HomeProductsSupportServicesTrainingPartnersCompanyContact     


assuriaONLINE Customer and Partner resources Logon / register

     

Subscribe via RSS

RSS 2.0

 assuria bulletin                                                               

 

 
 Title:                        AutoUpdate 61 release notes

 Number:                  36                Date: 3rd May 2007
 

Title.

AutoUpdate #61

 

Contents

  • Security Content Updates

  • Policy Navigators with Standards Information

  • HTML Reporting by Applicable Standard

  • Agent Poll Time Graph

  • Global Policy Configuration

  • AutoUpdate enhancements and fixes

  • Update Script Changes

  • Textual Manifest

 

Introduction

AutoUpdate 61 is a security and feature content update. It contains updated console content including new Regulatory and standards based reporting, new and updated checks and policies, and updated patch databases, policy navigators and console database content.

 

The update is compatible with, and suitable for application to, both Assuria Auditor and ISS System Scanner agents.

 

Regulatory and standards based reporting introduced.

 

Assuria AutoUpdate #61 introduces new regulatory and standards compliance reporting to Assuria Auditor. 

 

The Assuria Auditor Console database has been updated to include, where appropriate, the mapping of each Assuria Auditor’s 2500 checks to a reference within the standard.

 

A new option is added to the Assuria Auditor reporting that is to report by the selected standard.  In addition the Policy Navigators for each of the supported platforms has been provided.

 

Auto Update 60 contained a new reporting option, which reported a session summarised by the codes or sections of one of several different standards. From this update, 61, the applicable standards report can be invoked through the standard GUI reporting dialog, by selecting the 'HTML by Applicable Standard' radio button.

 

To avoid confusion, the previously existing 'HTML' radio button has been renamed 'HTML by Risk Level'.

 

An extra tab has been added, called 'Applicable Standard', which allows selection of the standard to be reported against.

 

More information is available in Assuria Bulletin 37 published 3rd May 2007.

 

Policy Navigators with Standards Information

New policy navigators, with new functionality to allow queries to be made on various standards, and how they relate to Auditor checks.

 

For platforms:

  • IBM AIX

  • HP HP-UX 11 (PA-RISC)

  • Microsoft Windows 2000

  • Microsoft Windows Server 2003

  • Red Hat Enterprise Linux 3 and 4

  • Sun Solaris 8 (SPARC)

  • Sun Solaris 9 (SPARC)

  • Sun Solaris 10 (SPARC)

  • Sun Solaris 10 (x86)

 

Security Content Updates

 

Security content based on newly published vendor security bulletins (or similar) is included for the agents listed below

 

  • HP HP-UX 11 (PA-RISC)

  • Microsoft Windows 2000

  • Microsoft Windows Server 2003 (x86)

  • Red Hat Enterprise Linux 3 (x86), 4 (x86) and 4 (x64)

  • Sun Solaris 8 (SPARC)

  • Sun Solaris 9 (SPARC)

  • Sun Solaris 10 (SPARC)

 

 

Feature updates

 

 

Agent Poll Time Graph

This new graph displays when an agent last communicated with the console. It displays statistics on an Enterprise and class basis.

 

This new functionality replaces the number of available agents previously displayed above the pie chart.

 

AutoUpdate enhancements and fixes

The textual update report has been replaced by a clearer HTML version. In addition any error logs which are generated as part of the update process are automatically included in this report. Also a bug which incorrectly incremented an agents update level has been fixed

 

Update Script Changes

The Update script installUpdate has been updating to ensure a common code-base for GUI update and script updates.

 

The original file has been renamed installUpdate-old to ensure backward compatibility for customers.

 

Console update

o Database update

      - Updated information on new and existing checks

 

    o Updated Policy Navigators

      - IBM AIX

      - HP HP-UX 11

      - Red Hat Enterprise Linux

      - Sun Solaris 8

      - Sun Solaris 9

      - Sun Solaris 10 on Sparc

      - Sun Solaris 10 on X86

      - Windows 2000

      - Windows 2003

 

    o Updated Console Files

      - bin/tcl/db.tbc

      - bin/tcl/file.tbc

      - bin/tcl/host.tbc

      - bin/tcl/job.tbc

      - bin/tcl/main.tbc

      - bin/tcl/report.tbc

      - bin/tcl/startup.tbc

      - bin/tcl/treeutils.tbc

      - bin/scripts/InstallUpdate

 

    o New Console Files

      - bin/tcl/GlobalSettingsConfig.tbc

      - bin/scripts/InstallUpdate-old

 

