IMPORTANT:
- 6.0.0 is a major version and there are functionalities and procedures which are different from version 5.x. We strongly recommend that you visit the Installation Guides first to familiarize yourself with these changes.
- In Red Hat Enterprise Linux (RHEL) 9, as per Red Hat Documentation, the default system-wide cryptographic policy level offers secure settings for current threat models. It allows the TLS 1.2 and TLS 1.3 protocols, as well as the IKEv2 and SSH2 protocols. The RSA keys and Diffie-Hellman parameters are accepted if they are at least 2048 bits long. This also means that certificates which use the SHA1 as TLS hash, signature and algorihm are not accepted.
- TLS 1.0 and TLS 1.1 encryption protocols are deprecated and disabled by default.
Enhancements
- Product’s platform, Red Hat Enterprise Linux (RHEL), has been updated from version 7.9 to version 9.4.
- The RHEL 9 administrative interface, Cockpit, has been updated, including improved SELinux support and various user interface fixes.
- STIG compliance has been enhanced, using the latest RHEL 9 DISA profiles.
- Enhancements have been made to improve encryption, certificate management and TLS compatibility for secure connections.
- Support has been added to reduce false positives when detecting Canadian Social Insurance Numbers (SIN), by adopting a validation using the Luhn algorithm.
- Java has been upgraded to version 21, for improved compatibility and performance.
Fixes
- A critical vulnerability found in the previous release (CVE-2023-26136) has been fixed through the upgrade of Cockpit to a later version, including its dependent libraries.
- Resolved a long-standing issue, requiring a restart of NetworkManager after configuring an SNMP server in Cockpit.
- Resolved an issue where updates to FileZilla version 1.8.2 disrupted the FTP backup process for the product.
- Resolved a license validation issue on the Japanese systems.
- Resolved a crash in the DCI (Deep Content Inspection) Engine caused by processing PDF files that contain circular references in their outline.
- Corrected the DCI Engine’s handling of Text Views in XML DFC, which caused the failure in detecting the „Social Security number“ text entities in XML document search.

0 Kommentare