, time, integer, etc). This allows the user to enter a wide range of special values while still providing a reasonable chance of picking a value that might work.
  • When selecting commands to monitor, the command finder list now supports a generic filter for the command name, as well as expanded library selections like *LIBL, *USRLIBL, and *ALLUSR. Additionally, F13 has been added to allow you to repeat a list option all the way to the end of the list. This allows you to select a wider range of commands to monitor more quickly than you could before.
  • Sometimes a command can never be changed at run-time by Command Security due to limits imposed by the Operating System. When creating or changing Actions for one of these Monitored Commands, a yellow phrase now appears on the panel indicating that the command string cannot be overridden at run-time. Additionally, those actions that modify the string will not be allowed to be selected from the finder nor specified manually.
Other Fixes
  • The PCSJRNRPT (Journal Report) command has been repaired so that administrators with no special authority can run the report as long as the administrator's user profile is a member of the PTADMIN authorization list.
  • Occasionally the PCS Journal Report would report that an action failed, but it would not print the message text associated with the error. This has been corrected so that the PCS Journal Report will print the correct message text for future errors. This does not correct Action failures logged in the past.
  • Monitoring certain commands used by IBM screens sometimes caused the &CMDNAM variable to return odd values, for example, "X:". This was most common when monitoring DLTUSRPRF and deleting a profile from WRKUSRPRF. The &CMDNAM variable content has been corrected.

  • When determining the calling program for a Monitored Command, HelpSystems' own exit point programs are now omitted from consideration as the calling program. This includes GSCC0100 for the SBMJOB command.
  • Certain commands with qualified parameters, where one part of the parameter is a constant value, caused Command Security to disallow that keyword for selection in a Condition's Data Source. This has been repaired so that the keyword for any parameter that contains any displayable data will be available for selection.

Event Manager

Version: 6.1.0.30000
New Feature
  • Cross-platform Policy Minder events can now be integrated into Powertech Event Manager.
  • A new tool to create a zip file containing the logs and dump files from all components has been made available.
  • Stand Guard anti-virus for Linux and AIX events has been integrated into Powertech Event Manager.
Enhancement
  • Improvements have been made to the performance of Security Events Maintenance.
  • A new feature has been added to allow the filtering of an event when Operator=User/User=Operator in Security Controls at event collection level in Powertech Event Manager.
  • A low water-mark has been added to the ThinkServer queue of messages to be sent to PMDB, improving flow control when a large number of metrics is being written.
  • [CAS-0010091735] An enhancement has been made to provide the option to choose the control sub state (Availability, Performance, Errors) for WebSphere MQ Queue.
  • ThinkServer EventLog agent now allows the user to monitor the LocalHost computer using the new Windows Events API.
  • The event description within Security Events has been enhanced, improving the used icons so that they better describe the affected objects.
  • [CAS-0010096724] "Security Administrators" and "Special Users" categories have been updated in Powertech Event Manager with the correct pre-defined rules.
  • A new attribute has been added (Ignore Folders) to ignore the folders in the check and to take only the files into account. The affected controls are: Generic Folder Check (Old Files in Folder) and Generic Folder Check (Size of Files in Folder).
Other Fix
  • [CAS-0010091727] A fix has been applied so that a re-run of the Summarized Controlled Events report now works as expected if a previous run was canceled and the filters modified.
  • [CAS-0010093890][CAS-0010100413] A fix has been applied so that column filters now work as expected when the number of possible values is very high.
  • A fix has been applied so that only suitable devices are displayed when configuring dependencies for stand alone applications.
  • [CAS-0010097732] A fix has been applied to prevent an access violation error when trying to access an invalid pointer in the ThinkServer Configurator.
  • [CAS-0010107389] A fixed has been applied so that the reports based on Custom Event List templates now accept 3 columns in the 'Group By' section.
  • [CAS-0010100103] An issue has been resolved so that reports based on Summarized Controlled Events now display the correct comment in the 'last comment' column.
  • [2-62046901] When a Security event passed through two security controls being categorized as a Highlighted event and Threat respectively, accessing the event would sometimes lead to one of the two event types (Highlighted or Threat). A fix has been applied to prevent this.
  • [CAS-0010093912] A fix has been applied to ThinkServer so that importing a file that contains monitors with IDs that already exist, no longer causes the monitor to be deleted.
  • [CAS-0010092618] A fix has been applied so that when attempting to filter forensic analysis actions or sub-actions in a report, the value is now translated into the user language.
  • [CAS-0010091578] A fix has been applied so that new events stored by the Event Control Service in disk (in the \transient directory) are now automatically sent to the database without the need to restart Inspector.
  • [CAS-0010074733] Sometimes, a link to an event sent through an email notification didn't work properly and many error messages were shown in the page. This was due to the event being migrated to the Historical or Archive database. A fix has been applied so that the "Event not found" message is now displayed. Additionally, a link to the Historical and Archive versions of the same event are now offered to the user.
  • [CAS-0010097956] A fix has been applied so that the Orchestrator service now recovers from the temporary unavailability of SQL Server.
  • A bug that caused memory leaks when security controls configuration was reloaded has been fixed in this release.
  • The event filter names were not translated into English in the pre-installed Security controls selection rules. This issue has now been resolved.
  • [CAS-0010088410] A fix has been applied so that when a macro is selected twice, the Dynamic Range scale now changes accordingly.
  • [CAS-0010103649] A parsing error on SYBASE queries has been corrected.
  • [CAS-0010094625] A fix has been applied to prevent the failure of maintenance configuration when using Run then Save.
  • [CAS-0010092633] A fix has been applied so that user defined sub-action names are now properly displayed on Reports.
  • [CAS-0010095596][CAS-0010069303] In some cases, the EventLog operations failed with an error code 6 (INVALID_SESSION_HANDLE) but processing continued. Now the processing operation is failed which forces a re-connection.
  • [CAS-0010104459] A fix has been applied so that monitors for 'Linux Programs Executed', no longer display the error message "Body does not match".
  • [CAS-0010077384] The issue whereby the grant/revoke permission on *AUTL was categorized as grant/revoke permission on IBM i out-of-the-box template, has been resolved.
  • [CAS-0010100413] A bug in the Event Control Service code that caused event selection conditions to be abnormally evaluated has been fixed in this release.
  • [CAS-0010091734] The Summarized Controlled Events template now filters by Audited System.
  • [CAS-0010101620] When creating Windows Security monitors for the first time, a warning message could appear saying there were some xml files missing. This issue has been fixed.
  • [CAS-0010100413] A help label indicating that the filter values are case insensitive has been added to assist the product administrator during the configuration process.
  • [CAS-0010096436] A fix has been applied within the Forensic Analysis display so that when column values are refreshed, all possible values are now displayed.
  • [CAS-0010107435] An issue with the date format on out-of-the-box templates for SQL Server 2005 and 2008, when the database language is Spanish, has been resolved.
  • [CAS-0010083609] - The security reports were taking the summarized events as a single event. This issue has been resolved so that the graphics of the report now show the correct number of events including those that are summarized.
  • An issue that caused the Publisher to consume unnecessary connection resources when either the SmartConsole or the Publisher were not responding has been fixed.
  • [CAS-0010108242] - A fix has been applied so that selecting 'No Credential ' on a monitor now allows the selection to be saved and displayed correctly.
  • A fix has been applied so that the Commander tool no longer fails if a monitor in the remote ThinkServer is in error status.
  • A fix has been applied to resolve an issue that caused calendar intervals to be calculated incorrectly if they were requested over an interval containing multiple days.

Policy Minder for IBM i

Version: 2.2
Enhancement
  • A new version of MSS has been introduced.
Other Fixes
  • An issue causing missing libraries in the *LIBAUT template in WRKPOL has been resolved.
  • Policy Minder libraries are now shipped with Object Authority *PUBLIC *EXCLUDE *CHANGE.
  • An issue causing the INZPOL command to fail to release a lock on the relevant record in the SKYCA file when used on some categories has been resolved.
  • An issue with the FIXLIBAUT command preventing new libraries from being fixed instantly has been resolved.
  • An issue causing missing entries subsequent to entries containing the ? (wildcard) character after save in the *USRPRF template has been resolved.
  • An issue preventing MSS template import across Policy Minder versions has been resolved.
  • A problem causing option 12 in Work with Compliance to incorrectly report that a compliance check has not been done has been resolved.
  • An issue preventing the ability to download reports after upgrading from version 1.6 to 2.1 has been resolved.
  • A problem causing incomplete policy export has been resolved.

Network Security

Version: 7.19
  • Network Security has been repaired so that the software only changes Aut settings on existing User or Location rules when the first active Memorized Transaction becomes available for a server/function/user/location, or when the last active Memorized Transaction is deleted or inactivated, and never in the interim.
  • SecureScreen filter rules can now be created for any subsystem description in any library on the system. The subsystem description does not need to exist when the filter rule is created.
  • Authority failures are no longer generated to QAUDJRN when Memorized Transactions are processed for the FTP server.
  • Help text has been updated to include a description of the *MEMOBJ Authority value.
  • A Socket Exit Point-related stability issue has been resolved.

