Intelligent Sandbox 5.2.4 Release Notes

Prev Next

This release introduces new features, enhancements or update platform support, and resolves known issues.

What's new in 5.2.4

This release introduces new features and enhances existing features.

  • Trellix Intelligent Sandbox now supports password expiry notification which notify users when the password for the Web UI is about to expire. The notifications serve as a reminder for users to change their passwords and ensure minimal disruptions when accessing the Intelligent Sandbox Web UI. This feature is applicable to all users except LDAP, EC and CLI users.

    The following new CLI commands are introduced:

    • password-expiry enable — Use this command to receive password expiry notification.

    • password-expiry status — Use this command to check the password expiry status.

    • password expiry sync — Use this command to sync password expiration with new nodes when using a cluster.

    For more information, see the CLI guide.

  • Intelligent Sandbox 5.2.4 introduces the following new CLI commands for generic Object Identifiers (OIDs).

    • set generic-oid enable — enables generic OIDs

    • set generic-oid disable — disables generic OIDs

    For more information, see the CLI guide.

  • BIOS 02.01.0016 is now available for ATD-3200/ATD-6200 GEN3 hardware appliance models. This package includes an updated version of OpenSSL (1.1.1t) that fixes security issues and other CVEs.

  • Intelligent Sandbox now supports the Elliptic Curve Diffie–Hellman Ephemeral (ECDHE) cipher with RSA when integrating with Trellix IPS.

Enhancements

  • Intelligent Sandbox has updated its VM Provisioner Tool for Windows 10 to provide enhanced VM creation and activation experience and improved resource usage.

  • Intelligent Sandbox 5.2.4 contains upgraded Trellix Agent 5.8.0 RPMS.

Updated platform, environment, or operating system support

Trellix Intelligent Sandbox 5.2.4 supports Windows 10 22h2 version for the execution of files and URLs. The supported versions are 19045.2006, 19045.2364 and 19045.2728.

Resolved issues in 5.2.4

Platform

Resolution

Reference

ATD-11787

Fixes an issue where vTIS on Hyper-V reports half-duplex speed even after full duplex was configured.

ATD-11913

Trellix Intelligent Sandbox now sends generic Linux OIDs instead of TIS OIDs when sending SNMP traps.

Content

Resolution

Reference

ATD-11859

Fixes an issue where Intelligent Sandbox incorrectly identifies EML files containing Excel/Office schemas as Excel files.

ATD-11922

Fixes the false positive issue for a PE file.

Security

Resolution

Reference

ATD-11914

Trellix Intelligent Sandbox fixes the OpenSSH vulnerability.

For more details, see SB10408.

Known issues

For a list of known issues in this product release, see Intelligent Sandbox 5.x Known Issues (KB95730).

Supported upgrade paths

These are the possible upgrade paths from your current version of the software to the latest version.

Trellix Intelligent Sandbox initial version

Upgrade Path

4.12.x

4.12.x » 5.0 » 5.2.0 » 5.2.2 » 5.2.4

4.14.x

4.14.x » 5.2.0 » 5.2.2 » 5.2.4

5.0.x

5.0.x » 5.2.0 » 5.2.2 » 5.2.4

5.2.x

5.2.0 » 5.2.2 » 5.2.4