.Loading..Loading.
Readme Rev
Service Updates
When the downloaded patch is run, it will extract to a folder and there will be zip files. Those files should be extracted and then Setup.exe can be run. This table outlines the names of the zip files and where they should be run.
Component | Core/Console | Client |
---|
Installation Instructions
The following outlines instructions for installing this update.
This patch requires that LD 2016.3 be installed. For more information about current service packs please see LANDESK Community Doc 1001
Installing on the Core and Rollup Core
Because ADS may block files on Windows systems, it is recommended that you extract the patch on the machine you are going to install it on.
Prior to installing a patch on the Core Server it is recommended to make a backup of the LANDESK database.
Steps
- Disable any services on other machines that interact with the Core Server
- Double-click on the self-extracting executable and extract it
- Extract the files for the Core patch
- From the extracted files, run Setup.exe
- When Setup completes, reboot the machine if a reboot is required
- After applying the patch, you may need to re-activate your Core Server using the Core Server Activation Utility
- Restart any services stopped in Step 1
Note: The installer included with this release writes a detailed log that can be used to help troubleshoot installation problems. After running setup.exe from the patch, the log is located in the \ManagementSuite\log folder.
Installing on Remote Consoles
A Remote Console is any machine that is not the Core Server and has the LANDESK Management Suite Console installed. Console Machines need to be updated to be able to connect to the updated Core Server and Database.
Because ADS may block files on Windows systems, it is recommended that you extract the patch on the machine you are going to install it on.
Steps
- Close the Console
- Double-click on the self-extracting executable and extract it
- Extract the files for the appropriate patch
- From the extracted files, run Setup.exe
- When Setup completes, reboot the machine if a reboot is required
Note: The installer included with this release writes a detailed log that can be used to help troubleshoot installation problems. After running setup.exe from the patch, the log is located in the \ManagementSuite\log folder.
Updating the Agent
The patch should be installed on the Core Server before updating Agents
Use one of the following methods to re-deploy the agent once the patch has been applied to the Core or to apply the patch manually.
Methods of agent deployment
- Manual: Map a drive to \\Coreserver\ldlogon and run 'wscfg32.exe -f'
This is used for single client installs and testing - Push: Schedule a push of the full agent
- Self-Contained EXE: Create an EXE that can be installed
- Advance Agent: This is a two stage process. The Advance Agent consists of a small MSI and a self-contained EXE. The MSI is deploy to the client and then the MSI downloads and installs the EXE. This allows for bandwidth friendly downloads.
For more information on agent configuration and deployment see LANDESK Community Doc 23482
Manual installation of the client patch
Because ADS may block files on Windows systems, it is recommended that you extract the patch on the machine you are going to install it on.
- Double-click on the self-extracting executable and extract it
- Extract the files for the appropriate patch
- From the extracted files, run Setup.exe
- When Setup completes, reboot the machine if a reboot is required.
Updating the Agent With Patch Manager
LANDESK Patch Manager can also be used to update agent machines with the patch. Content and definitions can be found in Patch Manager as LANDESK Updates and can be used to detect and repair agents that have not been updated. The Core Server must be updated with the Core patch before updating agents.
Not all Component Patches will have Patch Manager Content created. Once it is generally available, this method can be used to update agents. For more information about updating agents using LANDESK Patch Manager see LANDESK Community Doc 24384
Release Information
Please review the following important information about this release BEFORE installing this update.
Feature Changes and Updates
None included in this update
Defects Fixed
Agent - Core
- 353165 Dashboard: Problems with graphs - (combined)
- Fixed the device discovery charts to be more accurate.
- 353850 If elected machine doesn't have connection to the core, it logs "no credentials" twice every second and can use high CPU.
- Desktops are given precedence to laptops. Desktops probably won’t lose connectivity, unless they have network errors. We believe that this scenario has a very low percentage of occurring in the field.
- AGLSManager.exe
Agent Configuration
- 328545 Added LDMS Agent Support on Domain Controllers
- -
- 361883 Adaptive settings not seeing IP ranges correctly
- The IP comparison was done by comparing each individual octets in the address. This is not correct, the IP must be compared using the whole address. as an integer
- PatchManagement.dll
- 376961 Default agent settings being applied during reboot process even though alternate reboot is configured
- When Local scheduler reboot task 559 is launched, vulscan no longer switches behaviorGuid under VulscanReboot key back to the default reboot behavior if AlternateRebootBehavior Guid was assigned.
- vulscan.dll (vulscanreboot.cpp)
- 386215 "Exclusions" button is disabled by default when going to LANDESK AV settings -> Protection -> Network Attack Blocker
- Reason: Exclusions button original state is disabled. Resolution: modified the original state to be enable.
- AVUI.dll
Alerting
- 364006 Invalid Char - Russian Cyrillic in alerting
- Include all unicodes that encoded to UTF-8 and greater than 128, such as Russian, Chinese and so on.
- LDSecSvc.exe and LDSecSvc64.exe
Antivirus
- 350986 IO exception in WSVulnerabilityCore when access Ldlogon\selfupdate
- Continue to replace some KAV's images with ours.
