{"id":1933,"date":"2014-04-10T11:27:00","date_gmt":"2014-04-10T16:27:00","guid":{"rendered":"http:\/\/www.poweradmin.com\/blog\/?p=1933"},"modified":"2015-04-24T16:27:07","modified_gmt":"2015-04-24T21:27:07","slug":"the-heartbleed-bug-pa-product-upgrades","status":"publish","type":"post","link":"https:\/\/www.poweradmin.com\/blog\/the-heartbleed-bug-pa-product-upgrades\/","title":{"rendered":"The Heartbleed Bug &#8211; PA Product Upgrades"},"content":{"rendered":"<p>\n\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\"><a href=\"\/blog\/wp-content\/uploads\/2014\/04\/heartbleed.png\" rel=\"\" style=\"\" target=\"\" title=\"\"><img loading=\"lazy\" decoding=\"async\" alt=\"The Heartbleed Bug\" class=\"alignright size-full wp-image-1934\" height=\"203\" src=\"\/blog\/wp-content\/uploads\/2014\/04\/heartbleed.png\" style=\"margin-left: 20px;\" title=\"The Heartbleed Bug\" width=\"203\" srcset=\"https:\/\/www.poweradmin.com\/blog\/wp-content\/uploads\/2014\/04\/heartbleed.png 413w, https:\/\/www.poweradmin.com\/blog\/wp-content\/uploads\/2014\/04\/heartbleed-150x150.png 150w, https:\/\/www.poweradmin.com\/blog\/wp-content\/uploads\/2014\/04\/heartbleed-300x300.png 300w\" sizes=\"auto, (max-width: 203px) 100vw, 203px\"><\/a>On Monday, April 7th, the OpenSSL Project released an update to address a serious security issue \u2013 <a href=\"https:\/\/web.nvd.nist.gov\/view\/vuln\/detail?vulnId=CVE-2014-0160\" rel=\"nofollow\" target=\"_blank\">CVE-2014-0160<img class=\"extlink-icon\" src=\"https:\/\/www.poweradmin.com\/blog\/wp-content\/plugins\/external-links-nofollow-open-in-new-tab-favicon\/images\/extlink.png\"><\/a> \u2013 nicknamed <a href=\"http:\/\/heartbleed.com\/\" rel=\"nofollow\" target=\"_blank\">\"Heartbleed\"<img class=\"extlink-icon\" src=\"https:\/\/www.poweradmin.com\/blog\/wp-content\/plugins\/external-links-nofollow-open-in-new-tab-favicon\/images\/extlink.png\"><\/a>.<\/span><\/span>\n<\/p>\n<p>\n\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">PA Server Monitor, PA Storage Monitor and PA File Sight all use OpenSSL as part of the internal HTTPS server.<\/span><\/span>\n<\/p>\n<p>\n\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">On April 10th, we released version 5.4 of each of the above applications, which now use the patched version of OpenSSL \u2013 version 1.0.1g.<\/span><\/span>\n<\/p>\n<p>\n\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">Upgrading to version 5.4 will install the fixed OpenSSL version which will fix the Heartbleed issue.\u00a0 With Heartbleed, it is possible that someone may have obtained server certificates.\u00a0 Because of that, it's recommended that everyone affected create new SSL certificates.\u00a0 If you are using the default self-signed certificate, this can be done most easily by:<\/span><\/span>\n<\/p>\n<ol>\n<li>\n\t\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">Stop the monitoring service<\/span><\/span>\n\t<\/li>\n<li>\n\t\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">Delete the CA folder in your product folder (C:\\Program Files\\PA Server Monitor, C:\\Program Files\\PA Storage Monitor or C:\\Program Files\\PA File Sight)<\/span><\/span>\n\t<\/li>\n<li>\n\t\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">Restart the monitoring service.\u00a0<\/span><\/span>\n\t<\/li>\n<\/ol>\n<p>\n\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">It will take approximately one minute to create a new CA folder with the appropriate certificates.\u00a0 After the new certificates are created, monitoring will resume and you'll be able to connect with the Console.<\/span><\/span>\n<\/p>\n<h2>\n\t<span style=\"color:#FF0000;\"><span style=\"font-size: 16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">Software Affected by Heartbleed<\/span><\/span><\/span><br>\n<\/h2>\n<p>\n\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">For all three of the above mentioned products:<\/span><\/span>\n<\/p>\n<ul>\n<li>\n\t\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">Versions 3.x and 4.x are\u00a0NOT affected (an older version of OpenSSL was used which did not have the Heartbleed flaw).<\/span><\/span>\n\t<\/li>\n<li>\n\t\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">Versions 5.0.x.x to 5.3.0.192 ARE affected.<\/span><\/span>\n\t<\/li>\n<li>\n\t\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">Version 5.4.0.148 and newer are NOT affected.<\/span><\/span>\n\t<\/li>\n<\/ul>\n<p>\n\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">If you are currently using version 5.x that is older than 5.4.0.148, upgrade to the latest production release. \u00a0Upgrading will keep your databases, configuration and licenses intact.