Infoblox SaaS Release Notes
Infoblox frequently introduces new features and enhancements for its platform and services. You can find details about these updates in the release notes and What’s New. The release notes below list product and service updates in descending chronological order.
For information about service statuses as well as planned and unplanned events that might affect your services, access the Infoblox Status page at https://status.infoblox.com.
Release Date | Product | Changes |
---|---|---|
1/31/2025 | Infoblox Threat Defense | Enhancement: Infoblox Threat Defense application filtering now includes two new generative AI chatbots: DeepSeek and Qwen.You can track the usage of these newly added chatbots by navigating to (Monitor > Reports > Security > Application Discovery) under the Applications - Generative AI category. Using application filters, you can assign an application a status of Approved or Unapproved based on whether Application Discovery indicates it is safe or unsafe. An application’s status can be revised and updated at any time. For information, see Creating Application Filters. |
1/30/2025 | Universal DDI | Infoblox Universal Asset Insights introduces the following enhancements:
|
1/27/2025 | Universal DDI Infoblox Threat Defense | Infoblox will update NIOS-X servers components (formerly on-prem hosts) starting January 27, 2025. Infoblox will update NIOS-X servers components (formerly on-prem hosts) starting January 27, 2025 to safeguard the servers. |
1/24/2025 | Infoblox Threat Defense | Enhancement: Infoblox Endpoint has released an updated version of its endpoint app for Android devices, now available on the Google Play Store.The latest update addresses minor issues when used with Android 14 devices. For information, see Managing Mobile Endpoint. |
1/17/2025 | Universal DDI | Universal DDI now supports managing Grid primaries and Grid secondaries of authoritative zones in a NIOS Grid via the Infoblox Portal.Universal DDI allows you to manage NIOS Grid primaries and Grid secondaries of authoritative zones through the Infoblox Portal. Any changes made to NIOS authoritative zones in the Infoblox Portal are synced to NIOS, and updates to authoritative zones in NIOS are immediately reflected in the Infoblox Portal. For more information, see Creating a Primary Zone under a NIOS View. Universal DDI now supports updating certain fields in a NIOS-managed DHCP Config Profiles via the Infoblox Portal.Universal DDI allows you to update specific fields in a NIOS-managed DHCP config profile through the Infoblox Portal. Changes to these fields are immediately reflected in NIOS. For a list of modifiable fields, see Modifying a NIOS-managed DHCP Config Profile. |
1/15/2025 | Universal DDI | NIOS-X as a Service now populates the location automatically when specifying the postal code for access location.When configuring an access location in NIOS-X as a Service, you can specify the postal code, and the location will be automatically displayed. For more information, see Creating As-a-Service. NIOS-X as a Service now allows applying tags for access locations.You can now apply tags when creating an access location in NIOS-X as a Service. There is a limit of 50 tags per access location. For more information, see Creating As-a-Service. |
1/13/2025 | Infoblox Threat Defense | Enhancement: Infoblox introduces an event selection field option for SOC Insights logs exported to Data Connector.This update features a new traffic flow widget in Data Connector, enabling users to select SOC Insights fields for HTTP destinations in non-DNS logs. For information, see Creating Traffic Flows and Log Source Configuration Export Options. For more information, see Creating Traffic Flows and Log Source Configuration Export Options. |
1/9/2025 | Universal DDI | Enhancement: Infoblox now supports granular selection for AWS and GCP when configuring Universal Asset Insights.Universal DDI supports granular selection for AWS (Organizational Units/Accounts) and GCP (Folders/Projects) when creating a network discovery configuration. You can select Organizational Units or Accounts for AWS and Folders or Projects for GCP. For more information, see AWS - Organizational Units/Accounts and GCP - Folders/Projects. |
1/08/2025 | Universal DDI Infoblox Threat Defense | Announcement: Infoblox has planned a deployment for additional security mechanisms on Thursday, January 23 at 6 PM PST to protect the Infoblox Portal.Infoblox is deploying additional security mechanisms to protect the Infoblox Portal. During the deployment update on Thursday, January 23rd at 6 PM PST, the Infoblox Portal will remain available, and core services are unlikely to be impacted. |
12/11/2024 | Universal DDI Infoblox Threat Defense | Enhancement: Infoblox now provides a new configuration landing page showing data for key services based on entitlement.When users log on to the Infoblox Portal, the configuration landing page displays data for key services based on license entitlements. The Infoblox Portal now displays the “What’s New” content in a new modal dialog.This new dialog can be hidden by selecting the “Do not show me again” checkbox. |
12/10/2024 | Universal DDI Infoblox Threat Defense | Enhancement: Infoblox bare-metal deployment now supports Red Hat version 9.5.For more information, see Bare-Metal Deployment. |
11/28/2024 | Universal DDI | Enhancement: Infoblox has launched the Network Discovery Blackout feature for Network Insight, allowing users to temporarily pause discovery operations according to a specified schedule.When setting up the discovery service, you can now specify a duration to pause the discovery process. During this blackout period, no new discovery actions will occur on your network. For more information, see Creating Discovery - Blackout. |
11/25/2024 | Infoblox Threat Defense | Enhancement: This enhancement allows users to input domains using Unicode characters in both custom lists and internal domain lists. For information, see Creating Custom Lists and Creating an Internal Domain. Infoblox Threat Defense introduces a feedback loop for Threat Intelligence (TI) Detectors. This feature enables users to activate, deactivate, and remove TI domains from their custom lists. For information, see Custom Lists. |
11/22/2024 | Infoblox Threat Defense | Enhancement: Infoblox Threat Defense enhances the Application Discovery feature to improve the detection and blocking of generative AI applications. Infoblox is excited to announce significant enhancements to our Application Discovery feature within Threat Defense Advanced, now with improved capabilities to detect and block applications used for generative AI. Recognizing the high risk of data loss associated with unmanaged generative AI, these updates are designed to provide organizations with additional protection. The new functionality distinguishes between consumer and enterprise versions of select generative AI applications, allowing for approved use while blocking unmanaged consumer versions. This update helps you leverage the benefits of generative AI securely and efficiently. These enhancements underscore Infoblox’s commitment to continuous innovation and delivering increased value to our customers. By integrating these advanced detection and blocking capabilities, organizations can mitigate the risks associated with shadow IT and data exfiltration, ensuring compliance and enhancing overall security posture. Customers will benefit from improved visibility and control over application usage, empowering them to make informed decisions and maintain a secure, compliant environment. You can find these detections in the Infoblox Platform (Monitor > Reports > Security > Application Discovery), under the Applications - Generative AI category. This category was previously named AI Chatbots. For information, see Creating Application Filters. |
11/22/2024 | Universal DDI | Enhancement: NIOS-X as a Service provides the following enhancements: sorting and filtering data, auto-focusing on a particular service, and troubleshooting DNS issues through APIs.
|
11/19/2024 | Universal DDI | Enhancement: Universal DDI now supports updating DHCP objects imported from NIOS.Universal DDI enables updates to DHCP objects imported from NIOS. Any changes made to NIOS objects in the Infoblox Portal are instantly reflected in NIOS. For more information, see NIOS Objects Supported for Sync. Universal DDI now supports the wildcard character for MAC addresses in hardware filters.Universal DDI supports using the wildcard character (*) to add or update MAC addresses in hardware filters. For more information, see Creating IPv4 Hardware Filters and Creating an IPv4 MAC Address in Large Selection Filter. Universal DDI now supports DHCP objects in access views.Universal DDI now supports managing DHCP objects within access views, alongside DNS and IPAM objects. For more information, see Supported Objects for Access Views. |
11/14/2024 | Infoblox Endpoint | Enhancement: Infoblox Endpoint version 2.4.20 is now available for Windows and macOS. This update introduces support for macOS Sequoia 15.0.1 and above, along with stability improvements and fixes for minor issues on both
Windows and macOS. For more information about Infoblox Endpoint, see Managing BloxOne Endpoint. |
11/12/2024 | NIOS-X as a Service Universal DDI | Feature and Enhancements: NIOS-X as a Service now provides an option for users to select a Recommended Point of Presence (PoP). NIOS-X as a Service introduces a new check box, “Use Recommended Location”, which, when selected, automatically chooses the most optimal Point of Presence (PoP). This feature is useful for configuring geographically distributed locations, as it calculates the optimal PoP for a quick response. By selecting this option, users can avoid manual calculations and let NIOS-X as a Service choose the PoP automatically. For more information see /wiki/spaces/ddiadminguidensdraft/pages/572228399. NIOS-X as a Service now allows users to modify custom network attributes for an existing service configuration. NIOS-X as a Service now allows users to modify Custom Network Attributes such as KeyID, FQDN, or Email. Users can update these attributes without the need to reconfigure the entire service. For more information, see /wiki/spaces/ddiadminguidensdraft/pages/808714280. NIOS-X as a Service allows users to clear the DNS cache to resolve DNS issues. The Clear DNS Cache option has been added to the user interface, enabling users to clear the cache for each service deployment to resolve any DNS issues. For more information, see /wiki/spaces/ddiadminguidensdraft/pages/1005223966. NIOS-X as a Service allows users to clear leases to make them available for reuse. Users can now clear active and abandoned leases through the Infoblox Portal. When users clear an active or abandoned lease, its IP address becomes available for reuse. For more information, see /wiki/spaces/ddiadminguidensdraft/pages/1005223979. NIOS-X as a Service now helps route site response traffic to the IPSec tunnel. The Neighbor IP feature ensures that organization site response traffic is routed unambiguously to the IPSec tunnel. For more information, see /wiki/spaces/ddiadminguidensdraft/pages/572228399. Universal DDI supports forwarding DNS queries between AWS and Azure cloud providers. In addition to the existing Outbound Cloud Forwarder, users can configure an inbound cloud forwarder to forward DNS queries from one cloud provider to another. For example, users can forward DNS queries from AWS to Azure and vice versa. For more information, see /wiki/spaces/ddiadminguidensdraft/pages/611943858. |
11/08/2024 | Infoblox Threat Defense | Infoblox Dossier now treats DNS lame delegation as a vulnerability. Lame delegation occurs when one or more delegated nameservers fail to provide authoritative DNS information. When a lame delegation is detected on the queried domain, Dossier highlights this vulnerability along with the level at which this was detected, allowing customers to take appropriate action on the affected domain and nameserver. For information, see Dossier Summary Report. |
11/07/2024 | Infoblox Universal DDI | Feature: Universal DDI now provides the option to configure an SNMP health check monitor for DNS Traffic Control. In addition to the existing ICMP, TCP, and HTTP monitors, Universal DDI now allows users to configure an SNMP health check monitor for DNS traffic control. For more information, see /wiki/spaces/ddiadminguidensdraft/pages/996900867. Infoblox supports the discovery of endpoints connected to a DNS cloud forwarder configured in the Infoblox Portal. Users can now enable or disable the discovery of cloud forwarder endpoints when configuring Network Discovery for AWS or Azure. For more information, see /wiki/spaces/ddiadminguidensdraft/pages/976093261. |
10/23/2024 | Infoblox Universal DDI | Enhancement: The Infoblox Portal now displays status messages for the NIOS Grid Manager.New status messages related to the NIOS Grid Manager are now available in the Monitor > Logs > Service Logs tab on the Infoblox Portal. For more information on the status messages, see Viewing Service Logs for NIOS. |
10/21/2024 | Infoblox Universal DDI Infoblox Threat Defense | Enhancement:Infoblox now allows users to change the default password for the Device UI when configuring NIOS-X physical servers. This can be done through the Infoblox Portal, Device UI, or Debug CLI.When deploying NIOS-X servers, Infoblox initially uses a default username and password for accessing the Device UI. Users can now change this default password via the Infoblox Portal, Device UI, or Debug CLI. Once changed, the new password will be synchronized across the console and Device UI, allowing for SSH and HTTPS access. |
10/18/2024 | Infoblox Dossier | Enhancement: Infoblox Dossier now features streamlined false-positive reporting.The Infoblox Dossier feedback functionality has been updated to direct critical and blocking issues to the Support Portal for ticket creation and to the Infoblox support team for assistance with Service-Level Agreement (SLA) compliance. This functionality allows users to submit feedback on the following indicators: False Positive, False Negative, and Content Categorization. For information, see Dossier Threat Research Feedback. |
10/15/2024 | Universal DDI | Feature: Universal DDI introduces Passive Discovery, leveraging data from DHCP logs and Infoblox-managed endpoints to enhance visibility into your network devices.Using the ingested data, Passive Discovery, in conjunction with SOC Insights, generates reports that you can view on the SOC Insights Assets tab or the Monitor > Assets page of the Infoblox Portal, depending on your subscription. |
10/14/2024 | Infoblox Data Connector (EU only) | Enhancement: Data Connector updates have been deployed, aimed at enhancing capabilities and improving integration.The following Data Connector enhancements have been deployed:
For additional information, see Data Connector. |
10/11/2024 | Universal DDI | Feature: Universal DDI introduces the ability to view separate DHCP status for IPv4 and IPv6 networksYou can now view the DHCP status separately for IPv4 and IPv6 networks. This feature will be functional once you update to the latest NIOS-X DHCP Server, version 4.3.1.6. |
10/02/2024 | Universal DDI | Enhancement: Universal Asset Insights introduces the ability to enable or disable IPAM Discovery when configuring Cloud Service Providers.When configuring Network Discovery for cloud service providers like AWS, Azure, and GCP, you can enable or disable sync for IPAM assets. When enabled, the IP address information of discovered assets will be synchronized with Universal IPAM. For more information, see AWS - Destination, Azure - Destination, GCP - Destination. |
9/24/2024 | Infoblox Data Connector | Enhancement: Data Connector introduces HTTP Destination support for Microsoft Sentinel.This enhancement facilitates the setup of Microsoft Sentinel as a destination in the Infoblox Platform. For more information, see Data Connector. |
9/18/2024 | Universal DDI | Enhancement: Universal DDI introduces service logs for Cloud Forwarders configured on the Infoblox Portal.Universal DDI now shows service logs for Cloud Forwarders, which support AWS, Azure, and GCP. For information, see Viewing Service Logs. |
9/6/2024 | Infoblox Endpoint | Enhancement: Infoblox Endpoint releases version 2.4.16 for Windows and macOSThis release addresses an issue with statically assigned DNS servers on network interfaces. For more information about BloxOne Endpoint, see Managing Endpoint. |
9/5/2024 | Infoblox Universal DDI Infoblox Threat Defense | Features and Enhancements: Infoblox is pleased to announce a significant update to the Infoblox Portal (portal.infoblox.com), featuring a modern UX refresh designed to enhance your experience and productivity. (UI updates will be available for the EU Region users in October)This update introduces: Optimized Navigation Experience: Our redesigned interface offers more intuitive and seamless navigation, allowing you to find what you need faster and more efficiently through the following enhancements:
Enhanced Server and Service Deployment Management Workflows:
Increased Visibility to Critical Metrics: Stay informed on key performance indicators with our new dashboards and KPIs, designed to provide clear and actionable insights:
|
