Users Guide

Table Of Contents
Technical Advisories v9.8
Added 01/2018-Advanced Threat Event results are automatically limited to the first 10000 results. This will resolve issues
where Advanced Threat Events were not properly displaying when selecting the tab within the Dell Security Management
Server
To block all PowerShell scripts with Advanced Threat Prevention, both the PowerShell and PowerShell Console policies
must be set to Block. When both policies are set to Block, no scripts can be run, either through the PowerShell console
or the Cmd console. PowerShell one-liners are blocked. To allow approved scripts to run through the Cmd console,
select the Enable Approve Scripts in Folders (and Subfolders) policy, and add the approved scripts to the Approve
Scripts in Folders (and Subfolders) policy. The PowerShell Console policy applies to PowerShell v3 and later. Windows 7
includes PowerShell v2, by default. To upgrade to PowerShell v3 on Windows 7, see www.microsoft.com/en-us/download/
details.aspx?id=34595. [CYL-619]
The Office Protected Files Cover Page Corporate Logo policy cannot be committed when running the Remote Management
Console in Firefox. To work around this issue, use Internet Explorer or Google Chrome. [DDPS-5538]
Added 08/2018-The Dell Policy Proxy service may incorrectly send two requests to the back end server for SKID3 requests.
This can safely be ignored. [DDPS-5585]
New Features and Functionality v9.7
VE now supports Advanced Threat Prevention with optional Client Firewall and Web Protection features. Client Firewall
and Web Protection policies are reorganized to simplify management of these features. Prior to client upgrade to the new
features, refer to Default Policy Changes.
VE now supports Disconnected Mode, for air-gapped environments.
Added 7/2017 - VE is now supported with VMware ESXi 6.5.
VE is now supported with Hyper-V.
Active Directory groups and domains can now be specified when adding or modifying Endpoint Groups. VE collects Active
Directory information from endpoints and makes this data available for Endpoint Group specification.
Endpoint Group Precedence can now be modified using drag-and-drop functionality. This functionality applies to Admin-
Defined, Rule-Defined, and Active Directory but not System-Defined Endpoint Groups. Precedence of System-Defined
Endpoint Groups for new installations and upgrades is as follows: Highest precedence is given to Non-Persistent VDI
followed by Persistent VDI Endpoint Group. Lowest precedence is given to Default followed by Opt-in Endpoint Group.
Added 7/2017 - Administrators can now bulk upload and import a CSV list of Endpoints to add to Admin-Defined Endpoint
Groups.
Advanced Threat Prevention and Dell Data Guardian events can now be exported to a syslog server or to a local file through
a streamlined Events Management screen.
New Advanced Threat Prevention policies allow Application Control folder exclusions and automatic deletion of quarantined
files after a configurable length of time.
Log Analyzer results can now be exported to Excel or CSV file.
New Enterprise Edition for Mac policies replace the need to manage some settings through .plist entries.
Secure Lifecycle is rebranded to Dell Data Guardian.
Resolved Technical Advisories v9.7
On the Client Firewall Custom Rule Specify Network page in the Remote Management Console, the Fully qualified domain
name field now validates and rejects invalid formats. Also, the Transport protocol drop-down list item ICMP and the
displayed Message type are now consistent. [DDPS-2820, DDPS-2826, DDPS-2885]
Transport Protocol values are now populated in the drop-down list in Client Firewall Custom Rules. [DDPS-3819].
AdminHelp can now be moved to avoid obscuring important fields in the Remote Management Console. [DDPS-4258]
A few Data Guardian External User Management items that were previously untranslated in the Remote Management
Console are now translated. [DDPS-4404]
The following Enterprise Port Control policies now display with Class: Storage, their parent policy: Subclass Storage: External
Drive Control, Subclass Storage: Optical Drive Control, and Subclass Storage: Floppy Drive Control. [DDPS-4682]
Added 08/2018- Administrators can log in to endpoints with the Logon Authentication Policy for Administrator policy set to
None and None. [DDPS-4739]
Filtering in the Remote Management Console Advanced Threats Protection tab is now functioning as expected.
[DDPS-4772]
Dell Security Management Server Virtual Technical Advisories
27