About the Forescout eyeSight Forescout eyeSight v9.1.4 Release
These release notes offer brief, high-level descriptions of enhancements, new features, and fixed and known issues for Forescout eyeSight Forescout eyeSight version 9.1.4 and its base module components. This document also includes links to important information to assist upgrade planning and deployment.
Note: When downloading the latest eyeSight eyeSight version file from the Downloads portal, there are two different upgrade files to choose from:
- OS Upgrade File: This larger file (8.7GB) is for users upgrading from v8.5.x to v9.1.4 and includes the necessary OS updates.
- Upgrade File: This smaller file (5.3GB) is for users upgrading from v9.1.x to v9.1.4 and does not include OS updates.
Important Considerations
| Consideration | Details |
|---|---|
| Dashboards not supported on IPv6-only; stay on v9.1.3 | Dashboard is unavailable on IPv6-only systems due to continuous plugin restarts. If running IPv6-only and using the Dashboards plugin, stay on eyeSight v9.1.3 until a future update is announced. |
Fixed Issues
| Issue # | Description |
|---|---|
| EYST-31789 | The Switch plugin was repeatedly restarting with an error that said: "Failed to handle message: Read invalid object type." This has been fixed. |
| EYST-33397, EYST-33593 | The EM experienced delays and crashes due to excessive memory usage (10GB) by SDBWriterThreadImpl. This has been fixed. |
| EYST-33783 | On an eyeSight v9.1.2 fresh installation, /etc/resolv.conf retained the DNS IP from installation instead of using nameserver 127.0.0.1. This has been fixed. |
| EYST-33924 | When two tasks attempted to use the same DB connection across threads, one task could stall. This has been fixed. |
| EYST-33947 | In FIPS-enabled environments, OpenSSL .pfx creation failed due to encryption parameter issues. An enhancement now auto-applies FIPS-compliant parameters. |
| EYST-33956 | Recovery EM service had connection drops and sync issues due to a missing temporary file. This has been fixed. |
| EYST-34058, EYST-34129, EYST-34243 | After upgrading from v9.1.2 to v9.1.3, system initialization could fail due to an internal file not updating automatically. This has been fixed. |
| EYST-34134, EYST-34196, EYST-34376, EYST-34425, EYST-34768, EYST-34778, EYST-34858, EYST-35072 | In v9.1.3, creating a policy with the Function condition could trigger an error when selecting options with subcategories. This has been fixed. |
| EYST-34139, EYST-34202, EYST-34295, EYST-34214, EYST-34331, EYST-34412, EYST-34597, EYST-34784 | After upgrading to v9.1.3, some appliances failed to initialize due to a runtime exception. This is fixed in v9.1.4 and later. Workaround for v9.1.3: run fstool data_reset all. |
| EYST-34246 | After upgrading from v9.1.2 to v9.1.3, export table in the main console could fail when exporting selected host rows. This has been fixed. |
| EYST-34379 | After upgrading to v9.1.3, multiple appliances showed a 3-hour EM time gap that led to crashes. This has been fixed. |
| EYST-34413 | After upgrading to v9.1.2, default gateway configured with fstool netconfig was not retained after reboot. This has been fixed. |
| EYST-34571 | After upgrading from v8.5.2.1 to v8.5.2.2, appliance disconnects and EM instability occurred due to timing conflicts. This has been fixed. |
| EYST-34629, EYST-34644, EYST-35136, EYST-35406, EYST-35427 | Assignment changes caused a deadlock and unexpected appliance restarts in cluster folders. This has been fixed. |
| EYST-34802, EYST-35440, EYST-35450 | EM repeatedly sent a large file to appliances after updates, causing heavy traffic and temp storage pressure. This has been fixed. |
| EYST-34805 | On new device discovery, concurrent ID assignment could freeze processing. This has been fixed. |
Known Issues
| Issue # | Description |
|---|---|
| EYST-35007 | After upgrading to 9.1.x, appliances may show /var/log full because /var/log/messages does not rotate correctly. A fix is planned for a future release. Workaround article: After upgrade to Forescout 9.1.x, receive warning that /var/log file system is full. |
| N/A | Dell identified an issue where 10Gb/25Gb dual-rate NICs may fail at 10Gb with 10/25G SFP modules when auto-negotiation is enabled. Workaround: 61x0 Dell Servers cannot auto-negotiate between 10G and 25G on supplied SFPs. |
Solution Bundle Orders
Forescout Solution Bundles are composed of a packaged combination of entitlements for Forescout Software, Cloud Services, Integrations, and Premium Support Services designed to deliver comprehensive capabilities for defined use cases.
In the event that a customer has placed an order that includes an Entitlement Credit applied towards a Replacement Entitlement, the customer will continue to have access to their Current Entitlement for thirty (30) days from the date Forescout accepts the applicable order to facilitate the customer’s transition from the Current Entitlement to the Replacement Entitlement.
minute read