SecureDoc v5.3 Release Notes

すべて表示

Major highlights in SecureDoc v5.3

  • PBConnex WLAN support: Users will be able to use their WLAN network to communicate to their management console.
  • Linux Support: Linux support now specifically tied to Self Encrypting Drives (SEDs).
  • SecureDoc OSA: PC-based devices equipped with a Self Encrypting Drive (SED) drive can be encrypted at pre-boot.
  • Force power-off if no login: Can now force machine power-off based on timer if user does not login within a set period of time at pre-boot.
  • Intel AT: Support for new Intel AT 3.0 platform.
  • PBConnex Support for Mac: SecureDoc for Mac now includes PBConnex support for auto-boot, not offered in the previous edition (OS X enhancement).
  • Single Sign-On Support for PBConnex and Active Directory: Added single sign-on support for PBConnex and Microsoft Active Directory accounts to enable faster boot log-in and security.
  • Removable Media Container Encryption: SecureDoc Gold Edition users now have a new option to create encrypted containers on removable media.

 

Release Notes for SecureDoc Enterprise Server v5.3

New Features/Improvements

ReferenceDescription
SES-12185

Sending information during conversion

New status field in the SES management console will reveal if a device is in a conversion state.

SES-12182

External/internal multiple SED drive support

SES management console can manage multiple self-encrypting internal and external drives from one device. SES will have data (e.g. PIN) to recover the SED drives. A new field will list and manage all removable self-encrypted drives that are encrypted from a client device.

SES-10473

Convert RMO to full disk encryption

Existing devices that are deployed to encrypt only removable media can be converted by SES Administrators to a full disk encryption profile package without un-installing the software.

SES-12181

Audit log improvements

Clearer and specific descriptions have been added to SES audit logs displaying why a remote command has been executed on a device.

SES-12147

SES settings for RMO packages

Enhanced SES Settings where password sync now works for RMO packages.

SES-12136

Export of SES communication certificate

Enables ability to import and export an SES certificate to multiple databases.

Bug Fixes

Reference

Description
SES-13155

Corrected issue where the reboot command and the lock PC command wouldn't work when the SES and the client were in different time zones.

SES-13312

Corrected issue where Active Directory could not import static groups from the generic LDAP server.

SES-13301

Corrected issue where Active Directory Sync with a Microsoft domain and a generic domain together wouldn't work.

SES-13262

Corrected issue where SES would not properly track Intel AT licences via the management console.

SES-13616

Added missing file that was causing Web Reporting installation failure.

SES-12774

Corrected Login failure on web reporting tool related to users with "NT/Authority/Anonymous Login"

SES-13552

Removed conflict issues for Password Rule Management


Release Notes for SecureDoc Enterprise Client/Standalone v5.3

New Features/Improvements

Reference

Description
 

Removable media container encryption

SecureDoc Gold Edition users can create a encrypted container on removable media. This container is mounted like a normal hard drive, and anything copied into the container is automatically encrypted.

SES-12225

PBCONNEX wireless support

Users will be able to use their WLAN network to communicate to their management console. This new feature will let users select the available wireless network, authenticate and then communicate to SES securely.

SES-13778

SecureDoc OSA SED support

Devices equipped with an SED drive can be encrypted at pre-boot. The encryption process is completely independent of the host operating system and the installation process is started from either bootable removable media or a PXE server.

SES-12219

User-friendly troubleshooting

PBConnex errors are now logged in the background. These logs can be captured by generating logs using the new built-in option and the logs can be copied to removable media for trouble-shooting.

SES-12149

Remote crypto-erase support at pre-boot

Administrators can execute a remote crypto-erase command that can render the device inaccessible at pre-boot (applies to both hardware and software). The device can be restored back using the emergency disk management console for software only.

SES-11841

SED improvements

Resolve problems related to caching x-mode and y-mode values after every reboot.

SES-12073

New SDFORM

Notifies users with a communication progress and registration process update during installation; as well as an option to retry in case of failures. Also separates related error messages from SDForm to a new pop-up window.

SES-11867

SecureDoc account improvements

Windows credentials can now be the same as SecureDoc credentials. Enabling an easier form of single sign-on with the same NT login for SecureDoc as is used for Windows based on Active Directory credentials.

SES-11694

Support for new Intel AT 3.0 platform

“Poison Pills” and “Unlocks” can be sent via SES to mobile PC via SMS to disable platforms when the OS is not running and the PC is not connected to the TCP/IP network. Additionally, a sleep resume timer is available that will power off the PC, protecting data in the RAM, if user doesn’t authenticate after a configurable amount of time after resuming from sleep.

SES-12438

Pre-boot enhancements

Can now force machine power-off based on timer if user does not login within a set period of time at pre-boot.

Bug Fixes

Reference

Description
SES-12905

Corrected issue where conversion window would disappear.

SES-13104

Corrected issue where user who had 'Lock computer when token is removed' enabled with single sign-on and had to use 'Challenge/Response' they would be stopped from logging into Windows.

SES-12098

SecureDoc service now runs properly on Flat-book.

SES-11648

Corrected issue where users were unable to create bootable media when using removable USB drive (Flash or Disk) when SecureDoc was installed.

SES-13151

Corrected issue with converted disk drives would not resize properly in Windows 7.

SES-13481

Corrected issue where a client with the SD v4 boot loader is enabled is switched to the v5 boot loader.

SES-11909

Corrected pre-boot issue to ensure support for 2048-bit certificates with Gemalto Smartcards.

SES-11376

Issue corrected with Aladdin token so that error 0x01 no longer occurs.

SES-11511

Drive Encryption

Resolved known issue where the disk encryption table was unable to recognize a removable floppy drive.

SES-13926

Challenge Response

Fixed issue where SES would use a 32-bit response but device client would only support a max of 10-bit response.

Linux

Linux is only supported on devices using SEDs via SecureDoc OSA. With the introduction of SecureDoc OSA all versions of Linux are now supported.


Release Notes for SecureDoc Mac OS X v5.3

New Features/Limitations

Reference

Description
LIN-878

Support for PBConnex auto-boot

SecureDoc for Mac now includes PBConnex support for auto boot, not offered in the previous edition.

LIN-898

Updated installer

SecureDoc using updated Mac file installer package nomenclature - .dmg

LIN-947

Single sign-on for PBConnex and active directory accounts

Added single sign-on support for PBConnex and Microsoft Active Directory accounts to enable faster boot log-in and security.

LIN-948

Resident key file

Added ability to enable the creation resident key file at PBN login.

LIN-1040

Pre-boot enhancement

Can now force machine power-off based on timer if user does not login within a set period of time.

LIN-1107

Improvements

When upgrading SecureDoc versions, the older version is properly uninstalled.

Bug Fixes

Reference

Description
LIN-881

Resolved Mac OS X boot failure where efi-runtime interface is timed out.

LIN-1016

Fixed the way SecureDoc cleans up install files in the event installation is cancelled.

LIN-1043

SecureDoc no longer re-asks user to create recovery media.

LIN-1072

Improved PBConnex functionality - specifically around user authentication where if key file password doesn't match, the SES server will check for updated password.

SES-12621

Login counter

Corrected issue for Macs where the Failed Login counter wouldn’t reset after a successful Mac pre-boot networking login.

 すべて表示 Release Notes