Heimdal's latest product enhancements and improvements have gone live in the last few weeks. To keep you updated, we have shared some recent updates below. In September, version 4.3.4 RC and production version 4.3.6 were rolled out with significant enhancements, improvements and fixes to the platform.
Here's a summary of the latest updates:
DNS Security (formerly Threat Prevention Endpoint) enhances DNS protection with DoH, providing safer and more private internet navigation by encrypting all DNS requests via HTTPS. This new addition can be found in Network settings under the 'HybridDNS' tick box.
DoH is designed to mitigate the risk of DNS spoofing and man-in-the-middle (MITM) attacks in your IT environment. As a default standard, it ensures that the session between the browser and the DNS server is encrypted and that nobody can alter the resolution request results and point the end user's browser toward a malicious website.
Users can now experience more intuitive and user-friendly reporting in Windows OS Stats view. Key updates to note include:
The new Primary User functionality in Heimdal's Privilege Elevation and Delegation Management (PEDM) allows organisations to assign a specific user to request elevated privileges on each Windows machine.
This feature helps improve security by limiting admin rights to a designated user. The primary user is determined based on either Microsoft Azure AD settings or the machine's first non-admin login.
The new Primary User Management tab in the dashboard provides a detailed view of endpoints, primary users, and login statistics. Admins can manually update or unassign primary users via dropdown menus, and only the designated primary user can request admin privileges, ensuring tighter control over privileged actions.
Notifications have been introduced to address firewall incompatibilities between Windows GPO and Heimdal GP. This update aims to prevent cybersecurity errors and enhance organisational security. The newly named Device Info notification, previously called Active Clients, now alerts dashboard users when a firewall is managed by a local Active Directory policy rather than the Heimdal Agent.
When configuring an endpoint this way, the Heimdal agent cannot perform isolation actions. To address this, Heimdal has added a notification and icon to indicate when an action’s outcome might change from expectations. This new icon appears in the Unified Endpoint Management, under Device Info - Standard and Hardware views in the Status column of relevant tables. The notification will only appear if the Heimdal agent detects that a local policy manages a firewall.
Heimdal has also introduced enhanced functionality for IT Admins, allowing them to view and edit personal allowlists and blocklists set by end users. Here are the key points:
At the end of September, version 4.4.0 of the Heimdal Release Candidate (RC) dashboard was also released. The top features of this include:
If you have any questions about Heimdal and any of the recent updates, please get in touch with one of our team. https://www.brigantia.com/contact