Archived Release Notes
Due to documentation changes, offline copy of documentation is no longer available via the Management Console.
4.5.3
2 November, 2021 | This release focused on bug fixes and enhancements |
---|---|
Features \ Enhancement | |
Skip Print button displayed for all session flows | Added [Skip Print] button when [Print] button is displayed |
Editing workflow with many AD members assigned | Optimized performance with workflow loading to allow workflows with a large amount of members assigned to be edited |
Support for updated encrypted device software versions and retrieving files | Added support for updated versions of some encrypted device software and corrected instances where retrieved files were download to incorrect volumes leading to failures |
Fixed | |
Reports being stripped from emails | Modified content type in email reports to prevent specific email policies from blocking attachments |
Retrieve files to disc | Fixed issue that prevented files to be retrieved and copied to a disc |
Session history failing to load in certain cases | Corrected background sorting of session history that caused for sessions to not be displayed in the Management Console |
4.5.2
16 September, 2021 | This release focused on support for nested group login, archive file selection, session report sent for Visitor Management and bug fixes |
---|---|
Features | |
Nested group support for login | Active Directory with nested group supported for login in Kiosk UI |
Archive file selection | Support multiple selection of password protected archives to scan |
Visitor Management | Session report is sent to Manager, Contact, and Guest |
Fixed | |
Phone detection | Fixed issue with phones not being detected |
Central Mgmt config push affecting SSL settings | Prevented export/upgrade of certificate settings |
Mismatch file result display in Session History | Corrected the display of mismatch result in session report |
Configuration import | Fixed issue where certain settings were not maintained on a configuration import |
Email session report | Correct cases where email was sent without a sender |
Browse window | Refined UI browsing page |
4.5.1
Management Console support for Internet Explorer has been dropped
27 July, 2021 | This release focused on blank disc detection, CM set settings, and OMVA logging enhancements. |
---|---|
Features | |
OMVA Logging | Accessible logging in json format generated when plugging & validating media into a machine with OMVA installed |
Printer Status | New icon on UI to show current printer status |
Session history username filtering | Able to filter Session History in the Management Console by username |
Fixed | |
Copy file to disc | Corrected detection of a blank disc as destination media to copy files to |
"Set Settings" applied to all instances | Fixed issues causing Central Management failing to "set settings" to other Kiosks. Extending timeout settings in CM may be necessary |
Workflow selection | Adjusted workflow selection for better usability |
Session log saved to network share | Fixed case where the session log was not properly saved to a network shared folder |
Management Console login | Modified Management Console behavior to only allow a user to be logged in from a single browser |
USB whitelisting | Serial number to include vendor name and model |
4.5.0
Management Console support for Internet Explorer has been dropped
15 June, 2021 | This release focused on User workflow selection, adding Spanish translation and other bug fixes. |
---|---|
Features | |
User workflow selection | A user may now be assigned to multiple workflows either by direct assignment or group assignment. When logging in to a Kiosk session, users will be presented with their assigned workflows to choose. |
Spanish translation | Added support for default Spanish translation |
Mail configuration test | When configuring SMTP settings, administrators may now test their settings within the mgmt console |
Fixed | |
OMVA failing to validate media after a reboot | Fixed issue where media validation no longer worked after reboot in certain domain environments |
Saving session logs to network shares | Corrected issue that prevented session logs from saving to networks shares due to permission issues |
Allow sessions to end automatically | Modified session flow to adhere to UI timeout settings when the session is done |
Active Directory load when editing workflows | Further enhancements to speed up the AD user & group loading when a workflow is edited |
Local user password restrictions | Removed extra restrictions on passwords for local users and increased the minimum length to 12 characters |
4.4.12
6 May, 2021 | This release focused on file limit configuration with Vault processing, correcting VMDK with Linux file systems and other bug fixes. |
---|---|
Features | |
Vault processing - File size limit | File sizes can now be limited to dictate what is uploaded to Vault for processing |
Vault processing - File count limit | The amount of files can now be limited when processing files with Vault |
Copy-to media device info in logging | When files are copied to secondary media, the device information of this media is now included in the session logging |
Fixed | |
Processing VMDKs with Linux file systems | Fixed issue with failing to process contents in a VMDK with Linux file systems |
Processing discs with CDFS file system | Corrected detection error the prevented processing discs with CDFS file system |
Hebrew language display | Restored Hebrew display when browsing for files and selecting copy-to directories |
Management Console login case insensitivity | Modified mgmt console login to not require case sensitive username input |
Retrieve available files from Vault | Enhanced Vault file retrieval to not display files that are not approved by a supervisor |
Email reports | Fixed issue where email reports were sent to incorrect recipients with similar names |
The Management Console will not support Internet Explorer starting in June 2021
4.4.11
6 April, 2021 | This release focused on syslog support for TLS over TCP and other features & bug fixes. |
---|---|
Features | |
syslog support for TLS over TCP | syslog can now be configured to send messages using TLS |
USB Copying Whitelist and Retrieving files | The whitelist to allow USBs to copy files to now also applies to retrieving files from Vault or directory |
Battery percentage display | If MetaDefender Kiosk is deployed on a battery powered system (i.e. tablet\laptop) a battery power indicator will be displayed on the user interface in the bottom right corner |
Disable hash calculation for non-processing session | For workflows where no processing is configured, the hash calculation of files can be disabled to allow for a faster session completion time |
Fallback to OS logged in user when copying files to a directory | File handling to copy files to a directory now has the ability to enable copying files as the OS logged-in user if copying using the Kiosk user session credentials fails |
Fixed | |
Media detection | Corrected further issues with media detection:
|
Wipe functionality | Corrected further issues with wiping media:
|
AD User & Group load in workflows | Improved the mechanism to load the list of AD users & groups to better handle large amounts |
Retrieve files from Vault | Fixed a case where authenticating a user to Vault for retrieving files was failing |
Send email only when blocked files are found | Restored the expected behavior of the workflow email setting to only send a session report email when a blocked file is found in a session |
The Management Console will not support Internet Explorer starting in June 2021
Added a survey in the Management Console to collect feedback
4.4.10
4 February, 2021 | This release focused on Digital session log signing and bug fixes. |
---|---|
Features | |
Digital signing of session logs | Session logs can now be digitally signed with a configured certificate to ensure logs have not been tampered with |
Supported browsers for the Management Console | The Management Console supports Chrome, Firefox, and Edge browsers. Internet Explorer and others are not officially supported |
Fixed | |
Media detection | Enhanced media detection logic to reduce inconsistent issues with misdetection or improper identification of media |
Copy & Go and copying to user media destination | Copying files to a secondary media is now supported when Copy & Go processing is enabled |
SSO Management console login from a remote system | Fixed a redirection issue that caused users to not be navigated into the mgmt console after a successful SSO login |
Guest workflow file retrieval | Corrected issue where Guests were not allowed to retrieve files if certain user authentication settings were set |
4.4.9
12 January, 2021 | This release focused on user experience enhancements & bug fixes. |
---|---|
Features | |
Estimated time remaining display during processing | Processing progress indicator now shows current time elapsed and estimated time remaining |
Retrieve files from Vault as a Guest | Guests can retrieve files from Vault using a Guest ID |
Multiple copy-to directory support | Multiple copy-to directories can be configured in file handling. Users can select which directory to copy to when the user copy selection is enabled. |
Browse file selection totals | Options for browsing files can now be set to display the number of files selected and the total size of the selection |
Fixed | |
File\Session history export | Corrected issues with the export taking too long to generate and timing out connections |
Retrieve files from Vault as an AD user | Fixed problems with retrieving files from Vault for certain AD user configurations |
OMVA multiple media manifest support | Adjusted OMVA support for handling multiple media manifests on a device |
4.4.8
8 December, 2020 | This release focused on Single Sign On user login to the Management Console & bug fixes. |
---|---|
Features | |
SSO authentication for the Management Console | Management Console login settings have been expanded to allow connecting an Identity Provider via SAML 2.0 |
Fixed | |
Custom workflow editor load time for a large AD | Reduced the amount of time it takes to load the AD user\group list when editing a custom workflow |
Periodic Core test | Fixed eicar test string generation that was affecting the detection rate |
OMVA non-ascii path support | Corrected OMVA support for handling file paths with non-ascii characters which would result in blocking media |
4.4.7
10 November, 2020 | This release focused on Active Directory user login to the Management Console & bug fixes. |
---|---|
Features | |
Allow AD users to log in to the Management Console | Management Console login settings have been expanded to allow connecting Active Directories to allow users/groups to login |
Fixed | |
Session log directory in Central Management | Fixed validation error that prevented setting the session log directory from Central Mgmt |
Automatic export | Corrected non-ascii errors with automatic export and added Scanning System information to the csv |
4.4.6
13 October, 2020 | This release is focused on bug fixes. |
---|---|
Features | |
Configurable result for un-processed large files | Management Console administrators can now specify if a file should be allowed or blocked if it exceeds the file size limit for sending a file to MetaDefender Core. |
Fixed | |
Floppy drives consistently spinning | Fixed issue where certain floppy drive models would spin up consistently while Kiosk was running |
Workflow login selection | Corrected instances where mapping a logged in user to a workflow did not follow the configured order |
File size process limit | Adjusted file size calculation to prevent errors with setting file size limit for processing files |
Core URL validation | Repaired error detection that would prevent connecting a Core via hostname |
4.4.5
15 September, 2020 | This release is focused on simplifying HTTPS configuration within the Management Console and bug fixes. |
---|---|
Features | |
Configure HTTPS from the Management Console | Management Console administrators can now configure listening port and HTTPS settings from within the Management Console |
Configurable boot sector processing | Boot sector files can now be disabled from appearing in browsing for files to process and not included when processing all contents of media |
Fixed | |
UNC file path support for retrieving files | Fixed issues where retrieving files from a UNC path would fail |
User question display in session export | Session export data now displays the user question and answer to the question in order |
Copying files to disc | Corrected instances where long file paths were failing to be copied to discs |
4.4.4
18 August, 2020 | This release is focused on Configuring the order workflow profiles are used to map a user to, periodic testing of Core servers and bug fixes. |
---|---|
Features | |
Configure order of workflow profiles | Custom workflow profiles can now be manually adjusted to indicate the order in which users are identified to belong to |
Periodic Core test | Kiosk can be configured to periodically send an EICAR file to ensure Core's detection is functioning |
Fixed | |
Email session report | Corrected issues with connecting to SMTP, sending emails to the logged in user and guest users |
Authentication failure when Remote AD SSL is enabled | Fixed active directory communication to not attempt the default LDAP port when SSL is enabled |
Automatic export of session\file history logs | Export log path configuration was failing to save and the file history export was lacking information, this has all been corrected |
UNC path support for session logs | Fixed issue that prevented configuring a UNC path for specifying where session logs were written out to |
4.4.3
16 July, 2020 | This release is focused on Copy & Go processing, ability to retrieve files from a directory and configuring the install password for OMVA |
---|---|
Features | |
Copy & Go processing | New Core processing option that allows copying files to the system and removing media before file processing begins |
Retrieving files from a directory | Ability to retrieve files from a local or network share and run the files through Core before copying to the inserted media |
OMVA configurable uninstall password | The uninstall password can now be modified for deployments to endpoints |
Whitelist for secondary media | Whitelist can now be specified for copy-to media |
Fixed | |
Language import | Corrected issue where languages were not allowed to be edited after importing configuration of a previous release |
