VMware Carbon Black App Control
VMware offered its clients a new version of the App Control server, 8.10.0, on July 27, 2023. This version brings the following improvements:
• Server UI Refresh
The server has been refreshed with a new visual appearance. It retains the same functionality as previous versions but now features new colors, shapes, fonts, and logos. All pages have been updated with a new design that allows them to expand and compress to maximize the browser window space for page viewing.
• Vulnerability Detection !!!
The server can now identify Common Vulnerabilities and Exposures (CVEs) related to Windows applications in the environment. The server displays CVEs on a new "CVE Instance" tab on the Applications page. On this page, the server will show all CVE instances discovered through synchronization with the National Vulnerability Database (NIST) API. From this page, users can search and filter vulnerabilities by CVE ID, Common Vulnerability Scoring System (CVSS) score, or other criteria of interest. Additionally, users can identify specific machines with vulnerabilities and receive alerts about critical CVEs in their environment. With this new feature, users can take additional steps to protect and secure their devices using the App Control Server.
• Countersigned Certificate Approval
The server now allows approval of countersigned certificates from the console. A countersignature is an additional signature added to a contract or other document that has already been signed. A new field has been added to the "File Details" page within "File Properties," displaying the name of the countersigned certificate, if present. Clicking on this field directs users to the corresponding "Certificate Details" page, where they can find information about the certificate issuer and approve the certificate with a signature. This avoids the lengthy process of manually approving a countersigned certificate.
• Communication Key Rotation Visibility and Scheduling
The server now provides users with greater visibility into the agent/server communication key rotation process. A new section has been added to the "Security" tab on the "System Configuration" page, showing the date of the last communication key generation and the next scheduled rotation. Users can regenerate keys and reschedule future key rotations on a desired date. Additionally, a new console alert has been created to notify customers five days before an upcoming key rotation. This new feature aims to assist users with alternative resource download locations in preparing for communication key rotations and provides flexibility in the process.
• AD Managed Service Account Support
The server can now be installed and run using an Active Directory (AD) managed service account. AD-managed service accounts are a more secure alternative to standard AD accounts. They use complex passwords that no user knows and are not stored locally. These passwords also automatically change every 30 days by default. Support for AD-managed service accounts is intended for users who seek additional security in server management.
Documentation related to App Control can be found at: https://docs.vmware.com/en/VMware-Carbon-Black-App-Control/index.html
CONTACT US
KONTAKT