Optimized interaction with the Kaspersky Security Network (KSN).
Added file scanning in POST requests (REQMOD).
Added deduplication of object scan requests.
The following changes have been made to the standard real-time ICAP traffic scan:
While the file is being scanned, its download speed is reduced. If the file cannot be scanned within the specified time, the download continues at normal speed.
After the implementation of this functionality, you no longer can configure the Scan file and File expired notification pages.
Multimedia files are excluded from scanning.
The following changes have been made to the advanced real-time ICAP traffic scan:
To optimize workload, the application may temporarily switch from advanced ICAP traffic scanning mode to standard scanning mode. When this happens, a warning about switching to the standard scanning mode is displayed on the Dashboard in the application web interface.
Now you can use a Storage Area Network (SAN) system as a drive for storing the data of a Central Node component installed on a server.
You can now receive mirrored traffic using the ERSPAN (Encapsulated Remote SPAN) technology. To do so, the Central Node or Sensor server must serve as an endpoint for the created tunnels over the Generic Routing Encapsulation (GRE) protocol.
Termination of inactive user sessions in the web interface or management console of the Central Node, Sensor, or Sandbox components after a specified duration.