IP support for SMTP host configuration | Fixed issue where connecting to an SMTP host configured by IP would fail |
Hostname for syslog | syslog server can now be configured by either IP address or hostname |
Users and Groups synced in workflows on Central Mgmt | The users and groups re-assigned to other workflows on Central Mgmt now updates as expected and syncs to the Kiosk instance's settings |
4.4.2
5 June, 2020 | This release is focused on fixing issues with remote Active Directory support |
---|---|
Fixed | |
Remote Active Directory connection and assigning users and groups to a workflow | Fixed domain identification issues that would block adding an AD server. Corrected problems where displaying the users and groups of a server would fail. |
Usability of selecting groups to assign to a workflow | Added the ability to search the groups list to find specific entries |
4.4.1
15 May, 2020 | This release is focused on adding support for multiple AD servers and log retention |
---|---|
Features | |
Multiple Active Directory support | Multiple active directories can now be added to expand the coverage of users allowed to use Kiosk |
Automated log retention | Application logs and session history can now be set to automatically clean up records older than a configured time span |
Fixed | |
Issues with user authentication and foreign language passwords | Fixed issues where users could not authenticate when their passwords contained foreign characters |
Username & user response variables for the copy-to directory | Copy-to directory validation has been fixed to allow the user name and user response variables |
UI exit password setting | Fixed an issue where the exit password was changed when user authentication settings were modified |
Offline systems could not locally access the mgmt console | Updated internal management console settings to allow offline systems to access the console locally |
Selecting groups to add to a workflow | Only allowed groups are displayed to assign to a workflow |
Central Management v7 configuration sync | Corrected many issues where settings disappeared from the Central Management view or were applied incorrectly |
4.4.0
16 April, 2020 | This release is focused on adding NGINX to serve the Management Console, allowing Guests to receive summary reports via email, and providing passwords with encrypted archives when processing with Vault |
---|---|
Features | |
NGINX serving the Management Console | IIS Express has been replaced with NGINX to power the Management Console |
Guests can email session reports | Guests are now prompted to enter an email to session reports, when emailing reports is enabled |
Send passwords with encrypted archives when processing with Vault | When an encrypted archive is identified, a password can be input to submit the file to Vault for processing |
Support for Kanguru Defender Elite 200 | Added support for processing Kanguru Defender Elite 200 USB |
Fixed | |
Setting custom export date range | Fixed the date selection to allow setting a custom date range to export session or file history |
OMVA install via automated deployments | Modified OMVA installation to work successfully in remote deployments |
Hash verification copy failure with extension-less files | Corrected an issue with hash verification failing on files without an extension |
Copying files to a network share as Guest | Copying to a network share now utilizes the credentials of the user logged in to the system to copy files in the Guest workflow |
4.3.11
13 March, 2020 | This release is focused on the flexibility with the Vault copy-to directory structure, file deletion confirmation for users and other bug fixes |
---|---|
Features | |
Specify Vault copy-to directory structure | Administrators can now indicate the directory structure of how files are uploaded to Vault when configuring a Vault server |
Allow users to confirm to delete all blocked files | When blocked file handling is set to delete files, an Administrator can now allow users to confirm whether the blocked files should be deleted or not |
Fixed | |
Copy-to media blocked with OMVA | Copying all allowed files to a secondary media that was wiped would still cause OMVA to block the media. This workflow has been modified to allow OMVA to unblock the media as expected. |
Configure syslog settings from Central Management | A managed instance's syslog settings can now be configured via Central Management v7 |
Single password use to unlock multiple encrypted archives | Fixed an issue where the checkbox to supply a single password to multiple encrypted archives was not being respected |
AD groups are only allowed to be added to a workflow profile | Only AD group objects will be allowed to be added to a workflow profile to reduce confusion with authentication issues |
Sanitized file handling with the custom command line script | Corrected an issue where sanitized files were not handled in a configured script |
4.3.10
11 February, 2020 | This release is focused on bug fixes |
---|---|
Fixed | |
Detection of multiple Linux partitions | A device with multiple non-Windows partitions can now be browsed through and processed |
Vault entry changes applied automatically to selections | Any changes made to an entry in the Vault server list are automatically applied across all configured selections of that specific server |
Windows XP+ support for OPSWAT Media Validation Agent | OMVA now supports Windows XP and above |
Report files quarantined by Core | Files quarantined by Core are now reported on the session summary without having to configure to have the files removed |
Language menu button on the on-screen keyboard | Corrected button behavior where the keyboard language button would remain open despite clicking away from it |
4.3.9
14 January, 2020 | This release is focused on Vault upload to user configuration and bug fixes |
---|---|
Features | |
Specify Vault user to upload files to | New configuration option allows for specifying a Vault user to upload files to in addition to the previous settings of uploading to the user logged into Kiosk or a guest account |
Fixed | |
Retrieve files from Vault | Fixed issues with downloading files from Vault among multiple users |
File sizes displayed in browse | Corrected the file size display when browsing for files |
4.3.8
10 December, 2019 | This release is focused on Imaging Media and bug fixes |
---|---|
Features | |
Image Media | New process flow allows for an image to be created of the inserted media and uploaded to a specified location (e.g. Vault or directory) |
Fixed | |
IIS Express 10 support | Kiosk REST service now runs uninterrupted if the underlying IIS Express is upgraded to version 10 |
Updated German language strings | German language strings are now up-to-date |
Blocked sound playback | Fixed an issue where the sound byte to alert for blocked files would not play at times |
4.3.7
12 November, 2019 | This release is focused on Visitor Management and bug fixes |
---|---|
Features | |
Visitor Management | Visitor management allows the ability for guest users to check-in to an organization via the Kiosk. During the check-in process the guest user accepts any agreements specified by the organization, a badge for the visitor can be printed and contact\admin personnel are automatically notified when a guest has arrived. |
Fixed | |
Korean keyboard character composition | Onscreen Korean keyboard has been fixed to correctly combine Hangul characters |
Device whitelisting applies to destination media | Device whitelisting is now applied to destination media, in addition to the source media used for processing |
Copy files to IronKey USB | Corrected behavior where files were copied to the wrong volume for specific IronKey USBs |
4.3.6
8 October, 2019 | This release is focused on Management Console enhancements when Kiosk is managed and bug fixes |
---|---|
Features | |
Management Console settings locked when instance is managed | The Management Console now has the ability to show details when it is managed. If managed, changes to settings are disabled. Currently supported for Central Management v5, v7 in the future. |
Configure the length of time a Vault guest account is valid | Administrators can now specify how long a created Vault guest account can remain valid |
Fixed | |
Processing system files | Enhancements made in attempting to process system files that may be potentially locked |
File integrity monitor event | Upgraded the visibility of a file integrity monitor event to be included in the syslog application events |
4.3.5
10 September, 2019 | This release is primarily focused on bug fixes |
---|---|
Features | |
Delete after retrieving files | Retrieving files from Vault can now be configured to delete the files from the server after download |
Fixed | |
Copy to disc folder structure | Copying to disc no longer creates a Session ID directory when the no subfolders option is enabled |
Settings display on Central Mgmt v7 | Fixed issues with some fields being improperly displayed in Central Mgmt |
LDAP groups workflow profile assignment | Corrected an error where a users logging in to Kiosk were not identified under a user group assigned to a workflow profile |
4.3.4
13 August, 2019 | Release focused on adding Kiosk high availability, Layer 7 load balancer support and bug fixes |
---|---|
Features | |
Ability for Kiosk to use multiple backup servers during a session | Multiple backup servers can now be configured in the global configuration. Within a workflow profile, it can be designated for Kiosk to attempt processing a file among any available MetaDefender server during a session. |
Support for Layer 7 Load Balancer with MetaDefender | A Load Balancer can now be selected as the primary server for processing files |
Regular expression support for media whitelisting | Media whitelisting can accept regular expression rules for more flexibility in configuring allowed devices |
Option to disable SSL verification | Certain offline environments cannot successfully verify SSL certificates due to the network structure. Kiosks in these special instances can be configured to workaround these limitations. |
Fixed | |
Issue with MetaDefender verification only working through TLS 1.0 | MetaDefender connection testing in the Management Console has been fixed to utilize the latest security protocols when available (e.g. TLS 1.2) |
Virtual keyboard input | Corrected ability to insert/delete characters within an input text box rather than only at the ends of the input |
Unlock for IronKey D300 Managed devices | Updated ability to handle different versions of IronKey D300 Managed devices |
Interface timeout not triggered while waiting for media to be inserted | Fixed the interface timeout to apply while waiting for media to be inserted |
Updated Custom Authentication Module template | Custom Authentication Module template & tester have been updated to 64bit |
4.3.3
9 July, 2019 | Release focused on adding Kiosk self scan and bug fixes |
---|---|
Features | |
Kiosk self scan | Allows the user to periodically or on demand utilize the MetaDefender Kiosk to scan its file system for possible infection |
File handling option to copy allowed files to the original media | New copy-to route will wipe the original media and copy all allowed files back to it |
Select to not submit special archive files, mounted by Kiosk, to Core | Only applicable to Acronis backups, virtual hard disks and/or VMware virtual machines. Can now choose to withhold these files from Core if its contents have already been processed. |
Prompt users for the password to password protected documents | When password protected documents are encountered (Word, PDF, Excel), they will now be prompted for passwords for processing their contents. |
Generate a log message and warn the user when disk capacity reaches 80% | To help our customers insure that the Kiosk has sufficient space to operate, it will generate a log message when disk capacity has reached 80% or higher. |
Updated Custom Authentication Module sample code to include 64-bit | To better facilitate CAM users in upgrading from V3 to V4, the CAM sample code has been cleaned up and generated in 64-bit |
Fixed | |
Kiosk failing to quarantine read-only files | Read-only files are now supported for quarantining |
Fixed VHD mounting that was broken by recent Windows 10 updates | Windows 10 updates changed the case of the name of the drive being attached. Fixed parsing to handle variable case string. |
4.3.2
11 June, 2019 | Release focused on adding the OPSWAT Media Validation Agent, support for Avira-Iron-Drive, and bug fixes |
---|---|
Features | |
Added the OPSWAT Media Validation Agent | The OPSWAT Media Validation Agent can be downloaded from the Management Console Resources section. This agent can be used to ensure media is processed by a Kiosk before it can be mounted on an endpoint. |
Support for Avira-Iron-Drive | Files can now be processed within or copied to an Avira-Iron-Drive. |
Fixed | |
Changes made to the disclaimer not being updated | Corrected issue where making changes to the disclaimer content were not reflected in the UI |
Sentry 3 FIPS unlock enhancement | Enhanced the unlock mechanism for Sentry 3 FIPS to correctly unlock versions with different behavior |
Disabling boot hardening may hang | Fixed disabling the boot hardening to not cause a hang and fail to update the correct status on the mgmt console for some cases |
Central Mgmt synchronization error | Added more protection to avoid issues with Central Mgmt configuration pushes failing |
4.3.1
15 May, 2019 | Release focused on fixing Management Console logins for all timezones |
---|---|
Fixed | |
Login to the Management Console | Corrected issue where login to the Management Console would fail on certain systems |
4.3.0
14 May, 2019 | Feature release focused on adding user support for the Management Console, support for Non-Windows file systems and minor bug fixes |
---|---|
Features | |
User login for the Management Console | User login is now required to access the Management Console *In keeping parity with MetaDefender, custom integrations to the REST API with passwords will no longer function. You must set up an API key per user. When installing, you must use the creation wizard to create your first admin user. Admin credentials are no longer created automatically. |
Support for Non-Windows file systems | Processing media content in Ext2/3/4, HFS Plus, HFSX, and APFS file systems is supported |
Discs allowed to retrieve files from Vault | Retrieving files from Vault can now be downloaded to a disc |
