CommandCenterSecureGateway(CC-SG)Release.14
ReleaseNotesv4
Introduction
ThesereleasenotescontainimportantinformationregardinganewreleaseofCommandCenterSecureGateway.
Pleasereadtheentiredocumentandtherelateddocumentationavailableforthisrelease.
Release.14contains:(1)allfeaturesintheoriginal.2release(availableinApril),(2)afixforthe
“Heartbleed”securityvulnerabilityintheOpenSSLcryptographicsoftwarelibraryusedbytheCommandCenterand(3)
additionalenhancementsandfixes.
TheRelease.14firmwareanddocumentsareavailabletoCC-SGcustomerswithup-to-datemaintenance
contractsat/support/commandcenter-secure-gateway/.
UpdatedProductDocumentation
ThisfollowingCC-SGdocumentshavebeenupdatedforthisrelease:
?CC-SGAdministratorsGuide,UserGuideOnlineHelp
?CC-SG6.0UpgradeGuide(hasdetailedfirmwareupgradeinstructions)
?QuickSetupGuideforCC-SGVirtualAppliance-NoLicenseServer
?CC-SGWS-APIProgrammingGuide
Release.14NewFeaturesandUpdates
CC-SGRelease.14includesthefollowingfeaturesandupdates:
1.OpenSSLLibraryHeartbleedVulnerability.Patchandfixthe“Heartbleed”securityvulnerability
(CVE-2014-0160)intheOpenSSLcryptographicsoftwarelibraryusedbyCC-SG.See“”for
informationonthisvulnerability.Raritanrecommendsthatcustomersconsulttheirsecurityexpertsandtake
appropriateactionstorecoverfromthisvulnerabilityincludinginstallingnewSSLcertificatesandchanging
passwords.
2.ErroneousCC-SGE1ApplianceOverheatLED.FixestheoperationoftheCPUOverheatLEDonthefrontpanel
ofthenew,updatedCC-SGE1PhysicalAppliances,whichwoulderroneouslylight.
3.RemoteIPMIAccess.Forsecurityreasons,wehaveblockedremoteIPMIAccessviatheCC-SGstandardLAN
portofthenewCC-SGE1PhysicalAppliances.
4.