Core Product Changelog

Updates to the Senteon App


2026-06-05
Office L1 Update Adj. 2 // 2.6.2-2

App Versions

  • Senteon Agent 2.6.2.1 (unchanged)
  • Senteon Command Center 2.6.2.2

Adjustments

  • Retooled table persistence in the app to prevent issues where column visibility would be restored incorrectly after an update that added new columns to a table.
    • Fixes issue where the Modify button in group configuration workflows would not be visible and could not be turned visible without clearing local storage.
  • Added a "Set Annotation" mass-action button in setting workflows that sets a decision note for all selected settings (except the ones that don't have a decision yet)
  • Adjusted Baseline Primers and Finalization workflows to make it more clear when settings require annotations to be added due to the Annotation Requirement account settings.

Bug Fixes

  • Fixed issue where CSV report for an Individual Endpoint would be empty.

2026-05-31
Office L1 Update // 2.6.2-1

App Versions

  • Senteon Agent 2.6.2.1
  • Senteon Command Center 2.6.2.1

New Features

  • Added the Office L1 Add-On Profile
  • Added the NIS2 Directive 2022/2555 Mappings

Bug Fixes

  • Fixed an incorrectly mapped backing value for the "Enable network prediction" setting in the Microsoft Edge Add-On Profile.
  • Groups that set this setting to the incorrect backing value will be automatically corrected. Agents within those groups may produce a drift alert.

2026-05-19
L2 + BitLocker Adj. 8 // 2.6.1-8

App Versions

  • Senteon Agent 2.6.1.3 (unchanged)
  • Senteon Command Center 2.6.1.8

Tenant Name Restrictions

  • Relaxed tenant name restrictions to allow spaces and special characters other than the double quote.
  • Adjusted installation script generation to automatically recognize characters in the tenant name that will need to be escaped to be read properly by powershell/msiexec and alter the script accordingly.

Account Settings

  • Added global-scoped account setting to require all users in the organization to setup MFA. Once enabled, this setting becomes enforced for each user the next time they login.
  • Adjusted the Auto-Acknowledge Drift Correction setting to also automatically acknowledge other types of drift alarms that users are not expected to take action on. The setting has been renamed to match this new functionality.

Minor Adjustments

  • Adjusted Favicon to the new logo.
  • Setting Descriptions can now be shown in Endpoint Reports (HTML). As these descriptions are large, users will have to click a button to display a particular setting’s description.
  • Added a Quick-Copy button to the Setting Description panel.

Bug Fixes

  • Fixed issue where certain pages could fail to load if the tenant had a large number of endpoints with the same hostname.

2026-05-06
L2 + BitLocker Adj. 7 // 2.6.1-7

App Versions

  • Senteon Agent 2.6.1.3 (unchanged)
  • Senteon Command Center 2.6.1.7

Adjustments

  • Improved responsiveness of drop down lists with many items throughout the app.
  • Replaced the old logo with our new logo.

Bug Fixes

  • Fixed issue where HTML Endpoint Reports would not be able to load endpoints that had not been initialized.

2026-04-08
L2 + BitLocker Adj. 5 // 2.6.1-5

App Versions

  • Senteon Agent 2.6.1.3
  • Senteon Command Center 2.6.1.6

Adjustments

  • Reorganized the General Settings page.
  • Agent now updates its version in the registry when starting up.

Bug Fixes

  • Fixed issue where HTML Endpoint Reports would not be able to load endpoints that had not been initialized.

2026-03-19
L2 + BitLocker Adj. 4 // 2.6.1-4

App Versions

  • Senteon Agent 2.6.1.2 (unchanged)
  • Senteon Command Center 2.6.1.5 (unchanged)

Bug Fixes

  • Fixed issue where the server could not accept incoming alerts from agents if no value had been set for the Auto Acknowledge Drift Correction organization setting.

2026-03-11
L2 + BitLocker Adj. 3 // 2.6.1-3

App Versions

  • Senteon Agent 2.6.1.2 (unchanged)
  • Senteon Command Center 2.6.1.5

Adjustments

  • Added account setting that can be used to automatically acknowledge Drift Correction alarms, preventing them from appearing in the Action Center.

    • This setting can be controlled at a global level and per-tenant. Tenant-Scoped selections take priority over the global setting.
  • Added a Loading Feedback Indicator to the Evaluation page that appears while CC is distributing orders to evaluate to endpoints.

  • Optimized the loading of the Tenants List when organizations have many tenants.
  • Added Date of Report Generation to the Endpoint PDF Report.

Bug Fixes

  • Fixed issue where the Omit Unmanaged option for Endpoint HTML Reports was not working correctly.
  • Fixed issue with some tables in the finalization not showing the correct columns

2026-02-25
L2 + BitLocker Adj. 2 // 2.6.1-2

App Versions

  • Senteon Agent 2.6.1.2 (unchanged)
  • Senteon Command Center 2.6.1.4

Adjustments

  • Adjusted alarm loading to prevent the action center from taking too long to load when you have a ton of alarms.
  • Added Mass setting controls to the Baseline Creation review page.
  • Added a switch to API Keys that allow them to read from all tenants, which will work retroactively with any tenants added after the creation of the key.
  • When using the Labels flag on the installer, if a provided label doesn't already exist, the system will attempt to create the requested label and assign it to the newly registered endpoint.

Bug Fixes

  • Fixed some issues with CSV Reports
  • Fixed some issues with Excel Export on a few tables in the webapp
  • Fixed an issue with the new PDF reports failing if you had unsupported endpoints
  • Fixed an issue where endpoint alarms were not updated correctly when initializing endpoints (existing false alarms will still be present until the endpoint(s) have their status updated again)

2026-02-10
L2 + BitLocker Update // 2.6.1-1

App Versions

  • Senteon Agent 2.6.1.2
  • Senteon Command Center 2.6.1.2

New Features

  • Custom Option Selectors have been added for all settings that configured a list of things, such as User Rights Assignment settings, Named Pipes, Remotely-accessible network drives, etc. Users are now able to fully configure these lists, with the ability to add, remove and modify entries in any way they desire.
    • The starting list the user is given when they first click the button to select a custom option will include all entries in the recommended set, as well as any additional entries that are in the acceptable set. Additionally, there's a "reset" button included to revert the custom list state back to this default state.
    • User-Rights Assignment settings allow identities to be specified by either name or their SID. The user input assumes you're using a username unless you prepend a * to your input. If you provide a SID that's well-known (always refers to same identity on every machine), the input box will automatically update to the username of the identity that SID points to.
  • Added support for settings that have no explicit recommended value (setting a single, explicit recommended value for all users of Senteon would run counter to the point of these settings).
    • If they are the target of a Mass Action that would try to set them to their recommended value, they are given a random string as input instead. A decision for these settings will never show up as "Compliant-Recommended", only "Compliant-Acceptable"
  • Added support for settings that affect an entire registry key instead of a single registry value.
    • A substantial refactor has been done to the configuration engine during this update to make it easier down the line to add support for any wacky new setting behaviors we encounter in the future.
    • One of the side effects of this refactor is some settings that were previously considered "case-sensitive" may no longer be case-sensitive.
    • This refactor does not affect all types of settings, so some settings may still erroneously be treated as case-sensitive.
  • New Add-On Profiles Available (upon request):
    • CIS-L2 (Based off of Windows Workstation recommendations)
    • CIS "Legacy Settings" (A few settings that were on previous CIS recommendations but were later removed)
    • BitLocker

2026-01-21
Add-On Expansion Update 1 Adj. 10 // 2.6.0-10

App Versions

  • Senteon Agent 2.6.0.4 (unchanged)
  • Senteon Command Center 2.6.0.11

Adjustments

  • Updated documentation links

Bug Fixes

  • Fixed issue where endpoints could be initialized without being added to a baseline group.
    • Also improved speed of initialization process
  • Fixed issue where incorrect columns were being shown for Endpoint Info page’s setting table.
  • Fixed issue where recently added alerts were not included in the list of options for the Message filter on the Alerts page.

2026-01-07
Add-On Expansion Update 1 Adj. 9 // 2.6.0-9

App Versions

  • Senteon Agent 2.6.0.4 (unchanged)
  • Senteon Command Center 2.6.0.10

Bug Fixes

  • Fixed issue where several pages throughout the webapp would fail to load for organizations that had never touched the Require Annotation settings.

2026-01-06
Add-On Expansion Update 1 Adj. 8 // 2.6.0-8

App Versions

  • Senteon Agent 2.6.0.4 (unchanged)
  • Senteon Command Center 2.6.0.9

Endpoint PDF Report Revamp

  • Users can now request a PDF Endpoint Report without having to first generate the HTML Endpoint Reports.
    • This new type of report is accessible via a separate tab in the Report Generation page, as it has different configuration settings than the existing HTML Endpoint Reports.
    • The new PDF Report provides identifying, status, and group information about all endpoints selected for the report, along with their Compliance and Health Scores, with a nifty breakdown of how many settings are Compliant/Noncompliant, and Healthy/Drifted/Unmanaged. It also includes a nifty ring graph that aggregates the Compliance and Health Scores from all endpoints in the report for an overall score and breakdown.
  • The “Save to PDF” option in the HTML Endpoint Reports has been removed, as an analysis of its underlying functions revealed that it used a huge amount of memory per endpoint, so much so that it was unsustainable to continue using it. The new reports are quite an improvement over the old ones, so give them a try!

Decision Annotation Enforcement

  • Added organization settings that allow administrators to require that an annotation be provided for a baseline decision if it meets a certain condition:
    • Decision leaves a setting unmanaged.
    • Decision gives setting a noncompliant target option.
  • Organizations can choose to require an annotation for each of the above conditions independently from each other. You can require annotations for just unmanaged settings, just noncompliant settings, or both. Neither option is on by default.
  • These requirements will only be enforced for a baseline the next time it is edited. At that point, the user will be required to ensure that all settings in the baseline comply with the requirements before applying the final changes.
    • The Baseline Update process will only enforce the requirement for settings that have actually been marked as requiring an update.
  • The “Mass Action” buttons of the various workflows that modify baseline configurations will now display a dialogue box that allows users to enter an annotation for settings that the action updated, if the decision they made requires one. The entered annotation will be applied to all affected settings that required one.

Quality Of Life Adjustments

  • Added a loading indicator for the Initialize Endpoints button in Endpoint Setup so that it doesn’t seem like the entire app hangs when you initialize several endpoints at once.
  • Added a widget to the Organization Dashboard that breaks down endpoint counts with various agent statuses throughout the organization. This functions identically to the status widget in the Tenant Dashboard.
  • Increased the maximum selectable page size for tables displaying endpoints to accommodate tenants with larger endpoint counts.
  • Page Size and Column Visibility for tables throughout the webapp is now stored and loaded from local storage, allowing it to persist between pages

Bug Fixes

  • Fixed issue where the Executive Summary Report setup page’s maximum setting count for the Consistency widget was lower than the total number of settings that an endpoint could manage with the recent Add-On Profiles.
  • Fixed issue where the Endpoint Info page’s Settings table did not include the setting name or path in its list of search fields, leading to users failing to find a setting they were looking for despite entering completely reasonable search terms.
  • Fixed issue in Evaluation page where all endpoints would disappear from the table after starting an evaluation, even endpoints not told to evaluate.

2025-11-25
Add-On Expansion Update 1 Adj. 7 // 2.6.0-7

App Versions

  • Senteon Agent 2.6.0.4 (unchanged)
  • Senteon Command Center 2.6.0.6

Login/Registration/Verification adjustments

  • Email Verification is now required to login.
  • The Verification workflow now sends a code instead of a link, to avoid issues with certain email scanners clicking the link and rendering it useless before the user can complete the flow.
  • If a user fails to login specifically because their email has not been verified, the verification workflow will automatically be started and the user will be redirected to the code entry UI for verification.
  • The user must now wait at least 60 seconds before requesting a new verification code to prevent easy spam.
  • The webapp will now redirect users to the verification page to handle the automatic verification workflow started after registration, instead of the registration showing its own notice that a verification email had been sent.

2025-11-04
Add-On Expansion Update 1 Adj. 6 // 2.6.0-6

App Versions

  • Senteon Agent 2.6.0.4
  • Senteon Command Center 2.6.0.5 (unchanged)

Adjustments

  • Minor Security Improvements related to server connections.

2025-10-29
Add-On Expansion Update 1 Adj. 5 // 2.6.0-5

App Versions

  • Senteon Agent 2.6.0.3
  • Senteon Command Center 2.6.0.5

Fixed Issues

  • Fixed issue where agents wouldn't remove a phantom drift alarm for a setting after successfully completing a manual drift correction for that setting.
  • Fixed issues where certain report functionality of Command Center stopped working under the new Content-Security-Policy.

2025-10-27
Add-On Expansion Update 1 Adj. 4 // 2.6.0-4

App Versions

  • Senteon Agent 2.6.0.2 (unchanged)
  • Senteon Command Center 2.6.0.4

Adjustments

  • When changing passwords or registering, passwords that can be found in a public breached password database will be rejected.
  • Added security-related response headers to the web app that help the browser avoid executing code that isn't part of the web app.

2025-10-14
Add-On Expansion Update 1 Adj. 2 // 2.6.0-2

App Versions

  • Senteon Agent 2.6.0.2
  • Senteon Command Center 2.6.0.2

Adjustments

  • Account Recovery Flow now requires users to enter a code instead of clicking on a link, to avoid issues with email scanners invalidating the recovery links.

Fixed Issues

  • Fixed user annotation display issue in finalization.
  • Fixed issue that allowed the Tenant List page's Compliance Percentage text to report a negative number.
  • Fixed issue preventing agent from storing alerts in its local database to hold onto when it can’t connect to the server.
  • Fixed issue where Agent could send updates to setting status to the server on unsubstantial changes.
  • Fixed issue where Agent can forget actions taken on a setting since the last verification and the actual drifted value of a drifted setting if shutdown after reconfiguring but before verifying.

2025-09-08
Add-On Expansion Update 1 // 2.6.0-1

App Versions

  • Senteon Agent 2.6.0.1
  • Senteon Command Center 2.6.0.1

Setting Catalog Updates

  • Added Microsoft Edge Add-On Profile.
  • Added two new framework mappings: NYDFS NYCCR 500 and NIST SP 800-171 Rev. 3.
  • Corrected the name of the ISO27001 framework mapping.
  • Improved the loading speed of the Setting Catalog file for little-endian systems (which should be most systems).
  • Reworked the Framework Mappings UI to be less intrusive and have a bit more visual consistency across frameworks.
  • Adjusted the Google Chrome Baseline Primers.
  • Added Turn on Powershell Transcription to the Baseline Primers for Windows Workstation profiles.
  • Updated the Event Log Settings Baseline Primer section to File Size Settings.

Improvements to Configuration Versions and Add-On Handling

  • Baselines now track the configuration version used for each endpoint profile they have settings for, with their reported version being the highest version among all relevant endpoint profiles.
    • This highest version is considered the required version for an endpoint to join the baseline without going into configuration lock.
    • In the Attached Baseline list for a Global Baseline, the version column instead shows the version of the attached baseline for the global baseline’s parent profile.
  • A baseline is now eligible for a baseline update if the configuration version for any of its endpoint profiles is less than the maximum possible version for that endpoint profile.
  • Add-On Baselines can be attached to and detached from Tenant Baselines regardless of version differences between the two objects, however, syncing a baseline to one of its attached global baselines requires the two objects to have the same version for the Global Baseline’s endpoint profile.
  • Various UX improvements to the Attachment Management workflow for a baseline.

Improved “Sidequest” functionality for Attachment and Create Baseline Workflows

  • When you start either the Attachment or Create Baseline workflows and click the Create New button for an Add-On Profile to create a new Add-On Baseline to attach, completing the process of creating that new baseline will now resume the original workflow where you left off.

Alert System Improvements

  • Added Audit alerts for many user actions:
    • Joining the Organization
    • Inviting a user to the organization
    • Modifying permissions of a user
    • Changing the organization’s settings
    • Creating a Tenant
    • Resetting Agent(s)
    • Disabling Agent(s)
    • Enabling Agent(s)
    • Requesting Agent(s) to Evaluate
    • Finalizing Agent(s)
    • Requesting Agent(s) to remediate drift
  • The performance of these alerts will be monitored for a time to ensure stability, but adding a more comprehensive user audit system is planned in the future.
  • The Alert Retention Policy is now visible in a tab on the main Alerts page, and a mailto link is provided for users to request the retrieval of archived alerts.
  • Alerts reported by agents now include the local-machine timestamp that the alert was generated.
  • “Progress” alerts for Command Center requests no longer include the target user name and endpoints in their details. This information is present in the new alert created when the request is made, and can be referred to by the Action Order Id present in all of these alerts.

Additional Functionality

  • Added the ability to rename a tenant via the Tenants page.
  • Added a Stale Endpoint widget that will allow users to see how many endpoints in a tenant haven’t checked in for more than 30 days, and easily remove these “stale” endpoints.

UI Improvements

  • Improved the loading speed of the Baseline Groups page when many baseline groups are present in the tenant.
  • Added Excel Export functionality to the Setting Drift tab of the Action Center.
  • Added a page size selector to the vast majority of tables throughout the web app.
  • Added filtering and sorting capabilities to the Actions Required column of the Endpoints list.
  • Adjusted the Agent Deployment screen to allow users to generate an installation script without overwriting their registration code (users will have to replace the PLACEHOLDER in this script with the registration code themselves).
  • Adjusted the Agent Deployment script to use Invoke-Webrequest instead of wget, as the latter has been removed in newer versions of powershell.
  • Added a Compliance Indicator to Baseline Primer Sections and certain Baseline Update sections that informs the user whether or not all settings in the section have been set to a compliant target option.
  • Improved the filtering on the current group column in the Move Endpoints (within a Baseline) workflow.
  • Added a User Annotation column to the Configuration Status table in the Endpoint info page and Endpoint Reports. This column displays any user annotation added to that setting in the endpoint’s group.
  • Setting Tables now include the CIS description and, where relevant, the User Annotation, within the text search functionality, to make it a bit easier to find a setting you’re looking for without knowing its name.
  • Improved the display of error messages in the Create Exception workflow.
  • Adjusted visuals of the warning banner that in the Add Baselines to Global Baseline page.
  • Adjusted the Add Baselines to Global Baseline page to now include a column indicating if a baseline is already attached to another global baseline for this endpoint profile, and whether or not the baseline will be able to sync with the global baseline without a baseline update.

Fixed Issues

  • Fixed Issue where updating the information of an exception group with many settings could fail due to server timeouts.
  • Fixed Issue where a global baseline containing settings from multiple endpoint profiles could be created by basing it off of a tenant baseline with multiple endpoint profiles.
  • Fixed Issue with setting a custom option for the Limits print driver installation to Administrators setting in Windows Workstation profiles caused by incorrect display metadata.
  • Fixed Issue where User Rights Assignments settings with the Built-In Guest user as a default value would always appear in the preconfigured settings list during finalization.
  • Fixed Issue where agents would attempt on every system configuration refresh to activate/deactivate settings that had their configurations revised from its group’s config set. (This situation most commonly would occur for Variable Compliance settings, where the baseline was configured as though the key feature was present and the key feature is actually absent from the agent’s machine (or vice versa).
  • Fixed Issue where the Baseline Update Automator would get stuck in a loop if either of the Baseline Configuration sections would not be visible for this update.
  • Fixed Issue where certain Baseline Update pages would fail to render if the working baseline had the same name as its tenant.
  • Fixed Issue where the setting edit page for setting groups in the finalization and baseline update workflows would reset all decisions made on the page if a different setting in the group was selected for the table that displays current configurations for endpoints.
  • Fixed Issue where entering the Baseline Attachment workflow caused many elements in the webapp to stop working until the app was refreshed.

2025-09-01
Add-On Profile Update Adj. 16 // 2.5.0-16

App Versions

  • Senteon Agent 2.5.0.2 (unchanged)
  • Senteon Command Center 2.5.0.7

Identity Changes

  • Active sessions are now revoked after changing your password.
  • Changing your password now always requires re-authentication.

Fixed Issues

  • Fixed issue where Administrators had no way to remove non-administrative users from the organization.
  • Fixed issue where Updating a Label did not have the same restrictions as Creating a Label.

2025-08-06
Add-On Profile Update Adj. 14 // 2.5.0-14

App Versions

  • Senteon Agent 2.5.0.2
  • Senteon Command Center 2.5.0.6 (unchanged)

Agent Security Improvements

  • At startup, the Agent will now maintain the ACLs of its installation directory and certain files/subdirectories within it, ensuring only SYSTEM and the Administrators group can access them, and that elevation is needed to mess with the files regardless of the ACLs of folders above the installation folder.
    • This is a novel behavior from the Agent, and some overly agressive virus protection software may flag the agent for this action. Users may need to make exceptions in such software for the agent to allow it to run again.

Other Improvements

  • Adjusted the agent's logging system to include Event Ids for events related to calls to the server.

2025-06-09
Add-On Profile Update Adj. 13 // 2.5.0-13

App Versions

  • Senteon Agent 2.5.0.1 (unchanged)
  • Senteon Command Center 2.5.0.6

Fixed Issues

  • Fix issue where certain UI elements throughout the app would stop working after interacting with the Add-On or OS Baseline dropdowns in the Group Creation Dialog and then entering the Group Creation workflow.
  • Fix issue in the Setting Editor for Finalization and Baseline Updates workflows where, if you were working on a related group of settings, choosing a different setting to show current values for in the endpoint list would cause the whole editor workflow to reset.

2025-05-19
Public API Adj. 2 // 2.5.0-11

App Versions

  • Senteon Agent 2.5.0.1 (unchanged)
  • Senteon Command Center 2.5.0.5

Public API Key Management

  • API Keys can now have their request limits edited after their initial creation.
  • Added an option to create an API key with no expiration date.
  • The maximum expiration date that can be set (outside of no expiration date) is now 10 years into the future instead of 2.

2025-05-01
Add-On Profile Update Adj. 7 // 2.5.0-7

App Versions

  • Senteon Agent 2.5.0.1
  • Senteon Command Center 2.5.0.3 (unchanged)

Fixed Issues

  • Fixed issue where the System Configuration module in the agent could deadlock if a full synchronization with the server was triggered at an inopportune time.
    • Adjusted the Agent Updater to kill Agents stuck in the Stop Pending state, to allow agents that have already reached a deadlock to update without any manual intervention.
  • Fixed issue where Agent would add itself to the Google Chrome profile instead of the Unsupported Profile if no OS profiles matched its machine.
  • Fixed issue where Agent would not create a Drift Corrected Alert when responding to Manual Drift Correction under certain conditions, resulting in Drift Alarms never being removed.

2025-04-15
Add-On Profile Update Adj. 6 // 2.5.0-6

App Versions

  • Senteon Agent 2.5.0.0 (unchanged)
  • Senteon Command Center 2.5.0.3

Adjustments

  • Updated dependencies and trimmed down unused files in the app, reducing its overall size a bit. Users may have to go through initial app load again, but it may be a bit faster than in the past.
  • Updated behavior of the arrows on expandable components to point right when the component is contracted and down when the component is expanded.
    • This primarily affects the following areas:
      • Information Dialogs for Configurable Settings
      • Endpoint Reports
      • Alerts
  • Improved the appearance of the Delete API Key confirmation window and allowed closing the dialog by clicking off of it.
  • Reset To Global Baseline buttons in the Add-On Attachment workflow will now smartly enable and disable based on whether there are actually changes to reset.
  • The endpoints list page will now properly update the navigation breadcrumb.

Fixed Issues

  • Fixed issue where version checks for syncing baselines via the Global Baselines section were incorrect, preventing users from syncing a tenant baseline to its OS Global Baseline if the tenant baseline had Chrome settings.
  • Fixed issue where add-on profiles were shown as options in the Override Profile dialog.
  • Fixed issue preventing exporting Endpoint Reports to PDF.
  • Fixed issue in Endpoint Reports where endpoint Setting History would not load if the endpoint was managing add-on profiles.
  • Fixed issue in CSV reports where setting data would always be empty.

Known Issues

  • When changing which Global Baseline is being used for an add-on profile, the Reset To Previous Global Baseline button acts like the Reset to New Global Baseline button.
  • Some issues with the Agent that should be fixed next update:
    • Agents put themselves into the Chrome profile instead of the Unsupported Profile.
    • A fail-safe that forces the Agent to report a Drift Corrected alert if a setting is verified to be correct after a user request to reconfigure it is not actually triggering. (This fail-safe is meant to ensure that Drift alarms can be turned off if the agent somehow "forgot" that a setting had drifted due to restarting and failed to report the Drift Corrected alert that would remove the alarm.)
    • Some agents appear to "get stuck", causing them to stop checking in and hang on the stop signal.

2025-03-23
Add-On Profile Update Adj. 3 // 2.5.0-3

App Versions

  • Senteon Agent 2.5.0.0 (unchanged)
  • Senteon Command Center 2.5.0.2 (unchanged)

Fixed Issues

  • Fixed a server-side issue preventing non-admin users from attaching add-on baselines when they should be able to.
  • Fixed a server-side issue that was preventing notifications from being sent to agents in baselines that just updated due to having an add-on baseline attached.

2025-03-20
Add-On Profile Update Adj. 2 // 2.5.0-2

App Versions

  • Senteon Agent 2.5.0.0 (unchanged)
  • Senteon Command Center 2.5.0.2

Fixed Issues

  • Fixed issue where Group Selection page in the Initialization workflow would not load if target agents were auto-evaluated.
  • Minor UI adjustments to the Review page in the Manage Add-On Attachments workflow

2025-03-17
Add-On Profile Update // 2.5.0-1

App Versions

  • Senteon Agent 2.5.0.0
  • Senteon Command Center 2.5.0.1

Google Chrome Add-On Profile

  • Added the Google Chrome Add-On Profile with 69 settings from the CIS Google Chrome 3.0.0 benchmark.
  • Add-On Profiles function as optional sets of settings you can add to a baseline.
    • In order to add settings from an Add-On Profile to a baseline, a Global Baseline in the relevant Add-On Profile must be made and then attached to the Baseline.
    • When attaching a new Add-On Profile, users have the option to perform a Simple Update or a Baseline Update
      • Simple Updates will immediately add the new settings (with a chance to modify them first), and update the Baseline’s version to 2.5.0.0
      • Baseline Updates will delay adding the settings and increasing the baseline’s version, allowing users to use the Baseline Updates workflow to get the benefits of re-evaluation and conflict resolution on the newly added settings.
    • When detaching an Add-On Global Baseline, the settings from that Add-On Profile will be removed and the tenant baseline’s version will be reduced if necessary.
    • Add-On Global Baselines otherwise function in the same way as other Global Baselines. Baselines do not have to adhere to the same configurations as their attached Global Baselines, but can easily be synced to them.
    • All Global Baselines can refer to exactly 1 endpoint profile, but baselines can attach to one global baseline per add-on profile (along with its OS profile).
  • When starting evaluations, users can select which add-on profiles they wish the agent to include in its evaluation, if any.

Baseline Update Improvements

  • To help make it easier to start the Baseline Update process, an Organization setting can now be enabled that tells all agents in the organization to automatically update their evaluations as soon as they update to versions with catalog changes.
  • Additionally, the Baseline Update process can now be completed without waiting for all agents to update or complete re-evaluation.
    • Agents that are not up-to-date for a Baseline Update will have the following behavioral changes until they update to the latest version:
      • Active agents will not change their configuration targets, continuing to manage settings according to the configuration they last had before they became out-of-date. Changes to baseline/exception configurations will not be applied.
        • Agents in this state can still be disabled or reset to quickly revert settings to a pre-setup state.
        • Agents that aren’t active will not be able to finalize, enable from a disabled state, or activate from a pending state.
        • Agents can still be moved to different baselines, which may cause them to return to normal behavior if the new baseline’s required version is lower.
    • Re-Evaluation must be skipped in the Evaluations page of a Manual Update. The Re-Evaluation Behavior Automation Setting has had an option added to skip Evaluations in an Automatic Update.

Other

  • An advanced organization setting has been added to control how agents handle group policy settings. The non-default option of this setting is only intended to be used in niche circumstances where the endpoint cannot process local group policy normally.

2025-02-27
Global Baseline Update Adj. 32 // 2.4.0-32

App Versions

  • Senteon Agent 2.4.0.9 (unchanged)
  • Senteon Command Center 2.4.0.20

Fixed Issues

  • Fixed issue from previous version where some setting tables that didn't have the selection feature or the select-all box would show no data upon being filtered.
  • Fixed issue in the Group Edit workflow where removed exception settings would not actually disappear from the table.
  • Optimized a server call in the loading phase of finalization that was asking for a lot more data than was actually needed.

2025-02-24
Global Baseline Update Adj. 31 // 2.4.0-31

App Versions

  • Senteon Agent 2.4.0.9 (unchanged)
  • Senteon Command Center 2.4.0.19

Adjustments to Filtering and Selection of Tables

  • When toggled on, the Select All check box will now select all entries that match the current filter rules (previously all entries would be selected whether or not they matched the filter). When toggled off, all entries are removed from the selection.
  • When changing filter settings, any entry that was selected and no longer matches the filter will be removed from the selection. Selected entries that are still visible in the filter will remain selected.
  • After the selection has been updated through either (un)checking a specific entry or changing the filter settings, the Select All check box’s state will update to match. It will turn on if every entry that matches the filter is selected, and it will turn off otherwise.
  • The following caveats exist for settings tables in the Baseline Updates workflow and the Add Settings to Exception workflow:
    • In these workflows, settings that are part of groups with option constraints will toggle the entire group when individually checked, to ensure that all settings in the group remain in the same state. This behavior will remain the same, even if a setting in that group does not match the filter.
    • If you have a setting group selected, and then adjust the filter settings to exclude only a subset of the group, then the entire group will either stay on or turn off based on whether the last setting in the group (in the order they’re shown on the full table) matches the filter.

2025-02-10
Global Baseline Update Adj. 27 // 2.4.0-27

App Versions

  • Senteon Agent 2.4.0.9
  • Senteon Command Center 2.4.0.18 (unchanged)

Fixed Issues

  • Fixed an issue where agents would forget that a setting was drifted if they restarted, leading to no Drift Corrected alert being sent for a setting that was corrected externally while the agent wasn’t running, which then led to Drift alarms getting stuck in an active state with no way for the user to deactivate them.
  • Adjusted startup loading procedures to set the Verification module’s Drift Value memory of any settings that were drifted in the previous lifetime with their Last Known Value, allowing Drift Corrected alerts to include the Drifted value even if the Drift was corrected while the agent wasn’t running.
  • Adjusted the Verification procedure to produce a Drift Corrected alert for any setting that had a manual reconfigure action performed on it since the last verification and is now found to be configured correctly, even if the agent did not believe that the setting was drifted originally. This will allow any false Drift alarms to be removed by user action.
  • Simplified the reset/stop procedure of the Verification timer and adjusted the Verification procedure itself to lockout changes to the timer while a verification proc is running. This should help mitigate the rare issues where an agent would stop verifying settings or have multiple verification timers running at once.

2025-02-03
Public API Adj. 1 // 2.4.0-26

App Versions

  • Senteon Agent 2.4.0.8 (unchanged)
  • Senteon Command Center 2.4.0.18

API Key Management Page

  • Added a cancel button to the Create/Edit API Key workflow.
  • Expiration and Creation Times now specify that the time is shown in UTC.
  • Added Key ID column to the API Key table.
  • Added Confirmation Dialog to deleting keys.
  • Added a link to sign up for the Public API Updates mailing list.

Fixed Issues

  • Fixed issue where any character could be input on the Request Limit field during API Key creation.
    • Firefox has a bug that prevents it from recognizing the number input type properly, so this issue remains on Firefox only.

2025-01-27
Global Baseline Update Adj. 24 // 2.4.0-24

App Versions

  • Senteon Agent 2.4.0.8 (unchanged)
  • Senteon Command Center 2.4.0.17

UI Adjustments

  • Added Compliance Graphs for the new frameworks released in the prior update.
    • These graphs can be viewed in the Tenant Dashboard or in Executive Summary Reports.
  • Added an Activation Time column to the Action Center to indicate when the alarm was triggered.

Fixed Issues

  • Fixed issue where endpoints that were installed with Automatic Setup flag would show up in the Evaluation tab unnecessarily.
  • Fixed issue where Finalization would fail to load if the baseline you were finalizing contained endpoints that never performed evaluations (ie, those installed with the Automatic Setup flag).

2025-01-22
Framework Mappings Expansion 1 // 2.4.0-23

Client App Versions

  • Senteon Agent 2.4.0.8 (unchanged)
  • Senteon Command Center 2.4.0.15

New Compliance Framework Mappings

  • Updated all settings to include framework mapping data for the following new benchmarks:
    • ISO 127001
    • Trustmark
    • Essential Eight
    • CSA Cloud Controls Matrix
    • Cyber Essentials v2.2
    • NIST CSF v2
  • All screens that showed mapping data have been updated to support these new frameworks.
  • Framework Mapping Data has been added to the Windows Server Endpoint Profiles.
  • Note! Compliance Graphs in the Tenant Dashboard and in the Executive Summary Reports may not be accurate until all Agents have sent Configuration Status to the server after the update. If you wish to use the new mappings with already active Agents, you may want to disable and re-enable those agents to ensure that all settings are properly updated.

Public API Release

  • The initial release of our Public Stats API coincides with this update.
  • A page to setup and manage Public API Keys has been added to Command Center, accessible via the Settings menu.

Fixed Issues

  • The group selection box during initialization when attempting to skip the finalization step now includes a warning message indicating that skipping setup is not recommended for first-time activations.
  • Users that haven’t yet joined or created an organization will now be able to (and be forced to) reset their passwords after logging in via a forgot password link.

Older Versions

Changelog to be made available at a later date.