﻿<?xml version="1.0" encoding="utf-8"?><rss version="2.0"><channel><title>GlobalSCAPE EFT Server Product Version History</title><link>http://www.globalscape.com/mft/history.aspx</link><description>Release notes from EFT Server product updates.</description><item><title>Changes in 6.5</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Platform (Standard and Enterprise):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added comprehensive support for Unicode UTF-8 encoding (see help file for exceptions and special cases)&lt;/li&gt;&lt;li&gt;Added 128 and 256 bit AES CTR (counter mode) ciphers for SFTP (both as server and as client)&lt;/li&gt;&lt;li&gt;Added status viewer controls for stopping in-progress inbound and outbound transfers&lt;/li&gt;&lt;li&gt;Added a progress percent completion indicator for transfers displayed in the status viewer (where applicable)&lt;/li&gt;&lt;li&gt;Added the ability to override the limit on the number of entries in the auto-ban IP list. (&lt;a href="http://kb.globalscape.com/KnowledgebaseArticle10877.aspx" target="_blank"&gt;KB Article&lt;/a&gt;)&lt;/li&gt;&lt;li&gt;Added the ability to override the limit on the number of entries in the IP access rules list. (&lt;a href="http://kb.globalscape.com/KnowledgebaseArticle10877.aspx" target="_blank"&gt;KB Article&lt;/a&gt;)&lt;/li&gt;&lt;li&gt;Updated OpenSSL library to version 0.9.8t&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Administrator Interface (AI):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added an override for controlling the administrator interface timeout&lt;/li&gt;&lt;li&gt;Added checks for administrator inactivity timeout values that exceed the 15 minutes maximum mandated by PCI DSS 8.5.15&lt;/li&gt;&lt;li&gt;Improved administrator interface performance when managing large user bases (up to 150K users)&lt;/li&gt;&lt;li&gt;Improved the administrator interface to make it clear when a setting is inherited from its parent and what the actual value of the setting is&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Advanced Workflow Engine (AWE):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added support for the "Call Function" action&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Auditing and Reporting Module (ARM):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Note: This release of the ARM module includes a significant database upgrade that will migrate existing ARM database to support storage of Unicode data&lt;/li&gt;&lt;li&gt;Note: Prior to upgrading the ARM database please refer to the "&lt;a href="http://help.globalscape.com/help/eft6-5/mergedprojects/arm/upgrading_the_eft_server_database.htm" target="_blank"&gt;Upgrading the EFT Server Database&lt;/a&gt;" 
online help topic&lt;/li&gt;&lt;li&gt;Modified reporting to limit the report size to 1000 pages due to inherent limitations in the rendering system&lt;/li&gt;&lt;li&gt;Modified auditing of folder monitor event rules so that the "tbl_EventRules" table "ConditionValues" column now contains additional information&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Client (Outbound):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added support for renaming after offload for the SFTP, HTTP, and local protocols. Was previously only available for the FTP protocol&lt;/li&gt;&lt;li&gt;&lt;h3&gt;COM Interface:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added support for specifying alternate credentials for Folder Monitors&lt;/li&gt;&lt;li&gt;Added support for specifying polling settings for Folder Monitors&lt;/li&gt;&lt;li&gt;Added additional methods to support management of existing AWE tasks&lt;/li&gt;&lt;li&gt;Added additional methods that map to new administrator interface controls, such as setting the administrator interface inactivity timeout values&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Event Rules:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added support for use of Virtual Path, Virtual Folder Name, Virtual Destination Path variables and conditions for Folder Monitor events&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Installer:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added persistent installer log file, located in &lt;Install Directory&gt;\Installer.log&lt;/li&gt;&lt;li&gt;Added check of initial EFT Server administrator account password against configured Windows password policy&lt;/li&gt;&lt;li&gt;Added a database upgrader utility to facilitate auditing and reporting module (ARM) upgrades&lt;/li&gt;&lt;li&gt;Improved cleanup of deprecated files during upgrade process&lt;/li&gt;&lt;li&gt;Improved logging of installer operations&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Secure Ad-hoc Transfer (SAT):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Updated the SAT applet jar files so that they have been signed with the latest Globalscape digital signing certificate&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Mail Express:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Bundled Mail Express alongside EFT Server as an alternative to SAT for ad hoc file transfers&lt;/li&gt;&lt;li&gt;Added the ability to obtain (one way synch) various settings from EFT Server&lt;/li&gt;&lt;li&gt;Added event rule triggering in EFT Server for Mail Express initiated transfers&lt;/li&gt;&lt;li&gt;Added auditing and reporting to EFT Server for Mail Express initiated transfers&lt;/li&gt;&lt;li&gt;Added a number of Mail Express specific features as documented in the &lt;a href="/support/gme.aspx"&gt;Mail Express version 3.3 release notes&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Interfaces - General:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Account management page now uses standard login page rather than basic authentication&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Interfaces - Web Transfer Client (WTC):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Updated the WTC applet jar files so that they have been signed with the latest Globalscape digital signing certificate&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Fixes:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;&lt;h3&gt;General:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Included fix made in 6.4.13 private patch: Added support for 128 and 256 bit AES CTR mode to the SFTP protocol&lt;/li&gt;&lt;li&gt;Included fix made in 6.4.12 private patch: DMZ Gateway to use port 20 instead of port 65300 for outgoing PORT mode FTP traffic&lt;/li&gt;&lt;li&gt;Included fix made in 6.4.12 private patch: Event Rule MOVE Action to delete source file on resumed transfer&lt;/li&gt;&lt;li&gt;Included fix made in 6.4.11 private patch: UserDatabaseSynchronizationMode registry key to properly ignore user deletions during synchronization when in LoggingModeOnly&lt;/li&gt;&lt;li&gt;Fixed an issue where the "Authority Key Identifier" and "Subject Key Identifier" fields were not included for SSL Certificates generated or signed by the application&lt;/li&gt;&lt;li&gt;Fixed minor stability issues within the applications&lt;/li&gt;&lt;li&gt;Fixed a minor memory leak in SSL certificate management routines&lt;/li&gt;&lt;li&gt;Fixed various performance issues related to working with a large number of user accounts&lt;/li&gt;&lt;li&gt;Fixed various performance issues related to working with a large number of VFS entries&lt;/li&gt;&lt;li&gt;Fixed various inconsistencies in logging configuration file (logging.cfg)&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Administration Interface (AI):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue that could result in a hang if an admin logged in while a backup is in progress&lt;/li&gt;&lt;li&gt;Fixed an issue where all admins would be locked out if a user with a home folder specified as a physical path was deleted&lt;/li&gt;&lt;li&gt;Fixed an issue where some VFS folder rename failures were not reported in the user interface&lt;/li&gt;&lt;li&gt;Fixed minor user interface inconsistencies and formatting issues&lt;/li&gt;&lt;li&gt;Fixed an issue where the Status Viewer failed to open the client log file if the configured EFT Log File path contained a trailing backslash&lt;/li&gt;&lt;li&gt;Fixed an issue that would cause the interface to handle if selecting or hovering over an event rule whose repeat rate was greater than or equal to 24 hours&lt;/li&gt;&lt;li&gt;Fixed an issue where the QuickSearch functionality was not searching Cleanup or Backup action paths&lt;/li&gt;&lt;li&gt;Fixed a potential crash that could occur when clicking Success/Fail links in the Status Viewer&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Advanced Workflow Engine (AWE):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where the verbose logging setting was not affecting the log verbosity&lt;/li&gt;&lt;li&gt;Fixed an issue where the TextReplace function did not properly handle regex replacement&lt;/li&gt;&lt;li&gt;Fixed an issue where the %FS_FILE_SIZE% event rule variable was not set for AWE tasks run from a folder monitor event rule&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented deletion of sample AWE tasks&lt;/li&gt;&lt;li&gt;Fixed an issue where the following variables were not available to AWE tasks: Folder Monitor Failure Reason, Precise Event Time Stamp, Base File Name, Install Folder&lt;/li&gt;&lt;li&gt;&lt;h3&gt;AS2:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed "No MIME-boundary found" error when operating with Templar server. This issue occurred when the MDN response does did contain the "Content-length" header&lt;/li&gt;&lt;li&gt;Fixed a potential server crash due to failure to handle non-null terminated MDN strings properly&lt;/li&gt;&lt;li&gt;Fixed an failure that would occur if the username+password were longer than 78 characters&lt;/li&gt;&lt;li&gt;Fixed an issue where the configured HTTP Domain setting was not being used for the AS2 asynchronous MDN delivery address&lt;/li&gt;&lt;li&gt;Fixed an issue where the configured AS2 proxy settings were not being used&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Auditing and Reporting Module (ARM):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where the report filtering configuration was not updated in the interface when switching between reports&lt;/li&gt;&lt;li&gt;Fixed an issue where a stray CR/LF could cause a disconnection from an Oracle database&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented the creation of 5 indexes for Oracle databases&lt;/li&gt;&lt;li&gt;Fixed an issue that caused erroneous error messages when running Oracle database creation scripts manually&lt;/li&gt;&lt;li&gt;Fixed an issue where a null character in an HTTP GET request could cause a disconnection from the database&lt;/li&gt;&lt;li&gt;Fixed an issue where files without an extension were being included in the Folder path column of the "Activity - All Transfers" report&lt;/li&gt;&lt;li&gt;Fixed an issue where transfers though the PTC/WTC were not appearing in the "Activity - By Group (Detailed)" report&lt;/li&gt;&lt;li&gt;Fixed an issue that could prevent reporting on AS2 transactions when running against an Oracle database&lt;/li&gt;&lt;li&gt;Fixed various discrepancies in reporting of paths and filenames in report between different protocols&lt;/li&gt;&lt;li&gt;Fixed an issue where the application would not reconnect to Oracle databases when receiving an ORA-03113 error&lt;/li&gt;&lt;li&gt;Fixed an issue where the application would not reconnect to Oracle databases when receiving an ORA-03135 error&lt;/li&gt;&lt;li&gt;Fixed an issue where the Admin Activity (Summary) report was showing successful admin connections as Denied&lt;/li&gt;&lt;li&gt;Fixed an issue where the Admin Activity (Summary) report was showing the incorrect local IP when connecting via IPv6&lt;/li&gt;&lt;li&gt;Fixed an issue where the custom command name was not included when auditing to the "tbl_ProtocolCommands" table&lt;/li&gt;&lt;li&gt;Fixed an issue where custom commands triggered by a connected client were not auditing to the "tbl_CustomCommands" table&lt;/li&gt;&lt;li&gt;Fixed an issue where the AS2 - Transactions Detailed reports were not order. They are now ordered by the transaction start time&lt;/li&gt;&lt;li&gt;Fixed an issue where the Admin Activity (Summary) report was not included in the set of SQL Server reports&lt;/li&gt;&lt;li&gt;Fixed inconsistencies in auditing of "PhysicalFolderName" and "FileSize" in "tbl_ProtocolCommands" table&lt;/li&gt;&lt;li&gt;Fixed an issue that would prevent import of SQL log files due to failure to properly obtain the identity value of a newly inserted row&lt;/li&gt;&lt;li&gt;Fixed an issue where an unused table "tbl_ResultCodes" was included in the database schema&lt;/li&gt;&lt;li&gt;Fixed an issue where the default size of the internal queue used to process audit events was too small and could result in performance issues on some systems. The default size has been increased&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Authentication - General:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed a performance issue where the "Refresh User Database" functionality was operational for stopped sites&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Authentication - Active Directory:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where a successful password change in the account management page was inaccurately reported as an error&lt;/li&gt;&lt;li&gt;Fixed an issue where the incorrect file path was used to locate custom change password error message files&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Authentication - LDAP:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where password change requests would fail with "ERROR [0x80640022] Invalid DN Syntax" error. This was due to referencing the "unicodePwd" field rather than the "userPassword" field&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Authentication - ODBC:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed a memory leak that could occur when an ODBC user had an empty home folder&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Client (Outbound):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented outbound PWD command from working with z/OS&lt;/li&gt;&lt;li&gt;Fixed a memory leak in SSL handling for FTPS and HTTPS protocols&lt;/li&gt;&lt;li&gt;Fixed an issue where Copy/Move could fail for filenames containing extended ASCII characters&lt;/li&gt;&lt;li&gt;Fixed an issue where the rename feature of Copy/Move could fail for local LAN&lt;/li&gt;&lt;li&gt;Fixed an issue where a connection failure due to invalid credentials would use the credentials from a valid session and proceed&lt;/li&gt;&lt;li&gt;Fixed an issue where files did not retain the original date modified value for LAN copies or moves&lt;/li&gt;&lt;li&gt;Fixed an issue where filenames containing "[" would fail to transfer&lt;/li&gt;&lt;li&gt;Fixed an issue where downloads would fail when using a wildcard when connecting to a Microsoft IIS FTP server that does UNIX Directory style listing&lt;/li&gt;&lt;li&gt;Fixed an issue where move and download actions did not preserve the file creation time&lt;/li&gt;&lt;li&gt;Fixed an issue where the preferred local IP setting was not being used when using the DMZ Gateway/SOCKS proxy&lt;/li&gt;&lt;li&gt;Fixed minor memory leaks that could occur for SFTP offloads&lt;/li&gt;&lt;li&gt;Fixed an issue where the connection retry limit was not being honored for data channel connections&lt;/li&gt;&lt;li&gt;Fixed an issue where long client operations could prevent the server from stopping in a reasonable amount of time&lt;/li&gt;&lt;li&gt;Fixed an issue where the application was not following RFC 3659. It was using the MDTM command to set the modified time when it should be using the MFMT command&lt;/li&gt;&lt;li&gt;&lt;h3&gt;COM Interface:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where out of range values were misinterpreted for the Folder Monitor configuration&lt;/li&gt;&lt;li&gt;Fixed an issue where the Site.DoesUsernameExist always returned false&lt;/li&gt;&lt;li&gt;Fixed an issue where the CITimerEventRuleParams.DateTimeStart was not using the date provided&lt;/li&gt;&lt;li&gt;&lt;h3&gt;DMZ Gateway (version 3.3.0):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where communication failures for the peer notification channel were not being logged&lt;/li&gt;&lt;li&gt;Added support for IPv6 addressing when operating with Mail Express Server version 3.3 and later&lt;/li&gt;&lt;li&gt;Added support for Unicode strings in the log files and xml-based configuration files&lt;/li&gt;&lt;li&gt;Added support for Unicode strings in communications with EFT Server 6.5 and later&lt;/li&gt;&lt;li&gt;Changed installer so that it now ensures the DMZ Gateway Administration Interface is not running prior to making modifications&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented binding to interfaces if IPv4 or IPv6 support was disabled in the operating system&lt;/li&gt;&lt;li&gt;Fixed an issue that would cause large delays in connection processing if a port mode connection was attempted through the DMZ Gateway and outbound connections were blocked by a firewall&lt;/li&gt;&lt;li&gt;Fixed minor user interface issues in the DMZ Gateway Administration Interface&lt;/li&gt;&lt;li&gt;Upgraded the embedded Java Runtime Environment to Version 1.7.0_09&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Event Rules:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where AWE variables were not populated when the event rule is called from Web Services&lt;/li&gt;&lt;li&gt;Fixed an issue where the %USER.LAST_LOGIN% was not returning the expected value when used with the "On User Disabled" event rule type&lt;/li&gt;&lt;li&gt;Fixed an issue where extended ASCII characters were not supported in event rule email notifications&lt;/li&gt;&lt;li&gt;Fixed an issue where %FS.PATH% variable was being allowed as the source file for an AS2 Timer Event rule. Use of this variable is now forbidden as it is not available for Timer Event rules&lt;/li&gt;&lt;li&gt;Fixed a rare issue where the presence of a large number of folder monitors with the health check option enabled could crash the server&lt;/li&gt;&lt;li&gt;Fixed an issue where some event rule variables would not retain their values after a "Move" step&lt;/li&gt;&lt;li&gt;Fixed an issue where the Reason, FileName, VirtualPath variables were not being properly set for "On Upload Failed" events&lt;/li&gt;&lt;li&gt;Fixed an issue where the thread pool used for monitoring folders would not shrink back to the default size over time&lt;/li&gt;&lt;li&gt;Fixed an issue where the application installation directory was used if no working directory was specified for a custom command. Now the directory of the specified executable will be used in this case&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented passing event rule variables with inner spaces to compound custom command parameter&lt;/li&gt;&lt;li&gt;&lt;h3&gt;High Security Module (HSM):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed various PCI reporting issues that were resulting in compensating controls being reported for each user. This could lead to excessively sized reports&lt;/li&gt;&lt;li&gt;Fixed various minor PCI report inconsistencies and text issues&lt;/li&gt;&lt;li&gt;Fixed an issue where the PCI admin interface inactivity timer would incorrectly trigger while a user was working in the AWE task editor&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Installation:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented proper upgrade of files when the installer was run in silent mode&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented the SQL Server Express database from being installer when the installer was run in silent mode&lt;/li&gt;&lt;li&gt;Fixed an issue where ARM would become enabled when running the installer in Repair mode&lt;/li&gt;&lt;li&gt;Fixed an issue where the "Allow Log on Locally" Windows privilege was required on accounts to log in to the Admin UI when providing an explicit Windows account during the login&lt;/li&gt;&lt;li&gt;Fixed an issue where the cluster installation path in the installer would not ask the user if they were installing the first node for some cases&lt;/li&gt;&lt;li&gt;Fixed an issue where the initial administration user was not created within the server if a node other than the first node was started first in a cluster environment&lt;/li&gt;&lt;li&gt;Fixed an issue where the ARM upgrade option was not provided when upgrading a cluster environment&lt;/li&gt;&lt;li&gt;&lt;h3&gt;OpenPGP Module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented proper operation on files and folders containing percent signs&lt;/li&gt;&lt;li&gt;Fixed an issue that caused some successful decryptions to be reported as errors in the application log file&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Protocols - General:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Security: Fixed an issue where the SSL protocol in the FTPS and HTTPS implementations was susceptible to a client initiated SSL renegotiation denial of service attack&lt;/li&gt;&lt;li&gt;Fixed an issue where the Site level data sanitization setting was not being honored for deletion of files for POST commands&lt;/li&gt;&lt;li&gt;Fixed an issue where accounts whose username or password contained extended ASCII characters could not log in to the application&lt;/li&gt;&lt;li&gt;Fixed an issue where communications threads were reserving more memory than required which could limit the maximum number of concurrent communications threads&lt;/li&gt;&lt;li&gt;Fixed an issue where the application fails to abide by RFC 959 for conversion to NVT-STANDARD &lt;CRLF&gt; of ASCII files&lt;/li&gt;&lt;li&gt;Fixed an issue where an incorrect "Reason" was determined for some disconnection events in the SFTP and HTTP/S protocols&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Protocols - HTTP/S:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Security: Fixed an issue where insufficient randomness was present in the generated session tokens&lt;/li&gt;&lt;li&gt;Fixed an issue where SSL sessions ids were not being tracked properly which led to inefficient SSL handling&lt;/li&gt;&lt;li&gt;Fixed an issue that caused excessive CPU utilization when downloading from the server while rate limited to a small transfer rate&lt;/li&gt;&lt;li&gt;Fixed a rare crash that could occur when the IP Access policy is set to deny by default and a user who has the "Change password at next login" flag enables attempts to log in&lt;/li&gt;&lt;li&gt;Fixed a memory leak that could occur when using the PFX SSL certificate/key format&lt;/li&gt;&lt;li&gt;Fixed an issue where HEAD and GET requests returned the wrong content length when a range was included in the request&lt;/li&gt;&lt;li&gt;Fixed an issue where the range header was being incorrectly interpreted as being non-inclusive&lt;/li&gt;&lt;li&gt;Fixed an issue where directory listings were incorrect in the presence of a file containing a # character&lt;/li&gt;&lt;li&gt;Fixed an issue where the "Uploads per session" and "Downloads per session" transfer limits were being ignored&lt;/li&gt;&lt;li&gt;Fixed an issue where a 404 error was returned for deletions if a file was currently locked. A more appropriate 503 "service unavailable" error code is now returned&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Protocols - FTP/S:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Security: Fixed an issue that allowed Active Directory users to traverse directories for which they did not have permission to access&lt;/li&gt;&lt;li&gt;Security: Fixed an issue where the PASV port was not randomized if a PASV port range was not specified&lt;/li&gt;&lt;li&gt;Fixed an issue where filenames with extended ASCII characters were not handled properly in listings&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented listing the contents of folders with special characters in the folder name&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented folder renames&lt;/li&gt;&lt;li&gt;Fixed an issue where the STOU command failed to work correctly when user account's "Treat home folder as the users' default root folder" setting was enabled&lt;/li&gt;&lt;li&gt;Fixed an issue that caused the auto-ban (DoS/Flood) detection to be too sensitive when applied to invalid FTP login attempts&lt;/li&gt;&lt;li&gt;Fixed an issue where the server may send a "226 Transfer complete" message before the data connection is closed&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Protocols - SFTP:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where sending FSETSTAT or SETSTAT to the application multiple times would cause a file not found error&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Secure Ad-hoc Transfer (SAT):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where the user was not being notified when no files had been attached&lt;/li&gt;&lt;li&gt;Fixed an issue where SAT would fail to upload folders if the "Enable WTC" checkbox was disabled&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented the java applet from loading in FireFox or Chrome when using Java 7 on the client machine&lt;/li&gt;&lt;li&gt;Fixed an issue where the unsigned applet jar files were erroneously located in a directory called "Signed". They are now located in a directory called "Unsigned"&lt;/li&gt;&lt;li&gt;&lt;h3&gt;SMTP:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed an issue where email delivery failed when operating with FirstClass ESMTP server&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Interfaces - General:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Security: Fixed a minor issue where some debug and test comments were included in web application JavaScript and HTML&lt;/li&gt;&lt;li&gt;Security: Fixed an issue where the web applications could be susceptible to reflected Cross Site Scripting (XSS) attacks&lt;/li&gt;&lt;li&gt;Security: Fixed an issue where the machine name was included in the "Location" header for MOVE and COPY responses&lt;/li&gt;&lt;li&gt;Security: Fixed a false positive issue that was causing some security scanners to report that user credentials could be changed using GET. They are in fact only changed using a POST&lt;/li&gt;&lt;li&gt;Security: Fixed cache control directives for various resources to further mitigate potential security concerns&lt;/li&gt;&lt;li&gt;Fixed various minor issues that could result in unexpected messages in browser debugging windows&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented loading of the account management page if the user account had a low transfer rate set&lt;/li&gt;&lt;li&gt;Fixed an issue where users were forced to change their password again after having already changed their password using the "Lost Password" work flow&lt;/li&gt;&lt;li&gt;Fixed an issue where the OpenFolder JSON response did not conform to the JSON specification&lt;/li&gt;&lt;li&gt;Fixed an issue where the "Forgot Password" feature was included for unsupported authentication types: Active Directory, LDAP&lt;/li&gt;&lt;li&gt;Fixed an issue where the Windows "Allow Log on Locally" privilege was required for login when explicitly supplying credentials&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Interfaces - Web Transfer Client (WTC):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed minor user interface inconsistencies and formatting issues&lt;/li&gt;&lt;li&gt;Fixed a file/path name rendering issue when certain special characters were present&lt;/li&gt;&lt;li&gt;Fixed an issue where users were unable to clear the filter after filtering by size&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented files with "%" in the filename from being opened from the remote pane&lt;/li&gt;&lt;li&gt;Fixed an issue where "C:\" drive was included in "My Files and Folders" for Mac operating systems&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented upload of 0-byte files&lt;/li&gt;&lt;li&gt;Fixed an issue where the interface would default to the root folder rather than the user's home folder for initial login&lt;/li&gt;&lt;li&gt;Fixed an issue where the user would be logged out when using the Open File button on a remote file&lt;/li&gt;&lt;li&gt;Fixed an issue where use of the delete key in the Change Password functionality would attempt to delete a file or folder&lt;/li&gt;&lt;li&gt;Fixed an issue where the timeout handling was not functioning for downloads when using the JSE client&lt;/li&gt;&lt;li&gt;Fixed an issue where the retry attempts did not include a sufficient delay and would thus quickly exhaust the number of attempts&lt;/li&gt;&lt;li&gt;Fixed an issue where filtering by date resulted in the user being logged out&lt;/li&gt;&lt;li&gt;Fixed an issue where a transfer could not be stopped using the "Kick User" functionality&lt;/li&gt;&lt;li&gt;Fixed an issue where the user was not taken to a remote folder when it is specified in the url&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Interfaces - Plain Text Client (PTC):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Security: Fixed an issue where accounts in different Sites with identical user names could potentially access each other's resources&lt;/li&gt;&lt;li&gt;Fixed an issue where sorting by modified date was non-functional&lt;/li&gt;&lt;li&gt;Fixed an issue that prevented deletion or rename of files whose name contained certain special characters&lt;/li&gt;&lt;li&gt;Fixed a memory consumption issue that could occur when an invalid content length was provided by the client. Note that some clients incorrectly overflow the content length for files over 2GB in size.&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>2/15/2013</pubDate></item><item><title>Changes in 6.4.10</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Server (standard) and Enterprise:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed minor formatting issue in generation of JSON, which is used internally between EFT Server and WTC&lt;/li&gt;&lt;li&gt;Fixed memory and handle leak in Event Rule client SFTP&lt;/li&gt;&lt;li&gt;Security: Fixed a minor security issue that allowed user accounts with force password change specified to perform some actions such as file upload without first changing their password. This issue applies only to non-browser clients connecting over HTTP/HTTPS.&lt;/li&gt;&lt;li&gt;&lt;h3&gt;AS2 module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed AS2 outbound asynchronous MDN receipt URL, which did not contain the proper domain&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Secure Ad Hoc Transfer (SAT) module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Security: Fixed thread safety issue in SAT that caused incorrect home folders in EFT Server accounts&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>7/31/2012</pubDate></item><item><title>Changes in 6.4.7</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Server Enterprise only:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed performance issues when synchronizing users or applying changes to group permissions when operating against an LDAP source with a large (&gt;80k) number of users&lt;/li&gt;&lt;li&gt;&lt;h3&gt;EFT Server (standard) and Enterprise:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Security: Fixed a medium-high security vulnerability that allowed users to access the Virtual File System with elevated privileges. This only applied to Active Directory authenticated users after being forced to reset their password via the Web Transfer Client or Plain Text Client. (Note that the ability for Active Directory authenticated users to reset their passwords is off by default and can only be enabled via a registry setting).&lt;/li&gt;&lt;li&gt;Security: Fixed a medium level security vulnerability consisting of a memory leak caused by SSL negotiation under certain conditions (affected versions: 6.4.3 - 6.4.5(private))&lt;/li&gt;&lt;li&gt;Added a "User Account Enabled" event trigger&lt;/li&gt;&lt;li&gt;Added a "User Account Deleted" event trigger&lt;/li&gt;&lt;li&gt;Fixed an issue where "User Account Disabled" event trigger was not firing for all cases&lt;/li&gt;&lt;li&gt;Fixed issue where some user-related event conditions and event properties were not included for use with the "New User Created" event trigger&lt;/li&gt;&lt;li&gt;Fixed capitalization of the names of the "User Logged In" and "User Logged Out" event triggers&lt;/li&gt;&lt;li&gt;Fixed an issue where the internal IP address of the remote server was being  used for outbound FTP/S PASV connections rather than the external IP address&lt;/li&gt;&lt;li&gt;Changed "New User Created" event trigger label to "User Account Created" for consistency&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>6/6/2012</pubDate></item><item><title>Changes in 6.4.3</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Server Enterprise only:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added support for Common Access Card (CAC) authentication&lt;/li&gt;&lt;li&gt;
Fixed a slow memory leak that occurred when using LDAP authentication&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Help and Documentation:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Fixed an issue where the application help incorrectly displayed additional scroll bars&lt;/li&gt;&lt;li&gt;
Fixed an inconsistency in the documentation concerning behavior of the "Require Active Directory domain trust relationship" Folder Monitor configuration item for upgrades&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Auditing and Reporting Module (ARM):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Fixed a misspelling in the Oracle schema scripts that caused failures when auditing PCI DSS violations&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Web Interfaces:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Fixed an issue that caused misalignment of icons in the Plain Text Client and Web Transfer Client interfaces when using Mozilla Firefox version 10 or later&lt;/li&gt;&lt;li&gt;
Fixed an issue in the Web Transfer Client interface that prevented the browser from refreshing when clicking "OK" on the session expiration dialog&lt;/li&gt;&lt;li&gt;
Fixed an issue that prevented proper operation of the Web Transfer Client interface for Sites using non-standard HTTP or HTTPS ports&lt;/li&gt;&lt;li&gt;
Fixed an issue where the Web Transfer Client interface would display the help for an earlier version of the product&lt;/li&gt;&lt;li&gt;
Fixed an issue where the Web Transfer Client interface would display an invalid status for timeouts during file downloads&lt;/li&gt;&lt;li&gt;
Updated the user experience for Web Transfer Client interface Java Applet load failures&lt;/li&gt;&lt;li&gt;
Fixed an issue that prevented download of files from the Plain Text Client interface when using Google Chrome version 16.0.912.63 or later&lt;/li&gt;&lt;li&gt;
Fixed an issue that prevented the proper launch of the Legacy Transfer Client interface&lt;/li&gt;&lt;li&gt;
Fixed an issue that prevented the use of the change password feature in the Legacy Transfer Client interface&lt;/li&gt;&lt;li&gt;
Fixed an issue that prevented the use of the file/folder rename feature in the Legacy Transfer Client interface&lt;/li&gt;&lt;li&gt;
Fixed an issue where the Legacy Transfer Client interface would display the Plain Text Client interface after a file upload&lt;/li&gt;&lt;li&gt;
Updated the Legacy Transfer Client interface to display the login page on log out rather than offer to close the browser&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>3/28/2012</pubDate></item><item><title>Changes in 6.4.1</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Server (standard) and Enterprise:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added a registry key (ReportsConnectionString) to allow specification of an alternate database connection string for use by the reporting functionality. This allows for the use of a reduced privilege account for reporting. &lt;/li&gt;&lt;li&gt;
Removed unused, default security credentials from default report definition  XML files&lt;/li&gt;&lt;li&gt;
Fixed an issue that caused IP addresses in the FTP/S configuration and PASV settings for the DMZ Gateway configuration to be reversed when upgrading from releases earlier than 6.4.&lt;/li&gt;&lt;li&gt;
Fixed an issue that prevented the proper operation of the LS command when  used with a mask over the FTP and FTPS protocols&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>1/13/2012</pubDate></item><item><title>Changes in 6.3.16</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Server Enterprise only:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Fixed offload COPY of a non-existent file to default to ERROR instead of SUCCESS.  Added a toggle to Offload Wizard to allow the selection of ERROR or SUCCESS.&lt;/li&gt;&lt;li&gt;
Fixed event rule Copy/Move to support Danish high characters: "æøå"&lt;/li&gt;&lt;li&gt;
Fixed event rule Copy/Move to not inherit credentials from a previous Copy/Move Action&lt;/li&gt;&lt;li&gt;
Fixed issue locating user in LDAP during Change Password&lt;/li&gt;&lt;li&gt;
Fixed event rule variables (%FS.FILE_NAME%) to contain the correct filename after a MOVE Action&lt;/li&gt;&lt;li&gt;
Fixed issue that could cause duplicate execution of Timer rule under certain circumstances&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;EFT Server (standard) and Enterprise:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added a registry key (ReportsConnectionString) to allow specification of an alternate database connection string for use by the reporting functionality. This allows for the use of a reduced privilege account for reporting.&lt;/li&gt;&lt;li&gt;
Fixed crash when MLSD performed in a folder containing a VFS alias &gt; 14 characters in length&lt;/li&gt;&lt;li&gt;
Fixed issue which resulted in a locked file when an SFTP upload was abruptly terminated&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Web Transfer Client (WTC):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Fixed HTTP to properly redirect to a specified folder after entering credentials on login page&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;COM API:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added COM method to get/set Folder Monitor Event Rule alternate credentials&lt;/li&gt;&lt;li&gt;
Added COM method to get/set Site's SFTP protocol state&lt;/li&gt;&lt;li&gt;
Added COM method to get/set Site's default PGP key&lt;/li&gt;&lt;li&gt;
Added COM method to get/set Offload/Download Action's "Rename After Transfer"&lt;/li&gt;&lt;li&gt;
Added COM method to get/set Site-&gt;Security-&gt;Invalid logins "Count incorrect username" settings&lt;/li&gt;&lt;li&gt;
Fixed a memory leak in COM CServer::Close and CSite::Close&lt;/li&gt;&lt;li&gt;
Fixed COM Allow FXP, Allow COMB, and Allow XCRC getters and setters when using inheritance&lt;/li&gt;&lt;li&gt;
Fixed COM FTP "Allow ZLIB compression" toggle&lt;/li&gt;&lt;li&gt;
Fixed COM setting of Upload/Download proxy type&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;OpenPGP module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added registry key to control timeout for long running PGP operations&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;AS2 module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Fixed inbound AS2 transfers from being redirected to login page when the HTTP User Agent appears to be a browser&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Secure Ad Hoc Transfer (SAT) module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Fixed SAT to properly populate the FROM email address in multi-domain environments&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>1/12/2012</pubDate></item><item><title>Changes in 6.4</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Server Enterprise only:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added polling option to Folder Monitor, including ability to sweep the monitored folder on rule startup&lt;/li&gt;&lt;li&gt;
Added archive option to Folder Monitor to avoid duplicate processing when polling option is enabled&lt;/li&gt;&lt;li&gt;
Added ability to specify Event ID for Write to Windows Event Log action&lt;/li&gt;&lt;li&gt;
Added UTF-8 option for Copy/Move and Download Event Rule actions&lt;/li&gt;&lt;li&gt;
Added new column (optional) to EFT Server's CL log (Event Rule client log) that returns a success/failure code after the actual result (error) code. To enable:  HKLM\SOFTWARE\GlobalSCAPE Inc.\EFT Server 4.0 value=Enable10ColumnInClientLog DWORD=1 (not present or 0 means disabled)&lt;/li&gt;&lt;li&gt;
Added registry override to disable use of LAST SFTP command used to detect for existence of destination folder prior to transfer&lt;/li&gt;&lt;li&gt;
Added registry override to aid in connecting to slower SFTP servers&lt;/li&gt;&lt;li&gt;
Added registry override that sets the timer thread stack size for cases where lots (300-400) of timers are launching AWE tasks (For information regarding registry settings, refer to the &lt;a href="http://kb.globalscape.com" target="_blank"&gt;GlobalSCAPE Knowledgebase&lt;/a&gt;, keyword: windows registry)    &lt;/li&gt;&lt;li&gt;
Enhanced SFTP client (Copy/Move and Download) performance significantly&lt;/li&gt;&lt;li&gt;
Updated AS2 library component to 8.1.4276.0&lt;/li&gt;&lt;li&gt;
Fixed FTP trace logging that was accidently removed in EFT 6.3&lt;/li&gt;&lt;li&gt;
Fixed AS2 redirection bug introduced in EFT 6.3 that affected AS2 clients that identified themselves as a generic browser&lt;/li&gt;&lt;li&gt;
Fixed crash caused by AS2 connections under certain conditions (specifics withheld to prevents DoS attacks on older servers)&lt;/li&gt;&lt;li&gt;
Fixed issue where EFT Server's SMTP settings weren't being propagated to the registry for use by the AWE module&lt;/li&gt;&lt;li&gt;
Fixed issue connecting to MVS systems. Now if EFT detects MVS using FTP SYST command it avoids use of PWD and CWD commands for overwrite logic&lt;/li&gt;&lt;li&gt;
Fixed issue where EFT Server failed to retry offloads when the file was locked by another process and a ERROR_ACCESS_DENIED or ERROR_SHARING_VIOLATION was received&lt;/li&gt;&lt;li&gt;
Fixed issue where LAN transfers with credentials override was failing because the Folder Monitor override credentials were being used instead&lt;/li&gt;&lt;li&gt;
Fixed issue where LDAP change password attempts failed depending on how the username was constructed&lt;/li&gt;&lt;li&gt;
Fixed issue where timer event could trigger twice under certain conditions&lt;/li&gt;&lt;li&gt;
Fixed issue where client downloads would fail when downloading from a GXS server&lt;/li&gt;&lt;li&gt;
Fixed issue where certain EFT Server context variables were not being passed to AWE&lt;/li&gt;&lt;li&gt;
Fixed issue where files with a prefix of "as2" could not be downloaded&lt;/li&gt;&lt;li&gt;
Fixed issue where FTP/S client (Copy/Move and Download action) wasn't respecting the ReceiveBufferSize registry override (HKEY_LOCAL_MACHINE\SOFTWARE\GlobalSCAPE\TED6\Settings\Transfer\ReceiveBufferSize)&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;EFT Server (standard) and Enterprise:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added comprehensive IPv6 support including support for dual stacks (both IPv4 and IPv6)&lt;/li&gt;&lt;li&gt;
Added support for multiple discrete listening IPs per site &lt;/li&gt;&lt;li&gt;
Added support for CIDR masking (in addition to current wildcard masking) for IP Access/Ban rule IP definitions&lt;/li&gt;&lt;li&gt;
Added option to treat missing source file(s) as success (rather than failure) for Copy/Move action (any protocol) and for Download action (LAN transfers only)&lt;/li&gt;&lt;li&gt;
Added support for multiple emails assigned to user account (semicolon delimited)  &lt;/li&gt;&lt;li&gt;
Added support for using %USER.EMAIL% in the To, CC, and Bcc fields of the Email Notification action&lt;/li&gt;&lt;li&gt;
Added toggle to certificate signing manager to automatically add newly signed certificate to certificate store trusted list&lt;/li&gt;&lt;li&gt;
Added ability to create Site-specific templates for password reset reminder and required messages, and for login credentials message.&lt;/li&gt;&lt;li&gt;
Added registry override for the default (10 minute) PGP timeout&lt;/li&gt;&lt;li&gt;
Added registry override for the PGP log file name created by EFT Server&lt;/li&gt;&lt;li&gt;
Updated PCI DSS coverage to account for PCI DSS 2.0 changes&lt;/li&gt;&lt;li&gt;
Updated SSL library to 0.9.8r&lt;/li&gt;&lt;li&gt;
Included all bug fixes made in EFT Server 6.3 private patch versions&lt;/li&gt;&lt;li&gt;
Fixed issue with MODE command where certain parameters would cause EFT to return errors&lt;/li&gt;&lt;li&gt;
Fixed issue in email notification where URLs exceeding certain length mangled in the HTML&lt;/li&gt;&lt;li&gt;
Fixed hang that occurred when in FIPS mode, a certificate with non-FIPS approved algorithms was used for a client offload&lt;/li&gt;&lt;li&gt;
Fixed issue where user was placed in root folder if user's home folder exceeded Windows' max_path&lt;/li&gt;&lt;li&gt;
Fixed PGP decrypt performance issue introduced in EFT 6.3&lt;/li&gt;&lt;li&gt;
Fixed issue where Event Rule comments were truncated if too long&lt;/li&gt;&lt;li&gt;
Fixed crash caused in SFTP write operations under certain conditions (specifics withheld to prevents DoS attacks on older servers)&lt;/li&gt;&lt;li&gt;
Fixed issue where the registry override to require delete permission for uploads that result in overwritten files wasn't being honored. (&lt;a href="http://kb.globalscape.com/KnowledgebaseArticle10506.aspx?Keywords=overwrite" target="_blank"&gt;Reference&lt;/a&gt;)&lt;/li&gt;&lt;li&gt;
Fixed issue where EFT Server failed to create a users' home folder if it did not already exist but "create home folder for new users" was enabled (after .AUD import)&lt;/li&gt;&lt;li&gt;
Fixed crash that would occur during a trial extension request under certain conditions&lt;/li&gt;&lt;li&gt;
Fixed issue where prompt would appear for PGP key that would prevent the user from further navigation, even though PGP was not being used&lt;/li&gt;&lt;li&gt;
Fixed issue where file does not exist was returning incorrect FTP error code ("550 Permission denied" instead of "550 File does not exist")&lt;/li&gt;&lt;li&gt;
Fixed issue where a failure and error was returned by PGP encryption logic under certain conditions&lt;/li&gt;&lt;li&gt;
Fixed issue where duplicate users were reported in the .AUD file&lt;/li&gt;&lt;li&gt;
Fixed issue where an On File Upload rule would fail to trigger if a Settings Template was specified as a conditional value&lt;/li&gt;&lt;li&gt;
Fixed issue where EFT failed to log when PGP delete operation failed due to file being locked&lt;/li&gt;&lt;li&gt;
Fixed issue where upgrade failed to import the entire list of banned IPs; increased threshold from 1,000 to 5,000&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Administration Interface (AI):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added "Deep Search" to the quick search feature (search in rules)&lt;/li&gt;&lt;li&gt;
Added prompt to apply, discard, or cancel (revert) changes when switching to a different page in the administration interface without having first saved one's changes&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Auditing and Reporting Module (ARM):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Switched to SQL Native Client 2008 R2 API&lt;/li&gt;&lt;li&gt;
