Release notes - 3.3.0

Version

3.3.0.10706

Release date

Dec 7, 2022

Build number

10706

Next scheduled release

Jan 2, 2023

Status

Released

Upgrading instructions

Upgrading the Nanitor Server
Upgrading the Nanitor Collector
Upgrading the Nanitor Agent

Nanitor Collector

3.3.0.10706

Nanitor Agent

3.3.0.10706

Key objectives

Improve the onboarding process for new users of Nanitor, this is accomplished with a new onboarding tour that guides the user through the system and demonstrates some of its key features.

Introduce the Nanitor Agent Collector, making it possible to nominate an existing device in the system to also function as a collector. This makes it easier to set up a collector as users will no longer have to setup an independent collector.

New Features

NAN-2270: Onboarding

Related tickets: NAN-2243, NAN-2244, NAN-2245, NAN-2417, NAN-2519, NAN-2520, NAN-2418, NAN-2419, NAN-2422, NAN-2465, NAN-2466, NAN-2467

The new onboarding tour is designed to get new users familiarised with Nanitor, guiding them through the system and demonstrating some of Nanitor's key features. This feature will only be accessible to admin users to start with but we intend to make a version of it accessible to guest uses as well in the future.

New users are greeted with a new welcome screen when they log into Nanitor for the first time.

Clicking 'Start' starts the first chapter of the onboarding tour.

Checklist

If the user decides to close the tour at any point, a button will appear in the bottom left corner of the page.

Clicking it opens the tour checklist, which lists all the chapters and tracks how much progress has been made towards completing the tour.

The user is able to access a particular chapter of the tour by clicking on the chapter title in the checklist.

This button is visible on all pages in the bottom left corner until the tour has been completed once. After that the tour is accessible through the settings page, where the button will always be displayed in the bottom left corner.

Chapters

The tour has four chapters: (More may be added in the future)

  • Install agent

  • Explore Assets Inventory and create your first asset label

  • Learn more about the Organization Health Dashboard

  • Take a look at the Issue Diamond and create your first project

Each chapter contains a number of steps to guide the user through the relevant actions.

Install agent

Takes the user through the process of downloading an agent, taking the user to the agent download page.

Many of the steps also include a link to additional documentation about the task being performed.

Explore Assets Inventory and create your first asset label

Shows the user the asset inventory and has him create a new label and assign said label to a newly created asset.


Starts by guiding the user through the asset list and asset detail pages.

 


Next the user will create a new label and add it to the asset.

 

 

 


The user has now seen how to view an asset in Nanitor after it is added and how to group assets together using labels.

Learn more about the Organization Health Dashboard

Shows the user the organization health dashboard and how to change the health target score.

Take a look at the Issue Diamond and create your first project

Starts by showing the user the issue diamond and issue detail page.


After this the user will create a new project and add the issue to the newly created project.

 

Completing the tour

When the user completes the onboarding tour he is rewarded with a congratulatory screen and accompanying confetti explosions.

NAN-2339: Improved session security

Related tickets: NAN-2511

Some improvements made to the session security for logged in users:

  • Time before users are logged out due to inactivity reduced from 3 days to 4 hours.

  • Users are logged out of one session if they log in and start a new session on a different device or browser.

When these cases occur the user will get a popup notifying him of why he is being logged out.

After closing either message the user is redirected to the login page.

NAN-2250: Agent Collector

Related tickets: NAN-2249, NAN-2255, NAN-2256, NAN-2387, NAN-2388, NAN-2405

Agents can now be instructed to act as a collector, this can make it more convenient to add a collector to Nanitor as it no longer requires a separate install.

In the collector list users will now see a new column “Collector hostname“, which is either populated with the relevant asset hostname, for agent collectors, or will say “Independent“ for other independent collectors.

An independent collector is what we now call collectors installed specifically without the agent.

To add an asset collector the user will click on the new “Add collector button“.

This opens the collector creation dialog, where the user inputs the name of the new collector and selects the asset to be used.

After adding the agent collector, the agent on the relevant machine will download the collector binary and run it alongside the agent. The collector is automatically signed up and should not require any further input from the user.

NAN-2170: Asset limit reached dialog

When an organization has reached its device limit, a new windows will pop up to notify the user that the organization no longer has room for new devices in its license.

 

Improvements

Description

Relevant tickets

Description

Relevant tickets

Windows file version fetching

  • Improved accuracy of Windows file version fetching.

Asset information gather rate

  • Improved the time until health scores are calculated for new devices to 10-15 minutes.

Issues

  • Improved issue export information by adding asset hostname and ip address information.

  • Improved priority score for patch issues to adapt to the severity and amount of vulnerabilities the patch will fix.

PII

  • PII search set to disabled by default.

  • Ignore server error when PII search is disabled.

  • “PII Exception List“ changed to “PII Ignore List“.

Labels

  • Numbers in the “Assets“ column are now clickable.

Benchmarks

These benchmarks have been upgraded.

Benchmark

Change

Relevant tickets

Benchmark

Change

Relevant tickets

Apache HTTP Server 2 Benchmark

Improvements

MongoDB 4 Benchmark

Added support for MongoDB 4 benchmark

MongoDB 5 Benchmark

Added support for MongoDB 5 benchmark

For more information on supported benchmarks visit the documentation of our benchmarks space.

Fixes

NAN-2105 Fixed MacOS agent not updating automatically.

NAN-2397 Fixed count mismatch in asset detail networks tab header.

NAN-2400 Fixed Cisco 3560 IOS 12.2(25) SEE2 not working with a collector.

NAN-2288 Change password inputs hidden by default.

NAN-2406 Disable sorting by connection status in collector list.

NAN-2409 Removed health target deadline from “Issue trends“ graph tooltip.

NAN-2424 Fixed patch issue fix label tooltip text.

NAN-2436 Fixed hostname/ip search in issue resolution project asset list

NAN-2437 Fixed hostname/ip search in vulnerability issue forensics tab

NAN-2452 Fixed deadlock issue when updating device_vulnerability_items

NAN-2523 Fixed “Known Vulnerabilities“ page title

Â