2024.2 Release Notes


Forge

  • Features

    • Improved comparison view during import to increase accuracy in actual changes between new and upgraded policies.

    • Added Linux policy support, including RHEL 8/9 and a placeholder for Ubuntu 22.

    • Added support for Script Entry control parts written in Bash for compliance on Linux environments.

    • Upgraded interface framework to improve visuals, Infrastructure Tree control, drag-and-drop, and other user interface controls.

    • Security improvements around access to registry key database information and logs.

  • Bug Fixes

    • You can now remove new baseline and operational policies immediately after creating them.

    • Drag-and-drop improvements for organizing baseline and operational policies.

    • Addressed the overlap of the Forge filter feature with tree data for improved usability.

    • You can now add comments to CIS controls.

 


Commander

  • Features

    • Account Recovery Codes to help reset forgotten passwords.

    • Added external SQL Server and Azure SQL database options along with the existing App Managed Database.

    • Updated pairing keys for Shield and Client to support IPv6. Improved connection types for IP vs. DNS.

    • Added Database Protection microservice for securing database configurations.

    • Added Database Management microservice to support future API features.

    • Improved caching to increase performance when sharing the same data between Commander and multiple Shields.

    • New Commander installation workflow to provide more control over database configuration and service startups.

  • Maintenance

    • Moved Commander Settings into an on-Commander database application, enabling easier modification of the following:

      • Certificate usage

      • Commander port

      • Reports path

      • Resetting and restoring App Managed Database backups

    • Uninstalling Commander using App Managed Database now performs a backup upon request to the location specified in the new Commander Settings app.


Desktop Client

  • Features

    • Recovery Codes provided at first-time login. Can also be generated in User Settings.

    • Admin users can now associate, archive, and restore Forges directly via Settings Manage Policies.

    • Added Finding Details information to job results from Script Entry control parts.

    • Upgraded interface framework to improve visuals, Infrastructure Tree control, drag-and-drop, and other controls.

  • Bug Fixes

    • Overall drag-and-drop improvements for the Infrastructure Tree.

    • Resolved inconsistencies in expected result values for security parts auditing from 0/1 to True/False.

    • Aligned archived endpoint icon with the archive filter option. Added color difference for offline/online status set at client login.

    • Canceling changes to Server Settings now resets those settings to their previous values.

    • Improved horizontal scrolling in Infrastructure Tree with longer group and endpoint names.

    • Repaired disabling Continuous Monitoring by disabling the override.

  • Maintenance

    • Comments for CIS controls are now copied over to Commander via the Client’s Policy Manager.

 


Windows Shield

  • Maintenance

    • Shield now carries Comments in CIS policies over to Results.

    • New security restrictions for registry keys and application folders limit access to users with administrator roles only.

 


Linux Shield (NEW)

  • Features

    • Linux Shield supporting RHEL 8/9 with configuration to support more operating systems soon.

    • Compliance is validated or remediated by script entry parts written in Bash and follow a specific format requirement. See the Forge Reference Guide for more information on creating and modifying script entry parts.