Fixed inconsistency between documentation and how ResultID was actually being audited to the ARM database&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Secure Ad Hoc Transfer (SAT) module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added link to SAT send page from SAT admin page&lt;/li&gt;&lt;li&gt;
Added numerous minor usability enhancements&lt;/li&gt;&lt;li&gt;
Enhanced SAT's various templates, including the notification template&lt;/li&gt;&lt;li&gt;
Enhanced SAT's transfer engine to use Java SE Runtime v6u26 and JFileUpload version 2.9C&lt;/li&gt;&lt;li&gt;
Fixed issue where SAT module throws an MX Error 45 when changing settings template location &lt;/li&gt;&lt;li&gt;
Fixed issue where SAT would incorrectly state that some content was delivered unsecured (only under certain conditions)&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;DMZ Gateway:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added full IPv6 support including dual stack (both IP 4 and 6)&lt;/li&gt;&lt;li&gt;
Added support for 6to4 and 4to6 translation&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;Web Transfer Client (WTC):&lt;/h3&gt; &lt;/li&gt;&lt;li&gt;
Added HttpOnly attribute to cookies (where supported) as a security precaution&lt;/li&gt;&lt;li&gt;
Added Secure attribute to all cookies presented over HTTPS (except for special case when an HTTP session is temporarily redirected to HTTPS for the login portion, and then back to HTTP post login)&lt;/li&gt;&lt;li&gt;
Added attribute to prevent auto-complete of FORM fill for login and password reset pages as a security precaution&lt;/li&gt;&lt;li&gt;
Added X-Frame-Options: "sameorigin" to prevent clickjacking. To override that setting: HKEY_LOCAL_MACHINE\SOFTWARE\GlobalSCAPE Inc.\EFT Server 4.0\EFTClient DWORD value=disable_xframeoptions; DWORD=00000001 (to disable)&lt;/li&gt;&lt;li&gt;
Added X-Content-Type-Options: "nosniff" header as a security precaution&lt;/li&gt;&lt;li&gt;
Added X-XSS-Protection: "1; mode=block" header as a security precaution (For &lt;a href="http://en.wikipedia.org/wiki/List_of_HTTP_header_fields" target="_blank"&gt;explanation of various headers&lt;/a&gt;)&lt;/li&gt;&lt;li&gt;
Added date/time formatter to control how the Plain Text Client (PTC) shows dates, between US and European style date formats (&lt;a href="http://kb.globalscape.com/KnowledgebaseArticle10875.aspx" target="_blank"&gt;Reference&lt;/a&gt;)&lt;/li&gt;&lt;li&gt;
Removed certain GET requests from WTC and PTC definitions to eliminate false positives in security scanners &lt;/li&gt;&lt;li&gt;
Fixed issue where subdirectory could no longer be accessed over HTTP/S directly using a URL&lt;/li&gt;&lt;li&gt;
Fixed issue where the WTC would not load if AdBlockPlus was enabled on FireFox&lt;/li&gt;&lt;li&gt;
Fixed issue where it was impossible to delete files in the PTC with certain characters in the filename&lt;/li&gt;&lt;li&gt;
&lt;h3&gt;COM API:&lt;/h3&gt;   &lt;/li&gt;&lt;li&gt;
Added several new methods and properties to support new functionality (&lt;a href="http://help.globalscape.com/help/gs_com_api/index.htm#com_using_the_com_interface.htm" target="_blank"&gt;Reference&lt;/a&gt;)&lt;/li&gt;&lt;li&gt;
Fixed memory leak when using COM to query EFT Server repeatedly&lt;/li&gt;&lt;li&gt;
Fixed issue where a COM exception would occur if GetVirtualFolderList() was invoked and no virtual folders existed&lt;/li&gt;&lt;li&gt;
Fixed issue where GetPhysicalPath returned an error when the bstrFolderAlias passed to the function pointed to a virtual folder with a missing target (physical) path&lt;/li&gt;&lt;li&gt;
Fixed issue where CreateVirtualFolder returns an error if bstrTarget doesn't exist on the server&lt;/li&gt;&lt;li&gt;
Fixed issue where a small number COM properties worked incorrectly if those values were set to inherit from the Server&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>12/7/2011</pubDate></item><item><title>Changes in 6.3.8</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Server Enterprise only:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed security vulnerability related to EFT Server's LDAP authentication provider. Refer to the security bulletin emailed to all EFT Server Enterprise customers for more information&lt;/li&gt;&lt;li&gt;Added post-transfer RENAME to event rule Offload for ftp/ftps&lt;/li&gt;&lt;li&gt;Added multi-threaded (simultaneously transfer multiple files) transfers to event rule offloads&lt;/li&gt;&lt;li&gt;Added ability to rename a downloaded file upon completion when the target destination for the file is a local/LAN folder&lt;/li&gt;&lt;li&gt;Added registry value to enable event rule client to send "CWD folder" instead of "CWD /folder"&lt;/li&gt;&lt;li&gt;Fixed credential handling when using Offload action to move a file to a remote folder/share&lt;/li&gt;&lt;li&gt;Fixed long delay when Event Rule client was transferring files to a remote folder that contains a large number of files (&gt;150,000)&lt;/li&gt;&lt;li&gt;Fixed delays creating log files when Event Rule client was transferring a large number of files (&gt;30,000 files)&lt;/li&gt;&lt;li&gt;Fixed an inconsistency in the result code when downloading a mask of files from a subfolder that did not contain any matching files&lt;/li&gt;&lt;li&gt;Fixed protocol and port values in client logs for LAN transfers&lt;/li&gt;&lt;li&gt;Fixed Event Rule client so in the Advanced options extensions list will now match a file even if that file doesn't have an extension&lt;/li&gt;&lt;li&gt;Fixed a crash that occurred for a specific type of LDAP query error&lt;/li&gt;&lt;li&gt;Added %SOURCE.FILE_NAME% and %SOURCE.BASE_FILE_NAME% variables to the Offload Wizard to facilitate control of the destination filename&lt;/li&gt;&lt;li&gt;Fixed Event Rule Offload Action alternate credentials to use a Windows logon type that does not require the remote share to be in the same Active Directory domain&lt;/li&gt;&lt;li&gt;Fixed %FS.VIRTUAL_PATH% variable for On File Deleted rules to match the pathnames depth reported by On File Upload rules&lt;/li&gt;&lt;li&gt;Fixed On Timer event rules so they stop when the site is stopped&lt;/li&gt;&lt;li&gt;Fixed On Timer event rules so they only fire once during daylight savings transition&lt;/li&gt;&lt;li&gt;Fixed On Timer event rule to properly run "today" ARM reports when using Oracle&lt;/li&gt;&lt;li&gt;Fixed CL log to accurately log transfer results for local file copies&lt;/li&gt;&lt;li&gt;Fixed folder monitor to properly delete source file when the resultant Offload action used alternate credentials to copy the file to a remote folder/share&lt;/li&gt;&lt;li&gt;&lt;h3&gt;EFT Server (standard) and Enterprise:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added registry key to disable HTTP-to-HTTPS redirection&lt;/li&gt;&lt;li&gt;Added support for Unix style -lrt sorted listing to NLST&lt;/li&gt;&lt;li&gt;Added registry value to enable RENAME to overwrite an existing file&lt;/li&gt;&lt;li&gt;Added registry value to enable Clear Command Channel to expect an encrypted response to CCC request. This provides CCC interoperability with Sterling CONNECT Enterprise&lt;/li&gt;&lt;li&gt;Added 2 step save process used by ftp.cfg to AUD files to prevent corruption during save. "*.bak" and "*.corrupted" files are now created as necessary.&lt;/li&gt;&lt;li&gt;Fixed installer to properly create the EFT Server administrator account during cluster installs&lt;/li&gt;&lt;li&gt;Fixed Plain Text Client handling of paths that included a space during RENAME and DELETE&lt;/li&gt;&lt;li&gt;Fixed WGET file transfers over HTTP&lt;/li&gt;&lt;li&gt;Fixed invalid data in customer configuration files that could slow down file transfers&lt;/li&gt;&lt;li&gt;Fixed upgrades from EFT Server 5.x to maintain DMZ Gateway as the outbound proxy&lt;/li&gt;&lt;li&gt;Fixed uploads of small files (&amp;lt;100 bytes) from Rebex/Ultimate FTP libraries&lt;/li&gt;&lt;li&gt;Fixed issue in SFTP that would not allow a new Active Directory user to connect until an AD database synchronization or an FTP login occurred&lt;/li&gt;&lt;li&gt;Fixed NLST to once again support listings of filenames that contain special characters &gt; 128&lt;/li&gt;&lt;li&gt;Fixed Site Administrator accounts to control the "Treat Home Folder as Root" setting&lt;/li&gt;&lt;li&gt;Fixed Event Rule LAN operations when paths contained multiple or incorrect slashes ("/", "\")&lt;/li&gt;&lt;li&gt;Fixed upgrades to EFT 6.3 from GSFTPS FIPS&lt;/li&gt;&lt;li&gt;Fixed server restore so all user home folders are restored when backup contains a large number of sites (14)&lt;/li&gt;&lt;li&gt;Fixed FireFox 4 issues in the Plain Text Client&lt;/li&gt;&lt;li&gt;Fixed Plain Text Client 403 and 404 errors when attempting to rename or delete a file from a subfolder if specific permissions were set&lt;/li&gt;&lt;li&gt;Fixed VFS to prevent orphan VFS permissions nodes hidden in ftp.cfg&lt;/li&gt;&lt;li&gt;&lt;h3&gt;COM API:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added CreateUserEx2() COM call that includes the user's email address so the account creation email can be sent at the time the user is created; all of the user/client details can now be set&lt;/li&gt;&lt;li&gt;Added support for hashed passwords to COM CreateUserEx to facilitate user migration from another EFT&lt;/li&gt;&lt;li&gt;Added 2 new COM methods to facilitate retrieval