Fixed | |
Enabling boot hardening | Security enhancements made to allow boot hardening for all systems |
File handling count display | A count of the current file progress is now displayed when files are copied/moved to a destination |
Product activation through a proxy | Online activation can now complete successfully via a proxy server |
4.2.15
18 April, 2019 | Feature release focused on internal enhancements for Central Management |
---|---|
Fixed | |
Improvements for Central Management | Under the hood enhancements to allow the management of Kiosk instances to be smoother |
4.2.14
9 April, 2019 | Feature release focused on adding support for VMware virtual machines and bug fixes |
---|---|
Features | |
Mount and scan VMware virtual machines | Added support for processing within VMDK files |
French translation | French language can now be selected as one of the default languages |
Upload files to Vault | Vault upload in the file handling of a workflow can now be specified to upload files singularly (with the addition of file scan results) or all packaged within a zip |
Password prompt for nested encrypted archives | Password prompt will be displayed for encrypted archives found within encrypted archives |
Integral Courier encrypted USB support | Integral Courier can be unlocked and processed |
Kingston IronKey D300 Managed support | Kingston IronKey D300M can be unlocked and processed |
Fixed | |
CEF Extension field format | The Extension field in the CEF messages have been fixed to conform to correct CEF standard |
German language | German language strings have been expanded upon |
4.2.13
12 March, 2019 | Feature release focused on processing contents within virtual hard disks and minor fixes |
---|---|
Features | |
Mount and scan VHD & VHDX | Added support for processing within virtual hard disk files |
Fixed | |
Copying sanitized files would fail for certain users logged into a Kiosk session | All users are now able to copy sanitized files to the desired destination |
LDAPS connection | Connecting to a directory server via LDAPS has been improved |
4.2.12
12 February, 2019 | Feature release focused on system boot hardening, folder navigation on Vault and allowing copying original with sanitized files |
---|---|
Features | |
System boot hardening | With boot hardening enabled the taskbar on the desktop will be not be loaded, thereby disallowing any PC functionality to a user until the Kiosk starts. |
Folder navigation when retrieving files from Vault | When browsing for files to download from Vault, folders can be accessed and downloaded to the desired media. |
Copy the original file along with the sanitized version | New configuration option added for Copy-To actions that will allow an administrator to specify copying the original file along with the sanitized version. |
Fixed | |
Emails not being sent to the user logged into the Kiosk session | Kiosk can now identify the email address of the logged in user from a remote AD server. |
LDAPS authentication failure | Users can authenticate using LDAPS functionality with improved routing. |
Handling sanitized file naming convention | Now an incremental number is only appended to the file name during copy to avoid file collisions. |
4.2.11
8 January, 2019 | Feature release focused on allowing multiple devices to be wiped in one session and stability enhancements |
---|---|
Features | |
Wipe multiple devices in one session | Multiple devices can be inserted at the wipe option selection screen for the wipe to be performed on all devices |
Warning message is displayed if a file is not processed by MetaDefender | A warning message is displayed before the session results screen if any file is not processed by MetaDefender |
Fixed | |
Backup server selection when the primary MetaDefender instance is unable to process files | The decision to use a backup MetaDefender server has been enhanced to ensure a primary MetaDefender instance is not used when it is unable to process files. Any MetaDefender instance that reports problematic issues will be noted on the Mgmt Console and the issue logged in the application log. |
syslog message format for TCP | Some syslog messages were missing line breaks which caused parsing issues for some syslog management systems when receiving data over TCP |
Enhanced retry mechanism for files that are unable to be opened | Certain files have some permissions that block Kiosk from accessing them to upload the file to MetaDefender for processing. The ability to retry on these files and allow for successful upload has been enhanced. This does not apply to locked system files. |
Processing an iPhone with iTunes installed | After installing iTunes and then selecting files from an iPhone to process, the selected files would not be processed. Functionality has been restored. |
4.2.10
11 December, 2018 | Feature release focused on expanding support for processing non-Windows file systems and simplifying blocked files reported in session reports. |
---|---|
Features | |
Blocked results directly reported from MetaDefender | Beforehand, Kiosk would group specific blocked reasons under special categories (e.g. Encrypted Archive & Password Protected Document → Password Protected). This would result in confusion when reading session summary reports and verifying specific file counts against the MetaDefender processing history. Blocked results are no longer grouped under special categories, they are grouped according to the result returned from MetaDefender. |
Fixed | |
Blocked results directly reported from MetaDefender | Beforehand, Kiosk would group specific blocked reasons under special categories (e.g. Encrypted Archive & Password Protected Document → Password Protected). This would result in confusion when reading session summary reports and verifying specific file counts against the MetaDefender processing history. Blocked results are no longer grouped under special categories, they are grouped according to the result returned from MetaDefender. |
Custom command line script not running | There was an issue with the component that runs custom command line script - failing to start and complete the configured actions. This has been fixed. |
syslog CEF format | syslog messages sent in CEF were not formatted according to specifications which caused parsing issues in SIEM servers. The main body of the message is now sent in the Extension section and the log type is sent in the Name section. The severity level has also been corrected to meet the CEF specification. |
Processing mobile phones with Vault | Fixed upload failures when attempting to process a mobile phone with MetaDefender Vault. |
4.2.9
13 November, 2018 | Feature release focused on email, user selection of copy-to directories and stability improvements |
---|---|
Features | |
Configuration to only send an email report when a blocked file is detected | The email report can now be specified to be sent only when a blocked file in a session is found, rather than sending an email after every session. |
Allow users to select the folder structure of copied files | Users can now be allowed to select whether to create a high level directory for files to be copied to or maintain the same folder structure as the original processed media. |
Fixed | |
