This release introduces new features, enhancements and resolved issues.
What's new in 5.2.6
This release introduces new features and enhances existing features.
With the new CLI commands, the Load Balance service can use web certificates to authenticate and communicate between the Intelligent Sandbox cluster nodes.
set lbcertificate enable— Enables the LB certificate setting for web-certificate.set lbcertificate disable— Disables the LB certificate setting for web-certificate.show lbcertificate status— Displays the LB certificate status.
CLI commands for IP service in Intelligent Sandbox.
service status ipservice— Displays the status of IP service.service start ipservice— Starts the IP service.service stop ipservice— Stops the IP service.
show rpm— This CLI displays all the detection package RPM files copied to the Intelligent Sandbox through SFTP or downloaded automatically from the server.Intelligent Sandbox now displays the following alert notification when the Internet Protocol Firewall service (IP Tables) is unavailable.
IP Tables are not configured. System will not accept samples.
Enhancements
Intelligent Sandbox now supports a maximum of 1024 users. For more information about configuring the users limit, see the CLI guide.
Intelligent Sandbox 5.2.6 upgrades Trellix Agent RPMS to version 5.8.0.321 to support 3072-bit keys.
Intelligent Sandbox 5.2.6 contains an updated Machine Learning model for DLL file types running on Windows 10 operating systems.
A new message is now displayed when you login to CLI as an administrator:
Welcome to the Intelligent Sandbox Command Line Interface
Resolved issues in 5.2.6
Content
Resolution | Reference |
|---|---|
ATD-11991 | Fixes an issue where the list of supported ciphers of Intelligent Sandbox Email Connector was not sent correctly. |
ATD-11986 | Fixes an issue where the error messages "Timeout occurred while scanning" or "ATD Error: ATD failed to send status response to MWG" were displayed for MWG submissions when mariadb and elasticdb were out of sync. |
ATD-11987 | Fixes an issue where users with an analyst role in Intelligent Sandbox can now view Email Reports when given permission. |
ATD-12007 | Fixes an issue where the DXL service crash intermittently when the snort engine was running. |
ATD-12033 | Fixes an issue where unsupported URL length were truncated in the VM and summary reports. |
ATD-12095 | Fixes the issue where the "show dat version" command in CLI fails to display the current DAT version. |
ATD-12101 | Fixes the issue where the AV engine row was missing due to changes in GAM update package. |
Known issues
For a list of known issues in this product release, see Intelligent Sandbox 5.x Known Issues (KB95730).
Supported upgrade paths
These are the possible upgrade paths from your current version of the software to the latest version.
Trellix Intelligent Sandbox initial version | Upgrade Path |
|---|---|
4.12.x | 4.12.x » 5.0 » 5.2.0 » 5.2.6 |
4.14.x | 4.14.x » 5.2.0 » 5.2.6 |
5.0.x | 5.0.x » 5.2.0 » 5.2.6 |
5.2.x | 5.2.x » 5.2.6 |