Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Deployment April 30, 2023

Info

Status
colourGreen
titleIMPROVEMENT
AWS Region - 14:00 UTC

Description: Added new property "SecurityHubEnabled" for AWS Region in compliance engine and protected assets.
Case ID: DFR-2413
Known limitations:
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourRed
titlefixed
Onboarding permission fixed on infinity portal - 10:50 UTC

Description: JIT(Just in time) User using CloudGuard SSO or coming from Infinity Portal are now allowed to onboard their Cloud Accounts to CloudGuard with the Onboarding Permission.
Case ID: DFT-2491, PLAT-8011
Known limitations: Onboarding Permission doesn't include View or Manage Permission to the onboarded Cloud Account.
Affected Components:

Status
titleINFINITY PORTAL

Info

Status
colourRed
titlefixed
Filter Panel race condition in updating data - 11:50 UTC

Description: Fix for 'Risk Score' filter in Protected Assets page under Risk Management
Case ID: PLAT-7895
Known limitations: N/A
Affected Components:

Status
titleUI

Deployment April 27, 2023

Info

Status
colourGreen
titleIMPROVEMENT
AWS App Load balancer - 07:30 UTC

Description: Added "attributes" property to target group
Case ID: DFR-2662
Known limitations:
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
AWS Security Hub - 11:00 UTC

Description: Added support for "AWS Security Hub" in compliance engine and protected assets.
Case ID: DFR-2416
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
AWS S3 Glacier Vault - 11:00 UTC

Description: Added support for "AWS S3 Glacier Vault" in compliance engine and protected assets.
Case ID: DFR-442
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titlefeature
Open Vs. Closed Findings - New widget - 11:50 UTC

Description: Added dashboard structure under active feature
Case ID: PLAT-7397
Known limitations: N/A
Affected Components:

Status
titleUI

Info

Status
colourGreen
titlefeature
ERM Widget added to New Dashboard in React - 11:50 UTC

Description: Added ERM widgets with data to New Dashboard in React
Case ID: PLAT-7929
Known limitations: N/A
Affected Components:

Status
titleUI

Deployment April 25, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Compliance Rulesets Update - 10:50 UTC

Description: A DFT on Oracle Cloud Ruleset was fixed. A complete list can be found here.
Case ID: IN-7585, DFT-2511
Known limitations: N/A 
Affected Components:

Status
titleCompliance RULESETS

Deployment April 24, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Helm 2.20.0 - 10:50 UTC

Description: Image Assurance, Runtime Protection. A complete list can be found here.
Case ID: CON-5149
Known limitations: N/A 
Affected Components:

Status
titlecontainers

Deployment April 23, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Intelligence Rulesets Update - 08:30 UTC

Description: Update for AWS rule. A list can be found here.
Case ID: IN-7211
Known limitations: N/A 
Affected Components:

Status
titleINTELLIGENCE RULESETS

Deployment April 20, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Compliance Rulesets Update - 11:20 UTC

Description: New Alibaba cloud rules, new OCI rule, new AWS rules; rule improvement. A complete list can be found here.
Case ID: IN-7365
Known limitations: N/A 
Affected Components:

Status
titleCOMPLIANCE RULESETS

Info

Status
colourRed
titlefixed
Replace Azure icon in all places - 11:50 UTC

Description: Replaced Azure icon to newer design in all pages
Case ID: PLAT-7793
Known limitations: N/A
Affected Components:

Status
titleUI

Deployment April 14, 2023

Info

Status
colourGreen
titleFEATURE
AWS Glue Job - 13:00 UTC

Description: Added support for "AWS Glue Job" in compliance engine and protected assets.
Case ID: DFR-2486
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
AWS Glue Crawler - 13:00 UTC

Description: Added support for "AWS Glue Crawler" in compliance engine and protected assets.
Case ID: DFR-2487
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
AWS Glue Data Catalog Encryption Setting - 13:00 UTC

Description: Added support for "AWS Glue Data Catalog Encryption Setting" in compliance engine and protected assets.
Case ID: DFR-2488
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
AWS Glue Dev Endpoint - 13:00 UTC

Description: Added support for "AWS Glue Dev Endpoint" in compliance engine and protected assets.
Case ID: DFR-2489
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
AWS Glue ML Transform - 13:00 UTC

Description: Added support for "AWS Glue ML Transform" in compliance engine and protected assets.
Case ID: DFR-2490
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Deployment April 13, 2023

Info

Status
colourRed
titlefixed
AWS IAM User - 10:30 UTC

Description: Fixed wrong classification of MFA devices where root user virtual MFA device was classified as physical.
Case ID: DFT-2450
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Deployment April 11, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Risk Management - Network Exposure - 09:00 UTC

Description: Added Network Exposure support for Azure Virtual Machines in ERM. We currently identify publicly exposed Virtual Machines via direct access using public IPs. Additional use cases will be supported in later releases.
Case ID: SEC-871
Known limitations: N/A 
Affected Components:

