WatchGuard is excited to release Fireware XTM v11.4. With our new Application Control service, Fireware XTM v11.4 puts power and control into your hands and gives you enhanced visibility of your network with exciting new additions to our authentication, reporting, and centralized management feature sets.
You can install Fireware XTM OS v11.4 software on any WatchGuard XTM device, including 2 Series, 5 Series, 8 Series, and the XTM 1050. Although WatchGuard System Manager/Policy Manager v11.4 has been designed to manage Fireware XTM v11.3 and Fireware XTM v11.4 devices seamlessly, it is not possible to install Fireware XTM OS v11.4 on WatchGuard e-Series appliances.
Here are the highlights of the full set of new features in Fireware XTM v11.4.
Application Control — It's never been easier to decide who, what, when, where, why, and how applications are used on your network. Exercise fine-grained control over more than 1,500 applications, organized by category. The Application Control service lets you drill down from application category (Instant Messaging) to application name (MSN IM) and down to application function (File Transfer).
Enhanced IPS — New implementation of IPS is easier to configure, and now scans traffic on all ports. Fireware XTM Web UI has a new signature tab to make it easier to search and find information about signatures.
Configuration History and Rollback Support — The WatchGuard Management Sever now provides an indexed list of time stamped managed device configuration files so you can easily revert to an earlier configuration when you need to.
More Flexibility in Centralized Management —
Improved Reporting — Several key new reports give you data on Application Control, Wireless Rogue Access Points, and DHCP lease activity. You can now run reports on demand, schedule reports, and send email notifications that reports are ready to view.
Improved Logging — There have been several improvements to the performance of the Log Server, including the ability to delete diagnostic log messages from the Log Server to control database size, and the adoption of a new method to insert log messages to the database that results in a 50% reduction in the log database footprint.
New Authentication Options — With Fireware XTM v11.4, we are pleased to introduce a new set of authentication features to help you create a security policy based on users and groups (not IP addresses). These features include:
Rogue Wireless Access Point Detection — XTM 2 Series Wireless devices can now scan for unauthorized access points within range and report on them.
Full Proxy Configuration from the Web UI — New Web UI configuration options increase the usability of the Web UI.
Active/Passive FireCluster Configuration in Drop-In Mode — Now supported for WatchGuard XTM devices configured in drop-in mode, as well as routed mode. Note that this is a new upgrade procedure to upgrade a FireCluster to Fireware XTM v11.4 later in this document.
Activate XTM Devices from the Web Setup Wizard — If you have a WatchGuard account set up, you can now activate a new device directly from the Web Setup Wizard.