Release Notes

The release notes for every official version of Cerberus FTP Server. If you need any help setting up Cerberus FTP Server you can browse our online support resources.

Version 7.0 Release Notes Hide show hide icon
Version Official Release -- 7/28/2015
  • Fixed an issue where SMTP email server tests would fail
  • Fixed a potential access violation in the server
  • The UI will now warn the user when a connection to the underlying Cerberus FTP Server service has been lost
  • Added a wait server operation to cause an event rule to pause for a specified number of seconds before executing the next action
  • Numerous minor bug fixes
Version 7.0.10 Official Release -- 7/10/2015
  • Upgraded to OpenSSL 1.0.1p to address an OpenSSL security vulnerability
  • Fixed a bug that would result in incomplete directory reads for SSH SFTP version 6 clients and directories with large numbers of files
  • Added an option to disable TLSv1.0 to the Advanced Security dialog
  • Added an option to perform an alternate method of checking the AD groups an AD user belongs to for domains that don't return group information for a user through ADSI
  • Moved the XML parser for the UI settings file to the same XML framework used for the service settings file
Version 7.0.9 Official Release -- 6/12/2015
  • Upgraded to OpenSSL 1.0.1o to address OpenSSL bugs and security vulnerabilities
Version Official Release -- 6/09/2015
  • Changed IP auto-detection to point to more reliable service
Version Official Release -- 5/08/2015
  • Fixed a bug related to public IP auto-detection that could result in a server crash under certain unusual circumstances
  • Fixed a bug related to user Cerberus accounts that are part of a group ignoring the group's is anonymous setting and using the original account setting
Version Official Release -- 3/19/2015
  • Upgraded to OpenSSL 1.0.1m to address OpenSSL bugs and security vulnerabilities
  • Completed transition of web administration virtual directory, AD, LDAP, event, and license dialogs to new mobile-friendly framework
  • CSV importer can now understand different line encodings
  • Added option to exclude passive port range from syncing
  • You can now customize the email subject for session reports
  • Fixed synchronization and timer bugs that could result in server crashes
Version Official Release -- 2/25/2015
  • Fixed socket send bug that could result in being unable to terminate a connection when a buggy client didn't signal it was ok to send data
  • Fixed a bug in FTP download resumes that could result in corrupt resumed downloads
  • Added SOAP API calls to set and retrieve the IP block list
  • More robust CIDR list import support
  • Added check to make sure an account request cannot be approved if there is already a user with that account name (web administration)
  • Added HTTPS range header support (HTTP/s file download resume and better web video playback)
Version Official Release -- 1/12/2015
  • Updated to OpenSSL 1.0.1k to address security vulnerabilities in OpenSSL
  • New public file sharing SOAP API call to generate a public link to an existing file
Version Official Release -- 12/15/2014
  • Fixed a bug that would not allow new user or group accounts to be created through web administration
  • Renaming a group through web administration now renames the group in any user accounts or AD or LDAP mappings
  • Enhanced rename and add group error checking
  • New RenameGroup web services API call that renames a group and all associated mappings
  • Groups can no longer be deleted through web administration if there is a user that is a member of the group
  • Web client public file link emailing now disallows including the password in the email subject line
  • Auto-updater will now note errors contacting the update site on the summary page
Version Official Release -- 12/08/2014
  • Fixed renaming users and groups in web administration
  • Fixed incorrect date/time display in SFTP and HTTPS for root folders
  • Fixed Send a Session Report action not being available for Logoff events when event first created
  • Fixed several bugs that could result in a service crash if the log file can't be written to (space full, UNC path can't be reached)
  • Other minor bug fixes to UI and web administration
Version Official Release -- 11/11/2014
  • Properly advertise integrity checking command support for SSH SFTP to clients
  • Added CRC32 checksum as SSH SFTP integrity checking option
  • Do not send ".." as part of a directory listing when at a user's root for FTP and SFTP
  • Fix web administration and SOAP DLL exception
Version Official Release -- 10/31/2014
  • Web client Address books are now sortable by email or name
  • Auto-suggest from address book when emailing public links now returns matching names in addition to email addresses
  • External event processes no longer need their paths quoted when there are spaces in the path
  • The working folder now correctly resets for external event process actions when changing the path of an exiting process
  • Removed emtpy log statement for HTTPS uploads
  • Updated HTTPS web client and web administration core libraries
  • Fix web administration and SOAP DLL exception
Version Official Release -- 10/16/2014
  • Disable SSLv3.0 by default
  • Add an option to enable SSLv3.0 on the Advanced Security page
Version 7.0.5 Official Release -- 10/15/2014
  • Updated to OpenSSL 1.0.1j to address security vulnerabilities in OpenSSL
Version Official Release -- 10/14/2014
  • Added ability to set additional public file sharing options through web administration
  • Added ability to customize email options for account request approvals through web administration
  • Added button for testing SMTP server target configurations through web administration
  • Account request email template improvements
  • Minor web administration bug fixes and layout improvements
  • Fixed error reporting for failed database operations - errors were previously being reported as "Invalid cursor state" instead of actual error description
Version Official Release -- 09/29/2014
  • Backup and restore now includes SSH client public keys in the backup set
  • Server synchronization through the sync manager now syncs SSH client public keys
  • Added the sync manager to web administration
  • Added database configuration to web administration
  • Web administration refinements and additions
  • Optimized several images to use font glyphs for web administration to reduce resource page downloads
  • Added a workaround for an IE9 directory display bug for the HTTP/S web client
  • Fixed several rare thread contention isues that oculd lead to server exceptions
Version 7.0.4 Official Release -- 09/17/2014
  • Major re-design of web administration. Switched to a more modern, responsive web framework that scales on different devices
  • Added options to manage remote settings and secondary web administrators through web administration
  • Added clone user and clone group functions to web administration
  • Added option to test cipher strings to web administration
  • Added ability to override group properties on users to web administration
  • Added additional local directory and file selection controls to web administration
  • Added public share editing to web administration
  • Added same report generation controls present on the desktop to web administration
  • Added additional advanced options to web administration
  • Fixed CSV export and import for PBKDF2 HMAC SHA256 and PBKDF2 HMAC SHA512 hashed passwords by adding iteration count
  • HTTP/S web client uploads now show up in the active transfers list and are tracked in the upload speed meter control
  • Minor bug fixes and improvements
Version 7.0.3 Official Release -- 08/07/2014
  • Updated to OpenSSL 1.0.1i to address security vulnerabilities in OpenSSL
  • Fixed HTTP/S web client password strength meter bug in IE8
  • Disabled accounts and accounts configured to allow only SFTP access with public key authentication will no longer receive password expiring emails
  • 3DES encryption cipher is now considered at 112 bit symetric strength to better reflect effective strength
Version 7.0.2 Official Release -- 07/30/2014
  • Disabled users will also register with the "stop authentication if user exists" Policy settings
  • Added PBKDF2 HMAC SHA256 and PBKDF2 HMAC SHA256 stretched password hashing algorithms as password storage hash options
  • Added ability to select active SSH2 ciphers and HMAC algorithms
  • Added SSH2 cipher minimum bit strength display to Summary page
  • HTTP/S web client now allows zero-length file uploads
  • Fixed a problem with the web client data/time control for IE 8 users
  • Added support for generating the correct share link path when connections come in from an HTTPS proxy to a Cerberus HTTP listener
  • Reports now track whether a file operation succeeded or failed
  • Fixed web client bug for displaying local time that only used the user setting for displaying local time
Version 7.0.1 Official Release -- 07/04/2014
  • Fixed a bug in web client folder uploads for Chrome
  • Fixed a bug on web client email selection and address book auto-complete
  • Added an option to force all publicly shared files and folders be password protected
  • Added more account options for CSV import (unlimited directories, password hashes, additional account parameters)
  • Added capability to export user accounts as CSV files
  • Added dedicated require password change option for native accounts
  • Enhanced the default cipher list for HTTPS web administration to require minimum 128-bit, strong ciphers
  • Added option to initiate automatic download of zip file without storing the resulting file on the server for web client zip operations
  • Clients can now modify the share until date on their own publicly shared files
  • Added web client in-browser editing of simple text-based files
Version Official Release -- 06/05/2014
  • Updated to OpenSSL 1.0.1h to address security vulnerabilities in OpenSSL
  • Added new MAC SSH algorithms hmac-ripemd160 and
  • Added DeleteDirectoryFromGroup, AddDirectoryToGroup SOAP API calls
  • Renamed AddRoot, DeleteRoot to AddDirectoryToUser, DeleteDirectoryFromUser SOAP API calls
  • Added create directory option to AddDirectoryToUser and AddDirectoryToGroup API calls
Version Official Release -- 05/27/2014
  • Fixed an information disclosure for SSH logins vulnerability. Analysis of failed login result could allow attacker to determine if an account exists or not. Thanks to Steve Embling, a Pentura Security Researcher, for discovering and reporting this vulnerability.
  • Fixed ability to update to a different theme in the web client for LDAP and AD accounts
  • Fixed web client file list sorting
  • Hide the security question list for AD and LDAP accounts since they can't currently use the password reset feature
  • Added password strength/entropy meter to HTTP/S web client account request and change password pages
Version Official Release -- 05/22/2014
  • Added 3DES back to the list of available SSH ciphers
  • Added a cipher list test button and a cipher list box to the Advanced Security dialog
  • Changed the ephemeral EC generated to be compatible with IE
  • IE8 HTTP/S web client improvements
Version 7.0 Official release notes --
  • New 7.0 Release
  • Redesigned HTTP/S web client that's been optimized for both desktop and mobile browsers
  • Folder upload through HTTP/S web client with Chrome
  • Enhanced web client address book for users
  • Web client custom theme support
  • Web client search support
  • Web client image and video thumbnail viewing
  • Redesigned Report Manager
  • Added report sorting
  • Added multiple web administrators with fine grained access controls
  • Publicly shared file links are now included in user statistics reporting
  • Added max share duration limit for publicly shared links
  • User manager UI improvements
  • Event manager UI improvements
  • Performance improvements
  • Enhanced login reports
  • New session file access email report event action
  • Email notification of important events like user password expiration and password changes
Version 6.0 Release Notes Show show hide icon
Version 5.0 Release Notes Show show hide icon
Version 4.0 Release Notes Show show hide icon
Version 3.0 Release Notes Show
Version 2.50 Release Notes Show
Version 2.4 BETA Notes Show
Version 2.3 Release Notes Show
Version 2.2 Release Notes Show
Version 2.1 Release Notes Show
Version 2.0 Release Notes Show
Version 1.0 Release Notes Show