Intelligent Sandbox 5.2.6 Release Notes

Prev Next

This release introduces new features, enhancements and resolved issues.

What's new in 5.2.6

This release introduces new features and enhances existing features.

  • With the new CLI commands, the Load Balance service can use web certificates to authenticate and communicate between the Intelligent Sandbox cluster nodes.

    • set lbcertificate enable — Enables the LB certificate setting for web-certificate.

    • set lbcertificate disable — Disables the LB certificate setting for web-certificate.

    • show lbcertificate status — Displays the LB certificate status.

  • CLI commands for IP service in Intelligent Sandbox.

    • service status ipservice — Displays the status of IP service.

    • service start ipservice — Starts the IP service.

    • service stop ipservice — Stops the IP service.

  • show rpm — This CLI displays all the detection package RPM files copied to the Intelligent Sandbox through SFTP or downloaded automatically from the server.

  • Intelligent Sandbox now displays the following alert notification when the Internet Protocol Firewall service (IP Tables) is unavailable.

    IP Tables are not configured. System will not accept samples.

Enhancements

  • Intelligent Sandbox now supports a maximum of 1024 users. For more information about configuring the users limit, see the CLI guide.

  • Intelligent Sandbox 5.2.6 upgrades Trellix Agent RPMS to version 5.8.0.321 to support 3072-bit keys.

  • Intelligent Sandbox 5.2.6 contains an updated Machine Learning model for DLL file types running on Windows 10 operating systems.

  • A new message is now displayed when you login to CLI as an administrator:

    Welcome to the Intelligent Sandbox Command Line Interface

Resolved issues in 5.2.6

Content

Resolution

Reference

ATD-11991

Fixes an issue where the list of supported ciphers of Intelligent Sandbox Email Connector was not sent correctly.

ATD-11986

Fixes an issue where the error messages "Timeout occurred while scanning" or "ATD Error: ATD failed to send status response to MWG" were displayed for MWG submissions when mariadb and elasticdb were out of sync.

ATD-11987

Fixes an issue where users with an analyst role in Intelligent Sandbox can now view Email Reports when given permission.

ATD-12007

Fixes an issue where the DXL service crash intermittently when the snort engine was running.

ATD-12033

Fixes an issue where unsupported URL length were truncated in the VM and summary reports.

ATD-12095

Fixes the issue where the "show dat version" command in CLI fails to display the current DAT version.

ATD-12101

Fixes the issue where the AV engine row was missing due to changes in GAM update package.

Known issues

For a list of known issues in this product release, see Intelligent Sandbox 5.x Known Issues (KB95730).

Supported upgrade paths

These are the possible upgrade paths from your current version of the software to the latest version.

Trellix Intelligent Sandbox initial version

Upgrade Path

4.12.x

4.12.x » 5.0 » 5.2.0 » 5.2.6

4.14.x

4.14.x » 5.2.0 » 5.2.6

5.0.x

5.0.x » 5.2.0 » 5.2.6

5.2.x

5.2.x » 5.2.6