Trend Micro Deep Security 9.6 Service Pack 1 Patch 1 Update 15 公開のお知らせ:サポート情報 : トレンドマイクロ


Trend Micro Deep Security 9.6 Service Pack 1 Patch 1 Update 15リリース、各プロダクトの製品の修正パッチ。

Deep Security 9.6 Service Pack 1 Patch 1 Update 15 のモジュールを公開いたします。
■ 公開開始日
2018 年 2 月 9 日 (金)

■ 対象モジュール
Deep Security Manager
Deep Security Virtual Appliance
Linux 版 Deep Security Agent
Windows 版 Deep Security Agent
Windows 版 Deep Security Notifier
■ 追加機能/修正内容
追加機能や修正内容は付属の Readme をご覧ください。

■ 入手方法
また、以下の製品 Q&A も合わせてご参照ください。
Update プログラムとは

サポート情報 : トレンドマイクロ

Deep Security Manager 9.6 SP1 Patch1 Update15

2. What's New

   2.1 Enhancements
   The following enhancement is included in this release:
   Enhancement 1: [DSSEG-1839/SEG-19575]
                  A new password rule has been added for Deep Security
                  Manager users. Passwords cannot match the username or
                  username spelled backward (not case sensitive).

   2.2 Resolved Known Issues
   This release resolves the following issue:
   Issue 1:       [DSSEG-1752/SEG-17876]
                  The event "Intrusion Prevention Rule Compilation
                  Failed" appears when Deep Security Agent tries to
                  compile intrusion prevention rules but fails. In
                  previous releases, the warning message was not
                  dismissed when the agent successfully compiled the
                  rules on a subsequent attempt.
   Solution 1:    The warning message is now dismissed automatically.

   Issue 2:       [DSSEG-1318]
                  There was no way to control the TLS protocol versions
                  used by a Deep Security Relay's web server port.

   Solution 2:    A control has been added to the Deep Security Manager
                  that is processed by the relay to enforce minimum TLS
                  version on the relay's web server port. Valid TLS 
                  version values are "TLSv1", "TLSv1.1", or "TLSv1.2"

   Usage 2:       dsm_c -action changesetting -name "settings.configuration.restrictRelayMinimumTLSProtocol" -value "TLSv1.2"

   Note 2:        This is global setting. After it is applied, all
                  tenants will enforce the relay minimum TLS version and
                  all Deep Security Agents that do not support the TLS
                  minimum version will be rejected and unable to get
                  security and software updates from the relay. 

Deep Security Virtual Appliance 9.6 SP1 Patch1 Update15

2. What's New

   2.1 Enhancements
   This release includes the following enhancement:

   Enhancement 1: [DSSEG-1809]
                  To support NSX on Microsoft Windows 2016, EPSecLib has
                  been upgraded to version 6.3.3.

   2.2 Resolved Known Issues
   This release resolves the following issues:
   Issue 1:       [DSSEG-1894/00676206/SEG-20477]
                  A Deep Security Agent's anti-malware status sometimes
                  displayed as "offline" after the agent was stopped
                  ungracefully during an OS shutdown. This issue was
                  caused by the shutdown leaving a ds_am pid file in
                  place that pointed to a process that was no longer
   Solution 1:    This issue is fixed in this release.
   Issue 2:       [DSSEG-1807/SEG-18646/648766]
                  A spin_lock in dsa_filter caused network performance
                  issues on Linux platforms.
   Solution 2:    This issue is fixed in this release.
   Issue 3:       [DSSEG-1412]
                  Agentless vMotion with more than two vNICs sometimes
   Solution 3:    This issue is fixed in this release.

Linux 版 Deep Security Agent / Relay 9.6 SP1 Patch1 Update15

2. What's New

   2.1 Enhancements
   This release includes the following enhancement:

   Enhancement 1: [DSSEG-1809]
                  To support NSX on Microsoft Windows 2016, EPSecLib has
                  been upgraded to version 6.3.3.

   2.2 Resolved Known Issues
   This release resolves the following issues:
   Issue 1:       [DSSEG-1894/00676206/SEG-20477]
                  A Deep Security Agent's anti-malware status sometimes
                  displayed as "offline" after the agent was stopped
                  ungracefully during an OS shutdown. This issue was
                  caused by the shutdown leaving a ds_am pid file in
                  place that pointed to a process that was no longer
   Solution 1:    This issue is fixed in this release.
   Issue 2:       [DSSEG-1807/SEG-18646/648766]
                  A spin_lock in dsa_filter caused network performance
                  issues on Linux platforms.
   Solution 2:    This issue is fixed in this release.
   Issue 3:       [DSSEG-1412]
                  Agentless vMotion with more than two vNICs sometimes
   Solution 3:    This issue is fixed in this release.

Windows 版 Deep Security Agent / Relay / Notifier 9.6 SP1 Patch1 Update15

2. What's New

   2.1 Enhancements
   There are no enhancements in this release.

   2.2 Resolved Known Issues
   This release resolves the following issue:
   Issue 1:       [DSSEG-1933/SEG-18676/00647993]
                  When Anti-Malware real-time scanning was enabled, it
                  sometimes took a few minutes for the client computer
                  to extract an archive file. This happened when the
                  Anti-Malware Solution Platform (AMSP) module received
                  a file event containing a file name with a short file
                  path to a Windows shared folder on a network-attached
                  storage server.
   Solution 1:    The AMSP module has been updated to version 2.6.1158
                  to fix this issue.
