Change Guardian 6.1.0.1 Release Notes

1.0 What is New?

The following issue has been resolved in this release:

1.1 Log4j Vulnerability Fix (Defect 481006)

The Log4j vulnerability allows malicious attackers to execute code remotely on any targeted system.

  • A series of high severity vulnerabilities (CVE-2021-44228), (CVE-2021-45105), (CVE-2021-45046), and (CVE-2021-44832) for new Apache Log4j 2 version 2.14.1 are disclosed publicly and this has been addressed in this release by upgrading log4j to latest version 2.17.1

  • A series of high severity vulnerabilities (CVE-2021-4104) and (CVE-2019-17571) for older Apache log4j version log4j-1.2.17.jar are disclosed publicly and it has been mitigated by removing vulnerable classes SocketServer.class and JMSAppender.class from log4j-1.2.17.jar as the next version is not available and bundled in Change Guardian.

  • The vulnerable class JndiLookup.class is removed from the Elasticsearch bundled log4j-core-2.11.1.jar used in Change Guardian.

2.0 System Requirements

For more information about hardware requirements, supported operating systems, and browsers, see the System Requirements for Change Guardian 6.1.

3.0 Installing Change Guardian 6.1.0.1

The steps for installation of 6.1.0.1 are same as that of 6.1. For more information about the installation procedure, see Change Guardian Installation and Administration Guide.

4.0 Upgrading to Change Guardian 6.1.0.1

You can upgrade to Change Guardian 6.1.0.1 from Change Guardian 6.1. For information about the upgrade procedure, see Upgrading Change Guardian in the Change Guardian Installation and Administration Guide.

NOTE:Install/Upgrade to Change Guardian 6.1.0.1 is only supported by Traditional Installer.

5.0 Known Issues

Micro Focus strives to ensure our products provide quality solutions for your enterprise software needs. The following issues are currently being researched. If you need further assistance with any issue, please contact Technical Support.

5.1 Events Do Not Show the Command Line Details

Issue: If a process is terminated within a second of its creation, the Change Guardian Agent for Windows cannot collect the command line details such as Command Line, Command Line Length, Command Line Parameter, and Command Line Parameter Length. Events that are generated as a result of such processes do not display the command line details. (Defect 292163)

Workaround: None.

5.2 Events Do Not Show the Windows Process Description

Issue: The assembly path for certain Windows processes is not available to the Change Guardian Agent for Windows, due to which the agent cannot collect the Windows process description. Events that are generated as a result of such processes do not display the process description. (Defect 290154)

Workaround: None.

5.3 When you are on Events Dashboard, if you Click the DASHBOARD Menu, the Events Dashboard Appears Blank

Issue: If you click DASHBOARDS > EVENTS, the Events dashboard is displayed. If you click on DASHBOARDS again, the Event Dashboard appears blank. (Defect 189391)

Workaround: Refresh the page to view the Events Dashboard.

5.4 On a Scheduled Report For Agents Health on Federated Servers, the Requestor is Deselected

Issue: On a scheduled report for AGENT HEALTH ON FEDERATED SERVERS, if you added the requestor (shown as the local Change Guardian server) to be included in the report, the web console incorrectly displays that the server is not selected. (Defect 319023)

Workaround: Although the web console incorrectly displays the requestor server is not selected, the filters are saved and the report includes the server details.

5.5 Launching Alerts Dashboard Displays Conflict Error Message in FIPS Mode

Issue: After installing or upgrading Change Guardian in FIPS mode, when you launch Alerts Dashboard for the first time, a conflict error message is displayed. (Defect 302233)

Workaround: Refresh the page and ignore the conflict error message as there is no functionality impact.

5.6 Deleting an Asset with Agent Manager Does Not Delete All Components

Issue: If you use Agent Manager to delete an asset, Agent Manager does not delete the Change Guardian Agent component from the Installed Programs list in Windows. To remove all asset components completely, uninstall the Change Guardian Agent component from the computer, and then use Agent Manager to delete the asset from Change Guardian. (Defect 170281)

Workaround: None.

5.7 The Change Guardian Dashboard Chart View Displays Incorrect Values

Issue: The chart view in the Change Guardian dashboard displays the percentage value greater than 100. (Bug 172363)

Workaround: Refresh the dashboard to load correct values, and ensure that you synchronize the systems on which Change Guardian dashboard and the Change Guardian agent are installed with the local time zones.

5.8 Internet Explorer 11 Does Not Save Event Dashboard Customizations

Issue: If you use certain versions of Internet Explorer 11, such as versions 11.0.10240.16384 and 11.1098.17763.0, to view and modify Event Dashboard settings, Internet Explorer does not display the saved settings. (Defect 155003)

Workaround: Use other supported web browsers.

5.9 Events from UNIX Do Not Display Generation Time

Issue: In the Events dashboard, the Generation Time column is empty for UNIX events. (Defect 254001)

Workaround: Add Event Time column to the Events Summary report (REPORTS > Event Report) to see the time stamp for UNIX events.

5.10 AD Does Not Synchronize New User if the Account Name is the Same as a Deleted User

Issue: If you delete a user from AD, and then create a new user with same account name, AD does not synchronize the new user. (Defect 170282)

Workaround: None.

5.11 Appliance Reports Errors During Boot

Issue: When the Change Guardian appliance boots after installation, the appliance reports that some services have failed to start: (Defect 174273)

Failed to start LSB: NetIQ LDAP Expander.
Failed to start LSB: Sentinel Server.

Workaround: The services start correctly. You can ignore such error messages.

6.0 Legal Notice

For information about Micro Focus legal notices, see https://www.microfocus.com/about/legal/

Copyright © 2022 Micro Focus or one of its affiliates.