|
Tuesday, 17 July 2012 13:55 |
Release NotesMore elements of dynamic content (rootkit databases, detection tools, configs) have moved from the package bundled elements to the dynamic rule update system we use for the WAF, HIDS and malware detection system. This should be a transparent update to existing users, its primarily a method for streamlining distribution of frequently updated components of ASL.
Changelog
- - Add asl-port-check to dynamic updates
- - Add dynamic updates for base config
- - Add dynamic updates for firewall modules
- - Add dynamic updates for templates
- - Deprecate PSA_WAF_ENABLE (now part of T-WAF)
- - Deprecate internally distributed asl-port-check
- - Feature Request #721, add ossec signatures to update event
- - Bugfix #XXX, ASL Web, Fixes disabling a rule for multiple vhosts
- - Bugfix #XXX, add output rule to accept all from localhost
To Upgrade: asl -u
or yum upgrade asl asl-web asl-waf-module
|
|
|
Tuesday, 03 July 2012 13:50 |
|
Changelog
- Update to ASL Web, add HIDS rules to fp handling
- Bugfix #XXX, change permissions-check to not do a generic chmod in the /var/asl/data directory
- Bugfix #XXX, only reload firewall rules via fix mode
- Bugfix #XXX, correct condition where clamav would not be disabled in psa-proftpd when clamav was set to no
- Bugfix #XXX, add reject to output policy
- Bugfix #867, suppress output from HIDS cleanup event
To Upgrade:
asl -u
or
yum upgrade asl asl-web asl-waf-module
|
|
Friday, 29 June 2012 10:21 |
|
Release Notes:
This release is mainly about adding in the release field to package update checking. The release field is the -<number> following the version field. Previous releases only looked at the version field when determining an update.
Changelog
- - Updates will now track the release field as part of the version and in the -v output
- - Update to open port tracking system
- - Bugfix #XXX, ASL Web, Fixes scrollbar in connections window; removes presence check for stateful rule in firewall rules
- - Bugfix #XXX, disable --noflush on the running.fw settings
- - Feature request #853, return error if DAZUKO use is detected, and ASL kernel / modules are not present
- - Feature Request #857: Extend --permissions-check to all ASL config files and session dirs
To upgrade: asl -u
or yum upgrade asl asl-web asl-waf-module
|
|
Monday, 25 June 2012 12:28 |
|
Changelog:
- - Add rkhunter update routine for recommended ALLOWHIDDEN, ALLOWDEV, ALLOWPROCDELFILE, ALLOWHIDDENDIR, and SCRIPTWHITELIST
- - Add in "requested" option to the FW_TCP_ECN setting
- - Update to T-WAF embedded reporting
- - Update to HIDS suspicous process detector
- - Update ASL Web to automatically determine the time-zone
- - Update default for TCP_WINDOW_SCALING to yes/enable
- - Feature Request #545, adds x-frame denial to ASL-Web
- - Feature Request #547, Add secure session to cookies to ASL-Web
- - Feature Request #548, Add httponly to session cookie to ASL-Web
- - Feature Request #625, protect ASL session, temporary and log directories from change of ownership/perms
- - Feature Request #705, enforce alpha-numeric passwords during configuration
- - Feature Request #779, provide option to configure the SSH port
- - Feature Request #848, make permissions checks more efficient
To Upgrade:
asl -u
or
yum upgrade asl asl-web asl-waf-module
|
|
Tuesday, 19 June 2012 14:14 |
Release Notes:This update contains the beta version of the Fast-Mode firewall system. We called it "Fast" because its fast.. real fast. Previous firewalls could take minutes or even hours to load large rulesets, the ASL Fast-Mode firewall will load hundreds of thousands of rules in seconds.
Features:
- Its fast. Real Fast.
- Inbound TCP services list (FW_INBOUND_TCP_SERVICES)
- Inbound UDP services list (FW_INBOUND_UDP_SERVICES)
- Outbound TCP services list (FW_OUTPUT_TCP_SERVICES)
- Outbound UDP services list (FW_OUTPUT_UDP_SERVICES)
- Dshield, Lasso, and TOR blacklists (FW_DSHIELD, FW_LASSO, FW_TOR)
- Faster (real fast!) loading of existing blacklist/geo-blacklist sets
- User ID limited firewall rules for SMTP traffic from the ACL list /etc/asl/firewall/mta-output-acl. When enabled, only users on this list will be able to connect to external mail servers, preventing untrusted web users from bypassing the internal MTA through the use of spam bots.
- Tortixd ACL list (/etc/asl/firewall/tortixd-access-list), when enabled this is a list of IP's allowed to connect to the ASL Web interface
- Support for user defined rules through ASL Web
- All rules are moved to named ASL- chains.
As a beta component, new features introduced the ASL Fast-Mode firewall are disabled by default. Existing components from the legacy ASL firewall such as the geo-blacklist will take advantage of the new fast-mode loading capabilities with no additional configuration required. While we took pains to make the ASL Fast-mode firewall compatible with other rule management interfaces, we recommend removing or otherwise disabling other firewall management systems.
Changelog:
- Add Fast-Mode firewall system
- Add New monitoring capabilities added: load, diskspace and listeners
- Update, T-WAF, force fix mode if tortix_waf.conf is not detected
- Update, ASL Web, firewall rule changes are saved across reboots
- Update, Configuration, mysql administrator username defaults to "root"
- Update, File integrity, add aqueduct directories to ignores
- Feature Request #628, Add MTA firewall rule group (/etc/asl/firewall/mta-output-acl)
- Bugfix #XXX, ASL Web, Fixes issues with rule edit in firewall window
- Bugfix #XXX, firewall, detect /proc based controls more accurately
- Bugfix #XXX, add more redundancy to waf/tortix proxy configs. This will now purge old versions when configs are blank, in addition to linting configs when they are not blank
- Bugfix #XXX, only write to file if $waf_redirect has something in it
- Bugfix #XXX, ssh_check, fix for enabling password auth when ADMIN users are not defined
- Bugfix #XXX, asl-firstboot, fix path for asl-firstboot's network info file, and add in a post-success cleanup event
To Upgrade: asl -u
or yum upgrade asl asl-web asl-waf-module
|
|
|
|
|
<< Start < Prev 1 2 3 4 5 6 7 8 9 10 Next > End >>
|
|
Page 3 of 13 |