Agent updates

Updates are included for the following agents:

 

    o HP HP-UX 11 (PA-RISC)

    o Microsoft Windows 2000

    o Microsoft Windows Server 2003 (x86)

    o Red Hat Enterprise Linux 3 (x86), 4 (x86) and 4 (x64)

    o Sun Solaris 8 (SPARC)

    o Sun Solaris 9 (SPARC)

    o Sun Solaris 10 (SPARC)

    o Sun Solaris 10 (x86)

 

HP HP-UX 11 (PA-RISC)

o Updated Patch Database

      - bin/patch_HP-UX.data

      - bin/patch_HP-UX.ref

 

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_61.zip

      - lib/xpud3_61.sgn

 

Red Hat Enterprise Linux 3 (x86), 4 (x86) & 4 (x64)

    o New Checks

      - RHSA-2007-0033

      - RHSA-2007-0055

      - RHSA-2007-0057

      - RHSA-2007-0061

      - RHSA-2007-0066

      - RHSA-2007-0068

      - RHSA-2007-0069

      - RHSA-2007-0075

      - RHSA-2007-0082

      - RHSA-2007-0087

      - RHSA-2007-0095

      - RHSA-2007-0097

      - RHSA-2007-0099

      - RHSA-2007-0107

      - RHSA-2007-0108

      - RHSA-2007-0114

      - RHSA-2007-0124

      - RHSA-2007-0125

      - RHSA-2007-0126

      - RHSA-2007-0127

      - RHSA-2007-0131

      - RHSA-2007-0132

      - RHSA-2007-0152

         

    o Updated Policies

      - Initial-1

      - Initial-All

      - Maintenance-1

      - Maintenance-All

      - rhsa

 

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_61.zip

      - lib/xpud3_61.sgn

 

Microsoft Windows 2000

o New Checks

      - win-ms07kb925902-update

      - win-ms07kb925939-update

      - win-ms07kb930178-update

      - win-ms07kb931784-update

      - win-ms07kb932178-update

 

    o Updated Checks

      - win-no-security-updates

         

    o Updated Policies

      - Initial-1

      - Initial-All

      - Maintenance-1

      - Maintenance-All

      - versionChecks

 

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_61.zip

      - lib/xpud3_61.sgn

 

Microsoft Windows Server 2003 (x86)

 

    o New Checks

      - win-ms07kb925902-update

      - win-ms07kb925939-update

      - win-ms07kb930178-update

      - win-ms07kb931784-update

      - win-ms07kb932178-update

      - win-no-security-updates

         

    o Updated Policies

      - Initial-1

      - Initial-All

      - Maintenance-1

      - Maintenance-All

      - versionChecks

 

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_61.zip

      - lib/xpud3_61.sgn

 

Sun Solaris 8 (SPARC)

o Updated Patch Database

      - bin/patch_Solaris.data

      - bin/patch_Solaris.ref

 

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_61.zip

      - lib/xpud3_61.sgn

Sun Solaris 9 (SPARC)

    o Updated Patch Database

      - bin/patch_Solaris.data

      - bin/patch_Solaris.ref

 

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_61.zip

      - lib/xpud3_61.sgn

 

Sun Solaris 10 (SPARC)

o Updated Patch Database

      - bin/patch_Solaris.data

      - bin/patch_Solaris.ref

 

    o X-Press Update Files

      - rulesets/unarchivePolicy

      - signatures/rulesets/unarchivePolicy.sgn

      - lib/xpud3_61.zip

      - lib/xpud3_61.sgn

 

   

 
Assuria Limited, Science & Technology Centre, The University of Reading, Earley Gate, Reading, RG6 6BZ, UK. 

Telephone +44 118 935 7395     Fax +44 118 926 7917     Web
www.assuria.com

 


System Scanner and X-Press Update are registered trademarks of Internet Security Systems Inc. of Atlanta, Georgia, USA
© Copyright Assuria Limited.  All rights reserved.



27/01/2008

Legal notice | Site map | Contact Assuria

© Copyright 2006 - Assuria Limited.  All rights reserved