Enhanced progress display for processing TIB files | Modified TIB processing experience to follow the archive processing flow. Files within a TIB are displayed during progress, the TIB itself is counted as one file & an indicator in the right hand corner will notify the user that an archive is being processed. |
UI will remain responsive when processing large datasets | Processing large datasets would cause the UI to stop showing updated progress from being displayed near the completion of a session, giving the impression that the UI was hanging. Progress reporting has been modified to allow the UI to be responsive under large datasets for the duration of a session. |
Finding users in groups assigned to workflow profiles | With a group assigned to a workflow profile, when a user would log in to Kiosk, there were instances where a user that is a member of the group was not correctly associated not provided the expected workflow profile. This has been fixed. |
SD card detection failure | Certain SD card readers present information of the media differently, which caused the Kiosk to not detect it. Media detection has been updated to handle this case. |
Hash verification when copying to a network share | Hash verification has been fixed to work with verifying files were copied correctly to a network share. |
Translated strings not updating on the UI | A few translatable strings were not being updated for display in the UI. These have been identified and fixed. The default Japanese language strings have also been updated. |
4.2.8
22 October, 2018 | Maintenance release focused on Central Management compatibility |
---|---|
Fixed | |
Tab selection in Central Management | Scrolling through configuration sections has been removed in the latest Central Management 5.2.3. Overflow sections are now selectable from a dropdown menu. |
Vault server configuration import from Central Management | Due to the change in how Vault server settings are saved in Kiosk, only partial Vault settings were being imported over. This has been rectified. |
4.2.7
11 October, 2018 | Feature release focused on media manifest validation and improvements for stabilized processing |
---|---|
Features | |
Media Manifest Validation | Previously, Kiosk only saved signed manifests to the media that had been processed. Kiosk can now be configured to validate and utilize results from a manifest found on the media to process. |
Logo and Intro Text on Receipt Printout | A logo and introduction text can be configured to print onto a session receipt. |
Fixed | |
Process failure logging is now more transparent | If Kiosk fails to send a file to the MetaDefender server, the reason will be displayed in the UI and session result log & printout. Any network connection errors contributing to failures or MetaDefender failures reported to Kiosk will be logged in the Application Log in the Kiosk Management Console. Messages will contain HTTP codes, description and network error messages to enable admins to take proactive action. |
Updated bundled 7z component to version 18.05 | Due to vulnerability issues with older versions, the bundled 7z binaries were updated to the latest version. |
Retry logic improved when retrieving results from MetaDefender | In previous versions, if an error from MetaDefender prevented Kiosk from obtaining results, it would fail quickly and show that the file failed to process. Kiosk will now try harder to receive correct results from MetaDefender if a file has been successfully sent for processing. |
Removed curl error logging when a session is canceled | Canceling a session can result in canceling active connections between the MetaDefender server & Kiosk. This would result in an unnecessary large amount of curl error logs that are now removed under this specific condition. |
4.2.6
Release Date: 11 September, 2018
Features
- Added support for processing iPhones
- Ability for users to select which file handling actions to take
- Added support for DataLocker Sentry 3 FIPS
- syslog messages can output in CEF format
Fixed
Files sizes are displayed when browsing files to process
Added more display data to the session log & printout
- File attributes, partition information, symbolic links found
Fixed issues with session log generation
Added ability to navigate through user questions
Enhanced loading process upon startup
Core quarantine results are now reflected in the Kiosk results
4.2.5
Release Date: 14 August, 2018
Features
- Offload processing to a Vault server connected to MetaDefender
- Ability to Pause and Resume file processing
- Enable/disable the Default workflow to restrict user login
Fixed
- Adjustments to automatic printing at the end of a session
- Fixed copying to a network share when a Remote Active Directory is configured
- Support copying between encrypted media of the same type
- Configurable footer printing for the session receipt
4.2.4
Release Date: 10 July, 2018
Features
- Added support for processing android phones
- Added support for processing within Acronis TIB files
- Ability to view and assign user groups to a workflow profile
Fixed
- Syslog messages can be configured to send over TCP
- Defined more event codes for syslog messages
- Enhanced ability to handle large nested directories
- WebMC session history will display if a result is from a hash lookup
4.2.3
Release Date: 12 June, 2018
Features
- Added LDAPS support for Remote AD servers
- Ability to set the apikey during installation
- Display file names of files in a large archive during processing
Fixed
- Extended syslog support to multiple servers
- Fixed login issue with users assigned to a workflow profile
- Corrected browsing for files in nested directories with similar names
- Improved the speed for copying files
4.2.2
Release Date: 21 May 2018
Features
- Functionality to alert if a popup is open on the underlying system
- Events can be configured to broadcast to a syslog server
Fixed
- File browse window can handle large number of files in a directory
- Fixed issue with querying users from a remote AD
- Ensuring a session ID is always generated for reports
- Updated Central Mgmt integration to further validate configuration settings
- Added ability to view the MetaDefender Privacy Policy from the Management Console
4.2.1
Release Date: 16 April, 2018
Features
- Ability to download files from Vault
- Configure session and file history CSV export run automatically
- Added support for Kingston DataTraveler 400 G2
- Email session reports to the logged in Kiosk session user
Fixed
- Modified font display with foreign languages
- Fixed issue with Central Mgmt settings import
- Enhanced various logging with more specific information
4.2.0
Release Date: 20 February, 2018
Features
- Rebranded Kiosk
- Ability to be managed by Central Management
- Added support for Kanguru Defender Elite 300
- Session and file history can be exported to CSV
- Kiosk can be configured to allow file handling to run automatically
Fixed
Fixed issue with reporting wipe progress for large devices
Improved media handling
Added new configuration
- allow users to skip entering passwords for McAfee drives
- disable warning of network errors
Enhanced license activation
4.1.1
Release Date: 30 November, 2017
Features
- None
Fixed
- Fixed issue in uploading files to SFT accounts when authentication is done by a custom authentication module
