Tufin.club
  • www.tufin.club
  • imprint
  • data privacy statement

Version update

Tufin Orchestration Suite 18-1

Details
Version update
Last Updated: 25 April 2018

Tufin has released the first version of the Tufin Orchestration Suite in 2018: R18-1. TOS 18-1 is available as GA now, delivering some improvements, e.g.

Cloud

  • SecureTrack
    Support of AWS AssumeRole as part of the AWS Security Token Service
  • SecureTrack
    Support of the latest Microsoft Azure SDK 1.2.0

Security Policy Change Automation and Orchestration

  • SecureTrack, SecureChange
    Rule Recertification Automation by a specific workflow
  • SecureTrack, SecureChange
    Cisco Firepower Automation (including Target Suggestion, Risk Analysis, Designer and Verifier)
  • SecureChange
    New Workflow Customization Triggers (e.g. when Automatic Step fails, Pre-Assignment Script)
  • SecureChange
    Enhancements for Manual Target Selection
  • SecureTrack, SecureChange
    Stealth Rule is considered now by Designer

Security, Risk, and Compliance

  • SecureTrack
    Automatic Policy Generator (APG) for Palo Alto Panorama and Fortinet FortiManager

Devices and Platforms

  • SecureTrack
    Dynamic Routing Support for Palo Alto and Fortinet
  • SecureTrack, SecureChange
    Extended Generic NAT for Palo Alto
  • SecureTrack, SecureChange
    Topology Support for Cisco Firepower
  • Support of new devices
    • Fortinet FortiManager 5.4.4
    • Fortinet FortiGate 5.2.11
    • F5 13.0
    • Cisco Security Manager 4.15
    • Cisco Firepower 6.2.3
    • Microsoft Azure SDK 1.2.0

REST API

  • Improvements for SecureTrack
    • Parameter show_members for Network Object APIs
    • Network Topology APIs for NSX
    • Retrieve Total Available Records
    • Offline Device APIs
  • Improvements for SecureChange
    • new Tickets API - Confirm

 

Further improvements as well as corrections are included.
The latest version of the Tufin Orchestration Suite can be found at the Tufin Portal: https://portal.tufin.com

 

 

Tufin Orchestration Suite 17-3

Details
Version update
Last Updated: 30 January 2018

Tufin has released the latest version of the Tufin Orchestration Suite. So TOS 17-3 is available in its GA version, delivering some improvements, e.g.

Cloud

  • SecureChange with end-to-end Automation Support for VMware NSX
  • SecureTrack with Enhanced Cisco ACI Support
  • License visibility is given now

Security Policy Change Automation and Orchestration

  • Integration of Check Point Identity Awareness Blade Support for Policy Change Automation
  • Enhancements for "Modify Group" workflow, e.g. support of creating new groups and not modify existing only
  • Rule Decommission Automation for Juniper SRX

Security, Risk, and Compliance

  • Policy Browser Search Enhancements
  • Interactive Map Enhancements

Devices and Platforms

  • FortiManager Support Enhancements
  • Cisco Firepower Enhancements
  • Support of new devices / versions:
    • BlueCoat - SGOS 6.7.1.1
    • Cisco - ASA 9.7
    • Cisco - CSM 4.12
    • Forcepoint - SMC 6.3
    • Fortinet - FortiGate 5.6
    • Fortinet - FortiManager 5.6
    • Juniper - M/MX 13.3 R10.2, 16.1 R4
    • VMware - NSX 6.3.3
    • VMware - vCenter 6.5

REST API

  • API Support for Check Point R80 Identity Awareness
  • New Network Topology APIs
  • New Cloud Topology APIs
  • Enhanced Rule Search
  • Authentication using TACACS via REST API

 

Further improvements as well as corrections are included.
The latest version of the Tufin Orchestration Suite can be found at the Tufin Portal: https://portal.tufin.com

 

 

 

 

 

 

Tufin Orchestration Suite 17-2

Details
Version update
Last Updated: 18 September 2017

Today Tufin has released the latest version of the Tufin Orchestration Suite. So TOS 17-2 is available in its GA version, delivering some improvements, e.g.