of VFS virtual folders and folder permissions&lt;/li&gt;&lt;li&gt;Fixed a crash that occurred with calling GetFolderPermissions via COM&lt;/li&gt;&lt;li&gt;Fixed COM DisableInheritPermissions method to set child folders to their parents' permissions instead of the root folder permissions&lt;/li&gt;&lt;li&gt;Fixed COM Event Rule enums to include "Greater than" and "Greater than equal to" conditional operators&lt;/li&gt;&lt;li&gt;Fixed COM new 6.3 method names that were inconsistent with the existing API&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Secure Ad Hoc Transfer (SAT) module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed SAT for proper handling of non-US date formats&lt;/li&gt;&lt;li&gt;Fixed SAT to not authenticate against NTLM when "no auth" is selected&lt;/li&gt;&lt;li&gt;Fixed SAT Installer to identify 32 vs. 64 bit on same host installs&lt;/li&gt;&lt;li&gt;Fixed SAT Installer to use PCI compliant password complexity rules for admin accounts&lt;/li&gt;&lt;li&gt;Fixed SAT errors which prevent Admin page from loading&lt;/li&gt;&lt;li&gt;Fixed SAT web.config errors when a non-standard HTTPS port was used&lt;/li&gt;&lt;li&gt;Fixed SAT upgrade issues when SAT was not installed on C:&lt;/li&gt;&lt;li&gt;Fixed SAT Installer to not de-register COM&lt;/li&gt;&lt;li&gt;&lt;h3&gt;AS2 module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed AS2 to support multiple SSL public key certs in a single .crt file&lt;/li&gt;&lt;li&gt;Fixed a crash that occurred when formatting an AS2 synchronous MDN message&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Transfer Client (WTC):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed Web Transfer Client logout to not affect other open tabs in Internet Explorer (IE)&lt;/li&gt;&lt;li&gt;Fixed Web Transfer Client jars to be signed with a newer cert that doesn't expire until 2015&lt;/li&gt;&lt;li&gt;Fixed Web Transfer Client and Plain Text Client to initially place users in their home folder instead of the site root folder when "Treat Home Folder as Root" is turned off&lt;/li&gt;&lt;li&gt;Fixed IE9 and Chrome drag-n-drop issues in Web Transfer Client&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Advanced Workflow Engine (AWE):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed AWE "Stop Task" action to properly return SUCCESS or ERROR to the EFT Server Event Rule&lt;/li&gt;&lt;li&gt;Fixed AWE to support semicolons as a separator in "On Error" tab variables&lt;/li&gt;&lt;li&gt;Fixed AWE to properly display the "Send Email" action when editing the "On Error" tab&lt;/li&gt;&lt;li&gt;Fixed AWE GetTaskName to properly return the name of the task&lt;/li&gt;&lt;li&gt;Fixed AWE crash when a nesting of sub-tasks would ultimately delete the file that triggered an EFT Server folder monitor&lt;/li&gt;&lt;li&gt;Fixed some broken help hooks in the AWE Help&lt;/li&gt;&lt;li&gt;&lt;h3&gt;OpenPGP module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed "8000ffff: Catastrophic Failure" Errors when PGP encrypts multiple or single files&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>7/21/2011</pubDate></item><item><title>Changes in 6.3</title><description>&lt;ul&gt;&lt;li&gt;Added RSA SecurID and RADIUS 2-factor authentication&lt;/li&gt;&lt;li&gt;
Added Status Viewer to monitor in progress and recent file transfers&lt;/li&gt;&lt;li&gt;
Added IP Access/IP Ban user interface that supports white listing&lt;/li&gt;&lt;li&gt;
Added Event Rule Calendar supports custom calendars and import/export&lt;/li&gt;&lt;li&gt;
Added "Write to Windows Event Log" Event Rule Action&lt;/li&gt;&lt;li&gt;&lt;h3&gt;EFT Server Enterprise only&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added RSA SecurID and RADIUS 2-factor authentication&lt;/li&gt;&lt;li&gt;
Added Event Rule Calendar supports custom calendars and import/export&lt;/li&gt;&lt;li&gt;
Added "Write to Windows Event Log" Event Rule Action&lt;/li&gt;&lt;li&gt;
Added ability for multi-part transfers to be available in the Event Rule Copy/Move via a registry key&lt;/li&gt;&lt;li&gt;
Added Copy/Move Event Rule Action support for alternate set of credentials for remote UNC shares&lt;/li&gt;&lt;li&gt;
Added Copy/Move and Event Rule Action support for several overwrite and enumerate options&lt;/li&gt;&lt;li&gt;
Added Folder Monitor support for two modes of operation: high throughput or high number of folder monitors&lt;/li&gt;&lt;li&gt;
Added "Cleanup logs" action to the "Backup and Cleanup" Timer rule in new installs&lt;/li&gt;&lt;li&gt;
Added HTTP and SFTP keyboard interactive login support for RSA and RADIUS pin creation&lt;/li&gt;&lt;li&gt;
Added SIZE as a fallback for transfer verification when XCRC is not supported by remote server&lt;/li&gt;&lt;li&gt;
Added registry option to use LOGON_NEW_CREDENTIALS instead of LOGON_INTERACTIVE for folder monitor&lt;/li&gt;&lt;li&gt;
Added support for SFTP client Copy/Move and Download transfers of files greater than 4 GB&lt;/li&gt;&lt;li&gt;
Added ability for user-level admins to unlock user accounts, in addition to enable/disable and change password&lt;/li&gt;&lt;li&gt;
Added the AML task name to AWE debug logging&lt;/li&gt;&lt;li&gt;
Added UTF-8 filenames support in AWE tasks&lt;/li&gt;&lt;li&gt;
Added a warning message if a duplicate folder monitor is created for the same folder&lt;/li&gt;&lt;li&gt;
Added TRACE level logging of AS2 HTTP headers&lt;/li&gt;&lt;li&gt;&lt;h3&gt;EFT Server (standard) and Enterprise&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added Status Viewer to monitor in progress and recent file transfers (requires ARM for historical transactions)&lt;/li&gt;&lt;li&gt;
Added IP Access/IP Ban user interface that supports white listing&lt;/li&gt;&lt;li&gt;
Added "IP Banned" Event Rule Condition and "Too many invalid commands" Event Reason&lt;/li&gt;&lt;li&gt;
Added PGP Event Rule signature verification options&lt;/li&gt;&lt;li&gt;
Added Event Rule "precise time stamp" context variable&lt;/li&gt;&lt;li&gt;
Added multi-threaded PGP architecture&lt;/li&gt;&lt;li&gt;
Added Denial of Service detection to all protocols&lt;/li&gt;&lt;li&gt;
Added UTF-8 filenames support over HTTP and SFTP&lt;/li&gt;&lt;li&gt;
Added EBCDIC "TYPE E" support&lt;/li&gt;&lt;li&gt;
Added SYST value support&lt;/li&gt;&lt;li&gt;
Added SFTP support for public key or password authentication&lt;/li&gt;&lt;li&gt;
Added support for non-FIPS version of the OpenSSL library to version 0.9.8o&lt;/li&gt;&lt;li&gt;
Added detailed logging of SFTP connections to connection log in Status Viewer&lt;/li&gt;&lt;li&gt;
Added disable of auto import of ARM text files via a registry key&lt;/li&gt;&lt;li&gt;
Added ability to sort objects in the AI left tree pane alphabetically&lt;/li&gt;&lt;li&gt;
Added trigger of the "User Disabled" event rule when Users expire &lt;/li&gt;&lt;li&gt;
Added ability to apply PGP Event Rule Actions to "On File Download" events&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Administration Interface (AI):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added left pane tree support for up to 100,000 EFT Server users; multi-select enable, unlock, delete, and reset password; and visual identification of EFT Server user accounts without an email address &lt;/li&gt;&lt;li&gt;
Added Active Directory sites' ability to not show the domain name&lt;/li&gt;&lt;li&gt;
Added PGP keys management from remote AIs&lt;/li&gt;&lt;li&gt;
Added AI/EFT Server SSL certificates checks to validate connections &lt;/li&gt;&lt;li&gt;
Added DER, PFX, and P7B output formats in addition to PEM for SSL cert export&lt;/li&gt;&lt;li&gt;
Added AI upgrades and command line silent install support&lt;/li&gt;&lt;li&gt;
Added summary list of folders to be deleted when a user is deleted&lt;/li&gt;&lt;li&gt;
Added support to protect key folders (/usr) from deletion when a user is deleted&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Advanced Workflow Engine (AWE):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added sample tasks for demonstrating Expectations, IP black lists, etc.&lt;/li&gt;&lt;li&gt;
Added Sharepoint Action&lt;/li&gt;&lt;li&gt;
Added Compression Action: Added 7zip compress/uncompress&lt;/li&gt;&lt;li&gt;
Added FTP Actions: FXP; synchronize method; FIPS 140 mode; FTPS clear command channel (CCC) mode&lt;/li&gt;&lt;li&gt;
Added FTP advanced action file exist; folder exist; get crc; FTP tuning options (UseLargeBuffers)&lt;/li&gt;&lt;li&gt;
Added FTP ability to get long list dataset shows file attributes&lt;/li&gt;&lt;li&gt;
Added SFTP validation of server host key; SFTP provide protoversion prior to connection&lt;/li&gt;&lt;li&gt;
Added Get File Info Action: Added ability to retrieve folder information&lt;/li&gt;&lt;li&gt;
Added Send/Get email and Exchange Actions: Support for Exchange 2010 and ability to send custom headers&lt;/li&gt;&lt;li&gt;
Added Send/Get email and Exchange Actions: Improved filter engine based on query for Imap and Webdav&lt;/li&gt;&lt;li&gt;
Added Service Management: Added remote service install, start, stop, pause, resume&lt;/li&gt;&lt;li&gt;
Added Web Service Action: Added support for SOAP 1.2 protocol&lt;/li&gt;&lt;li&gt;
Added Full Unicode support across all Actions&lt;/li&gt;&lt;li&gt;
Added Start Task and Stop Task Actions&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Auditing and Reporting Module (ARM):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Replaced the integrated SQL Server Express 2005 installer with SQL Server Express 2008 R2&lt;/li&gt;&lt;li&gt;
