background image

Novell Sentinel™ 6.1.1.0

13

10  Legal Notices

Novell, Inc. makes no representations or warranties with respect to the contents or use of this 
documentation, and specifically disclaims any express or implied warranties of merchantability or 
fitness for any particular purpose. Further, Novell, Inc. reserves the right to revise this publication 
and to make changes to its content, at any time, without obligation to notify any person or entity of 
such revisions or changes.

Further, Novell, Inc. makes no representations or warranties with respect to any software, and 
specifically disclaims any express or implied warranties of merchantability or fitness for any 
particular purpose. Further, Novell, Inc. reserves the right to make changes to any and all parts of 
Novell software, at any time, without any obligation to notify any person or entity of such changes.

Any products or technical information provided under this Agreement may be subject to U.S. export 
controls and the trade laws of other countries. You agree to comply with all export control 
regulations and to obtain any required licenses or classification to export, re-export, or import 
deliverables. You agree not to export or re-export to entities on the current U.S. export exclusion 
lists or to any embargoed or terrorist countries as specified in the U.S. export laws. You agree to not 
use deliverables for prohibited nuclear, missile, or chemical biological weaponry end uses. Please 
refer to the 

Novell International Trade Services Web page (http://www.novell.com/info/exports/)

  

for more information on exporting Novell software. Novell assumes no responsibility for your 
failure to obtain any necessary export approvals.

Copyright © 2009 Novell, Inc. All rights reserved. No part of this publication may be reproduced, 
photocopied, stored on a retrieval system, or transmitted without the express written consent of the 
publisher.

Novell, Inc. has intellectual property rights relating to technology embodied in the product that is 
described in this document. In particular, and without limitation, these intellectual property rights 
may include one or more of the U.S. patents listed on the 

Novell Legal Patents Web Page (http://

www.novell.com/company/legal/patents/)

 and one or more additional patents or pending patent 

applications in the U.S. and in other countries.

For Novell trademarks, see 

the Novell Trademark and Service Mark List (http://www.novell.com/

company/legal/trademarks/tmlist.html)

.

All third-party trademarks are the property of their respective owners.

Summary of Contents for SENTINEL 6.1.1.0 - README

Page 1: ...re fixes and enhancements to an existing installation of Sentinel 6 1 including the updates in Sentinel 6 1 Hotfix 1 6 1 0 1 Sentinel 6 1 must already be installed before applying this Service Pack The Service Pack must be installed on all existing Sentinel 6 1 installation machines client and server This includes machines with Sentinel Server the Correlation Engine Sentinel Database Collector Man...

Page 2: ...es available in Sentinel 6 1 Hotfix 1 Release AUDIT_RECORD Table Partitioning The AUDIT_RECORD table is configured for partitioning and archiving for better table management Customizing Data and Time Format in Sentinel Control Center This feature gives the ability to customize the date time format that is displayed in event tables in SCC These event tables are the ones seen in Active Views Histori...

Page 3: ...pace to be added depends on your environment consult your Database Administrator DBA for adequate settings 4 Installation The instructions provided in this section are for installing Sentinel 6 1 1 0 Service Pack only This Service Pack can be run against an existing installation of Sentinel 6 1 Follow the below listed instructions to install the Service Pack for software and database 1 Login to an...

Page 4: ...inel software installed This is required for all machines with any Sentinel software including both Sentinel server and client software 11 Restart the Sentinel services on all machines On Windows use Windows Service Manager to start the Sentinel services On NIX run ESEC_HOME bin sentinel sh start 12 This Service Pack also contains a mandatory patch for the Sentinel Database Apply the database patc...

Page 5: ...ntinel machine the correct Java version Java Runtime Environment JRE 5 0 can be downloaded from the Sun Web site http java sun com javase downloads index_jdk5 jsp After the prerequisites are met use the following instructions to apply the database patch 1 Log in to the database server or another machine with connectivity to the Sentinel Database as a user who meets the above installation prerequis...

Page 6: ...indows Authentication To install the database patch with Windows authentication you need the credentials for the Sentinel Database User 1 Log into the database machine as the Windows Domain user who is the Sentinel Database User 2 Shut down the Sentinel Server processes if this has not already been done 3 Extract the Service Pack zip file if this has not already been done 4 Open a command prompt 5...

Page 7: ...nal time the script verifies the entered information and proceeds if authentication is successful 8 After the script is done applying the patch check for any errors If there are errors resolve the errors and re run the PatchDb utility 9 After the patch runs with no errors Sentinel services should be restarted 6 Post Installation After running the installer some additional updates may be necessary ...

Page 8: ...ng the latest CVE FIXED Data quality issues in the Advisor data feed have been fixed to provide more complete data and more accurate CVE information 452473 Issue Advisor feed failed to be processed by the client FIXED Advisor data feed have been fixed to provide complete data 451602 Issue Cannot reliably download feed files FIXED Improved error handling of corrupted file downloads in Advisor 45172...

Page 9: ...es over slow connections This file includes comments with more information 452093 Issue Improve the performance of repeated javascript action execution FIXED Javascript actions are cached to improve performance 452092 Issue Improve the metadata manager performance for mapping and event transformations FIXED Performance improvements have been added to the mapping service Defects Number Description ...

Page 10: ...t events_p_ date _events_p_max_pk FIXED Duplicate events are cleared from the buffer and no errors are generated 452471 Issue Collector debugger Upload function does not properly update the Package object of the Plugin object store in the DB FIXED Uploading a Collector through the Collector debugging interface properly loads information from the Collector s package xml file 452112 Issue Instructio...

Page 11: ...7156 Issue Offline Query doesn t stop its execution when the Stop link is clicked Fixed Offline Query now stops properly SEN 8501 Issue Correlation Engine errors when running JavaScript Fixed Correlation Engine work properly SEN 8463 Issue Cannot debug JS correlation actions that create incidents Fixed Debugging JS correlation actions work properly SEN 8440 Issue Linux environment variables should...

Page 12: ...E config SentinelPreferences properties on Solaris and Linux to the format you desire Uncomment the following line in the file com eSecurity Sentinel event datetimeformat yyyy MM dd T HH mm ss SSSZ The date and time format can be modified using the formatting information on the following web page Class SimpleDateFormat http java sun com j2se 1 5 0 docs api java text SimpleDateFormat html By defaul...

Page 13: ... You agree not to export or re export to entities on the current U S export exclusion lists or to any embargoed or terrorist countries as specified in the U S export laws You agree to not use deliverables for prohibited nuclear missile or chemical biological weaponry end uses Please refer to the Novell International Trade Services Web page http www novell com info exports for more information on e...

Reviews: