Released: November 2018

What has been improved?

  • The 'Enable Microsoft Updates' button has been removed and instead the relevant domains (.microsoft.com, .msftncsi.comand .windowsupdate.com) are editable in the UI.

  • The allow listing of a full URL is allowed.

  • IP addresses can be defined as IPv6.

  • Applied security patch updates to various packages including Samba, OpenSSL, PostgreSQL and PHP.

  • Logging performance improvements.

  • The option for YouTube for Schools, which is no longer maintained by YouTube, has been removed.

What has been fixed?

  • A system timezone change may cause logging errors.

  • An issue where customer timezone changes backward through midnight was causing logging errors.

  • Resolved a bug relating to a user's bandwidth.

  • High transaction burn rate that affected the retention period on large volume systems.

  • User identification failing when the LDAP server domain contains an empty string.

  • The invalid safe search site, ask.com, being included on the safe search list.

  • A race condition that could lead to a proxy deadlock situation.

  • Requests from users not already imported from LDAP were not getting logged.

  • Policy engine repeatedly querying the database to retrieve user data.

  • The importing of users from multiple LDAP servers when there are duplicate users.

  • Resolved issue editing comments under SSL inspection.

  • Groups only being imported from LDAP servers if the group import button is unchecked.

  • SSL inspection for 'all except selected domains' inspecting all traffic.

  • Issue filtering history using UTF-8 characters.

  • Issue allowing a report or policy manager to gain admin-level privileges to the UI.

  • Account credentials sent in cleartext even when LDAPS is used for user authentication.

  • A problem in generating a self-signed certificate if the organization label is greater than fifty characters.

  • Issue allowing for potential XSS vulnerability through a block page.

  • Filtering of users under-reporting if the user has a comma in their name.

  • Resolved a path traversal vulnerability.

  • Resolved issue with multi-domain support.

  • Problem adding URLs containing Cyrillic characters to custom categories.

  • Logging issue when 'Log only Group' policy option is selected.

  • NTLM authentication issue for usernames with Cyrillic characters.