• 网络与数据中心管理
  • 服务器与应用性能管理
  • IT服务管理
  • Windows AD域管理
  • 终端管理
  • IT安全
  • MSP
  • IT运维平台
 
 
应用性能管理(APM)
保证物理、虚拟、云环境的应用性能
 
 
简化终端设备管理
全面管控PC计算机、智能手机以及平板电脑,确保网络安全
 
 
IT运维外包服务工具
多租户模式,为您的客户提供更好的服务
IT运维管理平台
统一监控、集中运维
 

Release Notes

Home » Product Release Notes
Firewall Analyzer Release Notes

Listed here are the feature enhancements, bug fixes and limitations of each release update of Firewall Analyzer.

  • 8.3 Build 8300

    8.3 - Build 8300 - Distributed Edition

    GA release of Firewall Analyzer Distributed Edition.

    New Features - Admin Server

    There are no new features available for Admin Server in this release

    New Features - Collector Server

    All the features available in this release of Firewall Analyzer Standalone Edition (see below) is available for Collector Server of Distributed Edition

    8.3 - Build 8300 -Standalone Edition

    The general features available in this release are:

    New Features

    • Policy/Rule Optimization
      • Anomaly Rules Reports  (Correlation, Generalization, Shadowed, and Redundant Rules)
      • Rule Grouping Recommendation
      • Rule Cleanup Recommendation
    • Options provided in the Device Rule UI:
      • Fetch Policy, Configuration based on TFTP, SCP protocols
      • Login banner support
    • Change management and Unused rules reports for Palo Alto firewalls
    • Industry Standard Compliance reports (PCI-DSS, SANS, NIST, ISO, NERC-CIP) for Juniper-SRX device
    • Indexing Traffic logs along with security logs for fine grained advanced search results
    • Performance improvement to support more logs/sec
    • Alert and Search based on Country, Application
    • Application and Security reports for Juniper-SRX device
    • Security Reports for Microsoft-ISA
    • 'Denied Login Users' report for NetScreen

    New Device/Logs/Reports

    • iPrism
    • Huawei
    • BlueCoat Proxy SGOS 6.4.5.2
    • Juniper-SRX - Security and Application logs
    • Watchguard XTM version 11.9

    Issue Fixes

    • Issue in, populating URL length > 2500 characters, is fixed
    • Support extended for User Group information of Squid proxy server
    • Issue in, populating the URL information for Cisco, is fixed
    • Fixed issue in scheduled fetch of user details from Active Directory.
    • Wrong listing of Cisco denied URLs issue is fixed
    • Zywall log format change issue fixed

     

  • 8.1 Build 8110

    8.1 - Build 8110 - Distributed Edition

    GA release of Firewall Analyzer Distributed Edition.

    New Features - Admin Server

    There are no new features available for Admin Server in this release

    New Features - Collector Server

    All the features available in this release of Firewall Analyzer Standalone Edition (see below) is available for Collector Server of Distributed Edition

    8.1 - Build 8110 -Standalone Edition

    The general features available in this release are:

    New Features
    • Industry Standard Compliance reports for Cisco and Fortigate devices,
      • PCI-DSS
      • ISO-27001 (2013)
      • NERC-CIP
      • NIST
      • SANS

    New Device/Logs/Reports

    • SonicWALL SSL-VPN appliance
    • 'Application Report' supported for D-Link, Clavister and WatchGuard firewalls
    • 'Category Report' supported for D-Link and Palo-Alto firewalls
    • 'VPN & Interface Reports' supported for Cyberoam devices

    Issue Fixes

    • Optimized D-Link device log parser to handle the heavy log flow rate
    • Issue, while handling Banner for CLI SSH, is fixed
    • Alert generated for wrong bandwidth % criteria. This issue is fixed
    • In the 'URL Report' for Fortigate devices, the URL column displayed 'Destination IP Address' instead of 'Destination Name'. The issue is fixed
    • If the Cisco device, while fetching the rules, it was throwing timeout if the 'enable' mode in the device is kept enabled. This issue is fixed
  • 8.0 Build 8000

    8.0 - Build 8000 - Distributed Edition

    GA release of Firewall Analyzer Distributed Edition.

