background image

2

Novell Sentinel™ 6.1.1.0

The full product documentation and the most recent version of this file are available at the 

Novell 

Sentinel Documentation Web site (http://www.novell.com/documentation/sentinel61)

.

2  New Features in Sentinel 6.1 

This section explains the new features available in Sentinel 6.1.

Section 2.1, “New Features in Sentinel 6.1.1.0,” on page 2

Section 2.2, “New Features in Sentinel 6.1 Hotfix 1,” on page 2

2.1  New Features in Sentinel 6.1.1.0

Sentinel 6.1.1.0 is a maintenance release for Sentinel 6.1. In addition to bug fixes, it contains 
enhanced Advisor feature.

2.1.1  Advisor update

The 6.1.1.0 service pack installer deletes the old Advisor data, which has erroneous Advisor 
mappings, and enables you to start downloading the new Advisor data.

With the Sentinel 6.1.1.0 release, the existing Advisor download URL will be redirected to a server 
containing the new Advisor data. In order to continue to receive automatic updates of the latest 
Advisor data, you need to upgrade to Sentinel 6.1.1.0. 

2.2  New Features in Sentinel 6.1 Hotfix 1

This section lists the features available in Sentinel 6.1 Hotfix 1 Release. 

AUDIT_RECORD Table Partitioning - The AUDIT_RECORD table is configured for 
partitioning and archiving for better table management.

Customizing Data and Time Format in Sentinel Control Center - This feature gives the ability 
to customize the date/time format that is displayed in event tables in SCC. These event tables 
are the ones seen in Active Views, Historical Event Query, Offline Query, etc. By default, the 
date/time format will be based on the locale of the machine running SCC; however, the user 
can override this default by adding a property to the SentinelPreferences.properties file found 
in $ESEC_HOME/config.

3  Prerequisites

The prerequisites depend on the Sentinel system version and platform. Read each section below 
carefully to determine whether the steps apply to your environment.

3.1  Back Up Sentinel System

This prerequisite applies to all Sentinel systems, regardless of version or platform.

It is highly recommended that a complete backup be made of the machines on which you are 
installing the service pack, including the Sentinel database. If this is not possible, then at a minimum 
a backup of the contents of the ESEC_HOME directory should be made. This will help protect your 
system against unexpected installation errors.

Summary of Contents for SENTINEL 6.1.1.0 - README

Page 1: ...re fixes and enhancements to an existing installation of Sentinel 6 1 including the updates in Sentinel 6 1 Hotfix 1 6 1 0 1 Sentinel 6 1 must already be installed before applying this Service Pack The Service Pack must be installed on all existing Sentinel 6 1 installation machines client and server This includes machines with Sentinel Server the Correlation Engine Sentinel Database Collector Man...

Page 2: ...es available in Sentinel 6 1 Hotfix 1 Release AUDIT_RECORD Table Partitioning The AUDIT_RECORD table is configured for partitioning and archiving for better table management Customizing Data and Time Format in Sentinel Control Center This feature gives the ability to customize the date time format that is displayed in event tables in SCC These event tables are the ones seen in Active Views Histori...

Page 3: ...pace to be added depends on your environment consult your Database Administrator DBA for adequate settings 4 Installation The instructions provided in this section are for installing Sentinel 6 1 1 0 Service Pack only This Service Pack can be run against an existing installation of Sentinel 6 1 Follow the below listed instructions to install the Service Pack for software and database 1 Login to an...

Page 4: ...inel software installed This is required for all machines with any Sentinel software including both Sentinel server and client software 11 Restart the Sentinel services on all machines On Windows use Windows Service Manager to start the Sentinel services On NIX run ESEC_HOME bin sentinel sh start 12 This Service Pack also contains a mandatory patch for the Sentinel Database Apply the database patc...

Page 5: ...ntinel machine the correct Java version Java Runtime Environment JRE 5 0 can be downloaded from the Sun Web site http java sun com javase downloads index_jdk5 jsp After the prerequisites are met use the following instructions to apply the database patch 1 Log in to the database server or another machine with connectivity to the Sentinel Database as a user who meets the above installation prerequis...

Page 6: ...indows Authentication To install the database patch with Windows authentication you need the credentials for the Sentinel Database User 1 Log into the database machine as the Windows Domain user who is the Sentinel Database User 2 Shut down the Sentinel Server processes if this has not already been done 3 Extract the Service Pack zip file if this has not already been done 4 Open a command prompt 5...

Page 7: ...nal time the script verifies the entered information and proceeds if authentication is successful 8 After the script is done applying the patch check for any errors If there are errors resolve the errors and re run the PatchDb utility 9 After the patch runs with no errors Sentinel services should be restarted 6 Post Installation After running the installer some additional updates may be necessary ...

Page 8: ...ng the latest CVE FIXED Data quality issues in the Advisor data feed have been fixed to provide more complete data and more accurate CVE information 452473 Issue Advisor feed failed to be processed by the client FIXED Advisor data feed have been fixed to provide complete data 451602 Issue Cannot reliably download feed files FIXED Improved error handling of corrupted file downloads in Advisor 45172...

Page 9: ...es over slow connections This file includes comments with more information 452093 Issue Improve the performance of repeated javascript action execution FIXED Javascript actions are cached to improve performance 452092 Issue Improve the metadata manager performance for mapping and event transformations FIXED Performance improvements have been added to the mapping service Defects Number Description ...

Page 10: ...t events_p_ date _events_p_max_pk FIXED Duplicate events are cleared from the buffer and no errors are generated 452471 Issue Collector debugger Upload function does not properly update the Package object of the Plugin object store in the DB FIXED Uploading a Collector through the Collector debugging interface properly loads information from the Collector s package xml file 452112 Issue Instructio...

Page 11: ...7156 Issue Offline Query doesn t stop its execution when the Stop link is clicked Fixed Offline Query now stops properly SEN 8501 Issue Correlation Engine errors when running JavaScript Fixed Correlation Engine work properly SEN 8463 Issue Cannot debug JS correlation actions that create incidents Fixed Debugging JS correlation actions work properly SEN 8440 Issue Linux environment variables should...

Page 12: ...E config SentinelPreferences properties on Solaris and Linux to the format you desire Uncomment the following line in the file com eSecurity Sentinel event datetimeformat yyyy MM dd T HH mm ss SSSZ The date and time format can be modified using the formatting information on the following web page Class SimpleDateFormat http java sun com j2se 1 5 0 docs api java text SimpleDateFormat html By defaul...

Page 13: ... You agree not to export or re export to entities on the current U S export exclusion lists or to any embargoed or terrorist countries as specified in the U S export laws You agree to not use deliverables for prohibited nuclear missile or chemical biological weaponry end uses Please refer to the Novell International Trade Services Web page http www novell com info exports for more information on e...

Reviews: