
For more information about patch ratings, see McAfee KnowledgeBase article KB51560.
New features
This release of the product includes these new features.
Support for deployment using third-party software distribution tools
You can install, upgrade, and remove the Application Control software using third-party tools, such as SCCM. We have
redesigned the Solidcore client installer to automatically detect installed McAfee Agent on the endpoints during installation and
upgrade.
•
If McAfee Agent is installed, the endpoint automatically connects to McAfee ePO after installation or when the upgrade is
complete.
•
If McAfee Agent is installed after installing or upgrading Application Control, use the new InstaConfig.exe utility to
connect to McAfee ePO.
For detailed information about this feature, see McAfee Change Control and McAfee Application Control Product Guide.
Web service APIs for ticket-based enforcement
We have added new web service APIs to help you integrate the Solicore extension with various ticketing systems used in your
setup. Because preconfigured connectors for BMC Remedy ticketing system are no longer available (End of Life in December
2013), these web service APIs also provide a migration strategy to existing users. These web service APIs are now available:
•
begin-update
•
end-update
•
delete-task
A sample connector is shipped with the Solidcore extension to help you integrate the web service APIs in your setup. To
review the sample connector, download and save the SampleConnector.zip file from the McAfee Downloads site. For detailed
information about this feature, see McAfee Change Control and McAfee Application Control Product Guide.
Support for Windows 8, Windows 8.1, and Windows Embedded
Application Control is now available on Windows 8 (Pro and Enterprise), Windows 8.1 (Pro and Enterprise), Windows 8.1
update 1 (Pro and Enterprise), Windows Embedded 8 Industry (Pro and Enterprise), and Windows Embedded 8.1 Industry
(Pro and Enterprise). We have also added support for Intel-based tablets running 32-bit versions of Windows 8 or Windows
8.1. However, memory-protection techniques in Application Control are unavailable on these platforms. We recommend that
you use McAfee VirusScan Enterprise or McAfee Host Intrusion Prevention memory protection to protect your endpoints on
these platforms. Also, the ActiveX and script as an updater (SAU) features are not available on these platforms.
Support for Windows 2012 R2
Application Control is now available on Windows 2012 R2 (Server Core, Standard, and Datacenter). However, memory-
protection techniques in Application Control are unavailable on this platform. We recommend that you use McAfee VirusScan
Enterprise or McAfee Host Intrusion Prevention memory protection to protect your endpoints on this platform. Also, the
ActiveX and script as an updater features are not available on the Windows 2012 R2 platform.
Improved feedback sent to McAfee
We have improved the feedback sent to McAfee about Application Control and McAfee GTI feature usage. This information
helps McAfee understand how you are currently using our features and helps to improve the software.
The new
Solidcore: Send Policy Discovery Request Feedback to Application Control GTI Cloud Server server
task sends information for policy discovery requests and includes details about the certificate associated with the binary file.
We have also enhanced the usage information sent for inventory and user-editable policies.
For detailed information about this feature, see McAfee Change Control and McAfee Application Control Product Guide.
Visibility into native Windows DEP and ASLR status
From the McAfee ePO console, you can check the status of the DEP and ASLR memory-protection techniques provided by the
Windows operating system. You can verify if DEP and ASLR are Enabled or Disabled.
For detailed information about this feature, see McAfee Change Control and McAfee Application Control Product Guide.
Kommentare zu diesen Handbüchern