Users Guide
Table Of Contents
- Dell Security Management Server Technical Advisories v11.0.0
- Contents
- Dell Security Management Server Technical Advisories
- Contact Dell ProSupport
- New Features and Functionality v11.0.0
- Resolved Technical Advisories v11.0.0
- Technical Advisories v11.0.0
- New Features and Functionality v10.2.14
- Resolved Technical Advisories v10.2.14
- Technical Advisories v10.2.14
- New Features and Functionality v10.2.13
- Resolved Technical Advisories v10.2.13
- Technical Advisories v10.2.13
- New Features and Functionality v10.2.12
- Technical Advisories v10.2.12
- Resolved Technical Advisories v10.2.12
- New Features and Functionality v10.2.11
- Resolved Technical Advisories v10.2.11
- Technical Advisories v10.2.11
- New Features and Functionality v10.2.10
- Resolved Technical Advisories v10.2.10
- Technical Advisories v10.2.10
- New Features and Functionality v10.2.9
- Resolved Technical Advisories v10.2.9
- Technical Advisories v10.2.9
- New Features and Functionality v10.2.7
- Resolved Technical Advisories v10.2.7
- Technical Advisories v10.2.7
- New Features and Functionality v10.2.6
- Resolved Technical Advisories v10.2.6
- Technical Advisories v10.2.6
- New Features and Functionality v10.2.5
- Resolved Technical Advisories v10.2.5
- Technical Advisories v10.2.5
- New Features and Functionality v10.2.4
- Resolved Technical Advisories v10.2.4
- Technical Advisories v10.2.4
- New Features and Functionality v10.2.3
- Resolved Technical Advisories v10.2.3
- Technical Advisories v10.2.3
- New Features and Functionality v10.2.2
- Resolved Technical Advisories v10.2.2
- Technical Advisories v10.2.2
- New Features and Functionality v10.2.1
- Resolved Technical Advisories v10.2.1
- Technical Advisories v10.2.1
- New Features and Functionality v10.1
- Resolved Technical Advisories v10.1
- Technical Advisories v10.1
- New Features and Functionality v10.0
- Resolved Technical Advisories v10.0
- Technical Advisories v10.0
- New Features and Functionality v9.11
- Resolved Technical Advisories v9.11
- Technical Advisories v9.11
- New Features and Functionality v9.10
- Resolved Technical Advisories v9.10
- Technical Advisories v9.10
- New Features and Functionality v9.9
- Resolved Technical Advisories v9.9
- Technical Advisories v9.9
- New Features and Functionality v9.8
- Resolved Technical Advisories v9.8
- Technical Advisories v9.8
- New Features and Functionality v9.7
- Resolved Technical Advisories v9.7
- Technical Advisories v9.7
- New Features and Functionality v9.6
- Resolved Technical Advisories v9.6
- Technical Advisories v9.6
- New Features and Functionality v9.5
- Resolved Technical Advisories v9.5
- Technical Advisories v9.5
- New Features and Functionality v9.4.1.6
- New Features and Functionality v9.4.1
- Resolved Technical Advisories v9.4.1
- New Features and Functionality v9.4
- Resolved Technical Advisories v9.4
- Technical Advisories v9.4
- New Features and Functionality v9.2
- Resolved Technical Advisories v9.2
- Technical Advisories v9.2
- New Features and Functionality v9.1.5
- Resolved Technical Advisories v9.1.5
- Technical Advisories v9.1.5
- New Features and Functionality v9.1
- Resolved Technical Advisories v9.1
- Technical Advisories v9.1
- New Features and Functionality v9.0
- Resolved Technical Advisories v9.0
- Technical Advisories v9.0
- Resolved Technical Advisories v8.5.1
- Technical Advisories v8.5.1
- New Features and Functionality v8.5
- Resolved Technical Advisories v8.5
- New Features and Functionality v8.3.1
- Resolved Technical Advisories v8.3.1
- New Features and Functionality v8.3
- Resolved Technical Advisories v8.3
- Technical Advisories v8.3
- New Features and Functionality v8.1
- Resolved Technical Advisories v8.1
- Technical Advisories v8.1
- New Features and Functionality v8.0
- Resolved Technical Advisories v8.0
- Resolved Technical Advisories v7.7.2
- Technical Advisories v7.7.2
- New Features and Functionality v7.7.1
- Resolved Technical Advisories v7.7.1
- Technical Advisories v7.7.1
- New Features and Functionality v7.7
- Technical Advisories v7.2.3
- Technical Advisories v7.2.1
- Technical Advisories v7.2
- Technical Advisories v7.0/7.0.1
- Default Policy Changes
{"eventsExport":{"exportToLocalFile":{"enabled":"false","fileLocation":"./logs/siem/
