[Check_mk Announce] New Check_MK stable release 1.5.0p5

Content-Type: text/plain

Dear friends of Check_MK,

the new stable release 1.5.0p5 of Check_MK is ready for download.

This maintenance release ships with 81 changes affecing all editions of Check_MK,
10 Enterprise Edition specific changes and 3 Managed Services Edition specific changes.

Changes in all Check_MK Editions:

* 6662 Timespecific check parameters: Changed computation algorithm to allow more flexible configurations
NOTE: Please refer to the migration notes!
* 6709 SEC: Fixed possible information disclosure to apache log when editing users
* 6568 SEC: Fixed possible XSS on custom icon management page
* 6567 SEC: Fixed possible XSS on activate changes page
* 6609 SEC: Fixed possible XSS on SNMP MIB upload page
* 6611 SEC: Fixed multiple reflected XSS attacks using AJAX calls
* 6618 SEC: Fixed missing CSRF protection for host diagnostic AJAX calls
* 6626 FIX: Timeperiod deletion was not possible when using time specific parameters
* 6719 FIX: Simplified user setting: Temporarily disable notifications
* 6661 FIX: Periodic service discovery/cronjob: Changed loglevel of informational message
* 6727 FIX: Increased size of BI editor parameter input fields
* 6562 FIX: Fixed random “I/O operation on closed file” errors in different situations
* 6503 FIX: Fixed error handling for duplicate EC rule IDs.
* 6715 FIX: Editing BI Rules: Increased size of the rule ID input field
* 6495 FIX: Bulk discovery: “Include subfolders” does not make sense for a selection of hosts
* 6660 FIX: Background Jobs: fixed issue with monitoring sites running on nfs mount

User interface:
* 6710 SEC: Limit crash reporting functionality to permitted users
* 6615 SEC: Fixed unauthorized access to master control actions
* 6612 SEC: Fixed possible reflected XSS using back URLs in view editor
* 6622 SEC: Fixed possible open redirect on login page
* 6610 SEC: Fixed possible XSS using the dokuwiki snapin
* 6565 SEC: Fixed possible XSS issues in Bookmarks snapin
* 6613 SEC: Fixed multiple reflected XSS in affecting sidebar snapin AJAX calls
* 6620 SEC: Fixed missing CSRF protection for site status AJAX calls
* 6619 SEC: Fixed missing CSRF protection for master control AJAX calls
* 6749 FIX: New Theme: Fixed some minor bugs
* 6772 FIX: LDAP: Only save users on changed configuration
* 6728 FIX: Hide links to not permitted views from host context menu
* 6561 FIX: Fixed invalid context button links to “Service globally” and “Graphs globally”
* 6725 FIX: Fixed grouping of service descriptions when view rows are already grouped
* 6726 FIX: Fixed duplicate view names in “link to” dropdown in view editor
* 6773 FIX: Fixed URL redirect from /[site]/ when using custom ports
* 6560 FIX: Editing views: Increased size of unique ID input field
* 6750 FIX: Classic Theme: Added new logo to classic theme
* 6663 FIX: BI configuration: WATO slave sites without user login now also receive BI configuration changes
* 6724 FIX: Add missing permission for viewing host/service availability

Site management:
* 6559 OMD update is now warning when changing editions
* 6616 Add –no-tmpfs option to “omd create”
* 6717 3rd party components and licenses are now listed in central file

Other components:
* 6623 FIX: NagVis: Updated to 1.9.10

* 6720 FIX: Bulk mail notifications: Single notifications in bulks use non-bulk subject

HW/SW inventory:
* 6608 FIX: win_wmi_updates: Fixed parsing install date if reported in HEX format
* 6494 FIX: win_video: Fixed crash if driver date is missing
* 6600 FIX: inv_win_wmi_updates: Fixed parsing install date; regard all possible formats
* 6468 FIX: docker_node_network: Fix crashing HW/SW inventory when labels are not set
* 6631 FIX: docker_container_node_name: Fix broken inventory plugin
* 6599 FIX: HW/SW Inventory: Only count the real entries
* 6598 FIX: HW/SW Inventory: Do not list plugins on commandline for which the related section is empty
* 6627 FIX: Fixed exception in export hook software_csv

Event console:
* 6718 FIX: Fixed invalid exception handling when unable to initialize the Event Console
* 6716 FIX: Add SNMP trap processing log target for deep SNMP trap debugging

Core & setup:
* 6625 FIX: Fixed possible failed mkbackup because of changed mknotifyd state file
* 6713 FIX: Fixed monitoring of piggyback based services when “No agent” is configured
* 6712 FIX: Fixed TypeError exception when running “cmk -D” on hosts without IP address

