About the Forescout eyeSight Forescout eyeSight v9.1.4 Release

These release notes offer brief, high-level descriptions of enhancements, new features, and fixed and known issues for Forescout eyeSight Forescout eyeSight version 9.1.4 and its base module components. This document also includes links to important information to assist upgrade planning and deployment.

Note: When downloading the latest eyeSight eyeSight version file from the Downloads portal, there are two different upgrade files to choose from:

  • OS Upgrade File: This larger file (8.7GB) is for users upgrading from v8.5.x to v9.1.4 and includes the necessary OS updates.
  • Upgrade File: This smaller file (5.3GB) is for users upgrading from v9.1.x to v9.1.4 and does not include OS updates.

Important Considerations

Consideration Details
Dashboards not supported on IPv6-only; stay on v9.1.3 Dashboard is unavailable on IPv6-only systems due to continuous plugin restarts. If running IPv6-only and using the Dashboards plugin, stay on eyeSight v9.1.3 until a future update is announced.

Fixed Issues

Issue # Description
EYST-31789 The Switch plugin was repeatedly restarting with an error that said: "Failed to handle message: Read invalid object type." This has been fixed.
EYST-33397, EYST-33593 The EM experienced delays and crashes due to excessive memory usage (10GB) by SDBWriterThreadImpl. This has been fixed.
EYST-33783 On an eyeSight v9.1.2 fresh installation, /etc/resolv.conf retained the DNS IP from installation instead of using nameserver 127.0.0.1. This has been fixed.
EYST-33924 When two tasks attempted to use the same DB connection across threads, one task could stall. This has been fixed.
EYST-33947 In FIPS-enabled environments, OpenSSL .pfx creation failed due to encryption parameter issues. An enhancement now auto-applies FIPS-compliant parameters.
EYST-33956 Recovery EM service had connection drops and sync issues due to a missing temporary file. This has been fixed.
EYST-34058, EYST-34129, EYST-34243 After upgrading from v9.1.2 to v9.1.3, system initialization could fail due to an internal file not updating automatically. This has been fixed.
EYST-34134, EYST-34196, EYST-34376, EYST-34425, EYST-34768, EYST-34778, EYST-34858, EYST-35072 In v9.1.3, creating a policy with the Function condition could trigger an error when selecting options with subcategories. This has been fixed.
EYST-34139, EYST-34202, EYST-34295, EYST-34214, EYST-34331, EYST-34412, EYST-34597, EYST-34784 After upgrading to v9.1.3, some appliances failed to initialize due to a runtime exception. This is fixed in v9.1.4 and later. Workaround for v9.1.3: run fstool data_reset all.
EYST-34246 After upgrading from v9.1.2 to v9.1.3, export table in the main console could fail when exporting selected host rows. This has been fixed.
EYST-34379 After upgrading to v9.1.3, multiple appliances showed a 3-hour EM time gap that led to crashes. This has been fixed.
EYST-34413 After upgrading to v9.1.2, default gateway configured with fstool netconfig was not retained after reboot. This has been fixed.
EYST-34571 After upgrading from v8.5.2.1 to v8.5.2.2, appliance disconnects and EM instability occurred due to timing conflicts. This has been fixed.
EYST-34629, EYST-34644, EYST-35136, EYST-35406, EYST-35427 Assignment changes caused a deadlock and unexpected appliance restarts in cluster folders. This has been fixed.
EYST-34802, EYST-35440, EYST-35450 EM repeatedly sent a large file to appliances after updates, causing heavy traffic and temp storage pressure. This has been fixed.
EYST-34805 On new device discovery, concurrent ID assignment could freeze processing. This has been fixed.

Known Issues

Issue # Description
EYST-35007 After upgrading to 9.1.x, appliances may show /var/log full because /var/log/messages does not rotate correctly. A fix is planned for a future release. Workaround article: After upgrade to Forescout 9.1.x, receive warning that /var/log file system is full.
N/A Dell identified an issue where 10Gb/25Gb dual-rate NICs may fail at 10Gb with 10/25G SFP modules when auto-negotiation is enabled. Workaround: 61x0 Dell Servers cannot auto-negotiate between 10G and 25G on supplied SFPs.

Solution Bundle Orders

Forescout Solution Bundles are composed of a packaged combination of entitlements for Forescout Software, Cloud Services, Integrations, and Premium Support Services designed to deliver comprehensive capabilities for defined use cases.

In the event that a customer has placed an order that includes an Entitlement Credit applied towards a Replacement Entitlement, the customer will continue to have access to their Current Entitlement for thirty (30) days from the date Forescout accepts the applicable order to facilitate the customer’s transition from the Current Entitlement to the Replacement Entitlement.