Od wersji 12, jest już tylko wersja 64-bitCerberus FTP Server 12.0.2
Zaloguj lub Zarejestruj się aby zobaczyć!
Zaloguj lub Zarejestruj się aby zobaczyć!
Od wersji 12, jest już tylko wersja 64-bitCerberus FTP Server 12.0.2
Zaloguj lub Zarejestruj się aby zobaczyć!
Zaloguj lub Zarejestruj się aby zobaczyć!
Changes in Cerberus FTP Server 12.1.0 (2021-07-20):
- New: In Event Manager, the Transfer File Target now allows retrieving files from another server via SFTP, FTP, FTPS, and HTTP/S GET
- New: In Event Manager, the “IP Blocked Event” now includes a variable for the reason why the IP was blocked
- New: When using the Cerberus Desktop GUI, clicking on links now launches your default web browser instead of Internet Explorer
- New: On the Public Shares tab of User Manager, there is now a legend for the Public Shares table
- Fixed: Address a vulnerability to SSL renegotiation denial of service
- Fixed: When using the Cerberus Desktop GUI, clicking on links leaked the desktop URL as the referring URL
- Fixed: In AD Users, it was not possible to modify the domain for an existing Active Directory Users configuration
- Fixed: After upgrading to version 12.0, HTTP/S web client no longer displayed the “Find” checkbox option for the search filter
- Fixed: Incorrect search results are shown in tables when there are multiple, concurrent search requests that are received out of order
- Many minor bug fixes and improvements
September 2, 2021
- New: Native Cerberus users now have secondary groups to allow a user to be in multiple groups
- New: In AD Users, when displaying a user’s details, AD group to Cerberus group mappings now appear as secondary groups
- New: In User Manager, when displaying a user’s virtual directories, there is now a table column for the group(s) that the virtual directory was inherited from
- New: When upgrading to future versions of Cerberus, the account running the Cerberus service will no longer revert to LocalSystem
- New: In Report Manager, the Account Report now includes AD and LDAP users in addition to native Cerberus users
- New: In Report Manager, administrators can now remove old records from their reporting database using “Clean Tables”
- New: In Report Manager, each report now only shows filters relevant for that report type
- New: SCP now supports downloads with wildcards in the filename
- New: Added support for TLS Extension #23 Extended Master Secret (EMS) to mitigate Triple Handshake (3SHAKE) and other potential attacks
- New: In Server Manager, when adding an Active Directory user or group as a Cerberus admin, the distinguished name (DN) can now be searched with autocomplete
- New: In Event Manager, Folder Monitor now allows deleting read-only files
- New: In HTTP/S web client, public shares now includes a new option to send one email notification for all transferred files every 5 minutes
- New: In HTTP/S web client, public share notification emails now include the contents of downloaded zip files
- New: Improved performance for customers with many concurrent client connections
- Fixed: Addressed OpenSSL security vulnerabilities with a patch for CVE-2021-3712
- Fixed: Replaced colorbox jQuery lightbox plugin to address security vulnerabilities
- Fixed: Upgraded to curl 7.78.0 to address security vulnerabilities
- Fixed: Upgraded to handlebars 4.7.7 to address security vulnerabilities
- Fixed: Cerberus crashed intermittently for customers with many concurrent client connections
- Fixed: SCP preserve timestamps did not use the correct timestamps for recursive downloads
- Fixed: In HTTP/S web client, public share notification emails did not render correctly in MS Outlook
- Many minor bug fixes and improvements
Changes in Cerberus FTP Server 12.2.1 (2021-09-02):
- Fixed: Memory leak when using Web Administration or the Cerberus Desktop GUI
Changes in Cerberus FTP Server 12.2.2 (2021-09-22):
- Fixed: Upgraded to curl 7.79.0 to address security vulnerabilities
- Fixed: Upgraded to gSOAP 2.8.116 to address security vulnerabilities
- Fixed: Infoblox devices could not upload files via SCP
- Fixed: In HTTP/S web client, iOS 12 devices could not upload files
- Fixed: Adding a new virtual directory overwrote an existing virtual directory with the same name
October 26, 2021
- New: In the installer, administrators can now explicitly manage the service “Run As” identity during installation and upgrade
- New: In the installer, “LocalSystem” service identity is now deprecated and a new, unprivileged local user named ‘Cerberus’ is now the default identity
- New: Report Manager now has a Folder Report that shows all virtual directories and which users have access to them
- New: Faster AD user authentication
- New: Paged AD and LDAP user listings and other optimizations to improve administration page load times
- New: Significant performance improvements to AD and LDAP Account Report generation
- New: Removed the 1000 entry limit for AD and LDAP user enumeration on the AD Users, LDAP Users, and Account Reports
- New: In User Manager, the Members page for a group now enumerates all native, AD, and LDAP users that are members of that group
- New: In User Manager, on the Members page of a group, administrators can now click on a user account and be taken directly to that user account
- New: There is now a button link next to the primary or secondary group membership on a user account that will take the administrator directly to the group
- New: More context information for AD and LDAP users for directory properties like disabled, allow password change, password never expires, and anonymous
- New: IP Manager now shows the date and time when an IP address was blocked