Security Scan

Version: 3.4.2
  • Security Scan for IBM i now uses GoAnywhere for file transmission.

Stand Guard Anti-Virus

Version: 4.3 (AIX only)
New Features
  • Stand Guard Anti-Virus can now scan files as they are accessed by users of the system, a process known as On-Access Scanning.
    • An on-access management service is provided, which allows you to start, stop, and query the status of the service, as well as load configuration file updates.
    • On-access scan options are controlled through a configuration file.
    • A reporting tool is provided to display the status of the service.
    • Stand Guard Anti-Virus manages scanning of mounted file systems by detecting unmount and mount actions, resuming the scan procedure accordingly.
    • Scans that take too long can now be aborted after a specified timeout duration.
    • File caching allows for enhanced on-access scanning performance.
  • New diagnostic capabilities have been added that reveal environment details helpful for analysis and troubleshooting.
  • Tools have been provided to validate and update the on-access configuration file.
Enhancements
  • The Stand Guard Anti-Virus installation package now includes a version of the McAfee virus definitions to allow for scanning immediately after installation.
Other Fixes
  • The --cmd option in AVSCAN now scans the script file before execution.
  • All AVSCAN options are now validated.
  • The --loglevel 1 option in AVSCAN no longer results in unexpected behavior.
  • An issue causing an incorrect file count in the AVSCAN scan summary has been corrected.

Back to Top

 

Robot


Robot Alert

Version: 5.71
  • There was an issue with RA62204 (error) being sent to QSYSOPR even when the message was sent successfully, but this has now been fixed.

Robot Console

Version: 7.01
  • The correct user variable is now being used on the Security Log Audit message.
  • Fixed an issue with all centers not being included in the Message Center Summary report when selecting a range.
  • The default severity for immediate messages has been changed from 40 to 80 to match the message queue severity.

  • There was an issue with QCPFMSG message IDs being duplicated in RBCMSG which was causing message sets to not be processed, but this has now been fixed.

  • An atypical scenario which had caused an error after converting from Robot Console 6 to Console 7 has been fixed.

  • A new program named 'RBCRARSP' has been created to automate the handling of previous response required messages waiting for resources that have come back on line.

Robot Save

Version: 12.27
  • There was an issue with fields not being initialized properly based on Move Sets that would use Max Rotations versus Max Days, but this has now been fixed.
  • Fixed an issue preventing error messages from displaying when attempting encryption of compressed SAVFs.

Robot Schedule

Version: 13.01
  • Fixed an error that was being received after the Schedule Security Packets were sent when running in Host mode.
  • Robot Schedule job status is now correctly updated after it is ended before starting.
  • Fixed an issue with RBTFSEC and RBTFSEM jobs having current library listed as the user library in the library list.
  • The initial PREREQONLY setting specified on command RTBINSSBM is now retained on subsequent runs.

Robot Schedule Enterprise

Version: 2.01
  • Users now have the ability to specify the password for RBTENTUSR during installation.
  • Fixed an issue that caused RBESTRENT Autostart Entry to fail.

Robot Space

Version: 3.42
  • An update has been made to the Robot Space GUI update process to prevent users from having to run the Space GUI in Administrator mode when updating the GUI from an IBM i server.
  • Fixed an issue that was causing certain graphing functions to error.

RBTSYSLIB

Version: 1.97 (180807)
  • Non-Robot products have been removed from RSLVER.

Robot HA

Version: 12.05
Enhancements
  • In an effort to increase the number of includes a user can specify from the previous maximum of 100, the 'Objects to include' (INCLOBJ) parameter of the Change Library Sync Attribute (CHGRSFSA) command has been modified to accept two new single values (*JRN and *OTHER). Note: *JRN and *OTHER are for library processing, not IFS.
    • *JRN means : Include all objects in this set that are journaled to the journal specified on the Journal (JRN) parameter. The set of included objects updates dynamically as objects are added to or removed from the specified journal. There can be multiple INCLOBJ(*JRN) sync attribute sets for a given From-Lib, To-Lib, Server-ID combination.

      Note: If this library entry is included in a group, then the group journal overrides the library journal. In that case, the group journal is used to determine what objects are included.

      When *JRN is specified, the following also applies:

      • *NONE cannot be specified for the Journal (JRN) parameter.

      • *NONE cannot be specified for the remote journal (RMTJRN) parameter.
      • *NONE must be specified for the 'Objects to omit' (OMITOBJ) parameter.