    New Features - Admin Server

    There are no new features available for Admin Server in this release

    New Features - Collector Server

    The general features available in this release include,

    • Collector Server contains all the features of Firewall Analyzer Standalone Edition (see below)

    8.0 - Build 8000 -Standalone Edition

    The general features available in this release are:

    New Features

    1. New Devices supported:
      • Opzoon firewall device
      • Stonesoft firewall device
      • Barracuda device
      • McAfee Firewall Enterprise (Sidewinder (S4016)) logs
      • SonciWALL device - Management, Application control and SSL-VPN logs
      • Palo Alto (PANOS 4.1.0) logs
      • FortiOS 5.x VPN logs
    2. New user interface
    3. Policy/Rule overview reports for Cisco and Fortigate firewalls with real-time and export options
    4. On-demand fetching of complete (raw) device configuration in file
    5. Country/Geo-location reports with export and schedule options
    6. Trend report for VPN connection
    7. Option to view/export Live Reports in Mbps or Gbps
    8. Zoom In/Out option for Live Bandwidth reports of device and interfaces
    9. Export/Import option for Protocol Groups page
    10. 'Rebranding' support for alert notification E-mails
  • 7.6 Build 7600

    7.6 - Build 7600 - Distributed Edition

    GA release of Firewall Analyzer Distributed Edition.

    New Features - Admin Server

    There are no new features available for Admin Server in this release

    New Features - Collector Server

    The general features available in this release include,
    • Collector Server contains all the features of Firewall Analyzer Standalone Edition (see below)

    7.6 - Build 7600 -Standalone Edition

    The general features available in this release are:

    New Features

    1. New Devices supported:
      • FortiGate - FortiOS 5.x logs supported
      • NetASQ
      • PaloAlto - Application reports
      • Bluecoat - Virus reports
    2. Option to identify non standard protocols (Unknown Protocol) detail in your network.
    3. Email alert notification when Firewall Analyzer fails to write the logs in archive
    4. SFTP/SSH protocol support to import logs from remote machines
    5. Optionally, traffic logs can be indexed and searched
    6. Advanced Search can now be used to find the exact Port/Protocol details
    7. Showing the conversation (source/destination/protocol) details for anomaly alert in mail
    8. Troubleshooting tool to apply License file in case of product license expiry
    9. Users with 'Guest' privilege can now access the'Compliance' tab
    10. Firewall Analyzer will henceforth be using PostgreSQL database (applies to fresh install of full build only)

    Bug Fix

    1. Wrong alert message showing double the number of managed devices compared to the License count has been fixed
    2. Fixed the Windows Authentication issue in Admin server MS SQL setup
    3. SonicWALL device interface name parsing issue is fixed
    4. Fixed the issue to retain the Y-axis value as integer in Time Series graph in PDF export
    5. Allowed URL reports will now be populated for Palo Alto devices
    6. Parsing issue of Juniper SSL logs fixed
    7. Native OS (German and French) Installation issue fixed
    8. 'DisplayName' of the device will be shown now in Change Management alerts, Anomaly alerts and Compliance reports instead of 'ResourceName'
  • 7.4 Build 7400

    7.4 - Build 7400 - Distributed Edition

    GA release of Firewall Analyzer Distributed Edition.

    New Features - Admin Server

    The general features available in this release include,
    • Dedicated compliance section for device rules configurations, firewall rules monitoring, change management reports and alerts for each collector server

    New Features - Collector Server

    The general features available in this release include,
    • Collector Server contains all the features of Firewall Analyzer Standalone Edition

    7.4 - Build 7400 -Standalone Edition

    The general features available in this release are:

    New Features

    1. Supports 'IPFIX with extensions' based flows (for SonicOS 5.8) - reports include top URLs, applications, users, viruses, attacks, intrusions, spyware, etc.
    2. Dedicated compliance section for device rules configurations, firewall rules monitoring, change management reports and alerts
    3. Detailed reports for applications accessed through Check Point and SonicWALL devices
    4. Consolidated VPN traffic reports for user-groups
    5. 'Exclude criteria' option now allows users to generate configuration change management reports that excludes certain specific lines or text
    6. Importing 'Local Host' log directory is now supported
    7. 'Intranet Settings' can now be configured for multiple devices
    8. For FTP log import from remote hosts, in addition to specifying time interval users can now specify 'Schedule Start Time'
    9. 'Scheduled Reports' can be now saved in the machine running Firewall Analyzer
    10. Active Directory or RADIUS can be set as default authentication for Firewall Analyzer login
    11. Active Directory Users can now be imported at the Organizational Unit level, Group level and Individual User level

    Bug Fix

    1. Fixed indexing of Juniper IDP attack logs
    2. Increased the default value of row count of reports in PDF format from 10 to 100
    3. Fixed the usability issue in Scheduling Device Rule
    4. Fixed the Parser Rule issue for Cisco Message Id 713119
    5. Fixed Change Management Alert issue when difference in configuration content has dollar symbol in it
    6. Fixed the 'device credentials test button' issue
    7. Fixed issue in detecting dynamic file name changes, during scheduled import
    8. The issue with 'SNMP community string with special characters' to access the interface is fixed
    9. The issue in parsing unused ACEs of Cisco firewall is fixed
  • 7.2 Build 7021

    GA release of Firewall Analyzer.

    7.2 - Build 7021 - Standalone Edition

    The general features available in this release are:

    Bug Fix

    • Optimized the connection between Firewall and Firewall Analyzer, to fetch rules
  • 7.2 Build 7020

    GA release of Firewall Analyzer.

    7.2 - Build 7020 - Distributed Edition

    GA release of Firewall Analyzer Distributed Edition.

    New Features - Collector Server

    • Collector Server contains all the features of Firewall Analyzer Standalone Edition

    7.2 - Build 7020 - Standalone Edition

    The general features available in this release are:

    New Features and Enhancements

    1. New Device/Log Format supported
      • Palo-Alto Firewall
      • Juniper SSLVPN 6500 
      • Check Point VSX firewalls
      • FortiGate WebFilter, DLP,  IPS modules and IPSec support
    2. Application reports for Fortigate firewalls based on Application Control service
    3. Support for Virtual Firewalls of Cisco, Fortigate, and Check Point devices. By default, each context/vdom is displayed as separate device
    4. Alerts based on bandwidth utilization of a specific interfaces
    5. Client UI and email notification for Firewall Status Alerts for the following conditions:
      • Lack of disk space
      • Syslog server down
    6. View unused ACEs details of ACLs, for Cisco devices available in Unused Rules report
    7. Real-time Syslog collection from Squid proxy server supported
    8. Complete time duration details of the VPN user sessions available in 'VPN User Session Details' reports under VPN Reports
    9. Option to export 'VPN User Session Details' report to other formats, while clicking 'View All' link
    10. Zone based and interface specific Live reports using SNMP for Netscreen devices
    11. Change Management Report for Juniper SRX device available
    12. Option to fetch Rules and Configurations for any CLI supported device to get Unused Rules, Compliance and Change Management reports
    13. New format for Email alert to cater for context based Configuration Changes
    14. Optional privilege available to 'Guest' user to view the generated alerts for the assigned device(s)
    15. Optional privilege available to 'Guest' user to view the Report Profile(s) assigned by Administrators 

    Bug Fixes

    1. Identifying Device IP address from the logs imported from Blue Coat proxy server
    2. Collecting intermittent logs of VPN sessions support for SonicWALL, Cisco, Checkpoint and Netscreen Firewall devices
    3. Added page navigation component in 'Raw Log Search' result page
    4. Importing log files with non-English names/folders from remote machines using FTP is supported
    5. Allowed special characters in SNMP Community string to fetch SNMP data from devices
    6. Issue in Diagnose Connections when the interface name had special characters

    Known Issue

    • You can not use Active Directory or RADIUS Server Authenticated Admin user credentials for Data Collection in Admin Server (i.e., from Edit Collector Details page of Collector Settings)

For further information please contact Firewall Analyzer Support.

展开