- New: In Event Manager, Public File Transfer events now include an “Is a Byte Range Request” variable
- New: In Event Manager, User Account Blocked events include additional variables
- Fixed: For some AD configurations, the behavior of the virtual directory mode changed when upgrading to version 12.2 or higher
- Fixed: Upgraded to curl 7.79.1
- Fixed: For some passwords, passwords did not deserialize correctly causing failed password validations
- Fixed: Bug in SOAP API example powershell script ‘Example-GroupManipulation.ps1’
November 1, 2021
- New: In Report Manager, the Account and Folder reports now allow navigating directly to users and groups
- Fixed: When upgrading from within the application, Cerberus could not upgrade to version 12.3 when upgrading from versions before 12.2
November 4, 2021
- Fixed: Group membership not evaluated for ‘localhost’ AD Users configurations
November 9, 2021
- Fixed: AD and LDAP users should not be subject to the Cerberus password expiration policy (introduced in 12.3.0)
- Fixed: Password expiration times were incorrect and should not have been shown for AD and LDAP users
- Fixed: The sidebar navigation link to ‘LDAP Users’ does not work from Web Administration
January 3, 2022
- New: On the Protocols tab of Server Manager, under Advanced HTTP/S settings, Web Client zip compression level is now configurable
- Fixed: Cerberus FTP Server service failed to start when password expired for “Cerberus” service account
- Fixed: In Report Manager, Login report failed to show cipher strings for HTTPS sessions
- Other minor bug fixes and improvements
January 18, 2022
- New: Report queries can now be saved, edited, and deleted
- New: Report generation now supports relative dates using a “search back” time period
- New: In Event Manager, Scheduled Tasks can now generate a report using a previously Saved Report and deliver it via email
- New: Significant performance improvements to the Cerberus Desktop GUI when using Microsoft Edge WebView2
- New: Microsoft Edge WebView2 runtime automatically downloaded and installed by the Cerberus installer
- Fixed: SSH server fingerprint changed when modifying SSL/TLS certificates
- Fixed: Memory leak in the Cerberus Desktop GUI
- Fixed: JavaScript error in Cerberus Desktop GUI when mapping to Cerberus Native groups for groups that only contain numeric characters
- Fixed: Upgraded to curl 7.80.0
- Other minor bug fixes and improvements
January 26, 2022
- Fixed: Cerberus crashed when SSL/TLS is disabled or failed to initialize
Changes in Cerberus FTP Server 12.5.0 (2022-02-23):
- New: HTTP/S web client now has a “Download as Zip” context menu option for easier downloading of multiple files and folders
- New: In HTTP/S web client, public shares are now allowed to never expire
- New: LDAP search results now page only when the LDAP server supports paging
- New: LDAP search paging can now be overridden by configuration option and defaults to using paging only when supported
- Fixed: In HTTP/S web client, when creating a zip file, there was no UI feedback that a zip file was being created
- Fixed: In HTTP/S web client, changes to the AM/PM of a public share expiration were not saved
- Fixed: In HTTP/S web client, public shares had the wrong expiration date when selecting the last available day of the maximum share duration
- Fixed: Microsoft Edge WebView2 process failures were not logged
- Fixed: In Report Manager, an error occurred when exporting a CSV for an Account report
- Fixed: AddUser SOAP API call ignored ipAllowList except when “priority” was also set
- Other minor bug fixes and improvements
Changes in Cerberus FTP Server 12.6.0 (2022-03-28):
- New: On the Summary page, System Messages can now be “acknowledged” and removed from the list
- New: On the Summary page, System Messages now warn if the service account for Cerberus is running as LocalSystem
- New: In Event Manager, Scheduled Tasks now allows sending a file when the “File Path From” is a UNC path
- Fixed: Updated to the latest version of jQuery UI to address cross-site scripting (XSS) vulnerabilities
- Fixed: Addressed OpenSSL security vulnerabilities with a patch for CVE-2022-0778
- Fixed: Cerberus may crash when initializing syslog
- Other minor bug fixes and improvements
Changes in Cerberus FTP Server 12.7.0 (2022-05-09):
- New: Native Cerberus users with 2FA-enabled can now use the Forgot Password reset link
- New: HTTP/S web client and Web Administration now enforce a stricter Content Security Policy that blocks the execution of inline scripts
- New: Cerberus now supports long file paths, allowing folder paths longer than 260 characters
- New: FTP/S listeners now have a new option to enforce data connection resumption; FileZilla enforces resumption and Cerberus now enables this option automatically for FileZilla clients
- New: On the Summary page, administrators can now click on a user or group in a System Message and navigate directly to that account
- New: In Event Manager, Public File Transfer events now include variables for who shared the file and their email address
- Fixed: Upgraded to moment.js 2.29.3 to address CVE-2022-24785
- Fixed: Upgraded to zlib 1.2.12 to address CVE-2018-25032
- Fixed: Upgraded to curl 7.83.0 to address CVE-2022-22576, CVE-2022-27774, CVE-2022-27775, and CVE-2022-27776
- Fixed: Addressed OpenSSL security vulnerabilities with a patch for CVE-2022-1292
- Fixed: In Report Manager, Clean Tables did not remove old records from the sessions table in the reporting database
- Fixed: In AD Users, when setting AD group to Cerberus group mappings, no groups were displayed for ‘.’ AD configurations (local user database)
- Fixed: Upgraded to gSOAP 2.8.121
- Many minor bug fixes and improvements