Users Guide

Table Of Contents
Resolved Security Advisories v10.2.11
Several Java-based vulnerabilities have been resolved. [DDPS-9101, DDPS-9332]
Updates are to these versions:
Java Version: 1.8.0.241
Jetty Version: 9.4.25
Technical Advisories v10.2.11
In the Management Console, if endpoints display without Serial Number, the administrator must set the following:
UseBiosSerialNumber entries within the InventoryObjects.config (in Core Server for Encryption Enterprise; in Core
Server and Inventory Server for Virtual Edition)
DeviceInventoryQueueProcessor
AgentInventoryQueueProcess
The client and the agent must then update to use the AssetTag field instead of the Serial field that is stored in
DeviceData:UseBiosSerialNumber entries. [DDPS-9619]
Log Analyzer does not have the ability to filter using a start and end time. [DDPS-9637]
The Security Management Server Virtualdoes not currently allow Cryptographic Next Generation (CNG)-based certificates.
Any certificates within the PKI that are created with a CNG-based key result in an error. Currently when this error appears,
the cycle to import the unsupported certificate may loop. Select Cancel to revert to the Import Certificate screen.
Currently, the Uncommitted Policy Changes notification displays to administrators whose roles do not have permission
to commit policy. If they try to commit the outstanding policies, these administrators are logged out of the Management
Console. [DDPS-9702]
In the Management Console, MDM databases have been removed. Therefore, the Endpoints page lists an error: Exception
thrown in webservice controller java.lang.RuntimeException: NOT IMPLEMENTED: MDM_DEVICE.
Currently, this issue will not be fixed. [DDPS-9729]
New Features and Functionality v10.2.10
64-bit recovery bundles are now available in the Security Management Server Virtual.
The Security Management Server Virtual is improved through various security fixes and enhancements. See Resolved
Security Advisories v10.2.10 for additional information.
The Dell Security Server and Dell Compatibility Server's memory limits are increased to 2048 MB for improved performance.
LDAP query responses are hardened in the Security Management Server Virtual.
The Sync Users at PBA Activation policy is now enabled by default.
The Security Management Server Virtual v10.2.10 now supports VMware Workstation 15.
The Security Management Server Virtual v10.2.10 now supports VMware ESXi 6.7
First Seen in System and Last Seen in System columns have been added to Populations > Endpoints > Details and
Actions for each disk in the selected endpoint.
When communicating to the Cylance SaaS, delays in communication are presented with the following message:
Attempting to connect to Cylance at this time. Please Check back in a bit.
On upgrade, all users are reconciled by the Security Management Server Virtual to ensure all groups and users are accurately
reflected in the Management Console.
The Security Management Server Virtual now attempts to clean up the audit database by default and adheres to 80% of
the 2 GB assigned database size. This cleaning action prevents critical errors displaying in the Dashboard Notifications pane,
which previously detailed that the Audit Database exceeded its 95% size limitation.
The auditdb.size.NotificationPercentage property is now included inApplication.properties of the Security Server to
manage the size of the Advanced Threat Prevention Audit database.
The auditdb.size.percentage property is the cleanup threshold. When this percentage of the database is exceeded, after
the auditdb.clear.cron is activated, the percentage of total space is calculated. The auditdb.clear.cron default value is
every two hours.
Dell Security Management Server Virtual Technical Advisories
11