Status
titleERM

Info

Status
colourGreen
titleIMPROVEMENT
Azure Front Door - 07:30 UTC

Description: Added support for Azure Global WAF connector for FrontDoor in compliance engine
Case ID: DFR-2544
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleIMPROVEMENT
AWS & Azure - vendorIdentifier property - 7:30 UTC

Description: Added support for field 'vendorIdentifier' property in compliance engine and protected assets for all the AWS & Azure this data is available for (ARN for AWS, ResourceURI for Azure). Field will be missing if data is not available.
Case ID: DFT-2390
Known limitations: N/A
Affected Components:

Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Deployment April 09, 2023

Info

Status
colourGreen
titleIMPROVEMENT
AWS Region - 13:30 UTC

Description: AWS Region Dome9Id was changed to a unique value over different cloud accounts.
Case ID: DFR-2625
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Deployment April 04, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Risk Management Assets Support - 13:50 UTC

Description: Added support for new assets in Risk Management: AWS KMS, AWS EKS Cluster, Azure WebApp.
Case ID: SEC-593, SEC-778, SEC-588
Known limitations: N/A
Affected Components:

Status
titleERM

Info

Status
colourGreen
titleIMPROVEMENT
Compliance Rulesets Update - 18:30 UTC

Description: The first release of the Azure CIS v2 ruleset;
Case ID: IN-7140
Known limitations: N/A 
Affected Components:

Status
titleCOMPLIANCE RULESETS

Deployment March 30, 2023

Info

Status
colourRed
titlefixed
Missing entities in the protected assets table - 13:10 UTC

Description: Added missing entities; Azure Postgre SQL Flexible Service, AWS IAM Policy, AWS Subnet and AWS Network Access Control List to new protected assets table
Case ID: DFT-2439
Known limitations: N/A
Affected Components:

Status
titleUI
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
Azure Front Door - 13:30 UTC

Description: Added support for "Azure Front Door" in Compliance Engine and Protected Assets.
Case ID: IN-6327
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
OCI Vault - 13:30 UTC

Description: Added support for "OCI Vault" in Compliance Engine and Protected Assets.
Case ID: IN-6592
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleFEATURE
Oracle Cloud Infrastructure (OCI) Support - 14:30 UTC

Description: Added support for Oracle Cloud Infrastructure (OCI) in CloudGuard.
Case ID:
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS
Status
titleUI

Deployment March 29, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Effective Risk Management - AWS RDS support - 17:00 UTC

Description: AWS RDS is now supported in Risk Management section. This includes the calculation of Network Exposure fields for all RDS types.
Case ID: SEC-637, SEC-638, SEC-640
Known limitations: An RDS may be marked as Public in case it is in a Public VPC but in a Private subnet.
Affected Components:

Status
titleRisk management
Status
titleUI

Info

Status
colourGreen
titleIMPROVEMENT
Compliance Rulesets Update - 13:30 UTC

Description: The first release of the Oracle CIS v1.2 ruleset; The first release of the GCP MITRE ATT&CK v12.1 ruleset; rule improvement. A complete list can be found here.
Case ID: IN-7163, DFT-2420
Known limitations: N/A 
Affected Components:

Status
titleCOMPLIANCE RULESETS

Deployment March 26, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Navigation Search - 17:00 UTC

Description: Allow users to search menu items from the main page.
Case ID: PLAT-7130
Known limitations: Shiftleft and Spectral pages are not included in the search
Affected Components:

Status
titleUI

Info

Status
colourRed
titlefixed
Infinity portal timeout - 15:50 UTC

Description: Idle session timeout is reached while being active in CloudGuard Posture.
Case ID: DFT-2300, PLAT-6833
Known limitations: N/A
Affected Components:

Status
titleUI

Deployment March 23, 2023

Info

Status
colourRed
titlefixed
Posture Ruleset - 13:50 UTC

Description: Disable Terraform platform for new rulesets creation.
Case ID: PALT-7642, DFT-2417
Known limitations: Account with Classic shiftleft flow won’t be affected.
Affected Components:

Status
titleposture ruleset
Status
titleUI

Info

Status
colourGreen
titleIMPROVEMENT
Azure Storage Account - 13:30 UTC

Description: Added support for “key1CreationTime” and "key2CreationTime" properties.
Case ID: DFR-2687
Known limitations: N/A 
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Deployment March 21, 2023

Info

Status
colourRed
titleFIXED
OCI Network Load Balancer - 10:30 UTC

Description: Changed "listeners" field structure for "OCI Network Load Balancer" in compliance engine.
Case ID: DFR-2618
Known limitations: N/A 
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourRed
titleFIXED
GCP Security Group - 10:30 UTC

Description: Added support for "ServiceAccounts" target when building Firewall rules for GCP security group.
Case ID: DFT-2432
Known limitations: N/A 
Affected Components:

Status
titleUI
Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Deployment March 20, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Serverless - Add Dotnet6 support - 18:00 UTC