- proc_avp.png app_control_criteria.png tray_scan_animation.png
- 360672 Windows AV client download pattern file from Core may have failed components
- According to the advice from Kaspersky support. Remove the application filter when downloading Windows Kaspersky pattern files, but remain the filter for Mac.
- GetBases.exe
Antivirus - Mac
- 369841 Mac AV not downloading updates from core.
- It's because the default settings miss update sources information. Fixed it by adding the default update settings.
- AVBiz.dll
Audit
- 350317 LANDESK Auditing events may not log in Windows Event Viewer.
- The LANDesk.Auditing.Business project the build platform target from AnyCPU change to x64 will cause the system wevtutil.exe can't invoke success which to config the windows eventlog, the build platform target should AnyCPU.
- LANDesk.Auditing.Business
BridgeIT
- 319042 Limited Workspace users can deploy software (IT Analyst)
- Added RBA rights checks around distributing package to block users that don't have software distribution deploy RBA rights.
- LANDesk.ManagementSuite.RESTful.Service.dll
- 356368 Install Link in Workspaces Self Service may not work as expected
- -
- 356500 Configuration center db creation should enable\disable OK
- Hide the OK button unless Configure Database is clicked and returns.
- Install
- 371691 Workspaces help link in ConfigurationCenter is incorrect: gives a 404 error
- -
- 376543 Software Catalog description may have an unexpected line break in the description line
- -
- 376544 Modified default text for Software Catalog flyout when nothing selected
- -
- 376545 Refresh for software catalog when clicking on “software catalog" menu item
- -
Console
- 368281 Remote Console uses the default (0) port to send WOL packages even if a different port is set on the Core server
- Use KeyValue table to store wakeup port option.
- SvcCfg.exe LANDesk.ManagementSuite.NewWork.dll LANDesk.ManagementSuite.WinConsole.dll
Core Server
- 359202 Rollout Project - Date/time step requires approval
- If not approve required, do not send approval email.
- WorkflowBiz.dll
Core Synchronization
- 339256 CoresSync'd LP Link does not work and displays an exception indicating "This package has been deleted" when viewing the package properties on the target core.
- Fix for JIT link import/export
- package.data.dll
- 339256 CoresSync'd LP Link may not work and displays an exception indicating "This package has been deleted" when viewing the package properties on the target core.
- Fix for JIT link import/export
- package.data.dll
- 371519 Core Sync will not accept password longer that 16 characters
- Change key "Password" value length to 255 in table "CoreSyncTarget".
- Datamart.xml
CSA
- 357895 DEP: iOS 10.x devices do not enroll after upgrading from iOS 9.x
- Support a separate service port on the CSA specifically for DEP enrollment. The port is configured through the CSA user interface and can needs to be enabled in the firewall (2-step configuration process).
- CSA patch 180
- 357895 [MDM-DEP] iOS 10.x devices do not enroll after upgrading from iOS 9.x
- Support a separate service port on the CSA specifically for DEP enrollment. The port is configured through the CSA user interface and then needs to be enabled in the firewall (2-step configuration process).
- CSA patch 180
- 360822 CSA timezone not updating properly
- Fix by setting the PHP timezone correctly.
- CSA patch 180
Data Analytics
- 262718 Computer.Network.TCPIP.Address Unpadded and may append the incorrect ip address
- Add a new source attribute (Computer.Network.TCPIP.Address) into rule (Pad Computer.Network.TCPIP.Address) to unpad the last main TCPIP address in .MP file.
- ManagedPlanet.DTS.Functions.dll ManagedPlanet.DTS.dll
- 296347 Can't deploy group of rules if connecting to Core Server with FQDN
- If user connects to core with FQDN, DA can't find the core id from DB by FQDN. We need to find the core id from DB by the short computer name.
- DPIDatabase.dll WinConsole.dll
- 309397
- Query was changed so that the correct result will be returned.
- ManagedPlanet.DTS.Functions.dll
- 318395 Both Dell Warranty and Dell Warranty for Asset Control fail.
- Update Dell API with the latest one.
- ManagedPlanet.DTS.Functions.dll
- 326726 SCCM Import is not pulling the correct "Total Storage" amount for the devices (Decimal is moved 1 space to the left)
- Block the effect of displaymask for storage columns for SCCM import.
- ManagedPlanet.DTS.Functions.dll
- 331742 Error when exporting and importing from a 2016 to a 2016 server with DB Doctor
- Don't export the data under "Self-Elected Services" when exporting computer by DBDR.
- ManagedPlanet.DBDR.Functions.dll
- 332776 SQL Error in DBSetup.log when running Database Installation and the Organization configuration has changed.
- Set OrgType to 1 for any organization type.
- DBSetup.cs
- 333239 Rapid Deployment Fails to Launch tasks
- Changed the service from x86 to x64, so it could find the license correctly
- ManagedPlanet.RapidDeploy.Service.exe
- 335042 Microsoft VL B2B does not log in to site
- content change so that "keep me signed in" could left unchecked
- Microsoft Volume Licensing - Total Licenses - Totals Only.xml
- 337676 Barcode Service may not merge devices with the same barcode correctly
- 1.When query the computers which have same barcode and one of them has a ScanType="Vender Import", the SQL join statement is not correct. 2.When do merge job, the Source computer and Destination computer should not be same, should merge the computer whos
- ManagedPlanet.Core.Barcode.exe
- 338154 Not able to add Remote Scanner to a Discovery Services configuration
- The related resource file is not referenced.
- ManagedPlanet.DiscoveryServices.Console.dll
- 338158 Discovery Services - Core Server address registry error
- changes on registry operation so that correct Core host name will be extracted so that a valid virtual directory reference will be created for discovery service to work.
- ManagedPlanet.DiscoveryServices.RemoteScanner.exe
- 338261 One LDDA-related directory is hard-coded at C:\Program Files (x86)\Managed Planet\
- The 5 files(AddressMapweb.url, barcodeweb.url, ReportStore.url, HideDos.exe, WebShare.exe) are always installed into C:\Program Files (x86)\Managed Planet\. I have made them installed into the directory user specified for LDMS installation.
- AddressMapweb.url barcodeweb.url ReportStore.url HideDos.exe WebShare.exe
- 353340 Cannot connect to MySQL database when adding a new JAMF rule.
- Dynamically loading the MySQL driver so that users can apply the version they have.
- LANDesk.DataAnalytics.JAMF.dll
- 354675 There is one error item in WMI log files
- Change the condition of selecting PostClient judgment.
- ManagedPlanet.DiscoveryServices.Functions.dll
- 356466 Move to Asset Control may cause an error
- Support xml type attribute.
- dpidatabase.dll
- 356466 Move to Asset Control can cause an error in 2016.3
- Support xml type attribute.
- dpidatabase.dll
- 356691 CDW B2B Connector Error: No Data retrieved from web site
- This rule has been rewritten by using iMacro.
- CDW B2B Web Import.xml
- 358366 "Warranty Expiration Date" remained blank after running "Last Warranty End Date" rule
- Use the ServiceLevelCode rather than ItemNumber to judge whether the warranty is a good one to import. Now only the warranty of "Dell Digitial Delivery" is not real computer warranty, all the others are real computer warranty.
- ManagedPlanet.DTS.Functions.dll
- 358367 Barcode Web Forms refresh after every data entry
- changed postback from synchronous to asynchronous
- BarcodeGroupForm.aspx Web.config Universal-Build.ism Update1-build.ism
- 358431 Discovery Services: SNMP Version 3
- Add new functions to support SNMP v3.
- ManagedPlanet.DiscoveryServices.Functions.dll
- 358480 CatalogURL not getting updated with MAC Agent
- -
- 359127 Error about ServiceManagedPlanetRapid Deployment may pop up during Rapid Deployment
- Changed the service from x86 to x64, so it could be successfully installed by our tool
- ManagedPlanet.RapidDeploy.Service.exe
- 359127 Error about ServiceManagedPlanetRapid Deployment pop up during Rapid Deployment
- Changed the service from x86 to x64, so it could be successfully installed by our tool
- ManagedPlanet.RapidDeploy.Service.exe
- 360925 LDDA DTS using CDW rule, unable to retrieve data from WebSite(AccountType is "US Govt or Healthcare" or "Canada")
- The macro script is hard-coded to go to www.cdw.com no matter what the account type is. Modified the script to go to corresponding web site according different account type.(www.cdw.com for US, www.cdwg.com for Gov/Healthy, www.cdw.ca for Canada)
- CDW B2B Web Import.xml
- 363795 Devices may not be merged correctly based on barcode
- Don't try to delete data from Views(ComputerNotScannedCountsV, ClientAuthStatusV, CSEP_Elections_V) so that it won't interrupt other tables' deletion.
- ManagedPlanet.Core.Barcode.exe
- 367801 After pushing package to the Win2016 client, the package doesn't install on the client
- Add platform Windows 2016 Server for detection
- patchbiz.dll vulscan.dll LANDesk.ManagementSuite.SoftwareDistribution.Business.dll
- 367805 When running CDW import, no license is imported
- Add about all new product SKUs collected from the 2 CDW accounts.
- ProductLookup.xml
- 383966 Client that is not approved might attempt to contact Core more than once an hour
- Fixed some logic in the self election code so that an elected client that has not been approved will give up the election after an hour if it still has not been approved. It will then try again in an hour.
Data Analytics Content
- 378782 Adobe* Illustrator CC 2014 downgrade shows "Adobe InCopy CC" should be "Adobe Illustrator CC"
- modify the downgrade product
- Adobe Products.xml
- 378782 Adobe* Illustrator CC 2014 downgrade shows "Adobe InCopy CC" when it should be should be "Adobe Illustrator CC"
- Modify the downgrade product
- Adobe Products.xml
- 381182 Content Request: Microsoft Office 2016 Standard
- Add Office 2016 standard
- Microsoft Products.xml
- 381183 Morpho Trust L-1 Capture Software
- modify the query
- Morpho Trust Products.xml
Endpoint Security
- 303731 Endpoint Security (LDSECSVC64.EXE) makes a particular custom application slowdown
- Root cause: The custom application is wrapped using VMware ThinApp, and itresults in a very big file. Because of how ThinApp works, the EPS client will recalculatethe file hash for this file very often, resulting in a big slowdown. Fix: add support for
- LdSecSvc.exe LdSecSvc64.exe
- 354164 Computer won't boot if McAfee and EPS are installed together.
- Cause: deadlock caused by the EPS driver when it tries to normalize a file name opened by the McAfee AV during the system boot. The situation only happens if the NX/XD bit is disabled in BIOS, and the virtual memory is disabled on Windows
- ldsecdrv.32 ldsecdrv.64
- 354717 In blocking mode every application is added to the Trusted File list as if the client were in learning mode
- -
- patchbiz.dll
- 356196 AppCrash event error pop up may occur when installing agent with EPS
- Cause: Null pointer referenced in the code used to uninstall the EPS client. Fixed
- HipsClientConfig.exe
- 356834 The EPS client may block some LANDESK executables when they are executed using a short file path
- Cause: In some situations, a short file path (path containing the character ~) is not correctly converted to a long file path. As a result, the EPS client may doesn't see a LANDESK executable as started from a LANDESK folder, and could block i
- LdSecSvc.exe LdSecSvc64.exe
- 358037 Unable to manually add a script to the application file list
- Non-executable files were not allowed to be added to the application file list on the consoled. Added support for such files.
- pacthmanagement.dll
- 358540 The EPS client should not protect 3rd party AV folders by default (unless admin wants this)
- Added a new checkbox "Add a pre-defined list of trusted folders"
- patchbiz.dll patchmanagement.dll
- 360765 The EPS driver may crash (Bluescreen) if a lot of processes are created/terminated at the same time on a computer with several processors/cores
- Root cause: the code used to maintain a list in the EPS driver of all running processes, may be corrupted if there are a lot of process creations/terminations at the same time, on a computer doing hyper-threading. Fix: rewrote the code to better support
- LdSecDrv.32 LdSecDrv.64
- 361065 Installing EPS can cause BSOD on some clients -LDSecSrv.sys
- Side effect related to working with the Microsoft Live File System format
- LdSecDrv.32 LdSecDrv.64
- 361065 Installing EPS can cause BSOD on some clients -LDSecSrv.sys
- Unexepcted side effect related to working with the Microsoft Live File System format
- LdSecDrv.32 LdSecDrv.64
- 370653 Client side is showing pop up message related with windows startup even though it has been configured as 'always allow' in application control settings
- Cause: Changing the 'startup module' setting won't be taken into account for applications added to the startup before this change. Fixed.
- EPSUI.exe LdSecSvc.exe LdSecSvc64.exe
- 377937 Ldsecsvc.exe eats up more than 20% of CPU
- The EPS client is mistakenly blocking some process memory read operations from the software QQ, leading to an high cpu usage. Fixed.
- LdSecDrv.32 LDSecDrv.64
- 378196 The authorization code (temporary password) is not secure
- Changed the algorithm to something much more secure. Also added an option on the console to disable this feature.
- EPSUI.exe patchbiz.dll patchmanagement.dll
- 378247 In some situations EPS may switch from Learning mode to Disabled every few seconds until rebooted
- Root cause: When changing the EPS mode from the UI using the auto-revert feature, once the mode has reverted it will erroneously change again every 1 minute. Fixed
- LdSecSvc.exe LdSecSvc64.exe
- 379618 Storage volume is set to "No access", add one USB hardware ID into exception with "encrypted only", USB cannot be formatted
- Fix: Allow deleting files on the USB drive if the configuration is set to “encrypted only".
- LdSecDrv.32 LdSecDrv.64
- 380926 Blue screen may occur due to null pointer (race condition)
- Root cause: Null pointer referenced. Fix: Added a check before using the pointer.
- LdSecDrv.32 LdSecDrv.64
- 381211 Device Control wireless options do not work as expected
- -
- LdSecSvc.exe LdSecSvc64.exe
- 386099 Unable to process actionhistory in database. 'Error commiting on table FILECONNECTIONS: XML PARSING -2147217900'
- Fix: Removed any white space in the XML tags.
- LdSecSvc.exe LdSecSvc64.exe
- 389160 Failed to load a user profile - Windows cannot load the locally stored profile.
- Issue A temporary profile is loaded after you log on to a Windows system with the LANDESK Endpoint Security client running. Symptoms After you log on to a Windows system with the LANDESK Endpoint Security client running, you may notice that a temporary p
- LdSecSvc.exe LdSecSvc.exe
- 389830 The EPS driver cannot read custom settings in registry
- -
- LdSecDrv.32 LdSecDrv.64
- 391406 Blue screen after applying a Microsoft update to improve wireless mouse input filtering
- Cause: A Microsoft security update for some Microsoft wireless devices (see Microsoft security advisory for the list of devices) may conflict with Device Control and cause a blue screen on Windows 10.
- LdSecDrv.32 LdSecDrv.64
Install
- 356696 Incorrect file path reference for deuCst32.dll
- The file had a wildcard install. It was fixed to point to the proper path.
cst32.dll
Inventory
- 323755 When running an inventory scan on an HP system that has HP Connection Manager installed you may receive an application crash of GetCMSettings.exe
- The HP.Mobile.dll has changed so that when running inventory scan on HP device (with Connection Manager), a crash will happen. Catch the exception to let the inventory scan run without crash.
- LDHPGetCMSettings.dll
- 323755 When running an inventory scan on an HP system that has HP Connection Manager installed you may receive an application crash of GetCMSettings.exe
- The HP.Mobile.dll has changed so that when running inventory scan on HP device (with Connection Manager), a crash will happen. Catch the exception to let the inventory scan run without crash.
- LDHPGetCMSettings.dll
- 333243 JAMF data import application usage and last used dates calculation incorrect
- On Inventory panel, under Software > Package entry, add two new attributes, User usage only and Include minimized usage, to indicate what JAMF data was imported.
- LANDesk.DataAnalytics.JAMF.dll
- 333244 JAMF inventory scan data not properly updating version numbers
- Move the JAMF Computer.Applications data after Computer.Software data so that when JAMF Import generate scan files, then the inventory service will use Applications.Version for LANDESK Software.Package.Version
- JAMFMeta.xml
- 339877 LDISCAN32.exe may crash when scanning information about network printers in specific circumstances
- Fix for scanner crash when more than 70 printers
- LDISCAN32.exe
- 339877 LDISCAN32.exe can crash when scanning information about network printers in some environments
- Fix for scanner crash when more than 70 printers
- LDISCAN32.exe
- 352242 LANDESK Inventory Sever met with an error (The Size of Battery.BATTERYTYPE is too small)
- Increase size of the Battery.BatteryType column to 90 to accmodate the newer manufacture's identifiers.
- datamart.xml
- 352723 Inventory scanner crashes if scheduled task application name has a large number of characters
- Truncate scheduled task names when they are too long.
- LDISCAN32.exe
- 352723 Inventory scanner crashes if scheduled task application name has a large number of characters
- Truncate scheduled task names when they are too long.
- LDISCAN32.exe
- 356176 Inventory scanner may not gather Power Management information when the Agent is installed on Win 8 in some languages
- -
- ldiscn32.exe
- 356322 Inventory scanner not picking up all .EXE files from C:\Windows\System32 folder on 64-bit versions of Windows 7 and 10
- Inventory scanner picked up the contents of the windows\syswow64 instead of windows/system32 directory on W8 and W10 systems.
- ldiscn32.exe
- 356328 Inventory shows user as Administrator even though there is not that user on the machine
- -
- ldiscn.exe
- 356374 It may take a long time (more than 6 minutes) to begin the Inventory scan
- Limit scanner wmi rules.
- WMI - LANDESK Scanner.xml
- 356695 Inventory may not show the MAC address of the NIC on AIX 6.1 servers
- Please test AIX 6 and 7 for MAC address and correct value.
- /opt/landesk/bin/map-netscan
- 356959 LDMS2016 Inventory of HP-UX B.11.31 may show the wrong processor information.
- AIX, Linux and Solaris should return "Processor Physical Count" == number of sockets and "Features - Cores per Package" == cores per CPU HP-UX should return "Processor Physical Count" == number of sockets and "Processor Count" == total cores
- /opt/landesk/bin/map-cpuscan
- 363784 Inventory for some devices may contain agentless last status date of 1/1/1900
- -
- 369733 Inventory moved to ErrorScan after provisioning
- When append data to scan file by Active rule, if the scan file not end with "\r\n", then insert an "\r\n" before appending DA data, so that inventory service can import the scan file correctly.
- ManagedPlanet.DTS.Functions.dll
- 370979 When cleaning up a user in agentless scanning, the user profile should be deleted
- Fix an issue where agentless scanning was leaving temporary users accounts on the box. They should now clean up before creating a new one. There should only be one account at any given time.
- SelfElectController.exe
- 371967 Some inventory data is garbled
- -
- 372188 Inventory scanner failing on WMIRulesScan.dat
- -
- ldiscn32.exe
- 379822 Install Date in Inventory doesn't match Add/Remove programs
- Install date in inventory should now match the install date in Add/Remove Programs for Windows
- 382671 When running an Inventory scan on an HP system that has HP Connection Manager installed you may receive an application crash of GetCMSettings.exe
- The HP.Mobile.dll has changed so that when running inventory scan on HP device (with Connection Manager), a crash will happen. Catch the exception to let the inventory scan run without crash.
- LDHPGetCMSettings.dll
- 392812 Inventory scan updates Device ID out of order
- Fixed logic/timing problem with external scanners that could undo the logic of a client changing the device id when requested to by the core.
