Fixed Issues In Release 105.0.0

Fixed Issues In Release 105.0.0

Here is the list of fixed issues in this release.

Issue NumberCategoryDescription
256782Advanced AnalyticsFixed an issue where filtering was not working when multiple tags were selected in the filter.
260700Advanced AnalyticsFixed an issue with the Classic Report page not accessible after Advanced Analytics free trial expired.
243845API Data ProtectionFixed an issue where Netskope uploaded Forensic files were not skipped in API Enabled Protection Ongoing Scans.
260753API Data ProtectionFixed an issue where concurrent writes to the configuration file caused file corruption and prevented data sync from CASB-API to CASB-Inline.
260452CASB Real-time ProtectionPDF Preview activity for MS Outlook has been removed and re-mapped to Download as the file being previewed was locally downloaded by the browser.
243105CASB Real-time ProtectionFixed an issue of Instance Identification for Microsoft Office 365 SharePoint Online app wherein Instance ID for Upload was getting incorrectly mapped to “{“.
259873CASB Real-time ProtectionFixed an issue where Microsoft OneDrive app re-tries and succeeds to upload a file in chunks that was blocked by a DLP rule. The enhanced functionality also blocks these re-tries.
260898CASB Real-time ProtectionFixed an issues of Instance Identification when uploads were performed from Microsoft Teams native app to  Microsoft Office 365 OneDrive for Business. The Instance Detection logic has been enhanced to identify new traffic patterns for accurate detection.
260513CASB Real-time ProtectionIn Outlook mail message, URL’s rewritten by Proofpoint URL Defense will not be rewritten again by Reverse Proxy. Earlier the impact was due to twice URL re-writing by both Proofpoint and Netskope. The end users have to re-login again post clicking the re-written URL by Proofpoint.
249946CASB Real-time ProtectionThis fixed added support for new identified traffic pattern for downloading a zoom installer from zoom support links.
258246CASB Real-time ProtectionFixed an issue where REST API update call failed for app_instances which had same instance_id. The fix now allows multiple instances to have same instance_id, when application names and instance_names are different.
241434Classic ReportsFixed an issue in Classic Reports where “app-cci-business-risk eq high” query for Risk Exposure Summary > Top apps with high business risk  was deprecated.
234538Data ProtectionFixed the samples shown in the UI for the “Card Data (Track 1)” and its predefined Entities.
255377Data ProtectionWe have resolved a problem where, under certain conditions, the file size filter of real-time policies did not match the size of the files correctly.
251833Data ProtectionResolved an issue with the UI file preview functionality for content sizes larger than 10MB to ensure the expected behavior.
252726DNS SecurityFixed an issue where DNS servers refused to respond were treated like unreachable servers and resolved through Netskope DNS.
261041Endpoint DLP (EDLP)Fixed an issue where, if an Endpoint DLP policy contained both User Groups and Users, it would not evaluate correctly. Now, individual policies can contain both User Groups and Users together.
260958Endpoint DLP (EDLP)Fixed an issue where Endpoint DLP incidents reported incorrect number of violations if the results were fetched from a cached entry.
258743Endpoint DLP (EDLP)Fixed a system issue while using Lenovo ThinkPad Thunderbolt 3 Dock USB Audio devices with Endpoint DLP.
246146Endpoint DLP (EDLP)Fixed an issue where on some machines, Endpoint DLP did not display a block dialog while blocking connected devices on startup.
251740Endpoint DLP (EDLP)A problem was resolved with the upgrade script where the EPDLP driver registrations failed, resulting in USB devices not working correctly on Windows machines following an upgrade. This has been fixed in 102.1.5 and newer builds.
261161Inline Policy Management Fixed an issue by enhancing email address validation for user constraints to subdomain with * value.

For example, *@*.caixabankam.com, *@*.*.caixabankam.com

259869Netskope Public Cloud SecurityFixed false positives generated around GCP’s Conditional role assignments.
256857Netskope Secure Web Gateway (NG SWG)Fixed an issue where ns-proxy lookup was matching incoming URLs against NOD and NRD category incorrectly. Inspite of not being a actual sub-domain, it was categorised as the same category as the parent domain.

