estos Tech Essentials April 2022
With the estos tech essentials, we have summarized current essentials around technology and support from our portal support.estos.de.
SECURITY ADVICE
Update recommended: Security advice for ProCall Enterprise webrtc third_party boringssl (CVE-2022-0778)
SECURITY ADVICE PROCALL ENTERPRISE WEBRTC UPDATE TROUBLESHOOTING MAINTENANCE UCSERVER WEBSERVICE
According to https://nvd.nist.gov/vuln/detail/CVE-2022-0778 an infinite loop in BN_mod_sqrt() is possible when parsing certificates.
estos is already working on updates with fixes for the vulnerability for ProCall 7 Enterprise, ProCall 6 Enterprise and ProCall Business.
estos is preparing updates with fixes for this vulnerability. Customers and partners can then obtain the updates via the known channels and follow the normal update process:
ProCall 5 Enterprise is also affected by the vulnerability, but there is no longer an update for this due to end-of-life of the product.
It is strongly recommended to stop using the affected component publicly on the internet or to upgrade to a current ProCall Enterprise version.
Affected versions and notes on the versions with a fix for the vulnerability can be found in our
Update recommended: Security advisory for zlib memory corruption (CVE-2018-25032)
SECURITY ADVICE PROCALL ENTERPRISE WEBRTC UPDATE TROUBLESHOOTING MAINTENANCE UCSERVER WEBSERVICE
zlib before version 1.2.12 can corrupt memory when deflating (i.e. compressing) if the input has many remote matches.
For further technical details see https://nvd.nist.gov/vuln/detail/CVE-2018-25032
The MSI files of the affected products can unpack ZIP files and the products themselves can compress log files as ZIP files, for example.
This vulnerability affects all previously released versions of ProCall Enterprise, MetaDirectory, ECSTA and ProCall Business 21H2.
estos is preparing updates with fixes for the vulnerability. Customers and partners can then obtain the updates via the known channels and follow the normal update process:
Affected versions and notes on the versions with a fix for the vulnerability can be found in our
Not affected: estos software from critical vulnerability in Log4Spring (CVE-2022-22963)
SECURITY ADVICE TROUBLESHOOTING MAINTENANCE SPRING
estos products are not affected by the CVE-2022-22963 Log4Spring vulnerability and can continue to be used without modification and without hesitation.
USEFUL INFORMATION
Video tutorial on Support 2.0 – access to the new estos ticket system
PRODUCTS SUPPORT TECHNICAL SUPPORT TICKET SYSTEM
In the recording from our webinar series "Tech Essentials LIVE" from 15 March 2022, you will receive an overview of the new accesses to estos Product Support 2.0 and Relaunch Helpdesk Support & Helpdesk Services.
Here, estos technical experts show you how to create a ticket, which contact options are available and which requirements have to be met:
- Video tutorial (webinar recording of our Tech Essentials LIVE from March 2022).
Language: German
Duration: approx. 40 minutes
New in ProCall Enterprise 7.4: Enable and use ProCall Meetings integration for ProCall client for Windows
PROCALL ENTERPRISE PROCALL MEETINGS INTEGRATION REQUIREMENTS USER MANUAL ADMINISTRATION CONFIGURATION
The ProCall Meetings Integration has been significantly enhanced with Version 7.4 of ProCall 7 Enterprise. More options are now available for the ProCall client for Windows with version 7.4.
By integrating ProCall Meetings into the ProCall client for Windows, you can now use ProCall Meetings functions such as starting, scheduling and inviting participants directly in the ProCall client for Windows without having to switch to the ProCall Meetings platform. The integration makes the appropriate menu items available to you simply by clicking on them in the context menu or action bars, for example in the "My" area, in the chat window, in the call window, in the monitor or in the favorites for the respective contact. Invitations to meetings and links to a meeting can be easily sent via chat or e-mail. In addition to your other upcoming appointments, you will then also be notified of upcoming online meetings via the speech bubble and can participate directly with a simple click.
The integration can be administratively made available to all ProCall Enterprise users who have a license for ProCall Meetings activated.
We have compiled for you which requirements you have to consider, how to proceed with administration/configuration and which functions you can use in which context menu in the ProCall Enterprise client for Windows with the new integration in a new article.
New in ProCall 7 Enterprise SR4: Support for new Busylight models
PROCALL ENTERPRISE INTEROPERABILITY BUSYLIGHT KUANDO PLENOM
The ProCall client for Windows supports two new kuando Busylight models by Plenom:
- Busylight Alpha Model 2
- Busylight Omega Model 2
The Busylight is connected to a USB port of the computer. It signals the presence status of the ProCall user via an LED light. This makes it easier for those present in the office or working from home to recognize whether the respective ProCall user is available/reachable (green) or not, e.g. if they are on a telephone call (red).
We have added to our overview of supported third-party products for the new models:
Performance monitoring for ProCall Enterprise
PROCALL ENTERPRISE PROCALL MEETINGS INTEGRATION REQUIREMENTS USER MANUAL ADMINISTRATION CONFIGURATION
If necessary, it may be necessary to monitor the operation of the estos ProCall Enterprise server with regard to a wide variety of features on the Microsoft Windows operating system and also to collect the recorded performance indicators over a longer period of time.
The performance monitoring included in the Microsoft Windows operating system, also known as Windows Performance Monitor, is suitable for this purpose.
To avoid having to search for and individually compile the multitude of possible performance indicators, a template for the data collector set is available in the form of an XML file that can be easily imported so that the data collectors and their indicators can subsequently be adapted to the respective needs of the environment to be monitored.
Step-by-step guide
IN PRACTICE
MetaDirectory Enterprise: Replication when connected to Microsoft SQL Server via ODBC halves field contents
METADIRECTORY ENTERPRISE MICROSOFT SQL SERVER REPLICATION TROUBLESHOOTING ODBC DATABASE
If field contents are shortened (halved) in MetaDirectory administrator when connecting to Microsoft SQL Server via ODBC, the cause may be an error in the ODBC driver.
As a workaround to fix the problem, you can select other file types in the table (fixed size) or generate an appropriate view if the table cannot be changed.
For more information on how to do this, see our new article:
After updating to 7.4.0.5782, the ProCall client does not start – Sophos message malicious exploit
PROCALL ENTERPRISE SOPHOS NOTIFICATION MAINTENANCE UPDATE TROUBLESHOOTING
After updating to version 7.4.0.5782, the ProCall client may no longer start. Sophos reports "Malicious exploit ROP averted in estos ProCall".
Reason: In ProCall 7 Enterprise SR4 there is a new feature "Yealink Headset HID support", for this a Yealink SDK has been implemented..
We have described in our new article what measures estos has already taken and how you can start the client again and deal with the message:
Softphone lines do not register – what to do?
PROCALL ENTERPRISE SOFTPHONE CONFIGURATION ADMINISTRATION DATA PROTECTION
The softphone lines cannot be registered. You can detect a "yellow" status in Microsoft Windows Resource and performance monitoring with the message/info: "WebService/Audio Relay Service: The service is not available at the moment."
In our new article we have described how to best proceed: Check if the kurento.conf.json file is available and which process possibly occupies port 8888. This port should be reserved for the process uc-media-server.exe:
PRODUCTS
New releases at estos – recently released
PROCALL ENTERPRISE ECSTA RELEASES RELEASE NOTES MAINTENANCE
- ProCall 7 Enterprise 7.4 was released on as a service release. (incl. hotfix for Update-Server)
This release fixes a security vulnerability. Update recommended!
Security advice: ProCall Enterprise webrtc third_party boringssl CVE-2022-0778
ProCall 7.4 Enterprise Release Notes SR4 - ProCall 6 Enterprise 6.4.25 was released on as a maintenance release.
This release fixes the following security vulnerabilities. Update recommended!
Security advice: ProCall Enterprise webrtc third_party boringssl CVE-2022-0778
Security advice: Vulnerability to zlib memory corruption (CVE-2022-0778)
ProCall 6 Enterprise Release Notes 6.4.25 (PDF Download) - ProCall 6 Enterprise 6.4.24 was released on as a maintenance release.
This release fixes the following security vulnerabilities. Update recommended!
Security advice: ProCall Enterprise WebService – jquery versions between 1.2 and 3.5
Security advice: ProCall Enterprise XMPP Federation and ECSTA for SIP phones
ProCall 6 Enterprise Release Notes 6.4.24 (PDF Download) - ProCall Analytics 3.0.2 was released on as a maintenance release.
ProCall Analytics 3.0.2 Release Notes - ProCall Meetings 1.2.7 was released on as a maintenance release.
ProCall Meetings 1.2.7 Release Notes - ECSTA 6 was released as version 6.0.9.899 onas a maintenance release.
ECSTA 6.0.9 Release Notes
You can find an overview of our Release Notes here...
DATES
May 2022: End of Maintenance (EoM) for ixi-UMS 6.x Enterprise and ProCall 6 Enterprise
: End of Maintenance (EoM) for ixi-UMS 6.70 Enterprise and ixi-UMS 6.60 Enterprise
: End of Maintenance (EoM) for ProCall 6 Enterprise
End-of-Maintenance (EOM): Maintenance releases, technical support and service are discontinued.
Discontinuation for estos STUN/TURN server: 29/3/2022 in download package ProCall 7 Enterprise (Add-Ons) deprecated – alternative solution
PROCALL ENTERPRISE STUN/TURN ADD-ONS DONWLOAD-PAKET DISCONTINUATION UCCONNECT
The "estos STUN/TURN Server" (Add-Ons directory) previously delivered in the ProCall 7 Enterprise download package is marked as obsolete. An alternative solution is offered.
Obsolete/Deprecated from
Discontinuation on
To put the alternative (coTurn) into operation, proceed according to the documentation:
We have compiled more information on the subject of STUN/TURN here:
17/5/2022: Tech Essentials LIVE – ProCall 7 Enterprise – news in Service Release 4 incl. requirements/commissioning of the new STUN/TURN alternative coTurn
PROCALL ENTERPRISE TECH ESSENTIALS LIVE PARTNER WEBINAR TECHNOLOGY ADMINISTRATION
Tech Essentials LIVE May 2022 Language: German | |
Tuesday, 17 May 2022 –11.00 a.m. | |
ProCall 7 Enterprise – news in Service Release 4 incl. requirements/commissioning of the new STUN/TURN alternative coTurn | |
Submit questions in advance on this subject to the speaker: techessentials@estos.de |
19/4/2022: Tech Essentials LIVE – administrative default content for monitor and favorites in ProCall Enterprise
METADIRECTORY ENTERPRISE TECH ESSENTIALS LIVE PARTNER WEBINAR TECHNOLOGY ADMINISTRATION
Tech Essentials LIVE April 2022 Language: German | |
Tuesday, 19 April 2022 –11.00 a.m. | |
Administrative specification of content for monitor and favorites in ProCall Enterprise | |
Submit questions in advance on this subject to the speaker: techessentials@estos.de |
YOUR CONTRIBUTION
Do you have a contribution or suggestions for the next tech essentials? Then write to techessentials@estos.de
At support.estos.de you will find technical information and helpful articles on installation, commissioning, operation, maintenance, troubleshooting, tutorials, interesting facts about estos software and products in the various system environments. The articles are subject to constant revision and updates.