- ldisnc32.exe
Linux - Unix
- 326614 Inventory service does not seem to be using 'Use connection address' in some cases
- Send inventory scans to a newer core web service.
- map-sender
- 330222 LDMS 2016 SU4 Repair task immediately reports success
- -
- fixed in vulscan content
- 351046 Unix inventory db file (/opt/landesk/ldclient.db) can growing to a large size
- The two xml files control the inventory process and were updated to remove the filescan portion of the inventory. This information is not sent to the Core and is internal to the agent only. map-scraper will now vacuum the database if the number of free
- /opt/landesk/etc/ldconfig.xml /opt/landesk/jobs/ldiscan_daily.xml /opt/landesk/bin/map-scraper
Linux-Unix
- 385463 ldcron-sdclean.xml not working to delete files in the sdcache directory
- -
Mac
- 340438 Unlocalized string 'x minutes x seconds from now' appears in Mac agent when delay to download or install package.
- Times are now localized in the software distribution defer dialog.
- ldReboot.app
- 360564 Mac mdm enrollement app is not yet available in the App Store
- The macOS MDM enrollment application can be found on the core in LANDesk/ManagementStuie/Install/Mac.
- Mac MDM Enroller
- 362527 Mac Agent version number is reported as 10.0.0.{build number}
- Updated the version info for the Mac Agent - 10.1.1.{buildnumber}. After SU1 release, will update to 10.1.2.{buildnumber} for future updates.
- all of Mac Agent
Mobility
- 277348 Unlocalized error message 'Error sending notification' appear in the request operation status
- Added localization to enbale error message to display correctly in all languages.
- enustsds.dll
- 358074 GetCompany from identifier exception on iosEnrollment
- -
- 360179 MDM notification failures occur when LANDESK.MDM.Services.dll is assembly loaded concurrently
- The code to load the MDM Services was not thread safe. This has been fixed.
- core.secure
- 360585 Mobile compliance email settings shows wrong error if account isn't an email address
- Add a judgment to verify the format of Email Address when click "Verify" and pop up "Email Address Format Invalid" when the verification failed and change the label "Account" into "Email Address".
- EmailConfig.cs EmailConfig.Designer.cs EmailConifg.resx resources.resx
- 360812 Android Mobility info not updated properly after changes are saved.
- Console now communicates that the GCM settings have changed to the Core and the Core reloads it in the same process space under IIS. No IIS restart is required.
- 361879 iOS Distribution: Universal apps may not deploy to some devices a device
- We were not taking iPod devices into account when fetching software distribution tasks for devices. This has been fixed.
- 362146 Add nolock code to MDM service for SQL join statements
- Added "nolock" directive to database queries with joins to avoid dead locks under load.
Mobility - MDM
- 277348 Unlocalized error message 'Error sending notification' appear in the request operation status.
- Added localization to enbale error message to display correctly in all languages.
- enustsds.dll
Patch Manager
- 349965 Link in "Acknowledge blocked application content" DOC-2294 is broken, the document no longer exists
- Updated the URL for Blocked Applications.
- PatchBiz.dll
- 354740 IO exception in WSVulnerabilityCore when access Ldlogon\selfupdate
- If path does not exist, it will return null.
- patchbiz.dll
- 355404 Security activity window not scoping devices properly
- Reason: From 10.0 a new combo box for scope is added to the Security Activity form, but wasn't updated correctly. Fixed this to get selected scope(s) to query DB.
- PatchManagement.dll PathcBiz.dll
- 356715 The security scan finished with result of ' Can't load "additional behavior" applier dll'
- Fix so that it can run without some windows updates. Static link libraries to avoid issue.
- various
- 356715 The security scan finished with result of ' Can't load "additional behavior" applier dll'
- Fix so that it can run without some windows updates. Static link liberaries to avoid issue.
- various
- 363837 Clarifying the patch maintenance window description text
- changed to 'patch install' to clarify what maintenance window is for.
- PatchManagement.dll
- 371518 Intermittent authentication failures with Enhanced Security showing Certificate failures in the Security and Patch info for multiple Devices
- Fixed an intermittent "Certificate-based authentication failed" error.
- 390595 Agent setting options persistent in the DB and XML
- Removed maintenance window options if auto reboot is disabled.
- PatchManagement.dll
- 390729 Non-volatile "vulscan /continue" task may exist in local scheduler
- Initialize Ltapi before calling LTAPIDropTask so that local scheduler vulscan continue task will be removed.
- vulscan.dll
Provisioning
- 356716 Starting provisioning tasks using anonymous authentication may not run template until next boot
- Fix for anonymously selected tasks not starting immediately, requiring a second reboot to start. They will now start immediately.
- 356716 Starting provisioning tasks using anonymous authentication doesn't run template until next boot
- Fix for anonymously selected tasks not starting immediately, requiring a second reboot to start. They will now start immediately.
- 359675 ldprovision.exe Application Error when provisioning QSR Automations DX-3000 (POS)
- Fixed an issue where certain hardware without a serial number was causing an exception when querying for the serial number in WMI. Provisioning now handles the case and will not crash.