<\/span><\/span>\n<\/p>\n<p>\n\t<span style=\"font-size:16px;\"><span style=\"font-family: verdana,geneva,sans-serif;\">You can get the latest version at:<\/span><\/span>\n<\/p>\n<p style=\"font-size: 13px;\">\n\t<span style=\"font-size: 16px;\"><span style=\"font-family: verdana, geneva, sans-serif;\">PA Server Monitor:\u00a0<a href=\"\/servermonitor\/download.aspx\" target=\"_blank\">\/servermonitor\/download.aspx<\/a><\/span><\/span>\n<\/p>\n<div>\n<p style=\"font-size: 13px;\">\n\t\t<span style=\"font-family: verdana, geneva, sans-serif; font-size: 16px;\">PA Storage Monitor:\u00a0<\/span><a href=\"\/storage-monitor\/download.aspx\" target=\"_blank\"><span style=\"font-size: 16px;\"><span style=\"font-family: verdana, geneva, sans-serif;\">\/storage-monitor\/download.aspx<\/span><\/span><\/a>\n\t<\/p>\n<div>\n<p style=\"font-size: 13px;\">\n\t\t\t<span style=\"font-family: verdana, geneva, sans-serif; font-size: 16px;\">PA File Sight:\u00a0<\/span><a href=\"\/file-sight\/download.aspx\" target=\"_blank\"><span style=\"font-size: 16px;\"><span style=\"font-family: verdana, geneva, sans-serif;\">\/file-sight\/download.aspx<\/span><\/span><\/a>\n\t\t<\/p>\n<div>\n\t\t\t\u00a0\n\t\t<\/div>\n<p>\n\t\t\t\u00a0\n\t\t<\/p>\n<\/div>\n<\/div>\n<p>\n\t\u00a0\n<\/p>\n<p>\n\t\u00a0\n<\/p>\n<p>\n\t\u00a0\n<\/p>\n<p>\n\t<a href=\"http:\/\/www.twitter.com\/home?status=RT:%20@poweradmn%20The%20Heartbleed%20Bug-%20PA%20Product%20Upgrades%20\/blog\/the-heartbleed-bug-pa-product-upgrades\/?ref=blog\" rel=\"nofollow\" style=\"\" target=\"_blank\" title=\"\"><img loading=\"lazy\" decoding=\"async\" alt=\"Tweet this\" class=\"aligncenter size-medium wp-image-1028\" height=\"75\" src=\"\/blog\/wp-content\/uploads\/2013\/11\/tweet-this-article-button-large-300x75.png\" style=\"\" title=\"Tweet this\" width=\"300\" srcset=\"https:\/\/www.poweradmin.com\/blog\/wp-content\/uploads\/2013\/11\/tweet-this-article-button-large-300x75.png 300w, https:\/\/www.poweradmin.com\/blog\/wp-content\/uploads\/2013\/11\/tweet-this-article-button-large.png 310w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\"><img class=\"extlink-icon\" src=\"https:\/\/www.poweradmin.com\/blog\/wp-content\/plugins\/external-links-nofollow-open-in-new-tab-favicon\/images\/extlink.png\"><\/a>\n<\/p>\n<p>\n\t<a href=\"https:\/\/plus.google.com\/share?url={\/blog\/the-heartbleed-bug-pa-product-upgrades\/?ref=blog}\" rel=\"nofollow\" style=\"\" target=\"_blank\" title=\"\"><img loading=\"lazy\" decoding=\"async\" alt=\"Share on Google+\" class=\"aligncenter size-medium wp-image-1053\" height=\"75\" src=\"\/blog\/wp-content\/uploads\/2013\/11\/google-plus-this-article-button-large2-300x75.png\" style=\"\" title=\"Share on Google+\" width=\"300\" srcset=\"https:\/\/www.poweradmin.com\/blog\/wp-content\/uploads\/2013\/11\/google-plus-this-article-button-large2-300x75.png 300w, https:\/\/www.poweradmin.com\/blog\/wp-content\/uploads\/2013\/11\/google-plus-this-article-button-large2.png 310w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\"><img class=\"extlink-icon\" src=\"https:\/\/www.poweradmin.com\/blog\/wp-content\/plugins\/external-links-nofollow-open-in-new-tab-favicon\/images\/extlink.png\"><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>On Monday, April 7th, the OpenSSL Project released an update to address a serious security issue \u2013 CVE-2014-0160 \u2013 nicknamed &#8220;Heartbleed&#8221;. PA Server Monitor, PA Storage Monitor and PA File Sight all use OpenSSL as part of the internal HTTPS server. On April 10th, we released version 5.4 of each of the above applications, which [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":1934,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4,13,10],"tags":[],"class_list":["post-1933","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-general-it","category-pc-security","category-power-admin"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/posts\/1933","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/comments?post=1933"}],"version-history":[{"count":5,"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/posts\/1933\/revisions"}],"predecessor-version":[{"id":3519,"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/posts\/1933\/revisions\/3519"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/media\/1934"}],"wp:attachment":[{"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/media?parent=1933"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/categories?post=1933"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.poweradmin.com\/blog\/wp-json\/wp\/v2\/tags?post=1933"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}