EventLog Analyzer - Release Notes
Listed here are the feature enhancements and bug fixes in each release update of EventLog Analyzer.
For further information please contact EventLog Analyzer Support.
9.0 - Build 9000 (GA)
9.0 - Build 9000 Standalone Edition
GA release of EventLog Analyzer Standalone Edition.
New Features
- Real-time Event Correlation
- Real-time correlation for proactive threat management
- 50+ out-of-the-box correlation rules on various categories viz., File Management, Group Management, Authentication, Authorization, Audit Policy, Software Management and more
- Out-of-the-box reports for ISO 27001:2013 Standards
- User session tracking
- Supports Terminal server log analysis out-of-the-box
- Monitoring users accessing EventLog Analyzer application
Enhancements
- File Integrity Monitoring Enhancements
- File Integrity Monitoring reports now include the name of the user who made the change
- Modified File Integrity Monitoring report page
- Provides save and editing option for File Integrity Monitoring reports
- Field Extraction for SFTP application log import is now added
- Archive encryption using AES 256 algorithm is now supported
- Reports Enhancements
- Performance of Report Extraction in PDF and CSV format is enhanced
- Summary details for User Based Reports is now included
- Adding Hosts
- Supports import of host list from a CSV file
- Existing hosts that are added will be automatically hidden from the Pick List Window
- Customize notification settings
- Supports sending the notification once and pause the notification for a day/week/month
Other Fixes
- In predefined compliance alert profile creation can now have the Windows 2008 type event IDs
- EventLog Analyzer version 9.0 can now handle the string '\' in Log message fields of reports, alerts and filters
- Issue with the resetpwd.bat file in troubleshooting folder is fixed
- Out of memory error during log import is fixed
- 'Notes' field in the Custom Report Creation wizard has the character limit of 250
- Issue with the specification of multiple log messages separated by a comma, in report creation wizard is fixed
- Issue with the working of Radius Authentication due to new login page change is fixed
- Supports syslog import with 'Automatically Identify' option.
- Issue in log import schedule for a multiline log is now fixed
- Alignment of popip report is fixed
- Issue in archive purging of Postgres database is fixed
- Supports specification of multiple Event IDs separated by a comma, in 'Add Alerts' page
- Supports alert criteria edit even if the criteria is specified within double quotes
- In EventLog Analyzer version 8.6 fresh installation, the issue with updation of SQL information in ChangeDBServer.bat file with $ in the password section is fixed
- Specific Scheduled AD User import issue is fixed
9.0 - Build 9000 Distributed Edition
GA release of EventLog Analyzer Distributed Edition.
- Managed Server contains all the features of EventLog Analyzer Standalone Edition Version 9.0 Build 9000
- No changes specific to Distributed Edition Admin Server in this release