まっちゃだいふくの日記

セキュリティのこと、ITの気になった記事をリンクしています。

Deep Security Manager - 20.0.313 (20 LTS Update 2021-01-18) リリース@ 複数の機能追加、修正対応、クリティカルなセキュリティアップデート

Deep Security Manager - 20.0.313 (20 LTS Update 2021-01-18)
Release date: January 18, 2021
Build number: 20.0.313

New Feature

Trend Micro Endpoint Basecamp Agent: Trend Micro Endpoint Basecamp (XBC) Agent integrates XDR tools and functionality into Deep Security, following Trend Micro Vision One onboarding. For more information see Integrate with Trend Micro Vision One (XDR) .

Enhancements

  • Updated vCenter to make changing an NSX Manager simpler by using the Remove NSX Manager button (Properties > NSX Manager) rather than editing the Manager Address: field. DS-58377
  • Updated the Deep Security Manager so that, by default, Trend Micro Vision One is enabled after the onboarding experience and after migrating to a paid license. DS-58788
  • Removed the News button from Deep Security Manager. For the latest news on product changes, see What's new? DS-58808
  • Aligned package naming for Deep Security Manager and Deep Security Agent on the Download Center. DS-56806
  • Updated Deep Security Manager to include the option to log Trend Micro Vision One issues (Administration > System Information > Diagnostic Logging...). DS-58533
  • Updated Deep Security Manager's "Default Real-Time Scan Configuration" (Computers > Details… > Anti-Malware > General > Malware Scan Configuration:) to enable Behavior Monitoring and Predictive Machine Learning by default, improving protection for users. When possible malware is recognized, "Use custom actions" will be set to "Pass" by default and will log an Anti-Malware Event. DS-59282
  • Updated the Deep Security Manager to make Trend Micro Vision One related settings and features consistent after the onboarding. DS-58788
  • Updated the Deep Security Manager to improve "Search Computer API" and "List Computer API" performance. DS-56722

Resolved issues

  • When the Deep Security Manager installer detected at least 16 GB of RAM on the operating system, it was not automatically allocating 8 GB of RAM to the Java Virtual Machine as is recommended for best performance. SEG-87319/03645194/DS-55701
  • The Deep Security Manager was unable to communicate with agents in some environments, causing agent offline issues. SEG-86783/SF03637359/DS-56400
  • Anti-Malware Scan scheduled tasks that timed out sometimes restarted instead of triggering a "Scheduled Task Skipped" event as expected. DS-59252
  • The Deep Security Manager console command used to set a preferred IP address for Deep Security Agents with multiple IPs was sometimes not working, causing some agents to be unable to connect. DS-58878
  • Deep Security Manager version update install was failing under some configurations. SEG-95357/SF03988405/DS-59222
  • Deep Security Manager installed an incorrect version of the relay in some cases. DS-59634
  • The Deep Security license check for Trend Micro Vision One registration was sometimes failing. DS-59645
  • After changing the settings for a policy (Policies > Details > Settings > General), the "Reset all settings to Inherent" button did not work for "Automatically send Policy changes to computers" or "Perform ongoing Recommendation Scans." DS-56830
  • Links were sometimes not clickable in the "Computer status" widget of the Dashboard tab, and for "Agent/Appliance Upgrade Recommended (New Version Available)" alerts opened in the List View of the Alerts tab. DS-57968

Security updates

Security updates are included in this release. For more information about how we protect against vulnerabilities, visit Vulnerability Responses. Please note, in line with responsible disclosure practices, CVE details will only be made available for select security updates once patches have been made available for all impacted releases. DS-33781/DS-58415/DS-58917/DS-51778/DS-51741/DS-59636

  • Highest CVSS: 9.8
  • Highest severity: Critical