Release Notes for Snare Central v8.3.1

Snare Central v8.3.1 was released on 23rd February 2021.

Snare Central incorporates the Agent Management Console (AMC), Reflector v2.4.1, Snare Agent Manager (SAM) v1.4.1, and Snare Enterprise Agent for Linux v5.4.1.

If the threat intelligence component is active, version 6.8.7 of ElasticSearch is installed.

Overview

Snare Central version 8.3.1 is a patch release that includes updated system packages, security patches, and bug fixes. 

Security

  • Applied patch for sudo vulnerability CVE-2021-3156

Features and Enhancements

  • Cisco FTD firewall logs are now recognised, and integrated into the standard PIXLog log type
  • Snare Central now supports Active Directory user names with spaces when LDAP is enabled

Bug Fixes

  • Improved AMC to correctly manage Legacy (v4) Agents and agents with long passwords
  • Fixed issues related to data backup to NAS devices
  • Improved handling of SonicWall logs
  • Custom destination port numbers can now be set in the Reflector configuration page
  • Events Search > Saved Queries: fixed query formatting when a row is expanded

Known Issues

  • Data Backup to a NAS device that experiences significant latency may not complete as expected. The issue will be addressed in v8.4.0. 

User Guides

Offline version of the User Guide related to this release

Installation & Side-by-side Migration Guide for Snare Central

User Guide to the Snare Agent Management Console (AMC) in Snare Central