Hi there,
I am writing to inform you that an important new software release Update 39.0.2 (or “U39.0.2”) for our network-based threat detection and response solution, Stamus Security Platform, is now available.
We recommend that you visit your My Stamus Networks portal to review the instructions for upgrading your Stamus Security Platform to U39.0.2 as soon as possible.
New with U39.0.2
This release builds upon the previous release U39.0.1 and includes several bug fixes and security patches to the underlying operating system. These are briefly described in the list below:
- Added a generic API endpoint to perform aggregation queries in Elasticsearch - This will form the foundation to advanced reporting capabilities in future releases
- Fix for rare error occurring during threat intelligence / ruleset source update - Some customers noticed that threat intelligence updates were failing with an mmap error. This issue is resolved in this release.
- Fix SCS troubleshoot when syslog server is a hostname - There was a bug in the troubleshooting script that failed with a syslog server that was not an IP address.
- Fix for Suricata getting stuck on stressed systems running conditional PCAP and having substantial tunneling protocols traffic - On highly stressed systems with lots of tunneling protocols for VLAN and with conditional packet capture turned on, Suricata would freeze and appear like it was running but not processing any traffic. This has been fixed in this release, and the fix has been contributed to Suricata.
- Fix for empty system monitoring page linked to specific hostname combinations- If the hostname used for the Stamus Central Server (SCS) included certain keywords, the system monitoring page for the SCS will appear blank.
- Allow user to configure full http header logging in alerts - When activated, all HTTP headers will be attached to the IDS alert record.
- REST API now supports Network Definition update for all authorized users - In some instances, a user with the appropriate permissions could not interact with Network Definitions using the REST API.
- Fix global settings edit for Stamus ND license tier - Fix for customers at the Stamus ND license tier. For these users, the “Appliances global settings” web UI pages would occasionally return a 500 error message.
- Security fixes for the operating system with package upgrades - This is included with every release
- Includes all changes and fixes from U39.0.1
Learn More
Please let us know your availability to discuss the U39.0.2 upgrade and schedule a review of these changes.
In the meantime, visit your My Stamus Networks portal to review the instructions for upgrading your Stamus Security Platform to U39.0.2.
For more information on Stamus Security Platform U39 please visit the U39 for Stamus Security Platform now available blog post that explains the new features.
Best,
Phil Owens
Stamus Networks
VP, Customer Solutions