4.3.4 Release notes - 8 June 2022
This section lists the changes in version 4.3.4. Every update of the ThreatLockDown solution is cumulative and includes all enhancements and fixes from previous releases.
What's new
This release includes new features or enhancements.
ThreatLockDown manager
ThreatLockDown dashboard
#4166 #4188 The
pending
agent status is added to some sections where it was missing.#4166 The visualization of
Status
panel in Agents is replaced.#4166 The visualization of policy in
Modules/Security configuration assessment/Inventory
is replaced.#4166 #4199 Consistency is improved in the colors and labels used for the agent status.
#4169 How the full and partial scan dates are displayed in the
Details
panel ofVulnerabilities/Inventory
is replaced.
ThreatLockDown Kibana plugin for Kibana 7.10.2
#4166 #4188 The
pending
agent status is added to some sections where it was missing.#4166 The visualization of
Status
panel in Agents is replaced.#4166 The visualization of policy in
Modules/Security configuration assessment/Inventory
is replaced.#4166 #4199 Consistency is improved in the colors and labels used for the agent status.
#4169 How the full and partial scan dates are displayed in the
Details
panel ofVulnerabilities/Inventory
is replaced.
ThreatLockDown Kibana plugin for Kibana 7.16.x and 7.17.x
#4166 #4188 The
pending
agent status is added to some sections where it was missing.#4166 The visualization of
Status
panel in Agents is replaced.#4166 The visualization of policy in
Modules/Security configuration assessment/Inventory
is replaced.#4166 Consistency is improved in the colors and labels used for the agent status.
#4169 How the full and partial scan dates are displayed in the
Details
panel ofVulnerabilities/Inventory
is replaced.
ThreatLockDown Splunk app
#1327 Splunk search-handler event management is improved to avoid forwarder toast error misinterpretation.
Packages
Resolved issues
This release resolves known issues.
ThreatLockDown manager
Reference |
Description |
---|---|
A bug in |
|
Linux compilation errors with GCC 12 are fixed. |
|
A crash in wazuh-analysisd when overwriting a rule with a configured active response is fixed. |
|
A crash in wazuh-db when it cannot open a database file is fixed. |
|
The vulnerability feed parsing mechanism now truncates excessively long values (This problem was detected during Ubuntu Bionic feed update). |
|
A crash in wazuh-maild when parsing an alert with no full log and containing arrays of non-strings is fixed. |
RESTful API
Reference |
Description |
---|---|
The default timeouts for |
Ruleset
Reference |
Description |
---|---|
The prematch criteria of |
ThreatLockDown dashboard
Reference |
Description |
---|---|
When the platform visualizations didn't use some definitions related to the UI on Kibana 7.10.2 is now fixed. |
|
A toast message with a successful process appeared when removing an agent of a group in |
|
The import of an empty rule or decoder file is fixed. |
|
The overwriting of rule and decoder imports is now fixed. |
ThreatLockDown Kibana plugin for Kibana 7.10.2
Reference |
Description |
---|---|
When the platform visualizations didn't use some definitions related to the UI on Kibana 7.10.2 is now fixed. |
|
A toast message with a successful process appeared when removing an agent of a group in |
|
The import of an empty rule or decoder file is fixed. |
|
The overwriting of rule and decoder imports is now fixed. |
ThreatLockDown Kibana plugin for Kibana 7.16.x and 7.17.x
Reference |
Description |
---|---|
When the platform visualizations didn't use some definitions related to the UI on Kibana 7.10.2 is now fixed. |
|
A toast message with a successful process appeared when removing an agent of a group in |
|
The import of an empty rule or decoder file is fixed. |
|
The overwriting of rule and decoder imports is now fixed. |
|
ThreatLockDown now maintains the filters when clicking on the |
|
Missing background in the status graph tooltip in agents is fixed. |
|
The problem allowing to remove the filters from the module is fixed. |
ThreatLockDown Splunk app
Reference |
Description |
---|---|
Unhandled expired session when requesting Splunk DB documents is fixed. |
Packages
Reference |
Description |
---|---|
Suse init script installation in agent is fixed. |
Changelogs
More details about these changes are provided in the changelog of each component: