Coming Soon in Our Next Release
Skyhigh Security Service Edge 6.3.2 will be released to the EU Production environment on May 30, 2023, and to the US Production environment on June 06, 2023.
Skyhigh Security Service Edge 6.3.2 Core and Cloud (Cloud Firewall) will be released on June 06, 2023.
Skyhigh Data Protection
OCR and Classifications for Skyhigh CASB
Skyhigh CASB customers can now access all Classification based features. OCR enables the Skyhigh Security DLP engine to extract text from supported image files and is available for Skyhigh CASB customers.
DLP Policy Validation Improvements
When importing DLP Policies from one tenant to another, you may find validation errors. In order to overcome these errors, the process has been improved for:
- Data Identifier Rule
- Collaboration Rule
- Classifications
- Bulk Activation
- Fingerprint
Redesigned Fingerprint Page
The redesigned Fingerprint page (found under Policies > DLP Policies > Fingerprints) provides the below User Interface (UI) changes:
- The Omnibar Search is enhanced to filter your search based on Fingerprint Name.
- Create Fingerprint menu displays separate options for Structured and Unstructured Fingerprint where you can create a legacy fingerprint to use with Skyhigh CASB and an enhanced fingerprint to use with Web Gateway.
- The Actions column in the Fingerprint table now displays options vertically as a dropdown. Click the Generate Index (three-dot) menu to view Show Command Line and Delete actions.
Skyhigh Cloud Firewall
Cloud Firewall Policy Enhancements
You can now select Service and Service Groups as policy criteria that are managed in CASB Shadow IT. This enables you to apply application-based policies for more than 40000 applications under Skyhigh Cloud Registry.
- Service — The service name. For example, Zoom, Facebook.
- Service Group — The group of services. You can create a group of services and then set allow or block access for all the services in the group. For example, you can add several services, such as Amazon, Target, Magneto, and ekart to a group called e-commerce.
NOTE: You must have the Skyhigh CASB Shadow IT license to use the Service and Service Group options.
Skyhigh CASB
Unmatched Uploads Enhancements
In the previous release (6.3.1), the Unmatched Uploads page (found under Analytics > Unmatched Uploads) was redesigned to provide granular information about users accessing the data from unmapped or potentially suspicious destinations as well as the risk (or reputation) associated with these destinations. There are enhanced workflows that allow users to update the status of URLs if it is a trusted unmatched cloud service. In addition, users can request new cloud services to be added to the Registry.
In the current release (6.3.2), you can find more enhancements to the Unmatched Uploads table:
- You can sort the data by Reputation and Status columns.
- You can add three new columns to the unmatched uploads table to view the information on IP, Country, and City. These columns can be selected from Settings > Actions > Edit Table Columns.
Custom Anomaly Enhancements (Limited Availability)
In the previous release (6.3.1), the Custom Anomaly (found under Incidents > Anomalies > Anomaly Settings) was introduced which allows users to create their own anomaly structure based on risk parameters identified in Sanctioned IT cloud service activities.
In the current release (6.3.2) you can create a custom anomaly rule based on user groups for tenants who have configured user data (Active Directory). You can also include all or selected user groups to evaluate a rule.
Seclore DRM Support for External Users in SharePoint (Limited Availability)
Skyhigh CASB provides Seclore DRM protection over files containing sensitive data owned by external users in SharePoint sites. Skyhigh CASB leverages the internal collaborator’s information to encrypt these sensitive files in Seclore DRM. This feature allows security administrators to protect sensitive data uploaded by external users to SharePoint sites.
Skyhigh CNAPP
New Azure CIS v2.0 Policy Templates
CIS Benchmarks are based on technical configuration settings used to maintain and increase enterprise security, especially when used in conjunction with other essential cyber hygiene tasks. In this release, 5 new Azure Policy templates have been added for the CIS v2.0 benchmark.