- Sanitized files are copied to temporary storage instead of original media
- Fixed issue in creating a new language
- Fixed issue where session finish time was reported incorrectly in Kiosk logs
4.1.0
Release Date: 26 October, 2017
Features
Support for additional models of encrypted USB drives
- Ironkey S1000
- Ironkey D300
- Kingston DataTraveler Vault Privacy 3.0
- Kingston DataTraveler 2000
- Kingston DataTraveler 4000
Answers to user questions can be used in the path specified for post scan file handling
When copying blocked files, administrators have the option of only copying files that have been sanitized
Fixed
- The Metadefender Kiosk Management Console now has a default password ('admin') after installation
- Cancelling a scan will cancel scans in progress on the Metadefender Core server
- Kiosk will retry scans that initially fail on the Metadefender Core server
- Improvements in the Japanese language keyboard
- Language keyboards can be disabled from the Kiosk UI
4.0.2
Release Date: 18 September, 2017
Features
- Metadefender Kiosk can be configured to check for existing scan results before sending a file to Metadefender Core
Fixed
- The Browse and Scan All options will not be displayed in the Kiosk UI if they are disabled
- Media wipes are now logged as sessions
- Media manifests are uploaded with files that are copied to a Metadefender SFT server
- Vulnerability details are displayed if Metadefender Core has the Metadefender Vulnerability engine enabled
4.0.1
Release Date: 28 July, 2017
Features
- Signed scan manifests can be written to processed media (requires Metadefender Core 4.8.0 or later)
Fixed
- Improvements in uploading files to a Metadefender SFT server
- Session scan logs are included in a configuration export
4.0.0
Release Date: 5 July, 2017
Features
- New Kiosk user interface
- Optional 'Disclaimer' Screen in Kiosk workflow
- Support for user selected language
Fixed
- Re-implementation of drive wipe functionality
- Move to new licensing mechanism
- 32-bit operating systems are no longer supported
- Minimum required version of Metadefender Core is 4.7.2
- Configuration can not be imported from versions prior to 4.0.0
3.4.6
Release Date: 25 July, 2017
Features
- None
Fixed
- Fixed issue where Kiosk sometimes didn't launch after system restart
- Minor bug fixes
3.4.5
Release Date: 25 April, 2017
Features
- Alert dialog shown to the user when a non-memory USB device is inserted
- Devices can be limited to those whitelisted by device ID
Fixed
- The only Metadefender Kiosk workflows included by default will be the 'Default' and 'Guest' workflows
- Mechanism to retrieve device serial IDs has been improved
3.4.4
Release Date: 14 March, 2017
Features
- None
Fixed
- Metadefender Kiosk will now attempt to detect a second media if the first one detected fails
- Error message shown when files can not be removed by Metadefender Kiosk
3.4.3
Release Date: 7 February, 2017
Features
- Support for USB Flash Security encrypted drives
- Option to whitelist files larger than a specified size
- Allow administrator to disable 'Process All' option
Fixed
- Addressed issue in using Kiosk over HTTPS
- Better handling of scan results from Metadefender Core 4.x
- System files on Bitlocker encrypted devices can optionally be excluded from scanning
3.4.2
Release Date: 13 December, 2016
Features
- Metadefender Kiosk can now be configured to abort scans as soon as a blocked file is found
- Multiple Metadefender Core servers can be defined for redundancy
- Support for wiping encrypted USBs
- Alert sound can be customized
Fixed
- Better reporting of mismatched files that are found within archives
- SMTP settings for emailed session reports are now configured globally
- Estonian keyboard layout is now supported for the onscreen keyboard
- Options for handling multiple partitions have been simplified to either block devices with multiple partitions or scan all available partitions
3.4.1
Release Date: 9 November, 2016
Features
- None
Fixed
- Kiosk user will now be prompted to confirm before destination media is wiped before files are copied to it
3.4.0
Release Date: 27 October, 2016
Features
- Each Metadefender Kiosk workflow specifies a specific Metadefender Core workflow or rule to use
- Files identified as potentially vulnerable by Metadefender Core's vulnerability engine are shown in the scan results
- Metadefender Kiosk will now scan the boot sector of any media
Fixed
- The Metadefender Kiosk session log page user interface has been updated
- Potential security vulnerability with Ctrl-L key combination has been closed
- Better handling of McAfee encrypted USB devices
- Requires Metadefender Core 3.12.4 or later
3.3.6
Release Date: 30 September, 2016
Features
- Built in user authentication now supports remote Active Directory authentication.
- Note that for remote Active Directory authentication provided user credentials are not used when files are copied as a post action.
Fixed
- Metadefender Kiosk will validate SSL certificates when using HTTPS to communicate to the Metadefender Core server. If Metadefender Core is using a self-signed certificate, this certificate must be installed on the Metadefender Kiosk machine, otherwise validation will fail.
- The Metadefender Kiosk UI will reset after the scanned media has been removed when at the scan results page
3.3.5
Release Date: 1 September, 2016
Features
- Encrypted drives can now be used as the "Copy To" destination
- Drives that are being copied to can now be wiped before files are copied
Fixed
- Server settings for e-mail notifications are now configured in Metadefender Kiosk instead of in Metadefender Core
3.3.4
Release Date: 8 July, 2016
Features
- Compatible with Metadefender Core 4.4 and later versions
- Support for Kanguru 2000 and 3000 encrypted USBs
- More flexibility allowed in the destination directory when "Copy To" post action is enabled
- Scan session log can be saved as a PDF
Fixed
- High security workflow included by default in installation
- Kiosk UI now scales to higher resolutions
- Count of files sent to a Metadefender Secure File Transfer server added to Management Console dashboard
3.3.3
Release Date: 31 May, 2016
Features
- Non-guest Metadefender Kiosk profiles can now upload to Metadefender SFT guest accounts
Fixed
- Updated onscreen Japanese keyboard
- Metadefender Kiosk can now be used with a Metadefender Core server that has an API key set
- Fixed bug where files on read-only media that are sanitized were not getting copied as part of the file handling part of the workflow
- Several hotkeys are now automatically disabled when the UI is running
- Additional minor bug fixes
3.3.2
Release Date: 19 April, 2016
Features
- Scan reports can now be sent by e-mail after the scanning session is complete
- The file upload chunk size for uploading files to a Metadefender SFT server is now configurable.
Fixed
- The sender e-mail address is no longer required when uploading files to a Metadefender SFT server
- Additional strings have been added to the Kiosk UI and can be modified through the Management Console
- The encryption method for passwords saved in the Metadefender Kiosk configuration has changed. Importing configuration from versions prior to Metadefender Kiosk 3.3.2 will not import passwords.
