Lastline Defender and Analyst Hosted Release Notes

Version 5.3

New features

  • Analysis report improvements
  • Appliances list improvements
  • Email notification fix

Analysis report improvements

Analysis reports have been improved exposing several new pieces of information:

  • process snapshots now include the timestamp when the snapshot was taken
  • information about key logging behavior is exposed in analysis reports. See our recent blog post for more information on our key logging detection capabilities.
  • the server’s IP address and the SHA1 hash of requests is exposed in web reports

Appliances list improvements

The page showing a listing of all appliances has been improved:

  • the display of the relationship between appliances in on-premise installations has been fixed
  • offline appliances are marked as “warning” conditions
  • the display of appliance markers in the appliance map has been improved

Email notification fix

This release fixes a regression in Lastline Enterprise's email notification functionality that has been present since the release of our revamped notification support in Lastline Enterprise hosted version 5.1.

As in versions before 5.1, email notifications will now not be sent for events where the source host has been whitelisted, or falls in a whitelisted IP range. This allows administrators who choose to ignore detections for parts of the monitored network that are not relevant to them (such as the IP ranges of open wireless networks or guest IPs), to also not receive email notifications for such events.

5.2 5.4