BPROT Global
2108 N ST #10529 Sacramento, CA, 95816, USA
A new audit log has been introduced, providing detailed tracking for environments with multiple BPROT administrators, including the date, time, user, and workstation from which configuration changes were made . .
- Inventory: The Inventory module has been completely rewritten, introducing an installable agent for Windows and Linux devices. The agent collects detailed hardware and software information, pending patches, and allows remote command execution on individual devices.
- Inventory: A new dashboard has been added to organize inventory information, with the ability to export data to Excel.
- Proactive Security: The module has been completely rewritten, significantly improving analysis performance and providing a larger amount of high-quality security information.
- Proactive Security: The default credentials detection process has been rewritten, improving both collection speed and detection accuracy.
- Proactive Security: Several reports have been refined by removing unnecessary information, reducing visual clutter and making them easier to analyze.
- When detecting devices connected to the network, additional identification methods (DHCP, SSDP, and mDNS) are now used to improve hostname detection and device mapping accuracy.
- On systems with SATA drives, disk capacity was not displayed correctly in the BPROT Status section. .«.
- Internal parameters have been adjusted to resolve issues that prevented certain operating system components from updating correctly.
- Restarting the spam filtering service in the Email Protection module no longer causes the loss of an internal file used to improve detection of specific spam types.
- Adjusted the list of applications classified as dangerous, which was generating a false positive when using the Tor network.
- Introduced a new operating system detection process using DHCP, mDNS, and SSDP to improve device identification.
- Enhanced the list of applications classified as dangerous for real-time notifications.
- Removed unnecessary traces generated while monitoring incoming email in real time.
- Fixed an issue where scheduling a Proactive Security analysis displayed "Simple" mode as "Normal", causing confusion during scheduling.
- Corrected the system time reading when creating a new time-based device access restriction.
- Fixed an issue where a couple of internal tables were not being cleared during a BPROT reset.
- It is now possible to select an IP address on the Real-Time Attack Map and open a new pop-up with detailed information about the blocked attacker.
- Standard applications such as FTP and Telnet have been added to the list of blocked programs.
- When checking for updates, if the license has expired, an appropriate message is displayed instead of a blank screen.
- Device and application search has been enhanced and optimized in the Network Usage History report.
- Additional checks have been added to the Simple Proactive Security Analysis, allowing more vulnerabilities to be detected quickly.
- The Network menu has been moved within the Monitoring section to appear above Navigation, ensuring consistency with the Configuration menu.
- General information search has been further optimized.
- Automatic notifications and event logging have been added when insecure applications such as Tor, BitTorrent, UltraSurf, AnyDesk, TeamViewer, VNC, and FTP are detected.
- Device name detection has been enhanced by combining DHCP, SSDP, and mDNS into a single detection process.
- Support for additional IPsec encryption algorithms has been added.
- Fixed a specific issue that caused some Telegram notifications to fail to send correctly.
- The BPROT IP address is now automatically excluded from the target list during Proactive Security Analysis.
- The compromised device signature update process now preserves the current signatures if the latest updates cannot be downloaded, instead of removing them.
- Fixed an issue where excluded devices could still have filters applied under certain conditions.
Descripción
- Added support for IPsec VPN, expanding the available VPN options to three types: BPROT SSL VPN, WireGuard, and IPsec..), Wireguard e Ipsec.
- Improved the IPsec tunnel initialization process, resolving an issue that could prevent tunnels from starting correctly.
- Added the ability to view the connection history of any device. The DHCP fingerprint (Option 55) is also displayed, making it possible to understand how BPROT identified the device. . identificó el mismo.
- Improved the vulnerability analysis process. The Simple mode can now detect a broader range of vulnerabilities using non-intrusive scanning.
- Added the ability to configure the email polling interval (in minutes) for Remote Protection.
- Performed internal cleanup of obsolete tables and unused files.
- Updated data views for improved integration with external analytics tools.
- Added SSL VPN configuration descriptions, providing a brief overview within the console on how to configure the feature.
- Optimized the Web Filtering engine, reducing CPU usage.
- Fixed an issue affecting the reporting and logging of Network Health Checks when using a TCP-based check with a non-standard port.
– Se agrega timeout al momento de realizar una captura de traza de red (monitoreo manual), a efectos de evitar que el proceso quede corriendo sin finalización cuando el filtro no registra actividad.
- Added a timeout to manual network packet captures to prevent the process from running indefinitely when no traffic matches the selected filter.
- Added a default value of 0 for the email rate limit setting in Local Protection.
- Added application icons to the Network Usage Report for improved visualization.
- Added support for selecting the operating mode: Normal (default) Preventive In Preventive mode, when a device with a high compromise indicator is detected, Bprot automatically blocks the event, disconnects the device from Internet access, and generates an alert. The device can later be removed from the block list through the report or the main dashboard.
- Network Usage Report – Added a complete list of all risks detected by . .
- Implemented Canary Domains support to improve the blocking of DoH, DoT, and DoQ traffic.
- Performed internal cleanup of outdated processes and records.
- Limited local email spam detection to three supported languages: Spanish, English, and Portuguese.
- Added new spam detection controls for "Do Not Reply" email addresses.
- Improved SPF validation for local email.
- Proactive Security – Excluded IP addresses ending in .0 and .255 from scans, as some firewalls incorrectly report them as active devices.
- Resolved an issue that, under certain conditions, prevented scheduled Proactive Security Analyses from running correctly.
- Fixed an issue that occurred during the initial redirection to the main menu after Bprot activation.
- Fixed an intermittent issue when truncating DNS filtering log files.
- Corrected session management issues in specific areas of the main menu.
- Added the option to choose between Horizontal and Vertical main menu layouts.
- Added a list of attack types blocked by the Web Application Protection module.
- Improved the appearance of the real-time VPN monitoring screen.
- Simplified and enhanced the scheduling calendar for Proactive Security Analysis.
- Corrected a link in Proactive Security reports that incorrectly redirected to another screen.
- Fixed issues affecting contingency screens.
- Added help documentation for configuring the B2B VPN.
- Adjusted the internal order of protection rules to improve blocking efficiency.
- Web Application – Due to the way Microsoft Exchange (NTLM) services are processed, a new "Exchange Server" option has been added. When enabled, the processing engine handles this traffic differently.
- Added new indicators to the Technical Network Analysis.
- Optimized the Web Filtering engine to reduce CPU usage.
- The execution interval (in minutes) can now be configured for the Remote Email Filtering engine.
- Removed debug messages from the risk analysis process.
- VPN logs are now cleared after processing to optimize subsequent executions.
- Network Status Reports – Added a new exportable dashboard with overall indicators and key performance metrics (KPIs).
- Web Application – Added the ability to define allowed or denied payloads that the Bprot engine should classify as legitimate traffic.
- Remote Email Protection
- The reason for blocking is now displayed instead of the signature file name.
- Optimized the Network Usage Report for faster response times.
- Weekly summary reports are now generated according to the selected interface language.
- Email Activity Report – Removed records without sender or recipient (relay/exchange records) that did not provide useful information.
- Corrected English interface labels.
- Email reports: the token was not correctly identified in certain cases.
- Full 2.5 Gbps support for one of the Bprot device network interfaces ..
- B2B VPN – Enables secure branch-to-branch connectivity between Bprot devices using WireGuard.
- Added support for time synchronization via NTP.
- Optimized the network risk collection process.
– Reporte de correos , el token no se identificaba correctamente en algunos casos.
- Fixed incorrect text displayed in messages when starting a Proactive Security Analysis.
