Loading
  • Public
  • Broadcast OnlyThis group is for broadcast messages. Only group managers can post content.

Foundation/CloudScape Release Blog

Skip Feed

  1. Q1 2022 Releases for Cloud Migration (Foundation/Cloudscape)

     

    Cloud Migration and Modernization: 2022 Q1 Release Summary

    What’s in this release? Cloud Migration and Modernization has released 5 significant improvements to the Cloud Migration platform (formerly RISC) in Q1 2022, which consist of:

    1. Container Reports
      1. Users of Cloud Migration and Modernization can now access a Container discovery report in the ‘Available Reports’ page following and inventory scan, along with a list of evidence for these verdicts. This allows users to unearth containerized workloads during the discovery process. This helps to save significant time and use less manual resources to map out these previously unmapped resources.
    2. Performance Improvements
      1. The asset load view within Cloud Migration and Modernization has been optimized to a level of 1000% performance improvement, for more immediate actionable data on view in the product.
    3. Navigation from Cloud Migration and Modernization to Flexera One
      1. Cloud Migration and Modernization (Formerly RISC) now offers an easy link in the top banner to navigate to the Flexera One UI, saving time when using multiple Flexera applications.

    Tluxner_3-1649266103584.png

     

    1. Business Service Mapping Log In within Flexera One
      1. IT Visibility customers will now see a ‘Business Services’ navigation option in the left-hand menu of Flexera one, so that customers who own this solution can easily log in from a single user interface.

     

    Tluxner_4-1649266103605.png

     

    1. Cloud Migration Log In within Flexera One
      1. Cloud Cost Optimization customers will now see a ‘Cloud Migration’ navigation option in the left-hand menu of Flexera one, so that customers who own this solution can easily log in from a single user interface.

    Tluxner_5-1649266103618.png

     

    Expand Post

  2. 2021 Q3/Q4 Release Summary

     

    What’s in this release? Cloud Migration and Modernization has released 4 significant improvements to the Cloud Migration platform (formerly RISC) in Q3/Q4 2021, which consist of:

    1. RN150 Validation
      1. Users of Cloud Migration and Modernization can now validate the readings of the RN150 through a series of basic troubleshooting steps like ping, saving both manual effort time and ensuring accuracy for migration efforts.
    2. Database Credential Import
      1. Users can now save significant time by bulk importing CSVs to be parsed, improving on the former method of one-by-one import.

    Tluxner_0-1649265942277.png

     

    1. Improved User Experience
      1. The UI in Cloud Migration and Modernization has been overhauled for a more modern look and feel. A major part of this is the new highlight of stack digest information after the first dashboard page break, for more relevant customer data on login.

     

    Tluxner_1-1649265942307.png

     

    1. Subnet Management
      1. Users can now manage multiple subnets at one time, as well as the new ability to remove unwanted subnets for a more manageable and effective cloud migration experience.

    Tluxner_2-1649265942314.png

     

    1. Solaris Device Discovery
      1. Users now have the ability to discover legacy solaris device technology within Cloud Migration and Modernization, so that they are able to prioritize EOL/EOS for these legacy technologies.
    Expand Post

  3. RISC Platform Security Related Fixes

     

    Summary

    A high severity (CVSS score 8.1) vulnerability in Apache Log4j 1.2 has been publicly disclosed. The vulnerability has been assigned the identifier CVE-2021-4104. This Apache Log4j component is included in in the RISC Platform releases prior to SAAS-2021-12-29.

    Additionally, two vulnerabilities with the identifiers CVE-2021-41527 and CVE-2021-41528 related to the User Interface have been addressed.

    This article describes the potential impact of the vulnerabilities on the RISC Platform.

    Vulnerability descriptions

    CVE-2021-4104

    The National Vulnerability Database describes the CVE-2021-4104 vulnerability at https://nvd.nist.gov/vuln/detail/CVE-2021-4104 as follows (current as of Jan 20, 2022):

    JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j configuration. The attacker can provide TopicBindingName and TopicConnectionFactoryBindingName configurations causing JMSAppender to perform JNDI requests that result in remote code execution in a similar fashion to CVE-2021-44228. Note this issue only affects Log4j 1.2 when specifically configured to use JMSAppender, which is not the default.

    CVE-2021-41527

    An error related to the 2-factor authorization (2FA) can potentially be exploited to bypass the 2FA. The vulnerability requires that the 2FA setup hasn’t been completed.

    CVE-2021-41528

    An error when handling authorization related to the import / export interfaces can potentially be exploited to access the import / export functionality with low privileges.

    Mitigation options

    1. Log4j 1.2 components in the RISC Platform are not configured to use JMSAppender by default, and so are not exposed to a potential attack through this vulnerability.