Description: Dotnet6 support has been added to the function scanning and proact tool,
Case ID: PROT-1510
CloudFormationTemplate version has been changed. the new version: 28
Known limitations: N/A 
Affected Components:

Status
titleSERVERLESS

Info

Status
colourGreen
titleIMPROVEMENT
Serverless - update future 0.17.1 package - 18:00 UTC

Description: Update future 0.17.1 in order to fix CVE-2022-40899
Case ID: PROT-1092
Known limitations: N/A 
Affected Components:

Status
titleSERVERLESS

Deployment March 15, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Compliance Rulesets Update - 17:00 UTC

Description: The first release of the AWS default ruleset; severity change to 24 AWS rules, new rules and rules improvements. A complete list can be found here.
Case ID: IN-7112, DFT-2361, DFT-2403, DFT-2362
Known limitations: N/A 
Affected Components:

Status
titleCOMPLIANCE RULESETS

Deployment March 13, 2023

Info

Status
colourRed
titleFIXED
AWS ECS Cluster - 12:30 UTC

Description: Fixed a problem where "containerinstance" field shows non-existing instances.
Case ID: DFT-2405
Known limitations: N/A 
Affected Components:

Status
titleCOMPLIANCE ENGINE

Info

Status
colourRed
titleFIXED
AWS WAFRegional/WAFRegionalV2 - 12:30 UTC

Description: Improve running time of GSL's on both AWS WAFRegional and AWS WAFRegionalV2.
Case ID: DFT-2350
Known limitations: N/A 
Affected Components:

Status
titleCOMPLIANCE ENGINE

Deployment March 09, 2023

Info

Status
colourRed
titleFIXED
AWS KMS - 11:00 UTC

Description: Fixed the "kmsAssetsStats" attribute in AWS KMS entity to support the multi region keys.
Case ID: IN-5902
Known limitations: N/A 
Affected Components:

Status
titleCOMPLIANCE ENGINE

Deployment March 08, 2023

Info

Status
colourGreen
titleFixed
Tenable integration - 18:00 UTC

Description: Changed Tenable vulnerabilities ID to fix an issue that caused resolved vulnerabilities to stay open.
Case ID: SEC-573
Known limitations:
Affected Components:

Status
titleTenable

Info

Status
colourGreen
titleIMPROVEMENT
Main Menu - Moved “Risk Management” - 14:00 UTC

Description: The “Risk Management” main menu item was moved to the second position within the menu.
Case ID: SEC-785
Known limitations:
Affected Components:

Status
titleUI

Info

Status
colourGreen
titleIMPROVEMENT
Risk Management - 14:00 UTC

Description: The “Unknown” network exposure value of protected assets will not be displayed in the filters and the protected assets table.
Case ID: SEC-751
Known limitations:
Affected Components:

Status
titleUI

Deployment March 07, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Scheduled Report Notification - 15:10 UTC

Description: The email content of a scheduled report notification (Summary, Detailed, CSV, Zipped CSV), will be also sent as an attachment to the email, as an html file for local usage. The file’s name is “Report.html”
Case ID: PLAT-5703, DFT-2090
Known limitations: Executive reports won’t be sent as attachment.
Affected Components:

Status
titleNotification

Deployment March 06, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Azure Blueprint Assignment - 16:30 UTC

Description: Added support for “Azure Blueprint Assignment” in Compliance engine and Protected Assets.
Case ID: INT-2178
Known limitations: N/A
Affected Components:

Status
titlefetchers
Status
titleCOMPLIANCE ENGINE
Status
titlePROTECTED ASSETS

Info

Status
colourGreen
titleIMPROVEMENT
Containers Update - 10:30 UTC

Description: CloudGuard Terraform module version 1.28.6 has been released, adding support for Image Assurance rulesets in the Dome9_ruleset resource.
Case ID: DFT-2055
Known limitations: N/A 
Affected Components:

Status
titleContainers

Deployment March 05, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Intelligence Rulesets Update - 10:30 UTC

Description: New Intelligence rules for Azure & AWS. A list can be found here here.
Case ID: IN-6990
Known limitations: N/A 
Affected Components:

Status
titleINTELLIGENCE RULESETS

Deployment March 02, 2023

Info

Status
colourRed
titleFIXED
Risk Management - Network Exposure Filter - 13:00 UTC

Description: Changed Network Exposure filter string representation from “Partial“ to “Partially Public”, to match the actual value on the assets.
Case ID: SEC-670
Known limitations: N/A 
Affected Components:

Status
titleERM
Status
titleUI

Deployment March 01, 2023

Info

Status
colourGreen
titleIMPROVEMENT
Compliance Rulesets Update - 14:00 UTC

Description: The first release of the EKS CIS v1.2 ruleset. AWS Hi-Trust v11 and AWS SOC2 rulesets, rules improvements. A complete list can be found here.
Case ID: IN-7032, DFT-2348
Known limitations: N/A 
Affected Components:

Status
titleCOMPLIANCE RULESETS