3.3.1
Release Date: 15 March, 2016
Features
- None
Fixed
- Better cancellation of a scan in progress
- Fixed issue when browsing blank media
- Correct detection of unencrypted Kanguru devices
- Database and Windows events can be viewed through the Management Console
3.3.0
Release Date: 30 January, 2016
Features
- The name of the product is now Metadefender Kiosk
- Administrators have the option to restrict access to domain users when Windows authentication is enabled
Fixed
- Fixed bug in importing saved configuration
- IIS Express component has been upgraded to version 8.0
3.2.0
Release Date: 23 December, 2015
Features
- Metadefender now uses Metascan workflows (Metascan versions 3.10.1 and later)
- Custom authentication modules are supported
- Windows 10 support
Fixed
- None
3.1.0
Release Date: 31 October, 2015
Features
- Metascan functionality can now be configured within the Metadefender Management Console. This is only supported for Metascan servers version 3.9.5 or later.
- Support for floppy disks as the copy destination in post-actions
Fixed
- Custom time periods can be set for the statistics displayed on the Metadefender dashboard
3.0.12
Release Date: 30 September, 2015
Features
- Upload to Policy Patrol Secure File Transfer (Requires version 2.2 or later of SFT) is now available as a post action
- The Metadefender Management Console has an updated look and feel, matching the Metascan Management Console
Fixed
- The security and compatibility of the Metadefender Management Console has been improved by replacing the PHP component with JavaScript
- Stability of the data sanitization post-action has been improved
- Fixed issue where floppy disk drives on non-English operating systems were not being recognized
- Fixed issue where in certain circumstances Metadefender might not start automatically upon system restart
3.0.11
Release Date: 31 August, 2015
Features
- None
Fixed
Updated kiosk UI strings for non-English languages
Improved support for
- Ironkey D250 encrypted USBs
- Kanguru Elite Defender 30 USBs
- Kingston encrypted USBs
If Windows authentication is enabled, non-local (i.e. domain) users are now required to specify their domain
3.0.10
Release Date: 30 July, 2015
Features
- None
Fixed
- Resolved issue where files would fail to copy to network locations when SHA-256 hash verification was enabled
- Resolved issue in displaying large number of files in Metadefender's browse dialog
- Support for file type conversion from image files has been removed. Conversion from PDF is now only supported to sanitized PDF. For customers that will be exporting Metadefender workflows that used this functionality OPSWAT recommends that these conversions are disabled before exporting.
3.0.9
Release Date: 30 June, 2015
Features
- None
Fixed
- Reduced the latency in loading workflow configuration when there are many user accounts on the associated active directory server
- Resolved race condition where Metadefender occasionally did not start upon system startup when installed on Windows 8 or newer operating systems
- Improved behavior when multiple instances of Metadefender are running on the same system
3.0.8
Release Date: 22 May, 2015
Features
- Windows 8.1 and 2012 R2 are now supported
- Buffalo RUF2-hsc-2gt Encrypted USBs are now supported
- McAfee Complete Data Protection Encrypted USBs are now supported
- EncryptDisc media is now supported
- Kanguru Defender Elite 30 USB devices are now supported
- Metadefender Idle Screen can be customized
- German and Korean translations of the Metadefender kiosk UI
Fixed
- Hashes of files are re-verified when the 'Copy To' post action command is used
- Better handling of network failures when scanning with a remote Metascan server
3.0.7
Release Date: 22 December, 2014
Features
- Scan logs can be saved to the media being scanned
- Recent sessions now listed in the Metadefender Management Console logs page
- Support for Buffalo SecureLock encrypted devices
- Receipt can be configured to print automatically
Fixed
- More details available in the scan result screen for files that failed to scan
- Kiosk user can be alerted when Metadefender license is close to expiration
- New HTML documentation available through the Management Console
- Romaji input supported on Japanese keyboard
- More robust support for Kingston DataTraveler encrypted USBs
- Bitlocker encrypted drives are now supported on Windows 8.1
- Other minor changes
3.0.6
Release Date: 4 November, 2014
Features
- Support for Ironkey D250 encrypted USBs
- Support for BitLocker (password) encrypted devices
- Vietnamese and Japanese user interface available by default
Fixed
- User account credentials used for post actions when Windows authentication is enabled
- Better indication when potential threats are found
- Additional scan result details included in text log file
- Debug log package available for download in Management Console
- Additional printout configuration options
3.0.5
Release Date: 1 August, 2014
Features
- Added Support of KIOSK UI localization
- Added predefined KIOSK UI Localization for Hebrew & Arabic
- Added additional predefined profiles
- More configuration for printouts
Fixed
- Fixed error when scanning empty media
- Improved accuracy of timestamps in logs
- Improved error handling and logging for errors
- Updated logs to include scan failure reason
- Clearer notification when a threat is found
- Add ability to set password in Metadefender Management Console
- Various bug fixes
3.0.4
Release Date: 8 May, 2014
Features
- Copy to user provided media as post-action
- Username is available as a variable in post-actions when Windows login is enabled
Fixed
- Improved archive handling
- Improved physical keyboard support
- Scan is aborted if connection with Metascan server is interrupted (when Metascan is on separate machine)
- Improved handling when Metascan server is operating at maximum capacity
- Fixed potential issue where Metadefender failed to launch due to latency of Windows desktop preparation
- Better logging for interruptions during post processing
- Minor bug fixes
- UI improvements
3.0.3
Release Date: 8 November, 2013
Features
- None
Fixed
- Fixed print formatting issues
3.0.2
Release Date: 27 September, 2013
Features
- Search for processing result by file upload
- Ability to export processing logs
- Allow search results to be bookmarked for later reference
- Display more detailed progress during file enumeration
- Improved Metadefender Management Console
- Improved formatting for built-in kiosk printers
Fixed
- Fixed bug that was preventing restoration of default and guest profiles
- Prevent users from being added to more than one workflow profile
3.0.1
Release Date: 5 July, 2013
Features
- User Authentication
- Customizable User Profiles
- Configurable User Questions
- Filtering by File Type
- Web-Based Metadefender Management Console
- System Restore with Deep Freeze
- File Type Conversions
- Enhanced Post-Processing Options
- New End User Workflow
- Option to Restart After Each Session
- Comprehensive Logging for all Processed Files
- Support for Kingston encrypted USB drives
- Handling USB with partially corrupted file system