- 361526 When specified file is not found, the Execute File Action will still return a successful status
- Fixed a problem where the execute file action in provisioning would report success when the path to the file was not found on the client. It now correctly reports failure for these cases.
- executehandler.exe
- 363371 Unable to add device to baremetal if the user connected has a space in his username
- Fixed an issue where baremetal scans would not work if the connected user has a space in his or her username
- landesk.provisioning.business.dll
- 364546 Pxe service doesn't get updated block size settings
- Fixed an issue with a race condition when a PXE rep is initially started on a subnet. It may not get any subnet settings changed on the core.
- 367961 Unable to create HII database with new NVIDIA display drivers - error "Index was outside the bounds of the array"
- Fixed an issue causing HII giving an index out of bounds error when processing certain driver inf files.
- landesk.provisioning.business.dll
- 376670 Provisioning devices from Bare Metal with Serial Number as the unique identifier may fail
- Fix an issue where bare metal records with serial numbers would not get approved certificates during the provisioning process.
- gatewaybiz.dll ldprovision.exe barescan.exe
- 381026 SDCLIENT attempts to update status file that does not exist and generates fail parsing errors
- If provisioning job, do not update status file for download percentage.
- sdclientlib.dll
- 385276 Provisioning Unzip File Action not working in 2016.3
- Fixed an issue where the action would appear to succeed, but would not create nested folders.
- unziphandler.exe
Reboot Settings
- 308562 Auto reboot may hang on Citrix and Terminal Services servers
- If multiple users are logged on to a server and one of them locks his machine, the machine state may be changed to lock and automatic timeout calculation may be suspended. when it happens, a message will be prompted to the user that the automatic reboot m
- vulscan.dll enuLdreboot.dll ldreboot.exe
- 349898 "BPOS" POS management software malfunctions when LDREBOOT.EXE process is running.
- vulscan /rebootwithui will not launch ldreboot if prompt is disabled. local scheduler reboot tasks will take care of auto-rebooting if prompt is disabled.
- vulscan.dll
- 349898 "BPOS" POS management software malfunctions when LDREBOOT.EXE process is running.
- vulscan /rebootwithui will not launch ldreboot if prompt is disabled. local scheduler reboot tasks will take care of auto-rebooting if prompt is disabled.
- vulscan.dll
Remote Control
- 259983 LDMS: Core Logs Incomplete for HTML Remote Control
- reason: issuer send stop event msg to core 2 times under certain condition. fix: remove redundant sending stop event.
- issuser.exe
- 302759 A client without the Remote Control component installed shows up in inventory as having Remote Control installed
- -
- ldiscn32.exe
- 320514 Send Ctrl+Alt+Delete does not work in RC over Windows XP and Server 2003
- -
- 330183 legacy remote control: files can still be copied from outside machine and pasted to the remoted machine, even if the file transfer has been disabled
- Reason: the clipboard is not disabled when file transfer is not allowed. Fix: Disable clipboard when file transfer is not allowed.
- isscntr.exe
- 333228 Remote Control Mirror Driver Not Compatible with Windows 10 Anniversary Edition
- the reason: the device is not compatible with Windows 10 fix: not install mirror driver on win 8 and 10 devices
- PanelManager.dll
- 336921 Remote Control vulnerability: CWE-79 Improper Neutralization of Input During Web Page Generation
- Reason: the vulnerability of ZeroClipboard. Fix: change to use the new version.
- ZeroClipboard.js ZeroClipboard.swf filetransfer.js
- 336958 Remote control cannot use a run command more than 20 characters for the machine\username
- Reason: The command line is not parsed correctly. Fix: Parse the command line correctly.
- rcgui.exe
- 356579 HTML 5 RC is vulnerable to click jacking
- the resean: Clickjacking fix: added X-FRAME-OPTIONS into response header
- issuser.exe
- 356736 HTML RC via CSA may sometimes not work showing error 500 and can't connect to RC
- Occasionally the HTML remote viewer would show the user a 500 error when attempting to connect to a remote machine. This change fixes that problem.
- issuser.exe
- 356736 HTML RC via CSA may not work, presenting error 500 and failure to connect to RC
- Occasionally the HTML remote viewer would show the user a 500 error when attempting to connect to a remote machine. This change fixes that problem.
- issuser.exe
- 370007 PCI Scan fails due to the remote control service allowing block cipher algorithms with a block size of 64 bits (like DES and 3DES)
- HTML remote control server updated to not allow 64-bit or lower block ciphers.
- issuser.exe
- 376494 LDMS - HTML5 Remote Control - cannot transfer specials characters from German keyboard of supporter to supported host during remote session
- the reason: there is a mistake in the code for specail characters(:\) in German OS. fix: remove the if condition (!e.shiftkey && !e.ctrlkey && !e.atlkey) in the related JS code. PS: In enUS windows OS, we can't input special characters for German, such a
- rcwebroot
- 381221 OpenSSL vulnerability "SSL-Death-Alert" on clients on port 4343
- OpenSSL vulnerability "SSL-Death-Alert" mitigated with updated openssl release.