Cloud:

  • SecureTrack for Azure Resource Manager
    Working with VNETs and NSGs for the Azure Resource Manager Cloud Environment

Security Change Automation and Orchestration:

  • Separation of steps for Design and Provisioning
    Both is done by the Designer, but separate teams are able to work with different duties (Design Team, Provisioning Team).
  • Full Automation for Palo Alto Panorama NGFW Security Profile Groups using Content-ID
    Zero-Touch end-to-end automated changes for PAN NGFW policies that include Security Profile Groups and Content-ID Inspection
  • Full Automation for Palo Alto Panorama NGFW Log Forwarding Profiles
    Zero-Touch end-to-end automated changes for PAN NGFW policies that include Log Forwarding Profiles.
  • End-to-end Server Decommission Automation
    Working with Designer and Provisioning for Check Point R80/R80.10, Palo Alto Panorama, Cisco ASA, Cisco IOS, Juniper SRX, and Fortinet FortiManager

Security Risk and Compliance:

  • Unified Security Policy (USP) Alerts
    It's possible to use USP alerts in SecureTrack now.

Devices and Platforms:

  • Support of Cisco Firepower Management Center (FMC) by SecureTrack
  • Full Cross-Suite Support of Check  Point R80.10
  • Support of Palo Alto Dynamic Access Group (DAG) Objects for VMware NSX by SecureTrack and SecureChange
  • Support of Fortinet Fortigate 5.4.4 and FortiManager 5.4.3
  • Support of Juniper JM/MX 13.3
  • Support of Palo Alto Panorama PanOS 8.0.1

REST API:

  • SecureTrack: additional_parameters API (parameter: type), devices API (parameter: sort), rule_search API (parameter: start, count)
  • USP Alerts: creation, modification, retrieval and deletion with Unified Security Policy Alerts commands
  • Better modification of Designer Suggestions using the command modify designer suggestion

 

Further improvements as well as corrections are included.
The latest version of the Tufin Orchestration Suite can be found at the Tufin Portal: https://portal.tufin.com

 

 

 

Tufin Orchestration Suite 17-1

Details
Version update
Last Updated: 04 May 2017

The new and first GA version in 2017 of the Tufin Orchestration Suite (TOS) is available: 17-1.
This GA Version delivers some improvements, e.g.

Cloud:

  • USP Based Security Groups in SecureTrack
    Dynamic micro-segmentation policies for cloud environments, USP Policies that are not based on specific IP addresses and simplified compliance and risk analysis
  • AWS Direct Connect Support
    Integration of AWS Direct Connect in Topology, including the interfaceS

Security Change Automation and Orchestration:

  • Zero-touch, end-to-end full automation for Palo Alto Panorama UserID (NGFW)
  • End-to-end Rule Decommission workflow with Provisioning
  • Cisco ASA IPv6 Change Automation

Security, Risk and Compliance:

  • Rules and Objects Report support for Panorama Device Groups Policies
  • Palo-Alto Pre- and Post-rules Marked in Policy Browser
  • Rules and Objects Report support for FortiManager ADOM Policies

Application Management:

  • IPv6-based Application Management

Devices and Platforms:

  • Forcepoint (formerly Stonesoft SMC): Support of Stonesoft SMC 6.1
  • Juniper: Support of SRX 12.3x48

REST API:

  • LDAP
    Retrieve the base DN entry, details about a specific DN below the base DN entry, search for all entries that match (EXACT, CONTAINS, STARTS_WITH, ENDS_WITH) a specific string, or search for entries that exactly match a set of strings.
  • Network Zone Manager - Patterns
    Retrieve, create, and modify security group patterns for identifying violations.
  • Rule Decommission Designer Results and Provisioning Commands
    Retrieve Designer results and Provisioning commands for Rule Decommission.

 

Further improvements as well as corrections are included.
The latest version of the Tufin Orchestration Suite can be found at the Tufin Portal: https://portal.tufin.com

 

 

Tufin Orchestration Suite 16-4

Details
Version update
Last Updated: 23 February 2017

Since today (Feb. 20th, 2017) the new version of the Tufin Orchestration Suite (TOS) is available: 16-4.
This GA Version delivers some improvements, e.g.