    • *OTHER means: Objects in the library being replicated are included in this set if they are not included in any other specification for the set collection. A set collection is all specifications with the same from-lib, to-lib, and server-ID values. Only one INCLOBJ(*OTHER) set is allowed for a given From-Lib, To-Lib, Server-ID combination.
  • Option 7 - List Objects has been added to the Work with Synchronization Attributes panel. This option lists objects specified by those sync attributes using the *JRN and *OTHER options. A physical file or a spool file can be created that shows the objects which will be synchronized when Option 8 - Submit is run. Note: This option will not list IFS objects.
  • The default for the parameter Fix Objects Using Wrong Journal (FIXJRN) on command CHGRSFSA has been changed to *NO. Note: FIXJRN will always default to *NO when groups are used or *JRN or *OTHER values are specified.
 

Back to Top

 

Tango/04


Version: 6.1.0.30000
New Feature
  • A Continuous Improvement view for all assets has been added that allows users to check the most frequent problems detected on the Processes, Services and IT infrastructure assets and take decisions to improve behavior in the future.
  • A new feature has been added on the Vityl IT and Business Monitoring home page to help IT Operators understand the current open issues so they can prioritize their work.
  • A new feature has been added to improve the CSI analysis capabilities for a single issue. From now on, it's possible to see the issue history, affectations, message log and manually reset the severity level from a single point.
Enhancement
  • [CAS-0010092193] A new attribute has been added to allow users to specify an HTTP User Agent other than the default user agent on Generic Website elements of an asset.
  • The Real User Experience metrics "Transactions (within Critical/Warning thresholds)" have been renamed to "Satisfied/Tolerating users" to comply with the market naming standards for measuring performance of software applications in computing.
  • A low water-mark has been added to the ThinkServer queue of messages to be sent to PMDB, improving flow control when a large number of metrics is being written.
  • [CAS-0010091735] An enhancement has been made to provide the option to choose the control sub state (Availability, Performance, Errors) for WebSphere MQ Queue.
  • The Executive view Failures evolution chart has been updated to a bar chart display to show the information in a more user-friendly format.
  • A mask has been added to the Response Time metric in the OBS Charts and OBS Response Time Table to make the display of long response times more user friendly.
  • [CAS-0010092854] - The Generic WebService and Custom command boolean checks that can be performed on IT infrastructure assets now allow the reverse logic to be applied. Critical status is recorded if the compared result is matched.
  • ThinkServer EventLog agent now allows the user to monitor the LocalHost computer using the new Windows Events API.
  • [CAS-0010099638] Vityl IT and Business Monitoring Online Business Services charts now display real-time data for current time intervals (for example Today, This Month, This Year).
  • [CAS-0010086750] - Legends are now displayed on overview charts.
  • [CAS-0010101549] Native driver support has been added for Oracle Stored procedures.
  • A new attribute has been added (Ignore Folders) to ignore the folders in the check and to take only the files into account. The affected controls are: Generic Folder Check (Old Files in Folder) and Generic Folder Check (Size of Files in Folder).
  • A listening IP can now be added to the Publisher.cfg and Messenger.cfg files. This provides the ability for the WebSevices such as SmartConsole Messenger and User Directory Service to listen to just one network interface, overcoming possible issues that may arise when the computer is located on a public network.
  • [CAS-0010092294] Website availability monitors are now able to resolve non-fully qualified machine names within their own network.
Other Fix
  • [CAS-0010102627] Fixed an issue that caused OBS rule monitors to fail to recover from Monitoring Error status, if SharedObjects was not available when ThinkServer was started.
  • [CAS-0010091727] A fix has been applied so that a re-run of the Summarized Controlled Events report now works as expected if a previous run was cancelled and the filters modified.
  • [CAS-0010090212] A fix has been applied to resolve an issue with the asset search from within Orchestrator Web that caused a filter error.
  • A fix has been applied so that only suitable devices are displayed when configuring dependencies for stand alone applications.
  • [CAS-0010097732] A fix has been applied to prevent an access violation error when trying to access an invalid pointer in the ThinkServer Configurator.
  • [CAS-0010093912] A fix has been applied to ThinkServer so that importing a file that contains monitors with IDs that already exist, no longer causes the monitor to be deleted.
  • [CAS-0010100484] There was an error on Websphere MQ monitors that prevented them from functioning correctly. This issue has been resolved.
  • [CAS-0010091578] A fix has been applied so that new events stored by the Event Control Service in disk (in the \transient directory) are now automatically sent to the database without the need to restart Inspector.
  • [CAS-0010097956] A fix has been applied so that the Orchestrator service now recovers from the temporary unavailability of SQL Server.
  • A bug that caused memory leaks when security controls configuration was reloaded has been fixed in this release.
  • [CAS-0010091805] A fix has been applied so that data collected from a Database (for example from a ThinkServer monitor created for Online Business Services) is now stored in the metrics database (PDMB) with the correct datetime. Charts subsequently now show data with the correct time.
  • [CAS-0010102867] Sometimes, the L2Launcher process executing WebAgent monitors stopped working due to the monitored URL containing "%" characters. A fix has been applied to prevent this.
  • [CAS-0010098513] Fixed an issue that caused OBS rule monitors not to be set to 'unknown health' if ThinkServer was restarted outside of the activity calendar.
  • [CAS-0010094622] Reports based on Monitor Health Timeline showed empty charts when there was no data available. A fix has been applied so that empty charts are no longer displayed.
  • [CAS-0010101888] A fix has been applied so that the report from availability manager now displays the correct business instances of the service.
  • The event filter names were not translated into English in the pre-installed Security controls selection rules. This issue has now been resolved.
  • [CAS-0010088410] A fix has been applied so that when a macro is selected twice, the Dynamic Range scale now changes accordingly.
  • [CAS-0010101888] The correct Availability Manager component name is now displayed in the report header.
  • [CAS-0010104579] When cloning assets, any element that was monitored was appearing as not monitored. A fix has been applied so the correct monitored status is now displayed.
  • [CAS-0010094625] A fix has been applied to prevent the failure of maintenance configuration when using Run then Save.
  • [CAS-0010100928] There was an error in the way regular expressions were parsed that made some AIX monitors stop working. This issue has been resolved.
  • A fix has been applied so that the Library and Library List elements now store the Library Size metric so it can be analyzed from the analysis page.
  • [CAS-0010100484] Thresholds were not appearing on charts when the period selected was one day or less. This issue has been resolved.
  • [CAS-0010092315] The regular expression for "Physical memory usage" and "Swap memory usage" monitors of IBM HMC devices has been updated to work with the latest versions.
  • An issue that caused the Publisher to consume unnecessary connection resources when either the SmartConsole or the Publisher were not responding has been fixed.
  • [CAS-0010103780] Sometimes it was not possible to edit Business Applications created with custom types. This issue has been resolved and these assets can now be modified.
  • [CAS-0010108242] - A fix has been applied so that selecting 'No Credential ' on a monitor now allows the selection to be saved and displayed correctly.
  • A fix has been applied so that the Commander tool no longer fails if a monitor in the remote ThinkServer is in error status.
  • A fix has been applied to resolve an issue that caused calendar intervals to be calculated incorrectly if they were requested over an interval containing multiple days.