       

    2. Out of an abundance of caution, Flexera has upgraded the Log4j components in the RISC Platform to version 2.17.0 that is not exposed to the vulnerability with the identifier CVE-2021-4104. This change is included in the saas-2021-12-29 release.

       

    3. The changes for the vulnerabilities with the identifiers CVE-2021-41527 and CVE-2021-41528 are also included in the saas-2021-12-29 release.

       

    Additional information

    Flexera would like to thank Robert Gilbert (amroot) (https://www.linkedin.com/in/robertgilbert808 ) for helping to identify the vulnerabilities with the identifiers CVE-2021-41527 and CVE-2021-41528 under a responsible disclosure process.

    Expand Post

  4. Dogwood: Product Release Q3 2019

     

    dogwood1

    Optimize Your Cloud Journey With Actionable IntelligenceMost companies do not have the right information or visibility into their applications to move to the cloud. Successful migrations to cloud require proper planning and analysis to determine the right applications to move, their associated key application dependencies, the right cloud provider, the best pricing model and much more. Request a Personal Demo Cloud Cost ViewsUnderstanding the business case around cloud is foundational to any modern enterprise technology strategy.  The complex task of predicting the costs of cloud and deciding the destination is about to get simpler.

    Users can create customized business cases that include:

    • multiple clouds
    • custom instance choices
    • buying types
    • Predicted resource consumption

    This will help build a complete picture of your future in cloud.

    KPBussey_0-1579211981517.pngSee a Demo on Cloud Cost Views Performance ProfilesWe analyzed over 200,000 Enterprise Servers. Here's What We found:KPBussey_1-1579211981524.png
    • 21% were idle
    • 2% were zombies
    • Combined, organizations are paying nearly $300 million dollars to just keep them running

    The question you should ask yourself is how big is that pie slice in your environment?

    Daily we are now tagging servers with their performance profile based on several key metrics collected.

    You’ll be able to see where you’re at operational risk from servers performing poorly and where you can find savings by retiring devices.

    Request a Demo Executive SummarySummarize and Illuminate What's Important.

    Our new Executive Summary report samples data and visualizations from across the platform to produce a single, presentable, user experience.  Now you can take users on a quick tour of the platform and the value streams it provides by putting the analysis front and center.

    The report can be used in conjunction with your own analysis done in the new Cloud Cost Views, Total Cost of Ownership, and the Migration Scorecard.  In this way you can produce customized presentations to send on to any interested executive sponsor.

    KPBussey_2-1579211981526.pngTour the Executive Summary Report Path to SuccessWe are committed to making our customers and users successful by helping them to achieve their desired outcomes.KPBussey_3-1579211981528.png
    • Our new help widget will give users a direct path within the platform to our customer success team. If you have any questions about:
      • how to use a certain report
      • how to accomplish a goal
      • just want to give us some feedback
     
    Expand Post

  5. Cedar: Product Release Q2 2019

     

    OwlinCedarTree

    New features designed to get you better data faster.

    We're shipping new features to help prioritize migration and modernization opportunities, enrich geolocation details, and streamline the creation of deliverables for stakeholders.

    Request a Personalized Demo Optimization Scorecard

    Modern IT environments have scaled to the extent that human sorting and prioritization techniques are falling short. We put our team to work creating a new scorecard that will take many criteria of an IT estate and your input on the relative importance of those criteria and produce a priority list for whatever decisions you're trying to make.

    Especially for solution providers and enterprises planning for cloud migration, they can now create a prioritized migration roadmap/plan in minutes. In addition to cloud migration, this feature will allow users to identify opportunities for containerization.

    With the Optimization Scorecard, users can:

    • Identify opportunities for application modernization
    • Prioritize a DR plan based on your most sensitive/critical apps
    • Understand storage consumption for public cloud migration
    • Determine application users to build out SaaS opportunities
    Demo the Scorecard KPBussey_0-1579211879167.pngApplication Summary Exports

    We've been listening to our users and understand there's a need for organizations to show increased value to executives. Many users were building business cases and summaries for various stakeholders in their organizations and we wanted to make that easier. Now, with a single click you can download a PowerPoint containing detailed metrics about an application stack.

    No more taking screenshots and compiling tables into something that's presentable. No more reliance on formatting or exporting Excel sheets. Just press "Download Summary" and you'll be able to open and edit your PowerPoint directly, the way you want it.

    KPBussey_1-1579211879171.png

    Application Summary Exports will enable:

    • Streamlined availability of deliverables
    • Business case presentations for stakeholders
    • Understanding of high-level application metrics

    Stay tuned!

    Expansion of this feature is coming later this year. What would you like to see in Application Summary Exports? Submit feedback to our team here .

    Demo Summary Exports Reserved Instance Pricing

    Many of our users have asked for Reserved Instance pricing to better understand spend in cloud and build business cases. Due to this request, we are adding 1 and 3 year RIs for both AWS and Azure US East region.

    Our team is currently heads down on a complete revamp of many of our cloud pricing features, so while this is a small step, it will become a giant leap for our CloudScape module!

    KPBussey_2-1579211879173.pngLearn More about RI Pricing Enhanced GeolocationKPBussey_3-1579211879176.png

    Geolocation was one of the most popular features in our Balsam release. We received a lot of feedback on how to make it better and we're happy to announce that we have.

    Users can easily see all of their geolocated IPs, filter, and find associated flow data with just a few button clicks.

    Check out Geolocation
    Expand Post

  6. Balsam: Product Release Q1 2019

     

    Balsamv2

    More Signal, Less Noise

    The power of discovery lies not in confirming what you know, but in understanding what you don't know. Modern IT environments are incredibly complex. Getting the data you need quickly and surfacing mission critical obstacles is paramount to success.

    Our team has been heads down over the past quarter making it easier for you to sift through the noise, deliver brand new lines of analysis and visualization, and keep your environment more secure.

    Introducing our Balsam Release.

    This update includes features to improve discovery, prioritize security threats, and give you the tools to align IT with the business.

    Connect with Customer Success Request a Personal Demo Click the links below to learn more about each featureSecurity Module New Dashboard Enhanced Asset Discovery Security Module

    Information without context is just data.  Many platforms can deliver you data, we place that data in context.

    There is a big difference between:

    "

    “My server is connecting to anonymous proxies.”

    -and-

    “My HR department’s employee database is connecting to anonymous proxies, and Sara owns it.”

    "

    We are passionate about delivering meaningful insights to our users.  Our new Security Module combines with the context of applications, business services, and departments to make your data actionable.

    KPBussey_0-1579211689678.pngNIST & OVAL Integration

    We now integrate into the NIST and CIS OVAL CVE repositories. This enables us to determine vulnerabilities on Linux packages (RHEL, SUSE, Debian, Ubuntu, Oracle, and CentOS).

    Geolocation

    All incoming and outgoing internet connections will be mapped globally. Understand where your users are, and if they are accessing your applications from high-risk areas or anonymous proxies.

    Threat Levels & Reports

    Along with a new page for the Threat data, we are introducing a way to rank and prioritize servers in the environment based on their behaviors. E.g. Servers that have existing CVEs with a network attack vector and connect to the internet are of higher priority.

    See a Demo on Security New Dashboard

    When it's hard to see the forest for the trees, we raise you above the sprawl to see your environment in ways never before possible.

    KPBussey_1-1579211689683.png

    Our new dashboard will present a clearer and more meaningful view of the entire network. We are surfacing metrics about the size of the data lake, how it is changing, and including quick views into threats, stacks, and geolocation.

    We believe in making visually compelling experiences for our users to lead to "aha!" moments and drive quicker time to value. Who knew your environment could be so elegant?

    The Orb

    See the entirety of your environment. Understand which departments, teams, business units are integrated. Understand where you may have risk on personnel or opportunities to share data better.

    Assessment and Stack Digests

    The size and complexity of your data lake is one of the most important, and hard to understand parts of an assessment. We are providing our users high level overviews of the size of their assessment and how data collection is changing.

    Threats & Geolocation

    We're placing new features from our Security module on the dashboard to give users quick insight into their threat assessment, as well as provide an interactive map to give visualization to user distribution.

    Demo the New Dashboard Enhanced Asset Discovery

    Discovery is central to RISC Networks' purpose. This key first step begins the transformation of the unknown to the known.

    Understanding and managing this transformation can be difficult, time consuming, and frustrating. We are shipping a feature set designed to:

    • Save you considerable time by speeding up troubleshooting
    • Get better insight into the distribution of devices in your network
    • Easily share and report on devices in the environment

    Additionally, by scheduling discoveries weekly you can now track and report on changes in the environment for purposes of asset management and cloud migration tracking.

    KPBussey_2-1579211689670.pngCentralized Reporting

    We have brought all your assets to one report for you to quickly search, filter, and report on. We're also introducing the ability for you to save and share your page layouts with other users.

    Error & Resolution Page

    We created an Assets Errors page to significantly reduce the time it takes to troubleshoot network access. This page will surface all device errors we encounter during discovery. We are also adding a suggested resolution so you can quickly share it the network and server admin teams.

    Change Over Time

    Know when devices existed and see how your locations, device types, and OS distributions are changing. This will give you visibility into progress toward a migration goal or simply how the environment is changing.

    Tour the Assets Page  
    Expand Post

End of Feed
8 Chatter Feed Items

Group Details

Details

Description
Information
Member Count
8 Members
Loading
Group: Foundation/CloudScape Release Blog