Contents and detection
A list of the improvements for the Contents and Detection that have been introduced in this release.
- N2OS-17554: Suricata has been updated to branch 8.0.
- ENG-385: Delta‑V Program Transfer alerts are now unified under one signature and risk level, enabling alert rules matching and correct security profile-based visibility while emitting only one alert per transfer.
- ENG-970: Addressed an issue where alert note edits made via OpenAPI on a Central Management Console (CMC) were not propagated to downstream Guardians.
- ENG-1489: AC800M controller: a device state change alert is now generated in the event of a redundancy switch over.
- ENG-1812: Fixed an issue where alert rules referencing zone names with spaces would arrive broken on Guardian after propagation from Vantage. The zone name was silently truncated at the first space, causing rules, for example, mute rules to not match any alerts. The fix encodes values in the rule string on the Vantage side and decodes them on the Guardian side.
- ENG-1855: Added Common Platform Enumeration (CPE) generation for Oracle Linux assets polled by Smart Polling.
- ENG-2045: The
SIGN:CLEARTEXT-PASSWORDfor file transfer protocol (FTP) protocol now obeys thehide_username_on_alertsandhide_password_on_alertsconfigurations, hiding the detected cleartext username/password in the alert's description when the setting is enabled.