From: "Dmitry Akindinov" Received: from mail.moscow.stalker.com ([89.175.185.228] verified) by mail.bestvoip.ru (CommuniGate Pro SMTP 6.2c3) with ESMTPS id 2980910 for CGatePro@ru.stalker.com; Fri, 25 Aug 2017 18:11:29 +0300 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=stalker.com; s=test1; bh=/C+wNWOHUR0D2fs21N6IMz+5VaZpIqQAas0xk9eIwvA=; h=Content-Transfer-Encoding:Content-Language:Content-Type:In-Reply-To: MIME-Version:Date:Message-ID:Organization:From:References:To:Subject; b=X1r/k OjCs415KrVKlF1pLL+rBzkcAFjeg+1M6y22ZWGpD/c9rY6NzeFaBYgIzbORWT9GUZy5S0DrC4T9cI Aji5+kuBE/U4BiWqX3fpybIWZKuxEpi5usEFkdLZQPDQwWkzX0049FGDxcgWWHjgHIvs/+YNKoxSs IsnXE3YHvHqw= Received: from [77.37.172.181] (account dimak@mail.moscow.stalker.com HELO [192.168.0.112]) by mail.moscow.stalker.com (CommuniGate Pro SMTP 6.2c4v) with ESMTPSA id 52799295 for CGatePro@ru.stalker.com; Fri, 25 Aug 2017 18:11:28 +0300 Subject: Re: [CGP] CommuniGate Pro 6.1.17 is released To: CommuniGate Pro Russian Discussions References: Organization: Stalker Labs Message-ID: <913566ab-0332-4179-f92f-fac17089c9b7@stalker.com> Date: Fri, 25 Aug 2017 18:11:28 +0300 User-Agent: Mozilla/5.0 (Windows NT 6.1; rv:52.0) Gecko/20100101 Thunderbird/52.3.0 MIME-Version: 1.0 In-Reply-To: Content-Type: text/plain; charset=utf-8; format=flowed Content-Language: en-US Content-Transfer-Encoding: 8bit Здравствуйте. Настоятельно рекомендуется обновление до этой версии, особенно если используется интерфейс Pronto HTML. On 2017-08-25 18:00, support wrote: > Minor/Bug fix Release > > The CommuniGate Pro 6.1.17 has been released: > > == Valid Core License Keys: issued after the 1st of Feb, 2014 == > > This version is higly recommended for deployment as it includes protection from possible attacks to WebUser (regular and Pronto) sessions. [] > > History: > 6.1.17 25-Aug-2017 > > > * Pronto: Pronto! HTML Version 6.1.17 is included. > * MAPI: the MAPI Connector version 1.54.12.18 is included. > * WEBSKIN: extra protection from WebUser session stealing and cross-site scripting. > * WEBUSER: extra protection from WebUser session stealing and cross-site scripting. > * CALENDAR: updates to recurring items are processed even if original item is missing. > * TLS 1.2 compatibility with other implementations has been improved. > * SMTP: attacker IP is blacklisted also when errors are made in separate sessions. > * AIRSYNC: added workaround for task updates that miss task start time. > * Bug Fix: SMTP: some locally generated messages might be considered as relayed and blocked with restricted relaying settings. > * Bug Fix: HTTP: some requests with chunked encoding proxied to cluster backends might be processed incorrectly. > * Bug Fix: TLS: the server might crash on TLS handshake with incorrect elliptic curves parameters. -- Best regards, Dmitry Akindinov