audit-export.log"},"exportToSyslog":
{"enabled":"true","protocol":"TCP","SSL":"true","host":"yourDellServer.yourdomain.com"
,"port":"5540"}}}
[DDPS-5234]
Resolved Customer Issues
● An issue is resolved that resulted in a license import failure with an error in the Security Server log that the system cannot
find the \AppData\Local\Temp\ folder. [DDPS-4240]
● Installation now proceeds as expected when the Service Runtime Account password that is used during installation contains
"$_" (dollar sign followed by underscore). [DDPS-4923]
● Attempts to re-register a Data Guardian user that is already registered now fail with a messages that the user is already
registered and confirmed. [DDPS-5133]
● An issue related with Microsoft platform validation profile changes that prevented BitLocker Manager from beginning to
encrypt on Windows 10 is now resolved. [DDPS-5243]
● The Device Lease Period can now be reduced to a minimum of 14 days. [DDPS-5281]
● An issue that resulted in an access violation error in module 'GKConsole.exe' is now resolved. [DDPS-5300]
● A page selector and drop-down list now allows the administrator to navigate between pages of Endpoint Groups and select
the number of groups to display per page. [DDPS-5349]
● Policy commit comments that begin with special characters are now logged in Commit History. [DDPS-5353]
● Certificates with passwords that include special characters can now be successfully imported. [DDPS-5396]
● The installer now accepts a period (".") in the SQL service account username with SQL Server 2008 R2 and SQL Server
2016. [DDPS-5418]
● Duplicate entries no longer display in the BitLocker Manager Detail report in Compliance Reporter after upgrade.
[DDPS-5432]
● An issue is resolved with Threat Protection (TP) licenses for Web Protection and Firewall, and they now match consumed
licenses for Advanced Threat Prevention (ATP) with Web Protection and Firewall. [DDPS-5491]
Technical Advisories v9.8
● Added 01/2018-Advanced Threat Event results are automatically limited to the first 10000 results. This will resolve issues
where Advanced Threat Events were not properly displaying when selecting the tab within the Dell Security Management
Server
● To block all PowerShell scripts with Advanced Threat Prevention, both the PowerShell and PowerShell Console policies
must be set to Block. When both policies are set to Block, no scripts can be run, either through the PowerShell console
or the Cmd console. PowerShell one-liners are blocked. To allow approved scripts to run through the Cmd console,
select the Enable Approve Scripts in Folders (and Subfolders) policy, and add the approved scripts to the Approve
Scripts in Folders (and Subfolders) policy. The PowerShell Console policy applies to PowerShell v3 and later. Windows 7
includes PowerShell v2, by default. To upgrade to PowerShell v3 on Windows 7, see www.microsoft.com/en-us/download/
details.aspx?id=34595. [CYL-619]
● As of v9.8, the ESXi vSphere thick client can no longer be used for deployment. Also, previous installs on ESXi 5.1 have not
been prevented although they are not supported. Installs on ESXi 5.1 are now prevented. [ DDPS-5086, DDPS-5269]
● The Office Protected Files Cover Page Corporate Logo policy cannot be committed when running the Remote Management
Console in Firefox. To work around this issue, use Internet Explorer or Google Chrome. [DDPS-5538]
● Added 08/2018-The Dell Policy Proxy service may incorrectly send two requests to the back end server for SKID3 requests.
This can safely be ignored. [DDPS-5585]
New Features and Functionality v9.7
● Enterprise Server now supports Advanced Threat Prevention with optional Client Firewall and Web Protection features.
Client Firewall and Web Protection policies are reorganized to simplify management of these features. Prior to client upgrade
to the new features, refer to Default Policy Changes.
● Enterprise Server now supports Disconnected Mode, for air-gapped environments.
● Added 7/2017 - Enterprise Server is now supported with VMware ESXi 6.5.
● Active Directory groups and domains can now be specified when adding or modifying Endpoint Groups. Enterprise Server
collects Active Directory information from endpoints and makes this data available for Endpoint Group specification.
26
Dell Security Management Server Technical Advisories