New in Version 13.4.0 [May 28 2018] =====================================
* New Features and Improvements *
- Updated the Samba software to the latest version.
- Updated the Kerberos libraries to the latest version.
- Updated the compression libraries ( zlib) to the latest version.
- Updated the Razor anti-spam software to the latest version.
- Updated the BIND DNS software to the latest version.
- Accept_unresolvable domains from LAN side for sendmail.
- Letsencrypt certs no longer need port 80 opened. The port will open and close automatically.
- Added new params to my.cnf local – lock wait timeout , etc.
- New domain blacklists replace old ones – porn/ads/gambling
- Added spamassassin dnsbl.spfbl.net check – For port input allow choice of all interfaces, not just WAN ones
- Update the MailScanner phishing update scripts
- Updated BIND to latest version
- Exclude Python from rsync if NOT running Kopano
- Added health script for Dyn DNS client.
- Added bridged mode to SSL VPN.
- NOTE libboost no longer required for kopano 8.3
* Fixes *
- Fixed named ( BIND) nameserver, random Timeouts
- Fixed porn blocking list – removed expressions. They were too aggressive.
- Fixed a problem with Hardware sensors not working for M2 ASUS boxes.
- FIXED email image signature – use correct image extension not just .jpg š
- Enabled the DMZ LAN option. Enabled the firewall.dmz OS script and in bin/firewall.iptables
- FIXED – set from domain properly if zarafa user for vacation in .forward file.
New in Version 13.3.17-2 [May 23 2018] ========================================
* New Features and Improvements *
- Updated the SSL VPN server software.
- Updated the jQuery css file.
* Fixes *
- Fixed a syntax error during “Commit Changes”
- Milter Regex – ignore “ehlo” if auth_authlen is not null.
New in Version 13.3.16-20 [May 16 2018] ========================================
* New Features and Improvements *
- Security updates for IPSec VPN.
- Updated the jQuery library software to the latest version for PCI compliance.
- Updated the IMAP server to the latest version.
- Hardware health monitoring
- Updated the spec files.
- Updated the Web config’ interface login code.
- Updated the GDBM database software to the newest version.
- Re-compiled the NTOP server to use the new GDBM libraries.
* Fixes *
- Blocked a potential leak of hidden javascript test files. This is not a serious problem, but access to the web server directory hierarchy has been tightened.
- Fixed a problem with web visit monitoring in health script.
- Various small fixes.
- Fixed a problem with the MySQL config file, for versions of MySQL >= 5.6.
New in Version 13.3.16-17 [May 04 2018] ========================================
* New Features and Improvements *
- Non-activity timer set to 30 mins for logins to the Web Config interface.
- Updated the SSL VPN server to the latest version. Changed the compression algo to lz4.
- Reverted change of algo from lz4 to lzo.
- Added “Login Audit” to Activity Reports. This shows any login attempt to the Igaware Web Config interface. – Added “Connecting Host” to PPTP VPN activity report.
* Fixes *
- Fixed a bug with the Web Config interface login. Text in the ‘user name’ field was forced to display as lowercase.
- Fixed a problem with ntop where inactive interfaces where wrongly used.
- Fixed a bug with the Email “HELO” milter check. The check was being performed regardless of the configuration setting.
- Fixed the Legacy Web visits report to report correctly on machine name.
New in Version 13.3.16-10 [Apr 14 2018] ========================================
* New Features and Improvements *
- Changed the MTU of PPTP connections
- Clamped MSS in firewall.pptp.up/down.sh
- Re-enable Telnet Server.
- Major updates to the DNS “out of zone” config. This is for the new “Simple DNS” server feature.
- Added a regex milter for sendmail. This will allow very fine control of Spam email. This is BETA and is not yet available on the Configuration interface for most servers.
- The legacy Web Visits report now allows the selection of machines from multiple LAN’s.
- Updated various help options.
- Added a time interval to load average graphs.
- Added innodb_file_format=Barracuda to mysql.cnf for mysql version >= 5.5. This allows Compact ( compressed) table formats.
- New bridged networking mode added to SSL VPN configuration option.
- Enforce the 2nd level authentication for SSL VPN. Some legacy installs used SSL VPN without the username/password 2nd level of authentication. That was still secure as the first level is an RSA certificate.
* Fixes *
- SMTP outgoing email blocked by security update.
- Reduced disk usage for the boot partition.
- Fixed an error when Committing Changes.
- Fixed a DNS problem with out of zone records.
- Fixed a bug with the DNS “out of zone” config. Under some circumstances the OOZ DNS zone files would be written after every “Commit Changes”.
- Updated the “Scan LAN network” feature to catch a problem caused if a user updates devices on the scan list when someone else has since deleted a device.
New in Version 13.3.15-3 [Mar 22 2018] =======================================
* New Features and Improvements *
- Updated the safe phishing domain list.
- Updated the Mattermost server.
- The Z-push Status feature is now at final status. This allows you to list the Active-Sync status for all devices and users. Device profiles may be deleted or forced to re-sync.
* Fixes *
- Fixed an undefined function error when committing changes.
- The Log Cleardown script had a bug causing the cleardown to fail.
- The network json config files where stored with the wrong permissions.
- Log activity collection has been fixed. A bug prevented the logs from being processed quickly.
- Fixed a problem where the Zarafa Server Status screen would sometimes not load.
- Fixed a problem with email delivery to Active Directory users. If the account name included upper case characters, then, the email could be delayed. This is no longer the case.
- The Mattermost initial configuration file was not installed.
- Squashed a few small bugs with Mattermost.
- Fixes to the Web configuration interface.
New in Version 13.3.14-3 [Mar 15 2018] =======================================
* New Features and Improvements *
- The Mattermost Instant Messaging server is now included as a service.
- Updated the Anti-Virus server to the newest version. This is a Security update.
- Added Mailwatch to the Email Activity reporting. This shows a lot more information about sent and received emails. It also allows emails to be released from the quarantine, amongst many other things.
- Improved the Activity reports.
- Modified the MTA to listen on port 465 (SMTPS) for SSL/TLS connections. Note: Port 25 will accept STARTTLS connections.
- Changed the Kopano Gateway ( POP/ IMAP) server to allow insecure SSL chipers for Microsoft Outlook.
- Updated the mail server SASL auth software to newest version.
- Re-compiled sendmail to use the new SASL libraries.
* Fixes *
- [For 13.3.14-3] Removed multiple Subject headers that could be added to messages after scanning. This problem was introduced in version 13.3.14-1.
- [For 13.3.14-2] Fixed a problem with the Log collection routines.
- [For 13.3.14-1] Fixed the SSL VPN activity report.
- [For 13.3.14-1] Increased the password security for the MySQL server.
- [For 13.3.14-1] Fixed the Web Activity report.
- Fixed some graphs that weren’t refreshing properly.
- Fixed a problem with Outlook and DIGEST-MD5 authentication.
- Other small Web Configuration fixes.