Back to Top

 

TeamQuest


TeamQuest Administration Console

Version: 11.3.16

Enhancements

  • Updated Apache support to version 2.4.34.

Other Updates

  • (CAS-0010097946) Added support for HTTP Strict-Transport-Security header.

TeamQuest Manager

Version: 11.3.20

Enhancements

  • Updated Apache support to version 2.4.34.

Other Updates

  • (CAS-0010097939) Removed the ability to discover other user's information from non-administrator accounts.
  • (CAS-0010097941) Updated Manager Session Timeout to be configurable.
  • (CAS-0010097943) Added user password authentication to password changes.

Vityl Monitor

Version: 11.3.12

Enhancements

  • Updated 3rd party utilities to latest versions to include the latest security updates.

  • Updated Tomcat support to version 8.5.32 to include the latest security updates.
  • Updated Java support to version SEu181 to include the latest security updates.

Other Updates

  • (CAS-0010097946) Added support for HTTP Strict-Transport-Security header.
  • (CAS-0010097941) Updated the Configuration user interface to use the User Preference Timeout setting from the Reporting user interface as the session timeout.
  • (CAS-0010097937) Removed the capability to elevate the group access of a public user to that of administrators by manipulating request parameter values.
  • (CAS-0010097947) Removed the ability for users to create and submit Cross-Site Request Forgery (CSRF) requests.
  • (CAS-0010097944) Logging out of Monitor Configuration now invalidates the current session so the back button cannot be used to view previous pages.
  • (CAS-0010097942) Added BCrypt hashing to new passwords.
  • (CAS-0010096592) Secured Vityl Monitor from Java Deserialization attacks by restricting which classes are allowed to be deserialized.

Back to Top

 

Copyright © HelpSystems, LLC.
All trademarks and registered trademarks are the property of their respective owners.
Last Published: 201812060924