ManageEngine Logo
Security Manager Plus

Network Security Scanner & Patch Management Software

Security Manager Plus is a vulnerability scanner that detects vulnerabilities in your network and remediates them.

PCI DSS Compliance
  Highlights of Security Manager Plus:
  • Non-intrusive scanning of your network
  • Centralized upto-date database of known vulnerabilities
  • Windows and Linux patch management
  • PCI DSS compliance reporting
  • Audit reports on open ports, hardware and software
 
Customer Voice
"Security Manager Plus has helped us create & streamline a Vulnerability Management process & added value to our company's network security."
  - Daniel Moesch, Harris Associates L.P.

Vulnerability Management Solution for :  IT Managers | Network Administrators Download free edition | 30-day trial

Release Notes

The feature enhancements and bug fixes in each build update are listed here.

For further information please contact securitymanagerplus-support@manageengine.com.

Build 5300

New Features

  • Pre-notifications for patch deployment - provision to send e-mail notifications before the patch deployment schedule
  • Task History now made available for Asset / Asset Group (like Patch Deployment History, SP Deployment History)
  • Ability to show "Scan Failed" Assets in the Assets view
  • Provision to deploy a Patch Group on a single asset
  • The associated Asset Group's name for each Asset made visible in the view (Column provided in Column-chooser )
  • Product name is made 'searchable' in the Patches knowledgebase
  • Simplified Missing Patches Report with just Bulletin ID, KB, Severity for each Asset in pdf/csv format - now made available
  • Professional Edition of Security Manager Plus will have a "Switch to" Standard Edition option from the web interface (Switch Edition button) - This will facilitate users to switch to Standard Edition and perform just patch scanning & deployment (without port scanning, vulnerability & inventory scanning).
  • Credentials can be specified in standard user name and password format (without using the 'SystemName\UserName' format )
  • Provision to sort assets by DNS Name/IP Address/Scan time in All Assets view
  • Separate HTTPS Proxy can now be specified in wrapper.conf configuration file
  • When deploying patches from the Asset Group view, severity & the patch release date will now be shown

Bug Fixes

  • Earlier the deployed patches were cached by Windows OS which resulted in high disk usage. In this release, Windows caching is disabled.
  • Earlier if the Alert Message option was unchecked in the Patch deployment configuration screen, the target system did not reboot after patch deployment. This is now fixed.
  • When scanning a Windows 2000 system, there were frequent scan failures with error message - 'Failed to connect to Remote Registry'. This has been resolved.
  • In MS Office patch deployment, "Office media path" configuration form, the connection test to the path worked only after the configuration was saved. This has been fixed.
  • In the Security Manager Plus installation, the backup, restore scripts & mysqldump.exe file packaged were corrupt and failing to function. Now they have been fixed and repackaged.
  • When a Scheduled Scan notification e-mail is sent, the attached report name did not have the Asset or Asset Group's name that was scanned. This has been fixed.
  • PCI Report (in section 12.2) for an Asset Group, listed all the assets instead of just the ones from the group. This has been fixed.
  • In Asset Group's "Edit Group" screen, the host names that were renamed were failing to be displayed. This problem is addressed now.
  • By default, SSH protocol will be used for logging in to Linux target systems. Optionally, Telnet will be used.
  • There was an issue in creating a new Asset Group as it was traversing to the edit mode of an 'existing' group view. This has been resolved.

Note: In this release, we are using the script boxover.js obtained from http://boxover.swazz.org/ for tool-tip function in the web interface.

Build 5200

New Features

  • Support for scanning and patching Windows Server 2008 (32 & 64-bit). Initial Support for 15 Patches.
  • Support for Undeployment of patches (patches that can be Microsoft supports )
  • Systems with same host name but in different networks can now be scanned in https Agent mode. Previously, when you install agent in a system, and if the host name in that system matches an already added system, then the already added system will be updated. Now it will appear as a different system. One side effect is, when you move from Remote mode to Agent mode, you need to delete the system in Remote mode. Otherwise you will see 2 systems with the same name.
  • Search for Assets in new Asset Group creation page.

Bug Fixes

  • Patch deployment failed when Patch Store location was changed. On restarting the SMP Server, the functionality was working. This issue has been fixed.
  • Agent upgrade was failing if the Agent patch was already in patch store location. This has been fixed.
  • Vulnerability database update through ISA proxy server (Integrated Authentication mode) was failing. This has been fixed.
  • Reports attached with the mail sent at the end of scan was corrupt. This has been fixed.
  • Fixed a corrupt PDF issue when PCI Report is exported.
  • In Agent mode, Patch deployment message pop-up was not getting displayed. This has been fixed. ( Messenger Service must anyway be running for the pop-up to display in both agent and agentless modes )
  • Unable to search the Installed Patches table view. This has been addressed.

Build 5100

New Features

  • Linux patching support - Provision to deploy updates for Linux distributions, with out-of-the-box support for Red Hat, CentOS and Debian. Support for other Linux distributions can be added by editing patch management scripts from the web console.
  • Windows Change Management - Provision to track changes in Windows files, folders and registry settings & to compare against a set baseline.
  • Patching support for Windows x-64 bit systems. Patches released from year 2008 are supported.

Bug Fixes

  • When an asset being managed by an SMP Agent was deleted from the web console, the SMP Agent shutdown automatically. This has been fixed.
  • In Hardware inventory, there was an error displaying the keyboards, when 2 keyboards were detected on an asset. This has been resolved to identify and display only one primary keyboard device.
  • While configuring MS Office media path for MS Office patches deployment, there was no provision to supply a hidden share ($ at the end of Windows path). This has been fixed and $ paths can now be specified.

 

Build 5011

Bug Fix

  • Issue in Patch Deployment for systems running Security Manager Plus agents fixed.

Build 5010

New Features

  • PCI DSS Compliance Reports - Security Manager Plus can help corporate networks adhere to PCI DSS, by assessing many key requirements of the PCI DSS and furnishing compliance reports.
  • Latest NMap (version: 4.22SOC7) integrated in this build

Bug Fixes

  • There were some junk characters being sent in the SMP Agent's response for a task, to the SMP server, which caused the task execution to fail. This has been fixed.
  • A gradual overflow in the PageFaults parameter for the SMP Agent process was noticed. This has been addressed.
  • The trouble ticket e-mail address field in the SMP web interface did not support certain e-mail address formats. Validation checks for this have been handled properly now.
Network Security Scanner