Cloud:

  • Cisco ACI Support
    Monitor ACI Platform as a device, Manage ACI Application Profiles in SecureApp, Integration in Tufin Unified Security Policy (USP), etc.
  • Cloud Tag Policy (SecureTrack)
    Defining a tag policy as part of Tufin USP for AWS or via APIs for any cloud platform supported by Tufin plus further options

Security Change Automation:

  • Zero-touch End-to-End Automation for Check Point R80
  • Updated Palo Alto NGFW Application IDs
  • Rule Decomissionin a cross-suite workflow
  • Server Decommission for Cisco ASA/IOS and Juniper SRX delivers required commands which can be used with copy/paste
  • Server Decommission for Cisco ASA and Juniper SRXis fully automated possible
  • Palo Alto Panorama Post-Rule Automation
  • New Role Permission: View handlers of my requests
  • New SecureChange E-Mail Template: Request automatically closed

Security, Risk and Compliance:

  • Policy Browser is now located on the HOME tab
  • Enhancements for the Policy Browser

Application Management:

  • Application Connection Search
  • Performance Improvement for SecureApp

Devices and Platforms:

  • Check Point: Full Support of R80, including MDS, CMA, and SmartCenter
  • Forcepoint: Support of Stonesoft SMC 6.1 using 5.10 APIs
  • Forcepoint: Enhancements in Stonesoft IPv6 support
  • Fortinet: Support of FortiManager and FortiGate 5.2.9
  • Fortinet: FortiManager 5.4 and 5.4.1 NAT Support

 

Further improvements as well as corrections are included.
The latest version of the Tufin Orchestration Suite can be found at the Tufin Portal: https://portal.tufin.com

 

 

 

Tufin Orchestration Suite 16-3

Details
Version update
Last Updated: 26 November 2016

The latest version of Tufin Orchestration Suite (TOS) is now 16-3. This GA Version delivers some improvements for its software parts, e.g.

Cloud:

  • AWS Security Groups are automatically recommended per required access
  • Changes are automatically verified per required access

Security Change Automation:

  • New Role in SecureChange allowing "Assign tickets to any handler"
  • "Modify Group" allows adding/removing IP ranges now
  • Designer suggestion is shown in Policy Context, i.e. suggested changes are shown in existing policy
  • Palo Alto Networks Panorama Device Group Policy Automation
    • Automatic selection of Device Group per required access
    • Automatic risk/compliance Analysis
    • Automatic Change Design and Provisioning incl. AppID
    • Automatic verification after changes
  • REST API allows now to export Designer results
  • Designer CLI

Security and Compliance:

  • Rule Documentation (Policy Browser) now allows to search for disabled rules
  • Palo Alto Networks Panorama Device Group integraion
    • Changes are tracked and monitored
    • Full visibility into Panorama Device Group hierarchy
    • Full intetration into Policy Browser (including rule usage information)
    • Cleanup support
    • Integration into SecureTrack Unified Security Policies
    • Reports are possible
    • Support of Tufin SeureTrack Topology
    • SecureApp connection status monitoring (currently not for AppID)

Application Management:

  • Introduction of application-centric User Permissions

Devices and Platforms:

  • Juniper: Topology Support for Virtual Routers in SRX Routes
  • Fortinet: Support of FortiManager 5.4.1
  • VMware: Support of NSX 6.2.4
  • F5: F5 12-1 is supported by TOS, but no iApps
  • Cisco: Support of ASA

 

Further improvements and corrections are included.

The latest version of the Tufin Orchestration Suite can be found at the Tufin Portal: https://portal.tufin.com

 

 

Page 4 of 5
  • Start
  • Prev
  • 1
  • 2
  • 3
  • 4
  • 5
  • Next
  • End
Bootstrap is a front-end framework of Twitter, Inc. Code licensed under MIT License. Font Awesome font licensed under SIL OFL 1.1.