Checks & agents:
* 6730 FIX: winperf_processor.util: Fixed displaying average values in graphs
* 6605 FIX: winperf_if: Fixed discovery of network interface alias
NOTE: Please refer to the migration notes!
* 6590 FIX: uptime.include: Even if an SNMP-Device does not have a sysDesc it still can have an uptime
* 6478 FIX: synology_raid: Fixed crash on devices with more possibles raid states
* 6593 FIX: sylo: Fixed missing performance data ‘IN’ and ‘OUT’ rates
* 6592 FIX: snmp_info: Generate snmp_info service even if the sysDescription is not set
* 6493 FIX: netscaler_vserver: Discovers readable names
* 6466 FIX: netgear_fans: Don’t crash on empty info
* 6597 FIX: netapp_api_vs_traffic: Fixed pending services
* 6467 FIX: jolokia_metrics.tp: Only discover services which can be checked
* 6591 FIX: if: Network appliances with only one network interface were not discovered
* 6589 FIX: ibm_svc_mdiskgrp: Fixed disregarded provisioning state
* 6734 FIX: ibm_svc_enclosure: Fixed parsing data of IBM-FLASH900 devices
* 6769 FIX: genua_fan genua_pfstate: Fixed crashing discovery on empty data
* 6601 FIX: fsc_sc2_fans, fsc_sc2_psu: Discover fans and PSUs only if present
* 5845 FIX: fsc checks: prevent fsc_fans and fsc_temp if corresponding fsc_sc2-* data is available, made snmp_scan_functions more readable
NOTE: Please refer to the migration notes!
* 6491 FIX: fortinet_controller_aps: Services disappear because no clients are connected
* 6714 FIX: docker_container_status: Fixed possible “ValueError” exception
* 6630 FIX: df: Do not ignore filesystems mounted at /var/lib/docker and /var/lib/docker-latest
* 6735 FIX: cpu_util_unix: Fixed calculation of CPU usage on UNIX
* 6496 FIX: check_mk_agent.linux: Moved piggybacked docker container sections to plugin ‘mk_docker_container_piggybacked’
NOTE: Please refer to the migration notes!
* 6731 FIX: check_mk_agent.aix: Fixed multiline output processing
* 6497 FIX: ceph_status, ceph_status.osds, ceph_status.mgrs: Used wrong value epoch rate instead of epoch average
* 6564 FIX: Fixed incorrect rate computation affecting various checks in some cases
* 6596 FIX: Do status data inventory: Check “HW/SW Inventory” and shell commands behave the same way
* 6603 FIX: CRE: Fixed Check_MK service crash if a check plugin is unknown to the check context
* 5510 FIX: Add missing metrics for Windows Memory and Pagefile check

Changes in the Check_MK Enterprise Edition:

* 6659 FIX: Agent Baking: Fixed bug where hosts used bakery settings from other hosts

Reporting & availability:
* 6563 FIX: Fixed displaying of joined perf-o-meter columns

Metrics system:
* 6771 FIX: Fixed minor graph rendering issues when using the modern theme

HW/SW inventory:
* 6594 FIX: Status data is transferred in distributed setups

Agent bakery:
* 6614 SEC: Fixed reflected XSS affecting agent updater AJAX calls
* 6566 SEC: Fixed possible XSS on agent update status views
* 6621 SEC: Add permission to prevent users from editing “Deploy custom files with agent” rule set
* 6729 FIX: msexch_dag, msexch_database: Plugins are bakeable
* 5511 FIX: cmk-update-agent: Improve prelink handling
* 6624 FIX: Sign all agents: Prevent focussing search field when opening the dialog

Changes in the Check_MK Managed Services Edition:

* 6721 FIX: Fixed editing customer individual GUI design
* 6723 FIX: Fixed custom logo in facelift theme
* 6722 FIX: Do not offer the custom GUI design for the provider

You can download Check_MK from our download page:
* http://mathias-kettner.de/check_mk_download.html

Please mail bug reports and qualified feedback to feedback@check-mk.org.
We greatly thank you for using Check_MK and wish you a successful monitoring,

Your Check_MK Team

Mathias Kettner GmbH
Kellerstraße 29, 81667 München, Germany
Registergericht: Amtsgericht München, HRB 165902
Geschäftsführer: Jan Justus, Mathias Kettner
Tel. +49 89 1890 435-0
Fax. +49 89 1890 435-29

Content-Type: text/plain; charset=”us-ascii”
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

Checkmk-announce mailing list
Manage your subscription or unsubscribe