This fix checks if the prefix is part of complete domain and the URL is matched only if it is complete domain name.

257335Netskope Secure Web Gateway (NG SWG)Fixed URL lookup to not strip https:// or http:// from the URL list lookup.
252938Netskope Secure Web Gateway (NG SWG)Due to a current architectural limitation, when configuring SSL failure actions as “bypass”, the first connection to a given site on a given node will receive a block page while Netskope caches the status of the certificate.

Added a note on this page instructing the user to reload the page in order to continue. This limitation will be removed in the future.

245681Netskope Secure Web Gateway (NG SWG)Fixed an issue with sending block messages for domain fronting to the client for HTTP/2 requests.
263151Netskope Secure Web Gateway (NG SWG)Instance_ID and from_user for events are now collected as part of userjustification from submission rather than app session.
252908Netskope Secure Web Gateway (NG SWG)Fixed a bug that could cause a page event to not be generated or the request and response counts to be lower than expected if an HTTP response has no body. This could happen, for example, with a 304 response, which contains headers but no body.

Such responses caused the transaction to not be counted in the page event request and response counts. In some cases this could cause the request count to be too low to trigger emitting a page event altogether. Transactions that include a response with no body are now included in the page event request and response counts.

223847Netskope Secure Web Gateway (NG SWG)Fixed an issue related to handling of HTTP/2 requests and isolation policies. Prior to this fix, some URL requests matching isolation policies would get stuck for web servers with h2 support.

With this fix, HTTP/2 requests are processed as described in: RBI Best Practices

260986Netskope Secure Web Gateway (NG SWG)The updateurllist v1 api is blocked from executing when the exact_regex_url_list_enabled feature flag is turned on.We notify the customer in the response to use the v2 api if they want to use regex.

Note

To use regex, the v2 api should be used. If regex is not required, feature flag can be turned off on a request to service

246239Netskope Private Access (NPA)A network API request that returned an unexpectedly big number caused a crash. This crash in the Windows client was fixed.
12685Remote Browser Isolation (RBI)Fixed an issue related to the behaviour of the inner cache of RBI’s Chromium engine. Prior to this fix some links accessed several times by the same user in one isolated session were cached internally when trying to be navigated, which could result in RBI not launching required methods to capture the navigation, and ignoring the the act of browsing. With this fix, RBI circumvents that cache, effectively getting the user to the destination address.
262591SaaS Security Posture Management (SSPM)An issue was observed where the scanning interval of 15 minutes on Salesforce app for Next Generation SaaS Security Posture Management was not taking effect. The scanning interval was defaulting to 60 minutes. This issue is now fixed.
263263Skope ITFixed an issue where empty column names were displayed after the data was exported on the Skope IT > Users page.

After the fix, you can export only columns seen on the table in Websites and Userspages. This will prevent any column mismatch on the Users page and exported data for the customer.

245626Traffic SteeringFixed an issue where uninstalled event was not sent when branding file was encrypted in per-user mode.
265670Traffic SteeringAddressed a file upload stuck issue with macOS 13.4. The fix was to enable ‘Enhance MacOS NS Client Performance’ feature flag.
255287Traffic SteeringResolved an issue where Client Installation event was not reported in WebUI in certain cases.
258431Traffic SteeringFixed an issue where the system reported “Client disabled due to error” status after waking up from sleep, hibernate or standby modes.
255681Traffic SteeringAn issue where MultiFactor Authentication Required window did not disappear even after entering correct OTP is fixed now.
228108Traffic SteeringWhen the Client sends a future time stamp for the Client status event, it is reset to the current time stamp.
253073Traffic SteeringFixed Client last update timestamp by reading the last update timestamp.
260953Traffic SteeringFixed “domains” key missing issue.
252172Traffic SteeringFixed the first DNS server failure issue by setting all DNS servers to the VPN adapter.
264465Traffic SteeringFixed Cloud App mode cert pinned app bypass through tunnel.
259018User And Entity Behavior Analytics (UEBA)Fixed an issue where Behavior Analytics page for user summary may sometimes take a few minutes to update.
Share this Doc

Fixed Issues In Release 105.0.0

Or copy link

In this topic ...