Producent oprogramowania F-Secure, udostępnił najnowszą aktualizację dla Email and Server Security o oznaczeniu 15.00. W nowszej wersji zostało wiele rzeczy usprawnione, jak i dodano kilka nowych rozwiązań. Dzięki nowej aktualizacji wprowadzono skanowanie adresów URL w treściach wiadomości e-mail, co więcej wprowadzona została możliwość ustawienia zdefiniowanych list rozszerzeń do wykluczenia z przetwarzaniem FTR (inteligentne rozpoznawanie typu pliku). W wersji 15.00, także dodano uwierzytelnianie proxy NTLM dla kontroli spamu. Aktualizacja naprawiła również bolączki wcześniejszej wersji produktu, głównym problem był brak braku widoku niektórych programów w konsoli webowej. Skorygowano, także problem polegający na tym, iż konsola webowa nie wyświetlała poprawnie szablonów, które zostały przypisane z Policy Managera. Po więcej szczegółowych informacji, zapraszam do dalszej części artykułu.
Co nowego w F-Secure Email and Server Security 15.00:
- Introduced scanning for unsafe URLs in the email message body for Transport protection. Emails containing unsafe links can be now dropped before getting to the recipient.
- Introduced an FTR (intelligent file type recognition) exclusions setting that allows you to define a list of extensions to exclude from FTR processing. This can be defined for Transport agent (Incoming / Outgoing / Internal email), Email storage scanning, and Upload/Download Sharepoint scanning.
- Introduced an option to remove deleted items from quarantine database.
- Introduced an option to limit the maximum file size for MS Sharepoint file scanning.
- NTLM proxy authentication is now supported for Spam Control.
- Added support for localizing template variables.
- Added support for Policy Manager Proxy auto-selection rules to configure the location-aware selection of proxies based on the following criteria: DNS server IP address, DHCP server IP address, Default gateway IP address, WINS server IP address, and My network address. Proxies matched with the rules are always prioritized first while the rest of the proxies are used only if fallback behavior is in use.
- Basic and NTLM authentications are now supported when downloading virus definitions (GUTS2) via HTTP proxies.
- Added support for Antimalware Scan Interface (AMSI). The integration is turned on by default and can be turned off in Policy Manager.
- Various firewall-related improvements:
- Firewall block rules support a configurable option to send alerts when the rule is triggered.
- Added support to define the rule’s scope with Windows application package IDs.
- Policy Manager administrators can hide certain profiles from end-users.
- The product generates alerts when encountering malformed firewall rules.
- The F-Secure tray icon can be hidden from end-users. This can be configured in Policy Manager.
- The command-line fsscan.exe scanner can report a list of all scanned files.
- Introduced Browsing Protection alerts that are triggered when malicious or suspicious sites are blocked.
- Introduced the Tamper protection feature to protect F-Secure endpoints from unusual interruptions.
- Device control block alerts are also generated when USB storage devices are reconnected.
- Notification events about overlapping manual and scheduled scan operations are logged to the Windows application event log.
- Client failover to GUTS2 services now takes place without noticeable delays when the computer is booted or returns from sleep.
- New Software Updater engine. This new engine gives F-Secure flexibility to introduce Software Updater functionality on other platforms in the future.
- Introduced a new „Scan all accessed files” scan mode for network drives. Previously, only one scan mode („Scan executed files”) was always in use for network drives, which is kept as the default mode in this release.
Rozwiązane problemy:
- Storage scanning report on Policy Manager includes the same data as the local one
- Installed 'MS Sharepoint protection’ and 'MS Exchange protection’ now reported to Policy Manager 'Installed software’ status table
- Added support for environmental variables for paths in ESS Configuration tool
- Settings accessible in ESS Configuration tool will be displayed considering possible final flags set from Policy Manager
- Alert for missing admin credentials for Storage scanning will not be sent in case Public folder scanning is disabled
- Introduced Storage scanning reports automatic cleanup
- Fixed an issue with custom IIS bindings not being updated if the certificate is changed by ESS Configuration tool
- Fixed an issue with WebConsole failing to correctly display templates-based settings assigned from Policy Manager
- Improved logging
Znane problemy:
- HTTP 2.0 has to be disabled for Chrome and Firefox browsers to work with Web Console.
Notatki producenta:
F-Secure Email and Server Security 15.00 – Notatki producenta
Pozdrawiamy,
Zespół B&B
Bezpieczeństwo w biznesie