- issuser.exe
Reporting
- 335771 Some reports may not show the full virus name
- The self-adaption of the graph's size has a limitation. If the virus name is very long that even if the graph meet it's minimum limitation, the space is still not enough to show the full virus name, a truncation will happen. Change the type of the graph f
- RemovedViruses.rdlx
- 335771 Some reports does not show the full virus name
- The self-adaption of the graph's size has a limitation. If the virus name is very long that even if the graph meet it's minimum limitation, the space is still not enough to show the full virus name, a truncation will happen. Change the type of the graph f
- RemovedViruses.rdlx
Rollout Projects
- 359202 Rollout Project - Date/time step requires approval
- If not approve required, do not send approval email.
- WorkflowBiz.dll
Software Distribution
- 312458 Changes to Distribution Package Movement options
- Allow dragging packages from All packages to My packages and Public packages. Bundles should still be edited from the bundle properties.
- package.data.sll
- 331040 Invalid URI: The hostname could not be parsed error after exporting packages
- After export, replace %corename% with real core name.
- package.data.dll
- 335937 Reboot action may not work when using dependent packages
- Do not allow removing from grandchild. If expand child node for action, remove place holder and create child's dependent packages.
- LANDesk.ManagementSuite.SoftwareDistribution.WinUI.dll
- 350628 Link packages that are deployed while nobody is logged in place icon files in the wrong directory and are not functional
- If machine targeted call SHGetFolderPath to get well known folder path. Call GetLoggedOnUserSpecialDir only for user targeted.
- sdclientlib.dll
- 356336 Accelerated push only does a few machines at a time
- Increase callback queue, return different value in case the queue is full that will give caller to implement retry logic.
- PDS2Dis_x64.dll LANDesk.ManagementSuite.SoftwareDistribution.Win32.dll
- 356732 Console.exe log error: INFO 24456:Main Thread RollingLog : Failed to set overrides. There is an error in XML document (0, 0)
- Check settings document or null OR empty string
- package.data.dll
- 356907 Software distribution may be unable to push a deployment if a reboot is pending
- Added a new setting to the Distribution only panel to ignore pending reboot during an install. Also check and obey the ignore pending reboot flag in sdclient.
- PatchManagement.dll, sdclientlib.dll
- 356907 Software distribution unable to push a deployment if a reboot is pending
- Added a new setting to the Distribution only panel to ignore pending reboot during an install. Also check and obey the ignore pending reboot flag in sdclient.
- PatchManagement.dll, sdclientlib.dll
- 358554 Scheduled tasks in Remote Windows console does not reflect correct scope of the user logged in
- Pass console user id to SetStartNow for scope user id in task
- LANDesk.ManagementSuite.SoftwareDistribution.Business.dll LANDesk.ManagementSuite.SoftwareDistribution.WinUI.dll
- 359309 Resident agent verify signature can take up to 60 seconds when no sig file accompanies sdclient
- Wait heartbeat check response of resident agent for longer time in case some device slow on verify embed signature
- lclxclnt.dll
- 371495 Dependant Packages display issue after saving configuration
- Only allow one level dependent operation for direct dependent package.
- LANDesk.ManagementSuite.SoftwareDistribution.WinUI.dll
- 371496 Dependant Packages delete Reboot does not work
- -
- 371541 Empty/Corrupted downloadermulticastconf.xml does not get updated when vulscan runs
- Modified the multicast service to check the downloadermulticastconf.xml file every 10 minutes checking for change in size or less than 1k in size. If that happens, then it creates a new config if necessary from defaults and writes in the multicast port.
- tmcdll.dll lddwnld.dll
- 373607 Failure to create Repair task after upgrade to 2016.3
- Handle task option wakeMachine changed from bool to enumerate WakeupType.
- LANDesk.ManagementSuite.SoftwareDistribution.Business.dll LANDesk.ManagementSuite.Upgrade.Database.dll
- 377717 Owner does not change if distribution package is copied, only when it is moved
- Save user id on cloned package.
- LANDesk.ManagementSuite.SoftwareDistribution.Business.dll
- 382509 ldapwhoami fails policysync on machine not joined to domain with no user logged in.
- If computer not in domain, return no error on ldapwhoami failure.
- localrequest.dll
- 385461 SDMCache does not recognize manually added files
- Modified the multicast service to check for unknown file when loaded and also when other directory cleanup occurs.
- tmcdll.dll
UDD-XDD
- 290719 In LDMS, a managed device may show in UDD
- Previously xddfiles2db would enable some logic if a file named XDDFiles2DB_Ignore_Managed was present. This logic would check to see if the MAC addr of the device found was already a managed device. If so, it would not add it to the unmanagednodes table.
- ldinv32.exe
- 290719 In LDMS, a managed device may appear in UDD
- Previously xddfiles2db would enable some logic if a file named XDDFiles2DB_Ignore_Managed was present. This logic would check to see if the MAC addr of the device found was already a managed device. If so, it would not add it to the unmanagednodes table.
- ldinv32.exe