Netsweeper 8.2.3 EA is now available for early adopters that have already migrated to the EL8 based Netsweeper installation. This release primarily focuses on bug fixes, and improvements of new features added to the 8.2 release. Netsweeper 8 will only be available on EL8 and customers are expected to migrate to the EL8 base in the 7.2 release before planning the upgrade to Netsweeper 8 or above. All customers who want the features and improvements in the 8.2.2 release should upgrade their test environments and start providing feedback as we move forward to a GA release of 8.2 in early 2024. Netsweeper reminds customers EL6 extended support ends March 2024, so all customers should plan to migrate to EL8 before March 2024 for security related purposes.
If you have any questions or concerns about planning an upgrade to this release, please contact Netsweeper Technical Support (support@netsweeper.com).
See Also
Downloads
https://repo.netsweeper.com/releases/centos/iso/netsweeper-el8-x86_64-8.2.3-1.iso (md5) (sha256)
Changelogs
Issue Type | Ticket | Summary |
---|---|---|
Improvement |
NS-669 |
Added the ability to have NSProxy send RST packets for 'non-decrypted' deny decisions, so the browser does not retry the HTTPS request. |
Bug |
NS-759 |
All [apiname]_count queries would load the entire data structure into memory causing possible memory limit exceptions to be hit with large datasets. |
Bug |
NS-778 |
Client key in ClientHello can cause a fragmented ClientHello, which can cause the SNI name parsing to fail. Which can lead to the Policy Service to failing open, resulting in unfiltered requests. |
Improvement |
NS-783 |
The 'Anyone can view this report' ownership option has been replaced with the 'Share with' option. |
Improvement |
NS-797 |
We now trigger a log-only event when we detect 'decrypt://denied' but we do not get a corresponding HTTP request and the client connection is closed, (which indicates our CA certificate is not installed). |
Bug |
NS-805 |
Administration > Translations > Extract Catalog would display a blank screen when exporting. |
Improvement |
NS-806 |
When the Reporter generates a report with no data, we now remove the empty report output file. |
Improvement |
NS-810 |
The Policy Service must set a Client Filter cookie to indicate which protocol is used, allowing the nMonitor API to parse and use the appropriate username. |
Improvement |
NS-811 |
The nMonitor API can no longer use the 'request information' without performing a Policy Service lookup to validate the case and other information. |
Bug |
NS-813 |
Live Request Logs could cause session overwrite issues when a slow server or down server was being probed. |
Bug |
NS-822 |
We now clear any prior errors from Request Logs window when the 'Search' button is selected. |
Bug |
NS-823 |
Request Logs window would show a Session ID error once opened. |
Bug |
NS-825 |
The Request Logs would reload all screenshot images when a new 'row' was added, as the screenshots are index by row. |
Bug |
NS-827 |
Sysops without List Permissions are able to modify the list settings because of the changes to assume identity which include loading their last page and breadcrumbs. |
Bug |
NS-828 |
Deny Pages created and linked by SysOps were not being displayed in Tools > Deny Page > Content. |
Bug |
NS-829 |
If you had the Category view set to both 'WebAdmin' and 'Reporter,' and you attempted to deselect one, your changes would not save. |
Improvement |
NS-834 |
WebAdmin Log message for "Allowed request from IPADDRESS with valid server guid 'XXX'" has been removed. |
Bug |
NS-836 |
The user_groups table and user_restrictions table could become out of sync. |
Bug |
NS-838 |
If you disable the Protocol Detection Engine some traffic will not go into passthru mode properly and no Unknown Event will be triggered. |
Improvement |
NS-839 |
The nMonitor API did not respond with the 'OK:' response when we properly processed the event, returning an empty page instead. |
Bug |
NS-842 |
NSUP2Date did not set the hostname for the service to send to the WebAdmin for improved validation. |
New Feature |
NS-845 |
Directory Sync will now only add the missing Accounts to the Groups and not replace all Accounts in the Groups during the Sync process. |
Improvement |
NS-846 |
Improved the WebAdmin GUID remote server and configuration identification process. |
Bug |
NS-847 |
libwebdb was not validating Account type correctly, potentially allowing Accounts to download information it did not have permission to access. |
Bug |
NS-848 |
WebDB required undefined session variables. |
Bug |
NS-849 |
Report templates with custom Category filters added category numbers to the Report name errantly. |
Bug |
NS-850 |
Parsing the X-Forwarded-For header for Client Filter processing could cause the Policy Service to restart. |
Bug |
NS-852 |
When updating the static filter for reports, we did not check for the 'Manage all Groups' permission. |
Improvement |
NS-853 |
Added new token support for the API Test tool in the Webadmin. |
Improvement |
NS-854 |
Improved the ability to process CNS requests without adding any latency. |
Bug |
NS-855 |
SQL was giving an error when attempting to delete Deny Page content. |
Bug |
NS-856 |
Resolved an issue where users could not deselect the 'Default Request Log Server' option in the Administration > Services window. |
Improvement |
NS-858 |
We now close the session after updating the filters in all tables, so long queries and slow WebAdmin systems cannot cause filter update issues. |
Bug |
NS-862 |
Profile Manager: When the user changes the categories for a profile, it won't set the category template, just changes the categories. |
Improvement |
NS-864 |
We now import the 'Next Run Time' status when importing schedule Reports, including any 'temporarily stopped' statuses. |
Bug |
NS-872 |
The Client Filter Exceptions List now encodes spaces to %20 in the entry, as the file we export to is space encoded. |
Bug |
NS-873 |
Function iplist_ipv6_iprange_to_subnets could cause stack underflow when adding q. |
Bug |
NS-876 |
The weekly Report date-dropdown list was inconsistent between the Report dropdown and the Report instance views. |
Bug |
NS-877 |
Running a Complete Sync could remove all of the configured Directory Sync options. |
Bug |
NS-879 |
Running the nsdctl chown nsd_* command could take a very long time to complete if the file sizes at the /usr/local/netsweeper/logs directory grew too large. |
Bug |
NS-881 |
Sysops do not have permission to access the specific group after being modified. |
Bug |
NS-884 |
CNS servers resolving to IPv6 addresses can cause 7.2, 8.1 and 8.2 releases to abort. Customers should upgrade to 7.2.15, 8.1.10, and 8.2.3 to avoid future stability issues. |
Bug |
NS-885 |
Resolved an issue where database errors would occur when SysOps would add Clients to a Group. |
Improvement |
NS-893 |
Added a series of onGuard Permissions to the available Account Permissions. |
Bug |
NS-894 |
Authorization by host did not work for many report APIs. |
Copyright © 2024 Netsweeper Inc. All rights reserved.
Confidential and Private information. Distribution of the information contained herein is strictly prohibited.