9/5/2024 | Infoblox Universal DDI | Enhancement: Provide Tailored User Access with Access ViewsAccess Views enables users to set custom fine-grained access rules for specified users or groups and associated DDI resources. Support for Read and Write Google Cloud DNS dataInfoblox Portal now supports the ability to read and write Google Cloud DNS zones and resource records. For more information, see Google Cloud Platform Integration. |
8/29/2024 | BloxOne Data Connector | Enhancement: Data Connector introduces BloxOne Cloud-to-Cloud SIEMs, emphasizing fully managed services with seamless integrations with third-party SaaS services.Key enhancements in this release:
For more information, see Data Connector and Infoblox Ecosystem. |
8/29/2024 | Infoblox Ecosystem | Enhancement:Infoblox Ecosystem now offers support for SOAR Light integrations running in BloxOne Cloud, enabling the automation of Cloud-to-Cloud workflows.Users have the ability to configure automated workflows, with service instance options specifically for setting up cloud-to-cloud flows. For more information, see Data Connector and Infoblox Ecosystem. |
8/21/2024 | BloxOne DNS BloxOne DHCP | Enhancement: BloxOne DDI introduces DHCP subnet profiles, enabling users to configure multiple subnets simultaneously.BloxOne DDI now supports the creation of DHCP subnet profiles, which can be configured with any required settings. These profiles can then be applied to multiple subnets simultaneously, streamlining the configuration process. For more information, see Configuring DHCP Subnet Profiles. |
8/19/2024 | BloxOne Threat Defense | Enhancement: To enhance Threat Defense services, Infoblox has launched a new second-level infobloxtd.com domain along with additional IP addresses, 103.80.6.120 and 52.119.41.120.Infoblox strongly recommends that all customers update their network configuration to enable access to the new IP addresses, the second-level domain, and all its subdomains. Infoblox plans to launch services utilizing these IP addresses and hostnames under infobloxtd.com by mid-September 2024. |
8/19/2024 | BloxOne Data Connector | Enhancement:Data Connector introduces additional event field options for Atlas Notification settings.This update introduces a refined traffic flow widget in the Cloud Services Portal that allows users to choose subtypes and event fields seamlessly. For information, see Creating Traffic Flows. |
8/14/2024 | BloxOne Data Connector | Enhancement:Data Connector introduces additional event field options for Audit Log settings.This update introduces a refined traffic flow widget in the Cloud Services Portal that allows users to choose subtypes and event fields seamlessly. For information, see Creating Traffic Flows. |
8/9/2024 | BloxOne DDI | Enhancement: BloxOne DDI allows setting per-zone limits for rdatasets and rrtypes to prevent database query processing from slowing down.An |
8/5/2024 | Infoblox Ecosystem | Enhancement: Infoblox launches the Infoblox Ecosystem Program.This program includes a self-service portal, offering certified, out-of-the-box integrations with leading technology providers. The program is powered by Automations, an event-driven automation framework designed to streamline integration development. These integrations have undergone rigorous testing and validation to ensure compatibility and support by Infoblox. The program aims to help NetOps and SecOps teams automate workflows, enhance security, and improve collaboration across on-premises, hybrid, and multi-cloud environments. For information, see Ecosystem Portal. |
8/2/2024 | BloxOne Data Connector | Enhancement: Data Connector now supports sending logs to an HTTP destination in Splunk CIM data format.When configuring a Data Connector traffic flow, you now have the option to choose Splunk CIM as the log message format when you configure HTTP as the destination. For information, see Setting Up HTTP. |
8/2/2024 | BloxOne Mobile Endpoint | Enhancement: BloxOne Threat Defense releases BloxOne Mobile Endpoint for iOS without VPN dependency.To improve compatibility with VPN solutions, including on-demand VPN, BloxOne Mobile Endpoint for iOS will be able to use the iOS native DNS proxy framework to intercept all DNS traffic. Requirements: iOS/iPadOS 14.x and later, deployment by an MDM.For more information about BloxOne Mobile Endpoint, see Managing BloxOne Mobile Endpoint. |
8/1/2024 | BloxOne Data Connector | Enhancement:Infoblox introduces event selection field options for BloxOne Threat Defense DNS Query/Response log, BloxOne Threat Defense Policy Hits log, BloxOne DDI DNS Query/Response log, and Service Logs exported by Data ConnectorThis update introduces a refined traffic flow widget in the Cloud Services Portal that allows users to choose subtypes and event fields seamlessly. For information, see see Creating Traffic Flows and Event Field Logs. |
7/29/2024 | BloxOne DDI BloxOne ThreatDefense | Enhancement: BloxOne DDI introduces service logs for Cloud Discovery.BloxOne DDI now shows service logs for Cloud Discovery, which includes AWS and Azure. For information, see Viewing Service Logs. |
7/27/2024 | BloxOne DDI | Enhancement: The BloxOne DDI DNS service addresses the following vulnerabilities: CVE-2024-4076, CVE-2024-1737, CVE-2024-0760, CVE-2024-1975
|
7/26/2024 | BloxOne Endpoint | Enhancement: BloxOne Endpoint releases version 1.0.9 for Linux Ubuntu 22.This release includes stability improvements. For more information about BloxOne Endpoint, see Managing Endpoint. |
7/24/2024 | Cloud Services Portal | Enhancement: To enhance security, the host API keys have been deprecated. However, users can still access the BloxOne APIs using the service API keys.For information about service API keys, see Configuring Service API Keys. |
7/23/2024 | BloxOne Endpoint | Enhancement: BloxOne Endpoint releases version 2.4.10 for Windows and macOS.This release includes stability improvements and resolves minor issues. For more information about BloxOne Endpoint, see Managing Endpoint. |
7/19/2024 | BloxOne DNS | Features and Enhancements: NIOS Grid Connector now syncs Forward Name Server Group, and Name Server Group Association to the Cloud Services Portal.NIOS Grid Connector has been enhanced to sync additional objects from NIOS to the Cloud Services Portal such as Forward Name Server Group and Name Server Group Association. For more information, see Objects Imported from NIOS. BloxOne DDI supports configuring exceptions during DNSSEC validation.For more information, see Enabling Signature Validation. DNS Traffic Control supports additional record types for load balancing.DNS Traffic Control now supports SRV, SVCB (Type64), and HTTPS (Type65) for load balancing. For more information, see Configuring DNS Traffic Control. |
7/12/2024 | Cloud Services Portal | Enhancement: BloxOne introduces tagging enhancements that restrict tag values displayed during tag addition, application, and filtering to those currently assigned to objects. Additionally, predefined tag values can now be defined through restricted tags, instead of freeform tags. To explicitly add values to a freeform tag, convert the tag to a restricted tag first. For more information, see Managing Tags. |
6/21/2024 | Cloud Services Portal | Enhancement: BloxOne enhances the performance and usability of Global Search on the Cloud Services Portal, making it easier and faster for users to find what they need. Global search includes the following enhancements:
|
6/20/2024 | BloxOne DNS | Enhancement: The BloxOne DDI DNS service addresses the following vulnerabilities: CVE-2023-48795 and CVE-2023-44487.
|
5/27/2024 | BloxOne Endpoint | Enhancement: BloxOne Endpoint releases version 2.4.9 for Windows and MacOS. This release includes stability improvements and resolves minor issues. For information, see Managing BloxOne Endpoint. |
5/9/2024 | BloxOne Threat Defense | Feature and Enhancement: BloxOne Threat Defense introduces a new RPZ feed structure that provides simplicity and user-friendly feed names. BloxOne Threat Defense for NIOS now includes a new RPZ feed structure that provides simplicity, along with user friendly names, allowing users to set the correct policies and address the growing number of available RPZs over time. With the new structure, customers can configure their policy action correctly per their risk posture and have an “at a glance” understanding of how their network is protected. This requires removing the prior configured RPZ feeds and updating them to the consolidated new RPZs. The old RPZs will be supported until December 2024, giving time for transition to the new RPZ. The old RPZs will be deprecated after December 2024. Beyond the current RPZ updates for OnPrem, the feeds on the cloud will also be updated to reflect the same feed structure around July 2024. Configuration Guide: https://docs.infoblox.com/space/BloxOneThreatDefense/622493764/Feed+Revamp+for+NIOS. |
5/3/2024 | BloxOne DDI | Enhancement: High Availability now supports an IPv6 Service Instance for Active/Active and Active/Passive configurations. High availability now supports an IPv6 subnet Service Instance in addition to the existing IPv4. The IPv6 support is applicable to Active/Active and Active/Passive configurations. For more information, see Configuring HA Groups. DNS Traffic Control now allows HTTP/HTTPs Response control health checks to search strings in the header, body, and create regular expressions.BloxOne DDI now allows you to configure HTTP/HTTPs response control health checks by searching for a string in header, body, header/body. You can also create regular expressions for the header. For more information, see Creating HTTP Health Checks. Additional objects can now be synced from NIOS to BloxOne DDI through the NIOS Grid Connector.Additional IPAM and DNS objects are now sent from NIOS to BloxOne DDI, when you enable the NIOS Grid Connector. For more information, see Enabling the NIOS Grid Connector Service. |
5/1/2024 | BloxOne Threat Defense | Enhancement: The default time filter in BloxOne Threat Defense reports has been updated from one hour to 24 hours. The default time filter change applies to the following reports: DNS Activity, Security Activity, Summary Reports, Application Discovery, and Web Content Discovery. A one hour reporting option is still available, but it is no longer the default. The default time filter setting benefits our customers by improving the performance of the rendering reports. |
4/30/2024 | BloxOne Threat Defense | Feature: BloxOne Threat Defense introduces Infoblox Threat Intel research with supporting documentation on threat actor naming conventions. Threat intelligence research encompasses current analyses, alerts, advisories, and various reports compiled by the Infoblox Threat Intel team. This page highlights the threat actors discovered in your network. For each threat actor, the page also displays how early Infoblox discovered it in your network. Accompanying this information is detailed documentation that outlines the team's specific naming conventions serving as a valuable reference source for users. For information, see Threat Intel and Infoblox Threat Actor Naming Conventions. |
4/29/2024 | BloxOne Threat Defense | Feature and Enhancement: Infoblox is introducing a new, real-time streaming detection called "Zero Day DNS." Threat Insight – Zero Day DNS (Zero Day DNS) detects new domains observed in customer traffic to protect them from any possible targeted or spear phishing attacks. It follows a low-regret model and blocks the domain for a short TTL of 48 hours. The domain will be released after 48 hours, by which time other security systems in place should have enough information about this new domain to protect per policy. The default recommended action for this TI-List is Block - No Redirect. The intent of this detection is to provide very near real-time protection on new domains (can detect and block within 1-2 minutes of usage). Often when new domains are not mission-critical and following a low-regret model, it's best to have this protection in place. If for any reason the detected domains are known, verified, and needed for use, they can be added to the Default Allow list to bypass the detection. For information, see Zero Day DNS Configuration. |
4/29/2024 | BloxOne Threat Defense | Enhancement: BloxOne Threat Defense introduces external networks verification. This feature allows BloxOne Threat Defense Business Cloud and Advanced customers to conveniently claim all their existing external networks, ensuring exclusive registration rights for subnets, and assuring no one else can register them in the database. This enhanced external network management capability permits the addition of large subnets (up to /8 for IPv4 and /32 for IPv6) with Infoblox's verification. Smaller subnets (ranging from /30 to /32 for IPv4 and from /56 to /128 for IPv6) can be added without verification. For information, see Configuring External Networks. For information, see Configuring External Networks. |
4/29/2024 | BloxOne Threat Defense | Enhancement: Infoblox announces the phase-out of the "Allow with Log" action support for content category filtering. This change will affect only newly created policies and policy rules, ensuring that existing security policies remain unaffected. Customers can continue to modify and apply their current policies as usual without any adjustments to already provisioned rules. However, it will not be possible to establish new rules or policies incorporating the allow-log action for content categories moving forward. For information, see Creating Category Filters. |
4/29/2024 | BloxOne Threat Defense | Enhancement: BloxOne Threat Defense introduces agentless implementation over DoH. With this update, BloxOne Threat Defense can now terminate DoH connections and associate custom DoH FQDNs with specific customer policies. This allows customers to securely redirect their DNS traffic to the BloxOne Threat Defense cloud without a client and integrate our solution with third-party solutions. For information, see Configuring Security Policies. |
4/29/2024 | BloxOne Threat Defense | Feature and Enhancement: BloxOne Threat Defense has updated its policy framework to address potential DNS rebinding attacks. This update addresses attacks like DNS rebinding attacks where attackers use a malicious DNS server for reconnaissance when attempting to connect to internal services. By setting a low TTL, attackers cause the DNS record to expire quickly, leading to frequent queries that switch to internal network IP addresses. This allows them to bypass security measures, enabling harmful actions or data extraction. For information, see Configuring Security Policies. For information, see Configuring Security Policies. |
4/29/2024 | BloxOne Endpoint | Enhancement: BloxOne Endpoint has released several bug fixes for Linux Ubuntu 22. These updates include correcting the MAC address during the login process and avoid any vulnerability of Stack canary protection, among other updates. For information, see Linux Client Application Deployment. |
4/12/2024 | Cloud Services Portal | Enhancement: BloxOne consolidates notifications for host-related events, optimizing efficiency and improving system performance. When configuring BloxOne notifications, you can now choose Host Status Infra to receive important events related to the supported host metrics. The former Host State option will no longer be available. This enhancement helps improve system performance and reduce the number of notifications you will receive. For information, see Configuring Notification Delivery. |
4/11/2024 | BloxOne Threat Defense BloxOne DDI | Enhancement: This release of the BloxOne Data Connector includes a few enhancements: relocation of the Data Connector tab from the Manage tab to the Integrations tab on the Cloud Services Portal, a new traffic flow configuration wizard, and the ability to add tags. In addition to the relocation of the Data Connector tab from the Manage tab to the Integrations tab, other enhancements include the release of a new traffic flow configuration wizard to improve workflow efficiency and the capability to add tags to traffic flows, sources, destinations, and ETL configurations. For information, see Data Connector. |
4/5/2024 | BloxOne Threat Defense | Enhancement: BloxOne introduces enhancements that streamline account management across multiple organizations. The enhancements are particularly beneficial for administrators managing multiple organizations or sandboxes, simplifying the process of accessing and controlling subsidiary organizational accounts. The enhancements also overhaul the Cloud Services Portal's current account-switching feature by introducing an improved account selection menu that can handle hundreds of organizational accounts and includes a search and filter function for better organizational account management. Additional enhancements include the following:
For additional information, see Managing BloxOne Accounts. |
4/4/2023 | BloxOne Data Connector | Enhancement: Infoblox Data Connector supports forwarding of BloxOne DHCP lease logs to a NIOS reporting destination. Infoblox Data Connector now allows you to forward BloxOne DHCP lease logs to NIOS reporting, streamlining network administration workflows and enhancing efficiency. For more information, see Configuring Traffic Flows. |
3/22/2024 | BloxOne DDI | Feature and Enhancement The IPAM/DHCP pages on the Cloud Services Portal have the following improvements: Local search is now above the list of objects; a new filter icon is next to the local search; and the save filter icon features a drop-down menu.
BloxOne DDI now offers the capability to disable Echo Client ID in the global DHCP configuration for backward compatibility with older devices. BloxOne DDI allows you to deactivate Echo Client ID in the global DHCP configuration, ensuring seamless DHCP response for clients that cannot accept a response with a Client ID. For additional details, see the Advanced Configuration section. |
3/14/2024 | BloxOne Endpoint | Enhancement: BloxOne Endpoint supports deferred deployment scheduling options. A new deferred deployment schedule option for BloxOne Endpoint for Windows, MacOS, and Linux is available, allowing endpoint upgrades to be postponed by the endpoint group. Deployment can be deferred for up to four weeks, with the option to select deployment day of week and time, independent of the release date. BloxOne Endpoint for iOS and Android will request and validate a user’s email during manual installation when an MDM service is not used for the deployment. This simplifies and improves user notification, compromised device tracking, access restrictions (by listing trusted domains), and general consumption. For information, see Scheduling Endpoint Group Updates. |
3/14/2024 | BloxOne Mobile Endpoint | Enhancement: BloxOne Mobile Endpoint validation of user email ID during manual installation (no MDM feature). BloxOne Moblie Endpoint adds validation of the user’s email during manual installation when an MDM service is not used for the deployment. This simplifies and improves user notification, compromised device tracking, access restrictions (by listing trusted domains), and general consumption. For information, see Deployment of MDM-less Mobile Endpoint (no MDM feature). |
3/8/2024 | Cloud Services Portal | Enhancement: DNS Point of Presence - U.S./Ohio Infoblox adds PoP for DNS resolution in the U.S./Ohio to speed resolution, improve resiliency, and provide local resolution for organizations in that region. |
2/23/2024 | BloxOne Threat Defense | Enhancement: AWS S3 RPZ log export now includes three additional fields: "key," "sld," and "extra." RPZ logs exported to AWS S3 and the object storage service will be updated to include additional fields: "key," "sld," and an "extra" field to provide additional metadata such as username, client region and country, endpoint group, response, etc. This RPZ log export enhancement uses a different output path on the customers' S3 bucket ( / rpz_enriched / year=xxxx / month=xx / day=xx /hour=xx ). For information, see Log File Format. |
2/17/2024 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: DHCP Fingerprints are optimized with new fingerprint rules. BloxOne DDI now supports an optimized fingerprint database with updated fingerprint rules that provide better identification. For more information, see Configuring DHCPv4 Fingerprints. The BloxOne DDI DNS service addresses the following vulnerabilities: CVE-2023-4408, CVE-2023-5517, CVE-2023-5679, CVE-2023-5680, CVE-2023-6516, CVE-2023-50387, and CVE-2023-50868 DNS Version: 3.5.7
|
2/16/2024 | BloxOne DHCP | Enhancement: BloxOne DDI can now filter lease based on Global MAC Pool. BloxOne DDI supports filtering DHCP leases based on the Global MAC Pool imported from a CSV file. For more information, see Creating an IPv4 MAC Address Large Selection Filter. |
2/16/2024 | BloxOne Threat Defense | Feature: SOC Insights for BloxOne® Threat Defense enhances SOC efficiency by utilizing AI-driven analytics to effectively reduce alert fatigue and security gaps while also decreasing Mean Time to Respond (MTTR). By distilling vast numbers of alerts into crucial insights, analysts can prioritize and address critical issues more efficiently and effectively. SOC Insights further empowers analysts with instant access to relevant network, event, and DNS intelligence, allowing for speedy, informed decision-making and accelerated incident response and threat mitigation. SOC Insights is offered as an optional feature for both BloxOne Threat Defense Advanced and BloxOne Threat Defense for BloxOne Business Cloud customers. Additionally, Configuration Insights is automatically integrated into all existing BloxOne Threat Defense Business Cloud and Advanced user accounts, offering guidance on optimal detection settings and adherence to best practices. Customers interested in exploring this feature can reach out to the sales team to request a trial. For information, see SOC Insights. |
2/5/2024 | BloxOne DNS BloxOne DHCP | Enhancement: BloxOne users can now create and manage host configuration templates in the Cloud Services Portal. Templating enables users to quickly deploy additional hosts/deployments with a consistent configuration as well as centralize future changes to a group of hosts from a single change within the template. For information, see Configuring Templates. |
2/1/2024 | BloxOne Endpoint | Enhancement: BloxOne Endpoint for Windows support for Join Tokens The latest update to the BloxOne Endpoint for Windows, version 2.4.6, introduces a new authentication method using join tokens. This enhancement significantly boosts security by enabling users to control endpoint access to the Cloud Service Portal through the use of rotating tokens. Rotating join tokens help prevent unauthorized access if an install package is leaked, for example. The server side of the authentication process is designed to be backward compatible, ensuring a smooth migration. Additionally, the same join token can be utilized across endpoint deployments for Mac, Linux, iOS, and Android. For information, see Configuring Join Tokens for Endpoint BloxOne Endpoint for Mac support for Join Tokens The latest update to the BloxOne Endpoint for Mac, version 2.4.6, introduces a new authentication method using join tokens. This enhancement significantly boosts security by enabling users to control endpoint access to the Cloud Service Portal through the use of rotating tokens. Rotating join tokens help prevent unauthorized access if an install package is leaked, for example. The server side of the authentication process is designed to be backward compatible, ensuring a smooth migration. Additionally, the same join token can be utilized across endpoint deployments for Windows, Linux, iOS, and Android. For information, see Configuring Join Tokens for Endpoint. |
1/31/2024 | BloxOne DNS BloxOne DHCP | Enhancement: BloxOne users can now create and manage host configuration templates in the Cloud Services Portal. Templating enables users to quickly deploy additional hosts/deployments with a consistent configuration as well as centralize future changes to a group of hosts from a single change in within the template. For information, see Configuring Templates. |
1/29/2024 | BloxOne Data Connector | Enhancement: The Cloud Services Portal now provides enhanced viewing and export options for service logs from the Data Connector.
For information, see BloxOne Notifications and Configuring Traffic Flows. |
1/27/2024 | BloxOne DHCP | Maintenance: DHCP Software Update The DHCP software update is part of our routine maintenance schedule to provide important, security-focused updates and additional enhancements to improve the stability of these critical services. During this update, the DHCP service running on the hosts may experience temporary unavailability for up to 30 seconds. All other services will remain unaffected. Reminder: Customers can schedule and/or defer software updates for a time that’s most convenient to help minimize the potential business impact an interruption may cause. Customers can also reach out to Infoblox Support for additional details. |
1/26/2024 | BloxOne DNS BloxOne DHCP | Enhancement: To prevent a mismatch between the host of a subnet and range, BloxOne DDI now validates that a subnet and its range use the same BloxOne host. BloxOne DDI ensures that a subnet and its range use the same BloxOne host. This helps prevent a scenario where a mismatch occurs between the host of a subnet and its range. For more information, see Creating Address Ranges. |
1/17/2024 | BloxOne Dossier | Enhancement: BloxOne introduces the redesign of the Dossier summary and timeline page. The updated design now presents timeline events in a clear chronological order, using a vertical format for easier reference. Additionally, the redesign includes detailed event information linked to each timeline occurrence, streamlining the process of tracking and managing events within your organization. This enhancement aims to improve the user experience and facilitate more efficient detection, monitoring, and managing of reported threat indicators. For information about Dossier, see The Dossier Threat Indicator Report. |
1/16/2024 | Cloud Services Portal | Feature and Enhancement: BloxOne supports host deployment using generation 2 virtual machines on Hyper-V/Azure. BloxOne now supports generation 2 VMs when you deploy BloxOne hosts in Microsoft Azure. For more information, see Microsoft Azure Deployment. BloxOne supports adding host tags associated with the Cloud Services Portal during BloxOne host deployments. When you deploy a BloxOne host, you can add a host tag to the "userdata" file to associate the host with the Cloud Services Portal. For more information, see YML and JSON Templates. BloxOne supports firmware updates on Dell VEP-1425, Dell VEP-1485, and Infoblox B1-212 hardware appliances. To upgrade the firmware on Dell VEP-1425, Dell VEP-1485, and Infoblox B1-212 appliances, you can now download firmware upgrades and apply a firmware upgrade script via the debug CLI or a USB flash drive. For more information, see Updating Firmware on Hardware Appliances. BloxOne host deployment on Google Cloud Portal (GCP) now supports IPv6. For information, see Google Cloud Portal (GCP) Deployment. |
1/10/2024 | BloxOne DNS BloxOne DHCP | Enhancement: BloxOne DDI now supports importing private zones from Azure DNS as forward zones. The Cloud Services Portal supports a split view feature for viewing private zones and public zones from AWS Route 53. With the Split View feature, you can get AWS Route 53 public hosted zones and private hosted zones to be served from two separate DNS views, allowing the capability for Split-horizon DNS. For more information, see Enabling Split View. |
1/5/2024 | BloxOne Endpoint | Enhancement: BloxOne Endpoint for Linux support for Join Tokens The latest update to the BloxOne Endpoint for Linux, version 1.0.7, introduces a new authentication method using join tokens. This enhancement significantly boosts security by enabling users to control endpoint access to the Cloud Service Portal through the use of rotating tokens. Rotating join tokens help prevent unauthorized access if an install package is leaked, for example. The server side of the authentication process is designed to be backward compatible, ensuring a smooth migration. Additionally, the same join token can be utilized across endpoint deployments for Linux, iOS, and Android. For information, see Configuring Join Tokens for Endpoint. |
12/14/2023 | BloxOne DNS | Feature: BloxOne DDI now supports creating DNAME resource records through the Cloud Services Portal. BloxOne DDI supports creating DNAME records that can be used to create an alias for an existing domain. Previously, the DNAME record could only be created as a generic record of type DNAME. With this release, DNAME can be selected as one of the record types under the Record menu. For more information, see Creating a DNAME Record. |
12/04/2023 | BloxOne Mobile Endpoint | Enhancement: BloxOne Mobile Endpoint for Android will receive a MDM-less deployment option. BloxOne Mobile Endpoint for Android will receive a MDM-less deployment option. MDM-less deployment will allow better support for BYOD and other non-managed corporate devices. Users can now install BloxOne Endpoint from the Google Play store and enable it by scanning a provided QR code to protect their devices. QR codes are generated based on unique join tokens, which are easy to retire and rotate. Due to significant changes in the authentication process it is recommended to deploy the application in a lab environment first to ensure it is properly understood and implemented, and then schedule upgrades in stages. For information, see Managing Endpoint Groups and Managing BloxOne Mobile Endpoint. |
12/01/2023 | Cloud Services Portal | Enhancement: BloxOne now displays all host types for hardware platforms on the Cloud Services Portal. The Infrastructure > Host page of the Cloud Services Portal now displays B1-212 as the host type for Dell VEP appliances that are purchased from Infoblox. In addition, the "B105" hardware type is replaced by "B1-105." BloxOne allows you to add new services directly on the Infrastructure > Host page. You can now add services to a specific host on the Infrastructure > Host page without navigating to the Services page. |
11/20/2023 | BloxOne Endpoint | Enhancement: BloxOne Endpoint for Windows version 2.4.3 is updated to provide a better experience with user group-based policies that do not require re-authentication on the agent. This release of BloxOne Endpoint for Windows and for MacOS version 2.4.3 also contains bug fixes. For information, see Managing Endpoint Groups. |
11/20/2023 | Cloud Services Portal | Enhancement: BloxOne now includes an updated Global Search feature with improved usability and functionality. BloxOne has an improved Global Search feature that provides deep links from search results to the objects and breadcrumbs for easier navigation. For more information, see Using Global Search. |
11/17/2023 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: BloxOne DDI now allows the recursive client query limit to be set to a maximum 15000 queries. BloxOne DDI allows configuring the recursive client query limit up to 15,000 queries, ensuring an optimal level of recursive queries to be processed concurrently by the recursive name server. For more information, see Enabling Recursive Queries. An Enhanced Terraform package is now available in GitHub to support new features and functionality for BloxOne DDI.
For more information, see https://registry.terraform.io/providers/infobloxopen/b1ddi/latest |
11/15/2023 | BloxOne Mobile Endpoint | Feature: BloxOne Mobile Endpoint for iOS will receive a MDM-less deployment option. MDM-less deployment will allow better support for BYOD and other non-managed corporate devices. Users can now install BloxOne Endpoint from the Apple App store and enable it by scanning a provided QR code to protect their devices. QR codes are generated based on unique join tokens, which are easy to retire and rotate. Due to significant changes in the authentication process it is recommended to deploy the application in a lab environment first to ensure it is properly understood and implemented, and then schedule upgrades in stages. For information, see Managing Endpoint Groups and Managing BloxOne Mobile Endpoint. |
11/10/2023 | BloxOne DDI | Feature: BloxOne DDI now allows Zone Federation on AWS and Azure. Zone Federation is now supported on AWS and Azure, which allows you to distribute and manage DNS zone data across multiple authoritative servers. For more information, see Zone Federation. BloxOne DDI supports importing AWS private hosted zones as read-only or read-write forward zones. Private hosted zones synced from the cloud provider are set up as forward zones on BloxOne host. Queries for domains added as forward zones will be forwarded by the BloxOne host to AWS for resolution, ensuring the most up-to-date data is referenced. For more information, see Importing AWS Private Hosted Zones as Read/Write Forward Zones. BloxOne DDI allows the configuration of read-only or read-write sync process for third-party cloud providers. You can now configure the sync process for third-party cloud providers in read-only or read-write modes via the Cloud Services Portal. For more information, see Configuring Read Only or Read Write Sync. |
11/04/2023 | BloxOne Threat Defense | Enhancement: BloxOne Endpoint version 1.0.6 supports Ubuntu 20.x and RedHat 8.x distributions, in addition to Ubuntu 22.x. For information, see Linux Client Application Deployment. |
11/03/2023 | Cloud Services Portal | Maintenance: From 11/3/2023 through 11/5/2023, BloxOne will perform an update to increase the security, availability, and scalability of all BloxOne services. The update begins on 11/3/23 at 7:30 PM PT and end on 11/5/23 at 6:30 AM PT. DNS and DHCP protocol services for BloxOne DDI and BloxOne Threat Defense continue to run uninterrupted. |
11/02/2023 | Cloud Services Portal | Enhancement: BloxOne introduces usability enhancements to global search and local search on the Cloud Services Portal. The global search and local search enhancements include the following:
For information, see Using Global Search and Using Local Search. |
10/25/2023 | BloxOne DNS BloxOne DHCP | Enhancement: BloxOne DDI allows downloading Service Logs for MS AD Sync Service. BloxOne DDI now allows downloading service logs from the Cloud Services Portal for the MS AD Sync Service. For more information, see Service Logs.BloxOne DDI allows syncing DHCP options from Microsoft Active Directory Server Options. BloxOne DDI now allows syncing DHCP options from the Microsoft Active Directory Server Options to the Cloud Services Portal. For more information, see Microsoft Active Directory Integration.BloxOne DDI allows syncing DHCP options from Microsoft Active Directory Fixed Address. BloxOne DDI now allows syncing DHCP options from the Microsoft Active Directory Server fixed address to the Cloud Services Portal. For more information, see Microsoft Active Directory Integration. |
10/20/2023 | Cloud Services Portal | Enhancement: BloxOne introduces a new table view to the Hosts, Services, Monitoring, Locations, and Templates tabs on the Manage > Infrastructure page of the Cloud Services Portal. In addition to the card and map views, you now have the flexibility to view and manage the data of hosts, services, monitoring, locations, and templates in a table format on the BloxOne Infrastructure page. BloxOne introduces a new table view to the Audit Logs, Service Logs, and Security Logs tabs on the Administration > Logs page of the Cloud Services Portal. In addition to the card view, you now have the flexibility to view and manage the data of audit logs, service logs, and security logs in a table format on the BloxOne Logs page. |
10/16/2023 | BloxOne DNS | Enhancement: BloxOne DDI allows synchronization of Azure DNS public zones, private zones, and resource records. BloxOne DDI now supports the ability to view DNS Public Zones, Private Zones and Resource Records that are served from Azure DNS service. This allows BloxOne DDI to be used as a “hidden primary” for Public DNS zones hosted in the Azure DNS service. For more information, see Microsoft Azure Integration. |
10/13/2023 | BloxOne DHCP | Enhancement: Maintenance Release - DHCP bug fixes and CVE-2023-3341.
|
10/6/2023 | Cloud Services Portal | Enhancement: BloxOne Threat Defense enhances full audit logging by adding details of Create, Update, and Delete (CUD) operations. Enhanced audit logging track changes in security policies, custom lists, application/category filters, BloxOne Endpoint/BloxOne Endpoint group settings, and more. For more information, see Viewing Audit logs. |
10/6/2023 | BloxOne Threat Defense | Feature: BloxOne lookalike domain management includes suggested domains for monitoring. A maximum of 25 suggested lookalike domains can be added to a custom lookalike watch list for monitoring. For more information, see Viewing Custom Watched Domains and Adding Suggested Lookalike Domains. |
10/05/2023 | BloxOne Infrastructure | Infoblox BloxOne bare-metal deployment now supports Red Hat versions 7.9, 8.7, 8.8, 9.1, and 9.2.For more information, see Bare-Metal Deployment. |
09/27/2023 | BloxOne Threat Defense | Enhancement: Infoblox TIDE introduces new sizing guidelines for Custom RPZ feeds. Infoblox TIDE introduces new sizing guidelines for Custom RPZ feeds. Newly created custom RPZs are limited to a maximum of 6 million records. This limit includes all available feeds, such as Infoblox-curated data, Infoblox’s third-party data, and any uploaded data you provide. A new sizing indicator displays the number of records contained within a custom RPZ feed. Custom RPZ feeds created prior to the introduction of the new sizing guidelines will not be impacted by the new sizing guidelines, although no new records can be added. For information, see Sizing Guidelines for Custom RPZ Feeds. For information, see Sizing Guidelines for Custom RPZ Feeds. |
09/27/2023 | Cloud Services Portal | Feature: Infoblox supports the deployment of BloxOne hosts in Google Cloud Platform You can now deploy BloxOne hosts on Google Cloud Platform using Infoblox-provided GCP package you download from the Cloud Services Portal. For more information, see GCP Deployment. Infoblox supports the deployment of BloxOne hosts on Containerd EnvironmentsYou can now deploy BloxOne hosts on Containerd environments using Infoblox-provided BloxOne Install packages you download from the Cloud Services Portal. For more information, see Bare-Metal Deployment. |
09/26/2023 | BloxOne Threat Defense | Enhancement: BloxOne enhances the Log Export feature to include additional metadata in the BloxOne Threat Defense DNS response logs. |
09/16/2023 | BloxOne DNS BloxOne DHCP | Feature: BloxOne DDI now provides MS AD Sync as a service running on a BloxOne host. You can run the MS AD Sync service on a BloxOne DDI host to migrate DNS and IPAM/DHCP objects from Microsoft Active Directory into the Cloud Services Portal. For more information, see Microsoft Active Directory Integration. The DHCP options in the CSV import/export file can be specified as separate columns instead of nested columns. Bug Fixes: Issue/Bug: DHCP HA group status was not correctly represented in the Cloud Services Portal Fix: Additional health checks were introduced to calculate the status of a DHCP HA group. Issue/Bug: Notifications were not triggered for high utilization of DHCP ranges Fix: The cloud service responsible for calculating utilizations for DHCP ranges has been patched to address issues related to deadlocks. |
09/01/2023 | Cloud Services Portal | Feature: You can now set up BloxOne sandboxes as test environments. If your business requires a separate BloxOne test environment, you can purchase a BloxOne sandbox and set it up for testing purposes. For more information, see Managing Sandboxes. |
08/23/2023 | BloxOne DHCP | Enhancement: This maintenance release includes bug fixes for the DHCP service. |
08/22/2023 | BloxOne Threat Defense | Enhancement: The following BloxOne Threat Defense RPZ feeds have been deprecated and are no longer available for BloxOne Threat Defense or for On-Prem DNS Firewall: SURBL Fresh Domains, SURBL Multi Domains, and SURBL Multi Lite Domains. It is recommended that you add the following feeds in place of the deprecated feeds:
For information, see Recommended Feed Configuration to Replace the SURBL Feeds. |
08/17/2023 | BloxOne Threat Defense | Enhancement: BloxOne Threat Defense adds direct linked access from the dashboard charts to the chart source data to better facilitate threat investigations.Direct linking of the dashboard charts to their source data allows for drilling deep down into their source data. This enhancement offers improved usability of the dashboard charts for tasks involving investigation and workflows by offering the convenience of pivoting between the charts and their underlying data. For information, see Viewing the Dashboard. |
08/16/2023 | Cloud Services Portal | Enhancement: You can now transfer services from one BloxOne host to another. The ability to reassign or transfer a service from one host to another is useful in situations where you need to update your network infrastructure or retire a BloxOne host. For information, see Editing General Service Information. |
08/14/2023 | Cloud Services Portal | Enhancement: BloxOne Introduces notification enhancements to improve usability. BloxOne notification includes the following enhancements:
For information on BloxOne notifications, see Infoblox Platform Notifications. |
08/11/2023 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: You can now set the order of precedence for user-defined DHCP fingerprints. BloxOne DDI now allows you to set the precedence of user-defined DHCP fingerprints. The rule with the lowest precedence value has the highest priority. For more information, see Creating DHCP Fingerprints. BloxOne DDI tracks the IP addresses of hosts in IPAM. BloxOne DDI now tracks the IP addresses that are owned and managed by the BloxOne hosts running the DDI service. These IP addresses are represented in IPAM as Reservations. For more information, see Configuring IPv4 and IPv6 Reservations. You can now allow or deny leases based on DHCP filters. BloxOne DDI now has the capability to allow or deny leases based on DHCP filters. For more information, see Creating Address Ranges. You can now configure AWS as a Third Party DNS provider with additional configuration options. BloxOne DDI now allows you to configure Third Party DNS provider through AWS delegated access using Principal and External ID. For more information, see Amazon AWS Route 53. |
07/28/2023 | BloxOne DNS | Enhancement: You can now configure Third Party DNS Providers that support AWS sub-accounts for Route 53 Sync. Third-party DNS providers can now accept credentials and AWS role ARNs, with proper permissions, to discover AWS accounts that contain Route 53 zones and resource records under each sub-account. For more information, see Amazon AWS Route 53. Infoblox SSO Portal now supports Google Authenticator for multi-factor authentication, in addition to Okta Verify. You can now choose Google Authenticator, in addition to Okta Verify, as the authentication method when you configure multi-factor authentication for your Cloud Services Portal users who have an email domain that matches the selected domain name. For more information, see Activating Multi-Factor Authentication. |
07/28/2023 | BloxOne Threat Defense | Feature and Enhancement: The BloxOne Application Discovery Report receives a makeover, enhancing user experience and providing more valuable insights into application usage within your network. Updates to the Application Discovery Report introduce a refreshed look-and-feel, including new page headers and the ability to view historical data on the All Applications page for Approved and Unapproved application states. Application Discovery is available to BloxOne Threat Defense Advanced subscribers. For information, see Application Discovery. The Infoblox Summary Reports page receives a revamped look and feel. The revamped Summary Reports page better facilitates user requests for summary report information. The new look and feel falls in line with the overall refresh of the Cloud Services Portal. The Executive Summary and Comprehensive Security reports are available to subscribers of BloxOne Threat Defense Business Cloud and BloxOne Threat Defense Advanced. For information, see Summary Reports. The Notional Threat Insight List (TI-DNST) provides users with information about DNS Tunnels in their early stages, not yet fully classified as malicious. The Notional Threat Insight List detects DNS Tunnels in their preliminary phases before they reach a fully malicious status. This list operates with a default action of Allow-With Log. Since the tunnels are not yet conclusively identified as fully malicious, blocking them outright could lead to false positives. Organizations can modify the default action to "Block" if their risk tolerance or organizational needs dictate. BloxOne supports CISA Protective DNS encrypted DNS service. For Federal accounts, BloxOne supports CISA Protective DNS, a secure and compliant server configuration utilizing encrypted DNS protocols (DNS-over-HTTPS or DNS-over-TLS). Encrypted resolvers must be used when communicating with upstream DNS resolvers in adherence to to OMB memorandum M-22-09. For information, see Configuring DNS Forwarding Proxy to Use Encrypted DNS Protocols. BloxOne provides new service KPI metrics for DNS Forwarding Proxy. Two new service KPI metrics have been introduced for DNS Forwarding Proxy: DFP Service Status and DFP Service Queries per Second. Infoblox SSO Portal now supports Google Authenticator for multi-factor authentication, in addition to Okta Verify. You can now choose Google Authenticator, in addition to Okta Verify, as the authentication method when you configure multi-factor authentication for your Cloud Services Portal users who have an email domain that matches the selected domain name. For more information, see Activating Multi-Factor Authentication. |
07/28/2023 | BloxOne Endpoint | BloxOne Endpoint Management page has been revamped to provide endpoint properties. A dedicated management page containing information on hostname, username, OS, location, and more on a dedicated page can be easily shared by a unique URL. A new endpoint property (public IP address) has also been included as part of this enhancement. For information, see Viewing Endpoint Devices and Viewing Mobile Endpoint Devices. BloxOne Endpoint version 2.4.0 release. BloxOne Endpoint 2.4.0 release contains minor bug fixes and collects additional metadata (serial numbers) on Windows and Mac OS devices. For information, see Managing BloxOne Endpoint. |
07/20/2023 | BloxOne Endpoint | Feature: BloxOne Endpoint is available for deployment on Linux (Ubuntu 22). BloxOne Endpoint can now be downloaded for Linux Ubuntu 22 from the downloads page in the Cloud Services Platform (administration > downloads). For information, see Deploying Endpoint for Linux. |
07/14/2023 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: You can now create DNS sort lists to prioritize records on certain networks. DNS sort lists allow the prioritizing of A and AAAA records on certain networks when they are returned in DNS responses, thereby sorting them to the beginning of the list in the response. For more information, see DNS Sort Lists. The BloxOne DDI API documentation has been enhanced. The BloxOne DDI API documentation has been enhanced to match the features available in the Cloud Services Portal. The API documentation has been improved for technical accuracy and clarity. For more information see Universal DDI API Guide. DHCP Fingerprint database has been updated to the latest version. he DHCP Fingerprint database has been updated in BloxOne DDI. For more information, see Configuring DHCPv4 Fingerprints. BloxOne DDI hosts can now serve private zones from Amazon AWS R53. BloxOne DDI host can now serve private zones from Amazon AWS R53. For more information, see Amazon Route 53 Integration. BloxOne DDI provides contextual help in Add/Edit dialogs when you perform a task. You can now click Help in Add/Edit dialogs and wizards to view contextual help while performing a task. Dashboard widgets now include various design enhancements. The dashboard widgets include various design enhancements. The widgets for DHCP leases per second, DNS queries per second, and Total DNS queries show data as a line chart with the option to show as a bar chart. |
07/11/2023 | Cloud Services Portal | Feature: You can now put a host in maintenance mode to perform necessary maintenance. In situations where you need to initiate maintenance on a host such as upgrading the OS, rewiring the host, or changing the location of the host, you can put the host in maintenance mode. When a host is in maintenance mode, you will not receive any notifications of host activities. However, you can continue to deploy services and perform configurations on the host. All host and service configurations are not affected during the maintenance mode. To resume notifications, you must manually stop maintenance mode on the host. For information, see Using Maintenance Mode for Servers. |
07/10/2023 | BloxOne Threat Defense | Enhancement: New Threat Insight deduction method ensures domains reported in RPZs are added for monitoring. The issue regarding the detection of DNS Tunneling events not being detected when using a filter with all categories and the action set to Allow-Log has been resolved. To remedy this issue, the check for a domain being part of an RPZ has been removed from the filtering process. This change allows the reported domains to correctly go through the Threat Insight deduction process. In the Cloud Services Portal, you can view the domains that have undergone Threat Insight deduction in the Threat Insight report section of the Security Activity report (Reports > Security Activity > Threat Insight). To make it easier to see the applied action filtering, a new column called Action has been added to the Threat Insight report. This column allows you to monitor the actions applied to reported domains based on precedence, ensuring protection. For more information, refer to the Threat Insight Report. For information see, Threat Insight Report. |
07/03/2023 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: You can now synchronize DHCP Options from Microsoft Active Directory to the Cloud Services Portal. The synchronized DHCP options are read-only. For more information, see Microsoft Active Directory Integration. You can configure the third-party DNS provider to consolidate public and private zones from AWS R53 into the selected DNS view. You can also create a new DNS view while creating a third-party DNS provider. For more information, see Creating Third Party DNS Providers. |
07/03/2023 | Cloud Services Portal | Feature: You can now query host statuses using the BloxOne API. BloxOne provides the "statuses" API call, so you can query host status, platform service status, and protocol service status. For more information, see Querying Server Statuses Using the API. |
07/03/2023 | BloxOne Data Connector | Enhancement: BloxOne Notifications has a new data type for Data Connector You can provision Data Connector to deliver Cloud Services Portal event notifications such as CPU utilization, new feature announcements, and more, to a SIEM destination. For information, see BloxOne Notifications. |
06/26/2023 | Cloud Services Portal | Feature and Enhancement: BloxOne supports the deployment of hosts on Hyper-V enabled Windows Server. You can now deploy hosts on Hyper-V enabled Windows Server using Infoblox-provided VHD packages you download from the Cloud Services Portal. For more information, see VHD on Hyper-V Enabled Microsoft Server Deployment. The BloxOne DDI DNS container addressed the following vulnerabilities: CVE-2023-2911, CVE-2023-2829 and CVE-2023-2828
|
06/17/2023 | Cloud Services Portal | Feature: BloxOne introduces Historical Data Reporting for the DNS Security and the Security Activity reports. The historical data reporting feature affords the ability to search up to 60 days of cloud reporting data. The new historical data viewer will retrieve older data and allow you to view it within your activity reports. For information, see DNS Activity Historical Data Report and Security Activity Historical Data Report. |
06/16/2023 | BloxOne DNS BloxOne DHC:P | Enhancement: You can swap DHCP HA peers between Active and Passive modes. BloxOne now allows you to swap DHCP HA peers between Active and Passive modes with a single click for manual failover or troubleshooting purposes. For information, see Creating HA Groups.The DDNS Update TTL value is now user-configurable. You can configure the DDNS Update TTL value via the Cloud Services Portal and the API. With this feature, you do not need to shorten the lease time, which in turn reduces network load. For more information, see Enabling DDNS for IPv4 Clients. |
06/14/2023 | Cloud Services Portal | Enhancement: On May 18, 2023, Infoblox removed the ability to view legacy API keys as part of the process of deprecating these keys (which were replaced by the new API keys in February 2021). Since then, Infoblox identified a set of customers that are still using the legacy API keys. To provide all customers with the best possible experience and support while we complete the transition to the new API keys, the legacy API keys will remain visible and active until the end of July 2023. |
06/09/2023 | Cloud Services Portal | Enhancement:
|
05/30/2023 | BloxOne Threat Defense | Enhancement: BloxOne adds new naming conventions for Threat Classes and Threat Families algorithm detections. The following Threat Classes and Threat Family names are being updated. The renaming primarily impacts the Security Activity Report and Insightful Reporting.
|
05/18/2023 | Cloud Services Portal | Enhancement: You will no longer be able to view legacy API keys on the Cloud Services Portal. The legacy API keys are also not supported in API calls. |
05/12/2023 | BloxOne DHCP | Enhancement: DHCP Fingerprints are now split into system-defined and user-defined rules. For better management and usability of DHCP fingerprints, you can view and manage system and user-defined rules separately in the Cloud Services Portal. For information, see Creating DHCP Fingerprints and Viewing System Fingerprints. |
05/09/2023 | BloxOne Endpoint BloxOne Data Connector | Enhancement: BloxOne Endpoint version 2.3.11 contains a few fixes and enhancements.
Data Connector supports audit logs transfer to SIEMs for improved reporting to existing reporting systems. Data Connector supports the transfer of BloxOne audit logs to SIEMs (Splunk, Splunk Cloud, Syslog in CEF/LEEF formats), as well as Infoblox Reporting. This enables the integration of audit logs with existing monitoring and reporting systems, enhancing visibility and enabling better security and compliance management. For information, see Configuring Traffic Flows. |
05/08/2023 | BloxOne DNS | Enhancement: The DNS QPS widget is calibrated to provide more accurate results.The DNS QPS widget was enhanced for better accuracy. This enhancement includes bug fixes may result in higher QPS results. |
05/02/2023 | Cloud Services Portal | Enhancement: BloxOne delivers the following Dashboard enhancements: interactive legends, enhanced tooltips, chart selection options, and top threat classes filter and zoom flexibility.
For information, see Viewing the Dashboard. |
04/22/2023 | BloxOne Threat Defense | Feature and Enhancement: BloxOne supports DNS over TLS (DoT) in BloxOne Cloud to ensure the highest level of security provided to our customers using third-party DNS resolvers to directly communicate with BloxOne Threat Defense Business and Advanced subscription accounts. Infoblox has enabled an encrypted DNS over TLS resolver (DoT) globally on threatdefense.infoblox.com, Anycast IP addresses, and in every point of presence. For information, see Configuring DNS Forwarding Proxy Settings. The Web Content Discovery report has a new look with additional pivot capabilities and key trending data built into the interface. Web Content Discovery is available to subscribers of BloxOne Threat Defense Advanced. For information, see Web Content Discovery. Summary reports introduce the set up and automatic delivery of the Executive Summary and Comprehensive security reports at a set time, delivered directly to your email inbox. For information, see Summary Reports. BloxOne Endpoint supports updated automatic inactive endpoint removal settings to support faster cleanup of unused endpoints. The minimum interval is set to 15 days and the default value was updated to 100 days. The default value is also applied for endpoint groups with an undefined value (shown as 0 days on the Cloud Services Portal). For information, see Automatic Removal of an Endpoint After a Period of Inactivity BloxOne security policy management can now be enabled for endpoint devices using the following metadata types: device operating system name and/or version, device hostname, and device country based on the geolocation of its IP address. For information, see Configuring Network Scopes and Managing Endpoint. |
04/21/2023 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: Three new dashboard widgets, DHCP Messages, DHCP Leases, and Total DNS Queries, are now available on the Cloud Service Portal. BloxOne offers three new dashboard widgets in BloxOne DDI to show DHCP messages (ACKs sent and INFORMs received), DHCP leases (Total Reclaimed, Total Declined, and Total Assigned), and Total DNS Queries on a single host or a subset of deployed hosts. In addition to the existing widgets, these new widgets help with capacity planning and snapshotting the environments. For information, see Viewing the Dashboard. Inline DNS Query/Response Tester is now available on the Cloud Services Portal. BloxOne DDI allows you to run DNS queries (using the dig command) on a host running DNS service from within the Cloud Services Portal. This will help you troubleshoot DNS-related issues. You must upgrade to the latest version of the host software to use this feature. For more information on upgrading the host, see Scheduling Software Updates for Hosts. For more information about this feature, see Running a DNS Query. You can disable DHCP protocol in subnets, ranges, and fixed addresses for the DHCP protocol. This is particularly helpful during pre-deployment provisioning and troubleshooting activities. For information, see Configuring Subnets, Configuring Address Ranges, and Configuring Fixed Addresses. You can view the status of DHCP HA Groups on the Cloud Services Portal. BloxOne DDI now displays the health and status of the DHCP HA groups on the Cloud Services Portal. You can then monitor the HA groups' status periodically to ensure that the service is functioning properly. For information, see Configuring HA Groups. The Cloud Services Portal now displays DHCP service metrics. You can now view metrics associated with your DHCP service in the Cloud Services Portal. This gives you better visibility of the DHCP service. For information, see Configuring HA Groups. BloxOne DDI provides the ability to migrate and display IPAM/DHCP objects imported from Microsoft Active Directory. BloxOne DDI is now able to directly import DHCP and IPAM data from Microsoft Active Directory, allowing for the offloading of DDI functions from AD servers. For information, See Microsoft Active Directory Integration. You can configure the abandoned-reclaim timer for abandoned leases in the Cloud Services Portal. After configuring the ‘abandoned-reclaim time’ for abandoned leases, the DHCP server will recover the abandoned IP address (i.e. put it back into the available state) and the address will be available for assignment again. For information, see Advanced Configuration. The Cloud Services Portal now displays all search results in a single view. BloxOne DDI supports the ability to search across all pages using local search, aggregating the search results into a unified repaginated list. You no longer need to use global search if you are already in a zone or subnet. This allows for quick retrieval of information. For information, ssee Configuring Subnets, Configuring Address Ranges, and Configuring Fixed Addresses. |
04/20/2023 | Cloud Services Portal | Enhancement: Infoblox BloxOne continuously synchronizes account names with corporate names. If your account name changed over the last few years, the name displayed on the Cloud Services Portal might change. This does not have any other implications on your account: Your configuration and data stay the same. |
04/19/2023 | Cloud Services Portal | Feature: BloxOne introduces a location feature you can use to associate hosts with a specific location. The location feature is useful when you want to group multiple hosts by geocoded address and be able to later identify the hosts by their location. For information, see Managing Locations. |
04/18/2023 | BloxOne Threat Defense | Feature and Enhancement: BloxOne Threat Defense adds a new standalone threat and RPZ feed: NOED feed. The NOED feed consists of newly created domains, some of which may not be inherently suspicious. However, monitoring traffic to these domains may be advisable since there is a low likelihood of their being visited under normal circumstances which raises the possibility of their being used for potentially nefarious purposes. For information, see Viewing Active Threat Feeds and Threat Insight. |
04/17/2023 | BloxOne Threat Defense Cloud Services Portal | Feature and Enhancement: The BloxOne Lookalike Domains Activity report has undergone a comprehensive overhaul and redesign to optimize the organization and accessibility of data. Lookalike events are now grouped in a structured and logical manner based on specific criteria associated with the target domain, including the total count of lookalike domains, the total number of custom watched domains, and the total number of threat lookalikes. This enhancement ensures that the report provides a more practical, informational, and user-friendly experience for users. For information on lookalike domain monitoring, see Custom Lookalike Domain Monitoring. BloxOne introduces a monitoring feature you can use to integrate with your monitoring tools to obtain host metrics. When you set up a monitoring configuration, BloxOne uses APIs on the associated hosts, so your monitoring tools can query host metrics and health status based on the configured authentication method. For information, see Monitoring NIOS-X Server Metrics. BloxOne increases serviceability by introducing host service logs. On the Cloud Services Portal, you can now view host service logs on the Manage > Infrastructure > Hosts tab by accessing General Information > Logs of a chosen host. For information, see Viewing Server Logs. BloxOne now supports VLAN Interfaces when you configure the IP settings for a host. You can now set up VLAN interfaces when deploying a host if you want to virtualize your network infrastructure. For information, see Setting IP Interfaces. |
04/03/2023 | BloxOne Threat Defense | Enhancement: The following BloxOne Threat Defense RPZ feeds have been deprecated and are no longer available for BloxOne Threat Defense or for On-Prem DNS Firewall.
For information on available feeds, see Supported Threat Intelligence Feeds and Licensing and Subscriptions. |
03/30/2023 | Cloud Services Portal | Feature and Enhancement: Infoblox introduces the new Routing page on the Cloud Service Portal. BloxOne routing improves the flexibility, scalability and performance of routing by separating it from the Anycast service into new BGP, OSPF, and RIP services. If you are not currently using Anycast, you will see the new Routing page immediately, and no action is required on your part. If you are currently using Anycast, Infoblox Support will be contacting you to arrange the migration of your Anycast configuration to these new services. For information, see Configuring Routing. Infoblox BloxOne bare-metal deployment now supports Ubuntu 22.04. With this release, Infoblox BloxOne supports Ubuntu 22.04 and will continue to support Ubuntu 20.04 and 18.04. BloxOne will however stop the official support of Utunbu 16.04. |
03/06/2023 | Cloud Services Portal | Feature and Enhancement: Infoblox introduces the new Infrastructure page on the Cloud Service Portal. BloxOne Infrastructure provides the separation of infrastructure and services. It integrates status, metrics, and logs into a common viewer, so you can peruse consolidated information about your host infrastructure and services. Your current deployment will automatically migrate to the new Infrastructure page. No action is required on your part. The following is a list of changes:
|
02/23/2023 | Cloud Services Portal | Feature and Enhancement: BloxOne introduces a new debugging CLI, so you can troubleshoot issues related to cloud connectivity and on-prem host deployment. Through the Device UI, you can enable or disable a secure terminal connection on port 2022 between your BloxOne host and the newly implemented debugging CLI. When you experience issues related to cloud connectivity or BloxOne platform image deployment, you can troubleshoot those issues through the debugging CLI. The Cloud Services Portal introduces the “Upcoming Releases” section that displays feature announcements for upcoming BloxOne releases. In addition to “What’s New,” the landing page of the Cloud Services Portal now includes an “Upcoming Releases” section that displays upcoming feature announcements for future BloxOne releases. |
02/18/2023 | BloxOne Threat Defense BloxOne Ecosystem | Feature and Enhancement: BloxOne Threat Defense supports a preferred PoP selection. Infoblox uses dynamic routing and global server load balancing to provide connectivity to points of presence (PoP). In most cases, automatic PoP selection works perfectly for all customers; however, sometimes third-party service providers make updates that affect PoP selection, which changes DNS resolution and affects the performance of other SaaS services. With this release, you will be able to define preferred PoP per DNS Forwarding Proxy (DFP) and Endpoint Group. DFP and BloxOne Endpoint must be able to communicate with PoPs directly by listed IP addresses and hostnames. Please adjust your firewalls configuration accordingly. For information, see BloxOne Endpoint. BloxOne Threat Defense supports Web Content Discovery. Web Content Discovery is a new feature of the BloxOne Threat Defense Advanced package. It assists organizations in identifying high-risk activities in use across their networks, by whom and by which device. The new report identifies all known web traffic by category and identifies specific categories associated with a higher risk to organizations. For information, see Web Content Discovery. BloxOne Threat Defense adds new and updated detection algorithms. The BloxOne Threat Defense "Security-Activity" report now includes “Threat Family” in the "Threat Insight" detection report. It incorporates improved detection algorithms and protection from DGA (Domain Generation Algorithm), DDGA (Dictionary Domain Generation Algorithm), DNST (DNS Tunneling), and DDOS (Distributed Denial of Service) attacks. Additional algorithm enhancements include the ability to capture misconfiguration issues in customer environments and capturing Suspicious and Phishing Lookalike domains in customer traffic. For information, see Security-Activity Threat Insight Report. BloxOne adjusts the date range for DNS Activity and Security reports to a maximum of 31 days. Infoblox adjusts the date range for DNS Activity and Security reports to a maximum of 31 days. Subscription customers for BloxOne Threat Defense Business On-Premises, Business Cloud, and Advanced will continue to have access to these reports for up to 31 days to provide visibility into recent DNS or security activities. For longer-term reporting needs, the Data Connector (DC) service is available for exporting data into third-party tools that offer storage beyond 31 days (e.g. SIEMs that are better suited for historical data storage and searching). For more information on Infoblox integrations with ecosystem partners, visit the Ecosystem Integration with SIEM page on Infoblox.com. Infoblox will conclude the support of Data Connector-based Threat Insight on May 5, 2023. On May 5, 2023, Infoblox will conclude support of the configuration that delivers Threat Insight using the Data Connector (DC). This only impacts customers who use both BloxOne Threat Defense (Advanced or Business licenses) along with NIOS appliances that are connected to the Infoblox Cloud via the DC. This does not affect self-contained versions of on-prem Threat Insight on NIOS platforms or cloud-only versions of Threat Insight. A very small number of Infoblox customers utilize configurations that use the Data Connector Threat Insight, therefore; continued support is no longer practical. In preparation for this change, Infoblox will no longer store internal authoritative DNS queries in the Infoblox cloud for customers sending such data via the Data Connector. Internal queries are not required for Data Connector, Threat Insight or any other supported uses. As a result, this end of support is unlikely to impact Threat Insight. After February 18, 2023, there will be no change to the network or configurations. After May 5, 2023, calls for support will no longer be accepted for this configuration. As such, we recommend discontinuing this configuration as soon as possible to preserve resources for your on-prem appliance and network. If your deployment uses this configuration, please reach out to your Customer Success Advocate (CSA) to discuss options for transitioning to a supported, more dynamic, and reliable configuration. |
02/17/2023 | BloxOne Threat Defense | Enhancement: BloxOne Threat Defense changes to combination feeds. The combination RPZ feeds (high_block, high_log, med_block, med_log, low_block and low_log) will be changed for maintenance purposes. There may be minor but noticeable changes to the number of indicators available in each feed. |
02/16/2023 | BloxOne Ecosystem | Enhancement: Data Connector supports filtering expressions and additional filter types for DNS security logs.
For information, see Data Connector. |
02/10/2023 | Cloud Services Portal | Feaure and Enhancement: BloxOne introduces a new debugging CLI, so you can troubleshoot issues related to cloud connectivity and on-prem host deployment. Through the Device UI, you can enable or disable a secure terminal connection on port 2022 between your BloxOne host and the newly implemented debugging CLI. When you experience issues related to cloud connectivity or BloxOne platform image deployment, you can troubleshoot those issues through the debugging CLI. |
01/27/2023 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: BloxOne DDI now supports external forwarders when DNS Forwarding Proxy (DFP) and BloxOne DDI DNS cohabitate on the host. BloxOne DDI now has the ability to use DNS Forwarders when co-deployed with the BloxOne Threat Defense DNS Forwarding Proxy (DFP). These DNS Forwarders will be used in lieu of recursing to the Internet root name servers. This is helpful in situations where access to the root servers is restricted. For more information, see Using Forwarders. Clear leases and resend DDNS updates for multiple leases. DHCP leases can now be cleared at the subnet or range level or by selecting multiple leases. You can also resend DDNS updates simultaneously for a number of active leases. You must update the on-prem host to the latest version for the clear lease functionality to work. For more information, see Clearing Lease and Resending DDNS Update. Configure lease time as a filter in the hardware filter or option filter. You can configure lease time within a DHCP filter. This way, you can assign different lease times to different types of devices within the same subnet. For more information, see Creating IPv4 Hardware Filters and Creating Option Filters. Configure DHCP Option 58/59 T1/T2 timer values for IPv4 and IPv6 DHCP leases. You can configure 'Renewal Time (T1)' and 'Rebinding Time (T2)' values for IPv4 and IPv6 DHCP leases at the subnet level. This will enable devices that need to retain an IP address for an extended period get regular updates of network infrastructure changes via new DHCP options from renewals. For more information, see Defining Lease Times. Synchronize and display DNS records imported from Microsoft Active Directory. BloxOne DDI is now able to directly import DNS data from Microsoft Active Directory, allowing for the offloading of DNS functions from AD servers. For more information, see Microsoft Active Directory Integration. View AWS Route 53 private zones and records. BloxOne DDI now supports the ability to read DNS private zones and resource records that are served from Amazon AWS Route 53 service. For more information, see Amazon Route 53 Integration. Import or Export DHCP Host object. You can now manage IPAM/DHCP Host objects in bulk using the standard import/export process in the Cloud Services Portal; both JSON and CSV data formats are supported. For more information, see Importing and Exporting Data and Supported Attributes. Refinement of CSV import process resulting in requiring fewer fields. BloxOne DDI has enhanced the CSV import process to require fewer fields when creating DNS objects. Assign or remove tags for multiple fixed address objects. This enhancement provides the ability to add or remove tags for multiple DHCP fixed address objects simultaneously. The tags assigned to IP addresses and their fixed addresses are now synced with each other. For more information, see Creating Fixed Addresses. |
01/13/2023 | BloxOne Threat Defense BloxOne DDI | Enhancement: Displaying a list of announcements, instead of only the most recent announcement, for new BloxOne releases on the Cloud Services Portal. In previous releases, the landing page of the Cloud Services Portal displayed new feature announcements only for the most recent BloxOne release. It now displays a list of feature announcements for the past 30 days. This helps you keep track of all BloxOne product releases within the Cloud Services Portal without having to visit a separate website. |
01/09/2023 | BloxOne Dossier | Enhancement: Dossier Summary Report now includes a screenshot image of queried domains. With the implementation of the Dossier domain image feature, it is now possible to view a potentially dangerous domain without visiting it. Visual examination of a target domain can dramatically cut down on research time. For information, see Dossier Summary Report. |
01/06/2023 | BloxOne Threat Defense | Enhancement: Category filters adopt a "tree-like" design structure similar to application filters. With the implementation of an updated design, category filters and their associated subcategories are easier to navigate and to use from within the Cloud Services Portal. For information see Creating Category Filters. |
12/02/2022 | Cloud Services Portal | Enhancement: On the Cloud Services Portal, the configuration of global NTP settings is now under Manage > NTP. This function was previously under Manage > Hosts. For information, see Configuring Global NTP Settings. |
11/23/2022 | Cloud Services Portal | Enhancement: BloxOne supports streamlined record filtering for viewing, analyzing, and downloading of service logs. A revamped service logs page provides the ability to filter log records based on timestamp, log type, and host. Filtered results can be viewed on the page or downloaded in CSV format. Filtering criteria can be saved for re-use. For information, see Viewing Service Logs. |
11/12/2022 | BloxOne Threat Defense | Feature and Enhancement: BloxOne supports policy scopes based on external and internal networks allowing overlapping/inclusion of the scopes defined in other policies. Policy precedence defines which policy will be chosen. For example, you can define a strict policy with higher precedence for infrastructure devices (e.g., routers) which are located in the same subnet with employees. For information see Configuring Network Scopes and Configuring External Networks. BloxOne security policy actions support the following DNS response TTL enhancements.
BloxOne application discovery supports two new, default application filters: All Approved Applications and All Unapproved Applications. Using the new filters, an application can be assigned an approved or unapproved status. Application status can be viewed on the Application Discovery summary page. This feature is available to BloxOne Threat Defense Advanced subscribers. For information on application discovery, see Viewing Applications. BloxOne lookalike domain management adds a suspicious flag to domains reported as being malicious or suspicious. A suspicious flag has been automatically added to the DNS Activity and Security Activity reports to indicate malicious and suspicious domains. Flagged domains are added to a custom list automatically, providing an organization the option of automatically adding them to a custom configured block/log list. For information see Custom Lookalike Domain Monitoring. BloxOne access authentication supports a configurable sign-out session page for authenticated users. Authenticated users can sign out of a session from the same captive portal page. For information see Managing Access Authentication. |
11/04/2022 | BloxOne API | Enhancement: BloxOne enhances your monitoring solution by providing an API in the cloud that you can use to query current metrics. You can now integrate the BloxOne on-prem solution with your monitoring tools by using the newly implemented API to query current metrics of the infrastructure and services deployed on your hosts. Supported metrics include host CPU, memory, storage, port metrics, and protocol metrics. For more information, see https://csp.infoblox.com/apidoc. |
11/01/2022 | BloxOne Dossier | Enhancement: Dossier integration for the Emerging Threats threat feed by Proofpoint (ETPro). Integration with ETPro data when using a customer-provided Proofpoint API key provides a unified threat view of their threat ratings alongside the other rich threat Intelligence available within Dossier. For information, see Dossier Summary Report. |
10/27/2022 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: BloxOne DDI now displays DNS Name in the IPAM view. The IPAM view in BloxOne DDI has been enhanced to automatically populate the DNS Name column if a DNS View is associated with an IP Space. The maximum DHCP lease time is now set to five years. BloxOne DDI will automatically convert imported DHCP lease times that are unlimited to the maximum supported by the system, which is five years. For more information see, Defining Lease Times. BloxOne DDI supports IPv4 /32- and IPv6 /128-prefixed networks. BloxOne DDI now supports /32-prefixed networks for IPv4 and /128-prefixed networks for IPv6. For more information, see Creating Subnets.. DHCP and DNS Host Service Updates. During host updates, the BloxOne DDI host DNS and DHCP services will receive a periodic update for general maintenance purposes. |
10/21/2022 | BloxOne Threat Defense | Feature: BloxOne Threat Defense supports Application Discovery. Application Discovery allows you to see many of the applications used within your environment. Using DNS-based traffic patterns and detection signatures created by the Infoblox Threat Intelligence Group, many applications can be observed and associated with your protected assets. Because this is DNS-based, it automatically works for all the assets protected by BloxOne Threat Defense. The new interface (found under Reports) allows you to choose what applications are part of your supported standards and which applications are not. While the complete list of applications is extensive, many categories of applications are supported, including the following categories; business, personal storage, search engines, email, remote connectivity, video conferencing, data storage, and marketing services. By tracking applications, you gain better visibility into Shadow IT and applications with increased risk, such as unmanaged cloud storage providers. Increased visibility and compliance are just another part of BloxOne Threat Defense. Note: Check the interface regularly, as we will add new application detections over time. Not all applications that can be detected can be blocked in a security policy. Feedback on a specific application detection can be given within the Dossier screen. Application Discovery is available to BloxOne Threat Defense Advanced subscribers. For information, see Application Discovery. |
10/20/2022 | Cloud Services Portal | Feature and Enhancement: The BloxOne platform supports basic HTTP authentication for REST API. Basic authentication provides the ability to use authentication credentials in the form of a CSP API key in the authorization header of the HTTP API. The API key replaces the username and password for a more secure means of basic authentication. For information, see Using Basic Authentication. You can restart BloxOne services from the Cloud Services Portal. In addition to starting and stopping BloxOne services, you can now restart services through the Cloud Services Portal. For information, see Enabling and Disabling Services on Hosts. BloxOne supports importing and exporting NTP service configuration data. You can now import and export NTP service configuration data through the Cloud Services Portal. For information, see NTP Service Configuration (ntpserviceconfig). |
10/18/2022 | Cloud Services Portal | Feature: BloxOne now provides security logs generated from supported sources, so you can monitor the security and safety of your network infrastructure. On the Cloud Services Portal, you can now view security events generated by supported application sources and download the security logs in CSV format. For more information, see Viewing Security Logs. |
10/15/2022 | BloxOne Threat Defense BloxOne Endpoint | Enhancement: Intelligent Pop Selection enabled on DNS Forwardng Proxy (DFP) and BloxOne Endpoint for AMS customers. BloxOne Threat Defense customers (mostly AMS) have been migrated to new infrastructure supporting intelligent PoP selection. For information, see DNS Forwarding Proxy and Endpoint Management. |
9/30/2022 | BloxOne Dossier | Enhancement: Infoblox TLD Score is now included in the Dossier Threat Indicator Report summary. The TLD score indicates the level of risk associated with a top level domain (TLD). This score along with other data presented by Dossier can help when making a decision to block or allow a remote domain. For more information, see Dossier Threat Indicator Summary Report. |
9/24/2022 | BloxOne DDI BloxOne DHCP | Feature: BloxOne DDI can now be deployed in distributed IPv6 environments. BloxOne DDI can be deployed in distributed IPv6 environments where the DHCP server is not on the same subnet as the clients it is serving. |
9/8/2022 | Cloud Services Portal | Feature and Enhancement: BloxOne extends troubleshooting support via the Device UI to bare-metal host deployments. For bare-metal host deployments, you can now review configuration status and download the support bundle via the Device UI for troubleshooting purposes. For more information, see Troubleshooting Hosts. BloxOne implements metric-based traffic routing, so you can prioritize network interfaces for communication with the Cloud Services Portal. You can now modify the metrics of network interfaces for each gateway on the respective host, so you can influence the routing path used for cloud communication. For more information, see Viewing and Modifying Host Configuration. |
8/30/2022 | BloxOne Endpoint | Feature: BloxOne Endpoint log level settings from the management portal. With this upgrade, BloxOne Endpoint troubleshooting becomes much easier. You will be able to change log level for BloxOne Endpoint directly from the Cloud Services Portal (https://csp.infoblox.com). BloxOne Endpoint will be upgraded to support the feature on 8/30/2022. You can postpone the upgrade if needed. For information, see Endpoint System Level Logging. |
8/22/2022 | BloxOne Threat Defense | Enhancement: BloxOne Threat Defense support for filter categories. New content categories and sub-categories are now supported for custom filter creation. For information, see Creating Category Filters. |
8/19/2022 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: BloxOne DDI now supports the ability to create and manage SVCB and HTTPS resource records. You can now create HTTPS and SVCB resource records. In addition, you can enable synthesizing A and AAAA records from an HTTPS record, which can be used to define an alias even at the apex of a zone. For more information, see Controlling DNS Queries. You can configure access control lists (ACLs) for IPv6 addresses. BloxOne DDI now supports the ability to add IPv6 addresses and networks to ACLs used to control access to the DNS server in DNSv6 environments. For more information, see Creating Access Control Lists. You can now use simplified CSV import parameters to create a file for import. The parameters in the CSV export have been simplified with the objective of making it easier to edit a CSV file. The parameters are now self-explanatory and easily editable. For more information, see Import Parameters. BloxOne DDI provides the ability to show or hide graph elements in reports. You can now select the check box for a parameter to appear in the graph. Clear the check box for the parameter to be hidden from the graph. The graph is updated automatically based on your selection. For more information, see Viewing Reports. |
8/16/2022 | BloxOne DNS BloxOne DHCP | Feature: You can view license utilization of your BloxOne licenses by quarter, month, or day for the past two years. BloxOne DDI now allows you to view how BloxOne licenses are utilized in your organization. You can view license utilization for DNS queries, active IP addresses, and instances deployed across your BloxOne environment for the past two years or eight quarters. You can filter license utilization by quarter, month, or day. If a license is expired or about to expire, the report will show an error. For more information, see Viewing License Entitlements. |
8/15/2022 | BloxOne Threat Defense BloxOne Endpoint | Feature and Enhancement: BloxOne Threat Defense supports "block no log" and "redirect no log" security policy actions. In some cases, you may need to block traffic without logging information about the action due to the large volume of events. Infoblox is releasing these new policy actions so you can suppress such noise events and be able to focus on important security issues. The new policy actions, "block no log" and "redirect no log," block DNS requests without logging events in the Security Activity report. The blocked DNS requests will be available in the DNS Activity report. For information, see Adding Policy Rules and Setting Precedence. BloxOne Threat Defense support three new indicator feeds. This release introduces three new feeds for security policies. The first two provide additional options for blocking sanctioned nations. The existing sanctioned feed, “US OFAC Sanctions IPs,” will now only block nations that are embargoed (Cuba, Iran, Myanmar, North Korea, Syria and Venezuela). The two new feeds are “US OFAC Sanctions (High) IPs” and “US OFAC Sanctions (Med) IPs.” The “Sanctions (High)” blocks all nations in the embargoed list, plus the following: Belarus, Cambodia, Central African Republic, China, Democratic Republic of Congo, Iraq, Libya, Macao, Russia, and Yemen. The “Sanctions (Med)” includes all of the nations included in the embargoed and high lists, plus the following: Lebanon, Somalia, South Sudan, Sudan, and Zimbabwe. Additionally, Infoblox has decided to create a new feed for suspicious indicators. Suspicious indicators are indicators that identify sites that should be blocked based on clear evidence, even though an attack using the indicator has not been triggered at that time. For information, see Viewing Threat Feeds and Threat Insight. Tag support for BloxOne Threat Defense objects. Tags provide you with an ability to add additional context to the configuration settings. With this release, administrators will be able to define tags for the following Threat Defense objects: BloxOne Endpoint, BloxOne Endpoint groups, custom lists, security policies, DNS forwarding proxies, category and applications filters, custom redirects, internal domains, and external networks. In subsequent releases Infoblox will be able to provide enhanced services based on tags. For information, see Applying Tags. BloxOne Endpoint Chromebook support for Google API. BloxOne Endpoint for Chromebooks will be upgraded to support new Google APIs. The service may become unavailable for outdated endpoints, so all customers are encouraged to upgrade endpoints as soon as possible. For information, see Deployment of BloxOne Chromebook Client. BloxOne Policy for non-authenticated users. Access authentication service allows you to define security policies per user group and authenticate users with third-party IdP providers such as Microsoft Active Directory, Azure Active Directory, Okta, and OpenAM. This release enables the creation of security policies for non-authenticated users (users before authentication), IoT, and/or infrastructure devices if they cannot be authenticated at all. Policies for non-authenticated users and devices can be very restrictive to allow communications with a very limited number of domains and/or applications. This upgrade will require DNS forwarding proxy to restart with the planned service interruption for up to two minutes. For information, see Authentication Policy for Non-authenticated Users and Non-authenticated Devices. |
8/12/2022 | Cloud Services Portal | Feature: You can now control user access to the Cloud Services Portal and associated functionality by enabling restricted IP addresses for selected user groups. For more information, see Restricting Access for User Groups. |
8/9/2022 | Data Exchange (TIDE) BloxOne Dossier | Enhancement: Feed filtering for BloxOne Dossier/TIDE. In this release, you can precisely control the type and volume of indicators sent to your appliances by specifying individual indicator class and defining the threat and confidence levels that are being put into a customized RPZ feed. This allows users to precisely control type and volume of indicators sent to their appliances. For information, see TIDE Data. Dossier Integration (Bring Your Own License) for Mandiant Dossier supports Bring Your Own License (BYOL) integration with Mandiant data when using a customer-provided API key. For information, see Dossier Summary. |
7/29/2022 | BloxOne DNS | Feature: Filter absolute_zone_name , dns_absolute_zone_name, and dns_absolute_name_spec, via the BloxOne API. BloxOne DDI now supports filtering on the fields absolute_zone_name , dns_absolute_zone_name, and dns_absolute_name_spec, via the BloxOne API. These fields contain the fully qualified domain names as opposed to the relative domain names. |
7/14/2022 | Cloud Services Portal BloxOne Ecosystem | Feature and Enhancement: Data Connector supports multiple data connectors to pull data/logs from BloxOne Cloud. Multiple data connectors can now be deployed to pull data/logs from BloxOne Cloud and send the data to multiple destinations. For more information, see Configuring Destinations. Data Connector supports multiple indexers for Splunk Destination. Multiple indexers can now be provisioned to a Splunk destination allowing for optimum load distribution. For more information, see . For more information, see Setting Up Splunk. The BloxOne customer service portal now displays the serial number for all virtual appliance, deployments such as VMware, Azure, AWS, KVM. Serial numbers of all virtual, deployments for VMware, Azure, AWS, and KVM can be viewed in the BloxOne customer service portal. For more information, see https://support.infoblox.com. |
7/13/2022 | BloxOne Endpoint | Enhancement: Monitoring BloxOne Endpoint connectivity to Point of Presence (PoP). As a DNS administrator, you can now monitor to which PoPs your endpoints are connected. When BloxOne Endpoint connects to a new PoP, the endpoint connection status will automatically be updated allowing for better tracking of potential DNS connectivity issues and for determining what geographic region your endpoint resides. For more information, see Endpoint Management. |
7/12/2022 | BloxOne Threat Defense | Enhancement: Three new threat/RPZ feeds are available for DNS firewall. The following new threat/RPZ feeds are available for DNS Firewall:
For more information, see Viewing Active Threat Feeds and Threat Insight. |
7/7/2022 | Cloud Services Portal BloxOne DNS BloxOne DHCP | Feature and Enhancement: A new Trusted Partner user group, “ib-trusted-partner,” is now available in BloxOne. The user group, “ib-trusted-partner,” is now available in BloxOne, giving assigned users read-only access to information in BloxOne, without the ability to make changes. Saved filters for BloxOne DDI objects can be reloaded for future use without re-configuration. You can now configure and save filters for various BloxOne DDI objects and reload the saved filters for future use without re-configuring them again. Filters are available for DNS, DHCP, and IPAM objects as well as reports. For more information, see Configuring DNS Zones. Network discovery information is displayed for IPAM objects imported from NIOS. Network Discovery infor mation associated with IPAM objects imported from NIOS using the NIOS Grid Connector is now automatically displayed in the information pane on the Cloud Services Portal. For more information, see Enabling the NIOS Grid Connector Service. |
6/23/2022 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: Dashboard time intervals have been expanded. The time intervals for Dashboards can now be configured for 48 hours, 7 days, and 1 month, in addition to the existing 24 hours. For more information, see Viewing the Dashboard. Reports time intervals have been expanded. The Total DNS Queries, Total DHCP Lease Operations, and Top DHCP Client Requests can now be configured for 1 hour. For more information, see Viewing Reports. DNS Server Groups can be added to Forward Zones. You can now configure DNS server groups and add them to forward zones, in addition to the existing primary and secondary zones. For more information, see Creating a Forward Zone. Fixes: Searching for subzones in Flat Zone View now shows the associated FQDNs of the subzones. Infoblox resolved an issue that occurred when searching for a subzone and its associated FQDN was not displayed. When the same subzone was used in multiple domains, it could be difficult to locate it without going through the entire list. Search results now include the subzone and its associated FQDN. |
6/21/2022 | Data Exchange (TIDE) BloxOne Dossier | Dossier and TIDE enhancement: ThreatFox malware detection for Dossier from Abuse.ch ThreatFox reports indicators of compromise (IOCs) associated with malware giving more context to your threat investigations. For information, see Dossier Source Descriptions. |
5/21/2022 | BloxOne DNS BloxOne DHCP | Feature and Enhancement: BloxOne DDI supports the ability to create HA groups over Anycast. BloxOne DDI now supports the ability to configure HA Groups that utilize the BloxOne Anycast service. A DHCP Anycast HA Group is an Active/Active pair of hosts that share a virtual IP address (VIP) for DHCP protocol communications, acting from the clients’ perspective, as “one” DHCP server. The VIP is advertised using the BloxOne Anycast service, which leverages either OSPFv2, OSPFv3, or BGP to announce reachability. For more information, see High Availability for DHCP and Creating HA Groups. You can configure BloxOne DDI to send DHCP DDNS Updates to Microsoft DNS Servers using GSS-TSIG. Building on the existing ability to receive GSS-TSIG DDNS updates, BloxOne DDI can now send GSS-TSIG authenticated DDNS updates to Microsoft DNS servers. DDNS updates are used to dynamically update DNS data, based on DHCP client information. For more information, see Enabling DDNS for IPv4 Clients. BloxOne DDI lifts DHCP lease limits for hosts. BloxOne DDI hosts (or HA pairs) running DHCP are no longer limited to 25,000 leases each. Now, each host (or HA pair) can support an unrestricted number of leases, based on the locally available resources. BloxOne supports deploying hosts in Amazon AWS. You can now deploy BloxOne DDI on hosts in AWS using Infoblox-provided Community or Public BloxOne AMI images. For more information, see EC2 Instances Using AMI in AWS Deployment. You can view the status of long-running tasks. BloxOne DDI provides the ability to view tasks that run in the background. You can view the entire list of tasks, clear the task from the list, or edit the tasks. For more information, see Viewing Background Tasks. Ability to sync Microsoft zones and DHCP exclusion ranges from NIOS to the Cloud Services Portal. NIOS Grid Connector allows you to import Microsoft-managed zones and DHCP exclusion range from NIOS to the Cloud Services Portal. For more information, see Configuring NIOS Grid Connector. You can include client IP address, MAC address, and DNS view the information in outgoing DNS queries. Include the client IP address, MAC address, and DNS view information of the client from which the DNS query was initiated, to outgoing recursive queries. For more information, see Using Forwarders. BloxOne DDI now supports conflict resolution for DHCP with multiple options. Conflict resolution ensures that the DNS record's information associated with one DHCP client is not updated by other DHCP clients. For more information, see Enabling DDNS for IPv4 Clients. Overall DDI Dashboard Performance enhancements Widgets on the DDI dashboard have been enhanced to improve overall performance with significantly improved result response time. Additionally, all graph time indexes are now standardized to UTC. BloxOne DDI enhances host selection for DHCP HA Groups. Search results are now repaginated to simplify host selection when creating and managing DHCP/DNS config profiles, DHCP HA Groups, and Subnets. |
5/13/2022 | Cloud Service Portal | BloxOne expands the ability for you to specify custom templates for webhook notifications.You can now integrate your notification platforms by specifying custom templates for webhook notifications. You can specify any number of webhooks and their associated templates and specify the notification types they will be used for. For information, see Configuring Service Integrations. |
5/3/2022 | BloxOne Endpoint | BloxOne Endpoint enhancements: You may now implement security policies based on user groups with supported SaaS IdP (Identity Provider) which currently includes Okta and OpenAM.A policy provisioned for a BloxOne Endpoint Group will be applied before a user is authenticated. Once a user is authenticated, it will be possible for the user to browse the Internet or other restricted content as allowed by the policy. For more information, see Endpoint SSO Authentication. The BloxOne Endpoint is available for deployment on Chrome OS version 90 and above.BloxOne Endpoint is available on the following platforms: Microsoft Windows, MacOS, iOS, Android, and Chrome OS. Note that Android and Chrome devices should be managed by Google Admin Console. For more information, see Mobile Endpoint Management. Scheduling and/or deferring upgrades per endpoint group.It is now possible to evaluate new features and enhancements in a test group before rolling out the upgrade to the entire company. You may also postpone the upgrade to a more convenient date/time per endpoint group. For more information, see Scheduling Endpoint Group Updates. Netskope client compatibility with BloxOne Endpont.BloxOne Endpoint is officially certified to run with Netskope client 93.0.1, provided that you disable "Bypass Loopback DNS feature flag" on Netskope. For more information, see Endpoint Compatibility Guidelines. Policy management enhancements: User authentication and group-based policies with Microsoft Active Directory for DNS Forwarding Proxy (DFP).In addition to SaaS IdP providers Okta, OpenAM, Microsoft Azure Active Directory, it is now possible to authenticate users on Microsoft Active Directory. This service is supported for standalone DFP (deployed in a VM or as a container) or running with BloxOne DDI services. For more information, see Configuring Microsoft Windows Active Directory Sync for Hosts. Access authentication exceptions based on subnets or individual IP addresses.To allow non-authenticated access for IoT and infrastructure devices to the same DFP infrastructure used by other users, you can now define exceptions based on subnets or individual IP addresses. For more information, see Associating Authentication Profiles with Servers. Support for safe search enforcement.DNS category filtration provides good protection against explicit content, but search engines themselves can provide access to restricted content. For compliance reasons, or simply to prevent juveniles or other users access to such content, search engines provide "safe" versions of their search engines, which filter out inappropriate results. To help enforce the policy for all devices, this new policy feature can automatically redirect users to a safe version of the supported search engines. This feature currently supports the following search engines: Google Search, Bing, Youtube, and Yandex. For more information, see Safe Search Enforcement. Local DNS request processing optimization.To reduce the number of noise requests forwarded to the cloud and to avoid misconfiguration, DFP and BloxOne Endpoint will automatically forward all PTR requests for any private subnets (e.g. 10.0.0.0/8, 192.168.0.0/16, etc.) to local DNS servers. With this enhancement, you will not need to list such subnets in the internal domains or custom allow lists. For more information, see Forwarding DNS Traffic to BloxOne Threat Defense Cloud. BloxOne Threat Defense RESTful API updates.
For more information, see DNS Event and BloxOne Threat Defense API Guide. Infoblox introduces a new NTP service for all BloxOne Threat Defense Business Cloud and Advanced customers to reduce dependency on third-party services and to ensure that a common time source is used for all devices, .The NTP service can be deployed standalone, or along with DNS Forwarding Proxy or other services on hosts. You can configure the NTP service uniformly across the account with the possibility of overriding locally on the host wherever NTP service is deployed. The service supports detailed configuration, including authentication, specific attributes, and access control lists. For more information, see Configuring NTP Service. Dossier and TIDE enhancements: Bring Your Own Feed (BYOF) – A new method to create RPZ feeds from TIDE Custom Profiles.You can now define an RPZ name during the creation of a TIDE profile to have it automatically create an RPZ file from data uploaded to TIDE. Users who have access to other third-party data sources shared with TIDE can better utilize these feeds using the DNS firewall or when sharing threat intel to other solutions in the security stack. For more information, see TIDE Data Submission on the Cloud Services Platform. |
4/29/2022 | Cloud Services Portal | Enhancement: You can now remove B1-105 physical hosts from the Cloud Services Portal. For more information , see Removing Hosts and Deploying the B1-105 Appliance. |
4/29/2022 | Cloud Services Portal | Enhancement: You can now remove B1-105 physical hosts from the Cloud Services Portal. For more information , see Removing Hosts and Deploying the B1-105 Appliance. |
4/20/2022 | Cloud Services Portal | Enhancement: The point of presence (PoP) in South Africa has been updated to enhance BloxOne services and DNS performance. |
4/11/2022 | Cloud Services Portal | Enhancement: In-app and email notifications are now sent from BloxOne prior to user and service API key expiration. Notifications occur on a daily basis two weeks prior to and up through the date of expiration. For more information on user and service API keys, see Configuring User API Keys and Configuring Service API Keys, respectively. |
4/8/2022 | Cloud Services Portal | Enhancement: Infoblox supports the deployment of hosts via the Microsoft® Azure Marketplace. You can now deploy BloxOne for Azure virtual appliances directly from the Azure Marketplace. For more information, see Deploying NIOS-X Servers from the Azure Marketplace. |
4/7/2022 | Cloud Services Portal | Enhancement:
|
4/2/2022 | BloxOne DHCP | Enhancement: BloxOne DDI now supports sending DHCP options that are longer than 255 bytes (by sending the options in multiple consecutive packets). For more information, see Configuring DHCP Options. |
3/29/2022 | Cloud Services Portal | Feature:
|
3/28/2022 | Cloud Services Portal | Enhancement: You can now receive email and/or in-application notifications of new release information based on your entitled BloxOne subscriptions. You can modify this setting in the Notification Settings page for specific user groups by choosing the “New Release Notifications” in-app and/or email setting. For more information, see Configuring Notification Delivery. |
03/25/2022 | BloxOne Dossier | Enhancement: The Dossier™ Summary page now includes a link to a feedback submission form where you can report indicator information found contrary to the information being reported by Dossier. You can report the following types of incorrect threat indicator information:
For more information, see Dossier Threat Research Feedback. |
03/24/2022 | BloxOne DNS BloxOne DHCP | Enhancement: Data Connector provides the following enhancements:
For more information, see Configuring Traffic Flows. |
03/19/2022 | BloxOne DNS | Enhancement: The BloxOne DDI DNS container v3.1.6 addresses the following vulnerabilities: CVE-2022-0396 and CVE-2021-25220.
|
03/03/2022 | BloxOne DNS BloxOne DHCP | Enhancement: You can now review active IP addresses and total BloxOne instances on the BloxOne Dashboard, which assists you in managing BloxOne licenses and capacity planning as well as investigating sources of active IP addresses to ensure the network infrastructure and design align with your business requirements. The BloxOne dashboard now includes a License Utilization tab, showing active IP addresses and total BloxOne instances. For more information, see Viewing the Dashboard. |
02/25/2022 | Cloud Services Portal | Enhancement: Anycast BGP configuration for hosts now supports 4-byte ASNs, including ASPLAIN and ASDOT formats. For more information, see Configuring Anycast for Hosts. |
02/18/2022 | BloxOne DNS BloxOne DHCP | Enhancement:
|
02/02/2022 | BloxOne Endpoint | Enhancement: BloxOne endpoints are no longer displayed in the Cloud Services Portal once they are moved to the recycle bin.
For more information, see Managing Endpoint. |
01/28/2022 | BloxOne DNS | Enhancement: DNS objects, such as DNS views, authoritative zones, forward zones, access control lists, and others are now supported in Global Search. This expands the set of available objects and tags to quickly find and take actions on hosts, devices, and users throughout the enterprise. For more information, see Using Global Search. |
01/12/2022 | BloxOne Endpoint BloxOne Threat Defense BloxOne Ecosystem | Feature and Enhancement:
|
01/11/2022 | Cloud Services Portal | Enhancement:
|
01/05/2022 | BloxOne Ecosystem | Enhancement: Infoblox Data Connector now supports sending logs from BloxOne and NIOS sources to a Splunk Cloud destination in Splunk CIM or legacy Infoblox data format. For more information, see Configuring Traffic Flows. |
01/04/2022 | BloxOne Threat Defense | Enhancement: Depreciation of the ActiveTrust Platform. Infoblox replaced the ActiveTrust platform three years ago with the introduction of BloxOne Threat Defense built on the Cloud Service Platform, a modern and scalable platform built for a future of dynamic cloud-native security and networking solutions. Most customers have already migrated but there may still be a few using legacy connectors. Please ensure any use of the legacy system at (platform.activetrust.net) has been moved to the new cloud services portal (csp.infoblox.com). For developer resources please visit the TIDE and DOSSIER guide for CSP, and If you have any additional questions, please contact Infoblox Support at 888-463-6259. |
12/17/2021 | BloxOne Threat Defense | Enhancement: The Security Activity Report permanently replaces the former Security Report. Since the release of the new Security Activity Report to Infoblox Threat Defense about a year ago, the former Security Report has been retained to ease with the transition. As newer reporting capabilities have been added to the new Security Activity Report, dependence on the older report has declined and it is time to remove it. There is no action required on your part as the former Security Report will be removed from the Cloud Services Platform menu after December 17, 2021. |
12/16/2021 | BloxOne DHCP | Enhancement:
|
12/04/2021 | BloxOne DHCP | Enhancement: When using the DHCP/DDNS service, you now have an option to strip the hostname from the client-provided FQDN, as part of DHCP option 81. For more information, see Enabling DDNS for IPv4 Clients. |
11/30/2021 | BloxOne Dossier | Enhancement: The Dossier Summary report page now includes additional application detection data in the returned search results. The additional detection information includes the domain's SSL certificate when available along with the application classification information for the domain. The application classification data indicates whether the searched domain possesses malicious content or whether it is benign. The Dossier API has been updated to include the two new data parameters. For more information, see the Dossier Summary report. |
11/18/2021 | BloxOne Ecosystem | Feature: Data Connector now sends DHCP lease logs to all applicable destinations and supports CIM and the legacy Infoblox data format for Splunk destinations. For more information, see Configuring Traffic Flows. |
10/30/2021 | BloxOne DNS BloxOne DHCP | Maintenance: The BloxOne DDI DNS container v3.1.4 addresses the following vulnerability: CVE-2021-25219. For more information, see What’s New in BloxOne DDI. |
10/19/2021 | BloxOne Cloud Services Portal BloxOne Threat Defense BloxOne DNS BloxOne DHCP | Enhancement:
|
10/01/2021 | BloxOne Cloud Services Portal | Feature:
Enhancement:
|
09/21/2021 | BloxOne Cloud Services Portal | Feature:
Enhancement:
|
09/03/2021 | BloxOne DNS BloxOne DHCP | Feature:
|
08/27/2021 | BloxOne DNS BloxOne DHCP | Maintenance: The BloxOne DDI Reporting Service will be under maintenance for 90 minutes starting Friday, August 27th 11:00 PM UTC. The DDI DNS and DHCP reports on the Cloud Services Portal (CSP) would be unavailable during the maintenance. All other reports and services would remain unaffected. |
08/12/2021 | BloxOne Cloud Services Portal | Feature:
Enhancement:
|
07/08/2021 | BloxOne Cloud Services Portal | Enhancement: Email notifications on administrative events to Infoblox Single Sign-On (SSO) Portal administrators. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI. |
06/29/2021 | BloxOne Threat Defense BloxOne DHCP | Feature: Define security and DNS resolution policies on a per-application basis; Infoblox local resolution; DNS SVCB and HTTPS records can be used to pass DNS firewall and provide information on how to connect to malicious or undesirable destinations; improved interface for the Dossier Threat Research Portal; updated Dossier and TIDE developer guides; BloxOne Endpoint supports the Apple M1 CPU; new DNS Point of Presence (PoP) in Bahrain; support of import/export of DHCP/IPAM data for BloxOne DDI. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI. |
06/18/2021 | BloxOne Cloud Services Portal | Feature: Dual-stack support for on-prem networks; MTU configuration; JSON template for on-prem configuration; global search. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI. |
06/11/2021 | BloxOne DNS BloxOne DHCP | Feature: The next available subnets and address blocks; configuring the MNAME in the DNS SOA record; ability to copy DNS objects between DNS views; creating multiple vendor DHCP option spaces that are independent of each other; configuring BloxOne DDI to send alerts/notifications when an HA peer changes status. For more information, see What’s New in BloxOne DDI. |
05/18/2021 | BloxOne Cloud Services Portal | Enhancement: Custom webhook integration for notifications. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI. |
05/14/2021 | BloxOne DNS BloxOne DHCP | Feature: Defer application restarts; configuration-generated versioning reduces downtime; BloxOne DDI service status integrated with the Cloud Services Portal; support of DNS zone delegation. For more information, see What’s New in BloxOne DDI. |
05/03/2021 | BloxOne DNS | Enhancement: Overriding DDNS settings at the IP Space, Address Block, and Subnet levels. For more information, see What’s New in BloxOne DDI. |
04/28/2021 | BloxOne DNS BloxOne DHCP | Maintenance: The BloxOne DDI DNS container version v3.0.5 addresses the following vulnerabilities: CVE-2021-25216, CVE-2021-25215, and CVE-2021-25214. For more information, see What’s New in BloxOne DDI. |
04/24/2021 | BloxOne DNS BloxOne DHCP | Enhancement: DNS and DHCP application updates applied to hosts running BloxOne DDI DNS and DHCP services; improvements made to the handling of sub-option 125 within DHCP custom option spaces to allow most formats. For more information, see What’s New in BloxOne DDI. |
04/13/2021 | BloxOne DNS BloxOne DHCP | Feature: BloxOne DDI adds the following new reports for DNS and DHCP: Total DNS Queries per Second (QPS) Report, Total DNS Responses Report, Total DNS Queries Report, Top DHCP Clients Report, and Total DHCP Leases Report. For more information, see What’s New in BloxOne DDI. |
04/09/2021 | BloxOne Cloud Services Portal | Enhancement: Infoblox changed the "From" address for BloxOne notifications. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI |
04/07/2021 | BloxOne Cloud Services Portal | Feature: Support for customer-provided Identity Providers using the standard SAML 2.0 interface. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI |
03/23/2021 | BloxOne Threat Defense | Feature: Security activity report rollup summary; IPAM interface for managing internal networks; IPv6 support for anycast and external networks; BloxOne Endpoint uninstallation using a password. For more information, see What’s New in BloxOne Threat Defense. |
03/17/2021 | BloxOne DHCP | Enhancement: The recycle bin now supports DHCP Fingerprints. For more information, see What’s New in BloxOne DDI. |
03/12/2021 | BloxOne DNS | Maintenance: The value of the resolver query timeout for DNS can now be set between 10 - 30 seconds (instead of 1 – 30 seconds). The default value is now 10 seconds (instead of 30 seconds). |
03/08/2021 | BloxOne DNS BloxOne DHCP | Enhancement: Options to receive alert notifications for the following service status: DNS, DHCP, Data Connector, Anycast, and Authentication. For more information, see What’s New in BloxOne DDI. |
02/22/2021 | BloxOne DNS BloxOne DHCP | Feature: Ability to move objects to the recycle bin and restore the objects as required. For more information, see What’s New in BloxOne DDI. |
02/22/2021 | BloxOne Cloud Services Portal | Feature: Ability to view the state for anycast configuration and status for Anycase service; support for multiple scheduled and deferred software and configuration updates; Help me sign in process improvement. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI |
02/16/2021 | BloxOne Cloud Services Portal | Feature: Interactive and service API keys; filter configuration persistence on the Cloud Services Portal. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI. |
02/05/2021 | BloxOne DNS BloxOne DHCP | Feature: DHCP HA in hub-and-spoke; copy IPAM and DHCP objects within IP spaces; ability to create TSIG keys while creating DNS and DHCP objects; additional details for a host displayed on the Cloud Services Portal: Uptime, Last Update time, and Component Updated. For more information, see What’s New in BloxOne DDI. |
02/05/2021 | BloxOne Threat Defense | Enhancement: Additional details for a host displayed on the Cloud Services Portal: Uptime, Last Update time, and Component Updated. For more information, see What’s New in BloxOne Threat Defense. |
01/26/2021 | BloxOne Threat Defense | Feature: Restart host through Troubleshoot; ability to select network interface for traceroute and traffic capture; ability to reactivate tags. For more information, see What’s New in BloxOne Threat Defense. |
01/26/2021 | BloxOne DNS BloxOne DHCP | Feature: Restart host and clear DNS cache through Troubleshoot; ability to select network interface for traceroute and traffic capture; ability to reactivate tags. For more information, see What’s New in BloxOne DDI. |
01/26/2021 | BloxOne Ecosystem | Enhancement: Additional fields in the CEF, LEEF, and CSV reporting messages. For more information, see What’s New in BloxOne Threat Defense. |
01/21/2021 | BloxOne Threat Defense BloxOne DNS BloxOne DHCP | Feature: Infoblox SSO Portal adds support for ForgeRock as the 3rd party IdP using the SAML 2.0 protocol. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI. |
12/18/2020 | BloxOne Endpoint | Enhancement: Added support for Appgate VPN. |
12/12/2020 | BloxOne Threat Defense | Feature: New access authentication service through captive portal and third-party IdPs; enhanced security policy configuration wizard; discovered DHCP metadata displayed in DNS Activity and Security Events reports; serial numbers for physical appliances are displayed on the Cloud Services Portal and are searchable and filterable. For more information, see What’s New in BloxOne Threat Defense. |
12/12/2020 | BloxOne DNS BloxOne DHCP | Feature: Serial numbers for physical appliances are displayed on the Cloud Services Portal and are searchable and filterable. For more information, see What’s New in BloxOne DDI. |
12/4/2020 | BloxOne DNS | Feature: New Dashboard Widgets, DNS UDP packet size configuration, clearing DNS cache, and DHCP lease logs to syslog servers through Data Connector. For more information, see What’s New in BloxOne DDI. |
11/30/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Lookalike domains update. |
11/18/2020 | BloxOne Endpoint | Enhancement: macOS Big Sur support, option to hide icon in systray, and download package name change to BloxOne Endpoint. For more information, see What’s New in BloxOne Threat Defense. |
11/18/2020 | BloxOne Threat Defense | Enhancement: Custom List IPv6 support. For more information, see What’s New in BloxOne Threat Defense. |
11/13/2020 | BloxOne Cloud Services Portal | Feature: Contextual help for the Cloud Services Portal. For more information, see What’s New in BloxOne Threat Defense and What’s New in BloxOne DDI. |
10/30/2020 | BloxOne Ecosystem | Enhancement: CSV file to Splunk, and count fields for DNS data. |
10/29/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Lookalike domains update. |
10/28/2020 | BloxOne Threat Intelligence Data Exchange (TIDE) | Maintenance: Load balancer update. |
10/26/2020 | BloxOne DNS BloxOne DHCP | Feature: Enhancements to the support for TSIG keys and support for DDNS update with TSIG. For more information, see What’s New in BloxOne DDI. |
10/17/2020 | BloxOne DNS BloxOne DHCP | Feature: Granular configuration of inheritance, view or download NIOS Grid Connector logs, and thresholds for DHCP utilization. For more information, see What’s New in BloxOne DDI. |
10/16/2020 | BloxOne Dossier | Feature: New Impacted Devices report, support for custom list management in Dossier, and viewing whitelisted domains in Dossier. For more information, see What’s New in BloxOne Threat Defense. |
10/13/2020 | BloxOne Cloud Services Portal | Enhancement: Updates to SSO unlock user and k8s best practices. |
10/13/2020 | BloxOne Cloud Services Portal | Enhancement: Changes to BloxOne DDI dashboard permissions. |
10/9/2020 | BloxOne Cloud Services Portal | Enhancement: Dashboards with updated metrics of TCP connection usage. |
10/8/2020 | BloxOne Threat Intelligence Feeds/Services | Enhancement: Improved search configuration and logging threshold. |
10/8/2020 | BloxOne Cloud Services Portal | Enhancement: Support for new entitlement expiry behavior and framework for recycle bin and contextual help for future releases. |
9/30/2020 | BloxOne Cloud Services Portal | Enhancement: Enhancements to authentication and authorization for join tokens. |
9/29/2020 | BloxOne Ecosystem | Enhancement: Improved Data Connector password encryption. |
9/25/2020 | BloxOne Threat Intelligence Feeds/Services | Enhancement: Enhanced threat intelligence log indexer service to reduce logs and consolidate logging infrastructure. |
9/25/2020 | BloxOne DNS | Enhancement: Enhanced tag import and host ID entries for BloxOne DDI. |
9/22/2020 | BloxOne Cloud Services Portal | Enhancement: Enhanced entitlement notifications and group-based entitlement authorization. |
9/18/2020 | BloxOne Endpoint | Feature: Released BloxOne Endpoint 2.0.1, which addressed duplicate product IDs issue in Windows registry. For more information, see What's New for BloxOne Threat Defense. |
9/18/2020 | BloxOne Cloud Services Portal | Enhancement: Fixed issues in the Devices by Type Dashboard. |
9/16/2020 | BloxOne Ecosystem | Enhancement: Enhanced the Data Connector password encryption. |
9/14/2020 | BloxOne Scheduled Maintenance | Maintenance: Health reporter for k3s hosts. |
9/13/2020 | BloxOne Scheduled Maintenance | Maintenance: Maintenance release to include configuration generator, feature flag services, and app definition service. |
9/11/2020 | BloxOne DNS | Feature: Configuration file handling and NIOS Grid Connector support for extensible attributes. For more information, see What’s New in BloxOne DDI. |
9/9/2020 | BloxOne Reporting Services | Enhancement: Enhanced the query and response redirect for the Security report. |
9/8/2020 | BloxOne Cloud Services Portal | Enhancement: Updated the Cloud Services Portal and SSO identity. |
9/3/2020 | BloxOne Threat Intelligence Feeds/Services | Enhancement: Updated the BloxOne Threat Defense custom lists that have expired. |
8/29/2020 | BloxOne Cloud Services Portal | Feature:Host infrastructure for OVA, multi-port support, and IPv6 support to the portfolio of BloxOne IP addresses. For more information, see What’s New in BloxOne Threat Defense. |
8/26/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Lookalike domains for threat feeds. |
8/26/2020 | BloxOne Dossier | Feature: Enhanced Summary section in the Dossier Threat Research Portal, support for a pivot off of the threat actor properties, breadcrumb navigation, and search query parameter for Security-Activity report and DNS report. For more information, see What’s New in BloxOne Threat Defense. |
8/14/2020 | BloxOne PoP Services | Enhancement: Improved notification reliability. |
8/14/2020 | BloxOne Cloud Services Portal | Enhancement: Enhanced granular permissions. |
8/7/2020 | BloxOne Cloud Services Portal | Enhancement: Improved logging. |
8/7/2020 | BloxOne Cloud Services Portal | Enhancement: Support for granular permissions. |
8/7/2020 | BloxOne Endpoint | Feature: BloxOne Endpoint assignment to a custom endpoint group, For more information, see What’s New in BloxOne Threat Defense. |
8/5/2020 | BloxOne Cloud Services Portal | Feature: Custom user roles, and resetting hosts using the Device interface. For more information, see What’s New in BloxOne Threat Defense. |
7/27/2020 | BloxOne Cloud Services Portal | Feature: 3rd party IdP integration, and multi-factor authentication on OktaVerify. For more information, see What’s New in BloxOne Threat Defense. |
7/17/2020 | BloxOne Ecosystem | Feature: Data Connector syslog UDP protocol support, multiple Data Connector deployment, and security event updates. For more information, see What’s New in BloxOne Threat Defense. |
7/3/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds, |
6/30/2020 | BloxOne DNS | Feature: DNS and DHCP data for both BloxOne and NIOS Grid now visible on the Cloud Services Portal. For more information, see What’s New in BloxOne DDI. |
6/24/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds, |
6/20/2020 | BloxOne Scheduled Maintenance | Maintenance: Docker version upgrade and OS upgrade for hosts. |
6/19/2020 | BloxOne DNS | Feature: Default IP associated with DNS view, DDNS configuration for BloxOne managed zones, add/remove tags for multiple objects, adjusting IP settings for OVA hosts, and dark scheme. For more information, see What’s New in BloxOne DDI. |
6/19/2020 | BloxOne Cloud Services Portal | Feature: Additional reporting widgets in the Dashboard. For more information, see What’s New in BloxOne Threat Defense. |
6/3/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
5/30/2020 | BloxOne Cloud Services Portal | Feature: New DNS Activity and Activity Security reports. For more information, see What’s New in BloxOne Threat Defense. |
5/28/2020 | BloxOne Threat Intelligence Data Exchange (TIDE) | Feature: Support for searching for IPv6 and search queries for emails and checksums/hashes (MD5). For more information, see What’s New in BloxOne Threat Defense. |
5/23/2020 | BloxOne DNS | Feature: Additional role-based access control provisions. For more information, see What’s New in BloxOne DDI. |
5/23/2020 | BloxOne DNS Security Service | Maintenance: Security patch for CVE--2020-8616 and CVE-2020-8617. |
5/22/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Lookalike domain version 2 for threat feeds. |
5/12/2020 | BloxOne DHCP/IPAM | Enhancement: Enhanced connection string for DHCP fingerprinting and lease functionality. |
5/11/2020 | BloxOne Ecosystem | Enhancement: Enhanced the ETL (extract, transfer, load) process for the Data Connector. |
5/11/2020 | BloxOne Endpoint | Feature: Custom lists and audit log for BloxOne Endpoint, For more information, see What’s New in BloxOne Threat Defense. |
5/9/2020 | BloxOne DNS BloxOne DHCP | Feature: DNS and DHCP statistics, DNS cache information, and Active-Passive role for DHCP HA pair. For more information, see What’s New in BloxOne DDI. |
5/5/2020 | BloxOne Threat Intelligence Feeds/Services | Enhancement: Threat Intelligence detection enhancements. |
5/5/2020 | BloxOne Threat Intelligence Feeds/Services | Enhancement: Threat Intelligence bug fix relating to Threat Feed Type attribute via API. |
5/4/2020 | BloxOne DNS Security Service | Enhancement: Tagging support for BloxOne Threat Defense features and enhancements. |
5/3/2020 | BloxOne Scheduled Maintenance | Maintenance: Kubernates upgrade, increased memory, capacity scaling automation, and IPv6 dual stack support. |
5/1/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
4/30/2020 | BloxOne Ecosystem | Enhancement: Enhanced Data Connector k3s support. |
4/30/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
4/24/2020 | BloxOne Scheduled Maintenance | Maintenance: Support NIOS customers cloud registration. |
4/24/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Cloud platform deployment services. |
4/24/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
4/23/2020 | BloxOne Cloud Services Portal | Enhancement: Enhanced the What's New functionality. |
4/23/2020 | BloxOne Scheduled Maintenance | Maintenance: Release of updated on-pre host image - OVA, NOA images. |
4/21/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Lookalike domains update. |
4/21/2020 | BloxOne DNS | Feature: Automatic and deferred upgrades, notification settings by user groups, dark color scheme for the Cloud Services Portal, and support for multiple Data Connectors. For more information, see What’s New in BloxOne Threat Defense. |
4/20/2020 | BloxOne DNS Security Service | Enhancement: Enhanced DNS response logs. |
4/16/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
4/14/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
4/14/2020 | BloxOne Cloud Services Portal | Feature: "What's New" section on the Cloud Services Portal, and resolved issues for the BloxOne DDI service. |
4/9/2020 | BloxOne Dossier | Feature: Infoblox InfoRanks list, and Dossier Usage report. For more information, see What’s New in BloxOne Threat Defense. |
4/6/2020 | BloxOne Ecosystem | Feature: Support for multiple Data Connectors per each NIOS Grid. For more information, see What’s New in BloxOne Threat Defense |
4/3/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
3/26/2020 | BloxOne Cloud Services Portal | Maintenance: Support for UI core tool expansion and prepare for SSO/MFA. |
3/26/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
3/18/2020 | BloxOne DNS | Feature: Deployed the support for dnstap. |
3/18/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
3/17/2020 | BloxOne DNS | Feature: Deployed primary DNS authentication for the BloxOne DDI service. |
3/17/2020 | BloxOne DNS BloxOne DHCP | Enhancement: Cloud Services Portal updates to support BloxOne DDI features, removal of the SMTP email settings, and filters in audit logs. |
3/14/2020 | BloxOne DNS | Enhancement: Deployed primary DNS authentication for hosts. |
3/11/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
3/5/2020 | BloxOne Threat Intelligence Data Exchange (TIDE) | Enhancement: Enhanced Threat Lookup for DoH (DNS over HTTPS) feeds. |
3/4/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
3/4/2020 | BloxOne DNS | Enhancement: Deployed enhancements to core DNS authentication for the BloxOne DDI service. |
2/24/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
2/24/2020 | BloxOne Cloud Services Portal BloxOne Ecosystem BloxOne Threat Intelligence Data Exchange (TIDE) BloxOne Reporting Services | Feature: Custom lookalike domain monitoring, DoH solution, Data Connector enhancements, new cloud services portal navigation, and comprehensive Security and Executive Summary reports. For more information, see What’s New in BloxOne Threat Defense. |
2/20/2020 | BloxOne Ecosystem | Maintenance: Data Connector updates. |
2/20/2020 | BloxOne Scheduled Maintenance | Enhancement: BloxOne DDI updates to Bootstrap service, health collectors, and new OVA released. |
2/20/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
2/20/2020 | BloxOne DNS | Maintenance: BloxOne DDI DNS & DHCP update. |
2/15/2020 | BloxOne DNS BloxOne DHCP | Feature: Launched BloxOne DDI NIOS Grid Connector, DNS query/response logging enabled, alerts and notifications sent when config resulted in error, and new PagerDuty service integration. For more information, see What’s New in BloxOne DDI. |
2/14/2020 | BloxOne DNS | Enhancement: BloxOne DDI update for DNS and IPAM services. |
2/14/2020 | BloxOne Cloud Services Portal | Feature: Support for BloxOne DDI services within Cloud Services Portal. |
2/12/2020 | BloxOne Ecosystem | Maintenance: Data Connector updates. |
2/12/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
2/10/2020 | BloxOne DNS Security Service | Maintenance: Platform and Application API expansion. |
2/10/2020 | BloxOne Cloud Services Portal | Maintenance: Cloud Services Portal UI. |
2/6/2020 | BloxOne Ecosystem | Maintenance: Data Connector updates. |
2/5/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
1/30/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
1/24/2020 | BloxOne Threat Intelligence Feeds/Services | Feature: Threat Intelligence: full support for DOH. |
1/22/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
1/17/2020 | BloxOne Cloud Services Portal | Enhancement: Support for In-App, Email and webhook notifications. |
1/16/2020 | BloxOne DHCP/IPAM | Maintenance: DHCP Lease Services. |
1/15/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |
1/14/2020 | BloxOne Cloud Services Portal | Feature: Replacing hosts, security enhancements, additional diagnostic tools, RPZ logs to on-prem SIMES, page settings, notification enhancements, and user permission enhancements. For more information, see What’s New in BloxOne Threat Defense. |
1/8/2020 | BloxOne Threat Intelligence Feeds/Services | Maintenance: Whitelist for threat feeds. |