We are excited to inform you that we are planning to have new releases over Comodo ONE and ITarian on Saturday (2019-01-19) morning! The release is expected to take 4 hours to deploy, during which time Comodo ONE and ITarian will be in maintenance mode.
Endpoint Manager
Endpoint Manager Core
New Features
-
New enrollment options for macOS Devices
You can now enroll macOS devices to Endpoint Manager without needing to first install a device profile. This also applies to bulk enrollments. This lets customers use Endpoint Manager to manage security on Mac devices while continuing to use their preferred platform for general Mac management. Apple only allow one portal to use the protocol which manages devices. This caused problems with customers who wanted to use Endpoint Manager in conjunction with another MDM platform. The new enrollment method solves this issue and lets Endpoint Manager co-exist with solutions from other vendors. Note. If you use this type of enrollment you will not be able to manage the following sections in an Endpoint Manager profile:
- Certificates
- Restrictions
- VPN
- Wi-Fi
You can reach the wiki of the feature from <a href="https://wiki.itarian.com/frontend/web/topic/how-to-enroll-mac-os-x-devices-without-mdm-profile">here.</a>
-
Export functionality for Audit logs
We added exporting mechanism to Audit Logs section.
-
ITarian branded Android and iOS mobile agents
The iOS and Android agents will be renamed as ‘Mobile Device Management Client’, published by ITarian. The following branding changes will apply to iOS and Android agents:
- Agents renamed as ‘Mobile Device Management Client’
- Endpoint Manager branding and logos used on all agents
- ITarian LLC added as the publisher of the clients
The clients will be available on Google Play and the Apple Store as well as through the Endpoint Manager interface.
-
Support for the latest operating systems
We continue to develop Endpoint Manager as the platform which lets you manage EVERY device on your network or your customer’s network. In addition to the existing list, you can now enroll devices which run the following operating systems:
- Linux CentOS 7
- macOS 10.14
- Windows Server 2019
-
Audit Logs
Improved log interface. Both old and new values are now shown in logs which record changes to UI Settings. <a href="https://wiki.itarian.com/frontend/web/topic/how-to-export-audit-logs-from-endpoint-manager">Here</a> is the wiki of this feature.
- Fixed the issue of filtered view of devices when an installed app name is clicked from inside device details->installed apps section.
- Fixed the issue of not working installation of custom MSI packages from device list.
New Features
-
Export functionality added to the ‘Security Dashboards’ section
You can now export security component logs from the ‘File View’ and ‘Event View’ tabs. Click ‘Security Sub-Systems’ > ‘Security Dashboards’ to open the security dashboard. You can reach the wiki of this feature from <a href="https://wiki.itarian.com/frontend/web/topic/how-to-export-security-dashboard-logs-from-the-endpoint-manager">here</a>.
-
File Rating Columns added to security dashboards
Added ‘Admin’ and ‘Comodo’ rating columns to the ‘File View’ and ‘Event View’ tabs. Both new columns show old and current values. The ‘Old’ rating is the file rating before the event occurred. ‘Current’ rating is the most recent verdict since the event.
-
File Details in Security Dashboards
You can now view more granular details about files caught by Endpoint Manager security components. Security components include the antivirus scanner and file-rating scans. From January, you can select a file then click the ‘File Details’ button to view:
- File Details:
- Last detected file name: Name of the file when it was most recently scanned
- SHA1: SHA1 hash value of the file
- First Seen by Comodo: Date the file was first reported to Comodo threat labs
- First Seen on my Network: Date the file was first detected on one of your devices
- Number of endpoints: Number of endpoints on which the file was found
- Comodo Rating: The trust verdict on the file from Comodo threat labs
- Last Update of Comodo Rating: Time the Comodo rating last changed
- File History
A detailed breakdown of a file’s activity on your endpoints. You can see all endpoints on which the file was found, the security component that detected it, and the action that was taken against the file. You can take the following actions from this page:
- Change the file rating
- Delete the file from specific or all endpoints
- Restore the file from quarantine
Here is the wiki of this feature.
- File Details:
- Fixed the issue of re-enabling Baseline after any change on EM Windows Profile is saved.
- Fixed the saving issues of Containment rules with “Started By” criteria
New Features
- Admins can now set remote tool options in profiles. You can now configure access for different Remote Tools - File Explorer and Process Explorer. The following options are available:
- Silent connection
Connect without notifying the end-user
- Ask then allow (waiting time is configurable in seconds) Ask end-user permission but connect anyway if they don't respond within a set time
- Ask then deny access (waiting time is configurable in seconds) Ask end-user permission but close the connection if they don't respond within a set time
- In order to block connection Turn off all Remote Tools options
- Show notification
Display a message on the target device which states that a remote session is active and the name of the admin who is connected. If enabled, you can also set the following:
- Allow endpoint user to terminate the connection
- Keep the notification window open after the session is terminated
Here is the wiki of this feature.
- Silent connection
Improvements
- Support for the latest operating systems. We continue to develop the platform which lets you manage EVERY device on your network or your customer’s network. In addition to the existing list, you can now remote control to your managed endpoints which are running on macOS 10.14
- There was a UI display issue when admin connected to MacOS Sierra device, this is fixed with January release.
- Mac devices were showing offline in Remote Control application, however, devices were online on Endpoint Manager portal, this is also fixed and available with January release.
Improvements
- Support for the latest operating systems. We continue to develop the tools which lets you manage EVERY device on your network or your customer’s network. In addition to the existing list, you can now remote access to your unmanaged endpoints which are running on macOS 10.14 through our standalone application.
New Features
- You can now monitor operating system patch events. Operating system patches can be monitored by patch classification, severity level and other conditions. OS patch event logs are available in ‘Device list’ > device > ‘Logs’ > ‘Monitoring Logs’.
Here is the wiki of this feature.
- New columns in ‘Profile’ > ‘Procedures’ - ‘Added By (user)’ and ‘Added On (date)’
- New filters added to ‘Procedures’ > ‘Execution Logs’ - You can now filter by script procedure.
- Monitor status’ indicator - added to ‘Device’ > ‘Monitoring Logs’ > ‘Details’ > ‘Status'.
New Features
- It’s now easier than ever to create a patch procedure. Simply click the ‘Create Patch Procedure’ button in the ‘Patch Management’ area and away you go.
Here is the wiki of this feature.
- On Endpoint Manager portal, patch release date information was showing in wrong format. This is fixed with January release.
- On Global Software Inventory page, link to installed devices was showing ‘no results’ message. This is fixed with January release.
- Skype 7.40.151 on Windows 10x64 was not uninstalling via Software Inventory, this is now available.
- Even though patches were installed on endpoints, Endpoint Manager was showing that patches were failed. This reporting problem is fixed with January release.
- Even though a patch was selected to be applied to a single device, Endpoint Manager was applying it to all devices automatically. This is now fixed.
- Patch Procedures now scans the latest available patches for the device at the time of scheduled date/time is up hence keeps the device up to date all the time!
- DisplayCAL packages require Level Selection option to be set for silent uninstall, hence silent uninstall for DisplayCAL is now available with January release.