The CLI commands in this section were added, modified, or deprecated for this release.
New commands
SSH server security enhancement
SSH server security now provides client IP address-based access control for specified user accounts using the following CLI commands:
[no] ssh server access-control allow-users <user-host-ip-pattern>[no] ssh server access-control allow-users <user-host-ip-pattern> enable[no] ssh server access-control deny-users <user-host-ip-pattern>[no] ssh server access-control deny-users <user-host-ip-pattern> enable[no] ssh server access-control enable
Splunk integration enhancement
These commands define the parameters for the HTTP events that are sent to the HTTP Event Collector (HEC) on a Splunk Enterprise instance.
fenotify http service <service_name> prefer splunk collector-type <raw | event-collector>Specifies the event collector to which the data is sent.
fenotify http service <service_name> prefer splunk token <token>Specifies the Splunk token to establish the connection between the appliance and the Splunk instance.
fenotify http service <service_name> prefer splunk host <hostname>Specifies the hostname of the appliance.
fenotify http service <service_name> prefer splunk source <source>Specifies the source.
fenotify http service <service_name> prefer splunk index <index>Specifies the name of an index by which the event data is indexed.
Watch command
watch "<show command>" interval <seconds>Watch enables 'show' cli commands to run continuously in regular intervals without manual intervention. The “watch” command can be run in all modes (standard, enable, and config). It allows you to configure intervals. The default interval (when not specified explicitly) is 30 seconds.
Configuring file types for dynamic analysis
fmps scan configure dynamic-analysisConfigures file types for dynamic analysis.
analysis file-dynamic-analysisConfigures file types for dynamic analysis at appliance level.
show analysis file-dynamic-analysisShows configured file types for dynamic analysis.
Microsoft Azure Blob storage commands
fmps azure config account-nameAdds an Azure account name to the File Protect appliance.
fmps azure config sas-keyAdds the shared access key for an Azure account added to the File Protect appliance.
fmps azure config subscription-idAdds the subscription ID of an Azure account added to the File Protect appliance.
show fmps azure configShows the current Azure configuration running on the File Protect appliance.
fmps storage create azure name <name of storage> app blob container <name of container> queue <name of queue>Creates an Azure storage in the File Protect appliance.
Modified commands
AV-suite commands
Some AV-suite commands are modified to replace AV-suite with gcache. The following are the modified commands:
fenet dti gcache service[no] fenet dti gcache service override[no] fenet dti gcache service proxy[no] fenet dti gcache service type
Deprecated commands
AV-suite commands
A subset of AV-suite commands is deprecated.
fenet dti av-suite service[no] fenet dti av-suite service override[no] fenet dti av-suite gcache service proxy[no] fenet dti av-suite gcache service typestatic-analysis av-suite whitelist enable