SafeGuard LAN Crypt Administration 3.80 Release Notes

  • N.º del artículo: 117049
  • Actualizado: 31 oct 2013

SafeGuard LAN Crypt Administration Release Notes 3.80

SafeGuard LAN Crypt Administration Release Notes 3.80

Known to apply to the following Sophos product(s) and version(s)

SafeGuard LAN Crypt Administration 3.80

Requirements

Platforms supported 32-bit 64-bit
SafeGuard LAN Crypt - Administration
Windows 7, SP1 Enterprise/Ultimate/Professional

Yes Yes
Windows Vista SP1, SP2 Enterprise/Ultimate/Professional
Yes No
Windows XP Professional SP2, SP3
Yes No
 Windows Server 2003 R2 Yes No
Windows Server 2008 R2 No Yes

Database

Microsoft SQL Server 2005 SP1/SP2/SP3

Microsoft SQL Server 2008 R2

Oracle Server 9i

Oracle Server 10g (see section known issues)

Oracle Server 11

Noticeable Changes

The following features have been changed with regard to their default behavior:
  • Performance improvements in several areas
  • Added a wizard for profile creation
  • New global and group permissions for security officers
  • Create Profiles for all Members
  • Assign Certificates to all Members
  • Copy User
  • Searching for a specific key is added to the encryption rules dialog
  • Additional authorization can be activated for the display of a key value
  • Improved security officer administration
  • Automatically set group permissions
  • Show granted group permissions
  • Extended logging information after permissions have changed
  • Improved certificate creation
  • A friendly name can be specified for newly created certificates.
  • Certificates can now be created without the critical extension 1.3.36.15.1.1.1.
  • Shortcuts to the ODBC administration and Group Policy management are added during the installation.
  • No longer supported functions
  • Group policy Universal Token Interface no longer exists. Still relevant settings moved to LAN Crypt Configuration.
  • Auditing (SGLOG) is no longer available. Database logging within the SafeGuard LAN Crypt Administration has to be used instead.
  • The scripting API does no longer support remote security officer login
  • Database migration
  • Database errors are now corrected during the migration
  • Database migration wizard is started during the first login after migration

Resolved Issues (from 3.61)

  • API function WriteRule now accepts a specific key
  • Several corrections in LDAP synchronization
  • Users deleted in LDAP directory were not deleted
  • Groups moved from one container to another container lost the security officer permissions
  • Parent group of objects was not updated
  • The In Use property of keys was reset in some situations
  • Logging wizards can now be canceled
  • Security officers created with an administration version 3.50 or below could not be deleted
  • Signature certificate was not saved during the creation of a new security officer
  • Fixed logging entry for GrantRightsOnGroupToSO and GrantRightsOnSOToSO
  • Fixed some application crashes
  • Eliminated the SQL timeout errors
  • Scripting API does no longer show message boxes

 

Known Issues

  • Network errors
  • If the network connection to the SQL server, or to a LDAP source, is broken during LAN Crypt administration, the LAN Crypt Administration must be closed and restarted (after the network problem is fixed).
  • Simultaneous administration
  • If more than one SO is working with the LAN Crypt database at the same time, problems can occur. We recommend a regular manual refresh in that case.
  • LDAP import and synchronization
  • If objects are imported from a domain, you must specify the domain name and not the computer name in the server configuration!
  • When configuring server logon data in central settings you should either enter only the domain name as server name or add the domain name as an alias.
  • On the root level (e.g. domain), only 999 objects are displayed and imported.
  • Certificate store
  • SafeGuard LAN Crypt only supports certificates in one of the user certificate stores. It does not support certificates in machine stores.
  • Importing keyfiles from SafeGuard LAN Crypt 2.x
  • Importing a key file from SafeGuard LAN Crypt 2.x fails, if it includes an encryption rule which has the flag “/O” specified. This flag means “only encrypted files are allowed”.
  • Such rules have to be changed before the key file can be imported.
  • Compatibility with Oracle 10g
  • SafeGuard LAN Crypt Administration is not compatible with Oracle Client 10.2.0.4. It is not possible to create the first Master Security Officer or to login with an existing SO.
  • This error is caused by the Oracle ODBC driver. Please use either Oracle 11 or a previous Oracle 10g installation.


 
Si necesita más ayuda, póngase en contacto con soporte técnico.

Valore el artículo

Muy malo Excelente

Comentarios