Added logging to the installer during creation or modification of the SQL schema&lt;/li&gt;&lt;li&gt;&lt;h3&gt;DMZ Gateway:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added synchronization of messages with EFT Server to implement enhanced IP Access/IP Ban capabilities&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Secure Ad Hoc Transfer (SAT) module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added new architecture that uses Java applet to transfer file directly to EFT Server bypassing IIS&lt;/li&gt;&lt;li&gt;
Added new web-based administration and configuration&lt;/li&gt;&lt;li&gt;
Added ability to transfer files larger than 2 GB&lt;/li&gt;&lt;li&gt;
Added ability to transfer folders&lt;/li&gt;&lt;li&gt;
Added installer support of upgrades; does not require uninstall&lt;/li&gt;&lt;li&gt;
Added default SAT Event Rules in EFT Server to automatically send upload notifications, delete expired temporary users, and notify senders of upload(s) received from temporary users.&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Transfer Client (WTC):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Added form-based login that supports branding and true login/logout sessions, and password reset&lt;/li&gt;&lt;li&gt;
Added selection of WTC (Java) or Plain Text Client (PTC) from the login page&lt;/li&gt;&lt;li&gt;
Added new "look" with improved buttons and use of CSS to support branding&lt;/li&gt;&lt;li&gt;
Added Single Sign On (SSO) support in NTLM environments&lt;/li&gt;&lt;li&gt;
Added branding process that doesn't require registry overrides&lt;/li&gt;&lt;li&gt;
Added branding that can be EFT Server site specific&lt;/li&gt;&lt;li&gt;
Added capabilities and status provided in the WTC transfer queue pane&lt;/li&gt;&lt;li&gt;
Added requeue counter to the Settings panel for error-prone connections/servers&lt;/li&gt;&lt;li&gt;
Added option to select Java JSE HTTP client for NTLM v2 proxy authentication&lt;/li&gt;&lt;li&gt;&lt;h3&gt;COM API:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
&lt;b&gt;Added numerous methods and properties to mirror the capabilities available in the AI:&lt;/b&gt; &lt;/li&gt;&lt;li&gt;
Administrators and administrator privileges&lt;/li&gt;&lt;li&gt;
LDAP, AD, and ODBC site creation and options&lt;/li&gt;&lt;li&gt;
Event Rule Offload/Download Advanced tab&lt;/li&gt;&lt;li&gt;
Write To Windows Event Log&lt;/li&gt;&lt;li&gt;
Backup and Restore&lt;/li&gt;&lt;li&gt;
IP Ban&lt;/li&gt;&lt;li&gt;
AS2&lt;/li&gt;&lt;li&gt;
FTP options: FXP, Noop, COMB, XCRC&lt;/li&gt;&lt;li&gt;
AWE custom variables&lt;/li&gt;&lt;li&gt;
Multiple SSH client keys and key export&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Fixes:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;
Fixed Email notification file size for Copy/Move events&lt;/li&gt;&lt;li&gt;
Fixed Web Services WSDL page accessibility&lt;/li&gt;&lt;li&gt;
Fixed "User must change password on first login" with LDAP&lt;/li&gt;&lt;li&gt;
Fixed ARM SQL connection details in GUI notifications to lesser privileged admins&lt;/li&gt;&lt;li&gt;
Fixed LDAP "change password" implementation via LDAP calls instead of Active Directory&lt;/li&gt;&lt;li&gt;
Fixed "Uploads per session" and "Downloads per session" limits for HTTP&lt;/li&gt;&lt;li&gt;
Fixed Offload/Download wizard handling of forward and backward slashes&lt;/li&gt;&lt;li&gt;
Fixed PGP passwords masking in DEBUG logging&lt;/li&gt;&lt;li&gt;
Fixed "Stop Processing" and "If failed Action" listing in the Event Rule preview pane even when inactive&lt;/li&gt;&lt;li&gt;
Fixed rejected SSL client cert trigger of the Event Rule "Connect Failed" Condition&lt;/li&gt;&lt;li&gt;
Fixed "On User Created" Event Rule is trigger for first login of an AD or LDAP user&lt;/li&gt;&lt;li&gt;
Fixed Event Rule client downloads of file with a % in the filename&lt;/li&gt;&lt;li&gt;
Fixed Event Rule client traversal of directories with a # or % in the folder name&lt;/li&gt;&lt;li&gt;
Fixed Administrator warning regarding outbound PORT mode support through DMZ Gateway&lt;/li&gt;&lt;li&gt;
Fixed inconsistency of file paths in CREATE and DELETE lines of ARM reports&lt;/li&gt;&lt;li&gt;
Fixed resuming of interrupted WTC transfers&lt;/li&gt;&lt;li&gt;
Fixed ARM auditing of SFTP file offset to properly report transferred bytes&lt;/li&gt;&lt;li&gt;
Fixed renaming of a group so that all members of the group are not removed from the group&lt;/li&gt;&lt;li&gt;
Fixed crashes reported in Microsoft WinQual&lt;/li&gt;&lt;li&gt;
Fixed parsing of multi-line HTTP headers&lt;/li&gt;&lt;li&gt;
Fixed PGP temporary files creation&lt;/li&gt;&lt;li&gt;
Fixed ability to "kick" and delete connected users&lt;/li&gt;&lt;li&gt;
Fixed auditing of failed HTTP logins in ARM&lt;/li&gt;&lt;li&gt;
Fixed (removed) "EFT Server" identifiable strings where possible to address security audit recommendation&lt;/li&gt;&lt;li&gt;
Fixed WTC local pane display of system or hidden files or folders&lt;/li&gt;&lt;li&gt;
Fixed 2048 bit SSL signed certs in AS2&lt;/li&gt;&lt;li&gt;
Fixed HTTP login support of usernames with embedded spaces (Active Directory Display Name accounts)&lt;/li&gt;&lt;li&gt;
Fixed error in ARM report templates that allowed non-admin user account to edit the template&lt;/li&gt;&lt;li&gt;
Fixed error in WTC file rename in Safari browser&lt;/li&gt;&lt;li&gt;
Fixed/eliminated long delay when uploading files via SFTP to a remote folder containing 100,000+ files&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>3/30/2011</pubDate></item><item><title>Changes in 6.2.31</title><description>&lt;ul&gt;&lt;li&gt;Added the ability to rename virtual folders&lt;/li&gt;&lt;li&gt;Added ERROR logging to Active Directory calls during AD user synchronization&lt;/li&gt;&lt;li&gt;Added a timeout at the SFTP layer to detect hung connections from third-party servers&lt;/li&gt;&lt;li&gt;Added updating of Active Directory user home folders during AD synchronization&lt;/li&gt;&lt;li&gt;Added support for SSL cert settings for Event Rule downloads&lt;/li&gt;&lt;li&gt;Improved import time when migrating large numbers of users into EFT via COM&lt;/li&gt;&lt;li&gt;Added a registry value to control the Health Check Timeout for slow file servers&lt;/li&gt;&lt;li&gt;ARM now only audits "On File Upload" rules that perform an Event Rule Action&lt;/li&gt;&lt;li&gt;Active Directory user home folders are now updated during synchronization&lt;/li&gt;&lt;li&gt;Enhanced the COM API methods for specifying EFT Server Administrator privileges&lt;/li&gt;&lt;li&gt;Added registry setting to control the ARM report generation timeout&lt;/li&gt;&lt;li&gt;Added the new EULA for EFT Server&lt;/li&gt;&lt;li&gt;Added ability for Template Settings administrators to delete a user's home folder&lt;/li&gt;&lt;li&gt;Added/improved user password and account settings in the COM interface&lt;/li&gt;&lt;li&gt;Added/improved folder permissions inheritance and Encrypting File System (EFS) settings in the COM interface&lt;/li&gt;&lt;li&gt;Added/improved proxy, overwrite, COMB, and FXP transfer options in the COM interface&lt;/li&gt;&lt;li&gt;Added/improved Event Rule PGP options in the COM interface&lt;/li&gt;&lt;li&gt;Corrected the amount of time EFT Server logins were blocked when updating user quotas&lt;/li&gt;&lt;li&gt;Corrected issue that caused "home folder not deleted" error message when deleting a user&lt;/li&gt;&lt;li&gt;Corrected issue in Event Rule SFTP client when sending files larger than 4 GB&lt;/li&gt;&lt;li&gt;Corrected crash that could occur when an SFTP connection failed before a channel was established and EFT Server attempted to clean up the channel&lt;/li&gt;&lt;li&gt;Corrected crash in the EFT Server administration interface that occurred while an external VBS COM script was backing up the VFS&lt;/li&gt;&lt;li&gt;Corrected auditing of invalid transfer data by the Event Rule client for rare cases of failed transfers&lt;/li&gt;&lt;li&gt;Corrected Active Directory and LDAP sites to use standard password change page instead of a hard-coded, AD/LDAP-specific page&lt;/li&gt;&lt;li&gt;Corrected connection error in FTPS when remote folder contained 800+ files&lt;/li&gt;&lt;li&gt;Corrected crash that would result in a user's home folder being set to NULL&lt;/li&gt;&lt;li&gt;Fixed single-click URL construction to resolve file rename issue in the Plain Text Client&lt;/li&gt;&lt;li&gt;Fixed SFTP Event Rule client to honor connection retry settings&lt;/li&gt;&lt;li&gt;Fixed SFTP so 0-byte downloads do not trigger "On File Upload" rules&lt;/li&gt;&lt;li&gt;Fixed SFTP so users with a home folder at the site root do not trigger On File Upload rules upon login&lt;/li&gt;&lt;li&gt;Fixed handling of empty client SSL certificates for FTPS Explicit tranfers&lt;/li&gt;&lt;li&gt;Fixed crash that resulted from corrupt data in VFS permissions&lt;/li&gt;&lt;li&gt;Fixed error in the Event Rule client that would cause the creation of too many session-level debug log files when using a "*" mask&lt;/li&gt;&lt;li&gt;Fixed memory increases that prevented users from connecting to EFT site&lt;/li&gt;&lt;li&gt;Fixed single click download with URL containing .exe or .dll&lt;/li&gt;&lt;li&gt;Corrected crash when the Event Rule client attempts to download 400,000+ files&lt;/li&gt;&lt;li&gt;Corrected crash in remote AI GUI when changing user permissions in the VFS tab&lt;/li&gt;&lt;li&gt;Corrected issue that caused loss of PGP subkeys when upgrading from EFT 5.1 to 5.2 or later&lt;/li&gt;&lt;li&gt;Corrected issue so SFTP transfer limits are now honored&lt;/li&gt;&lt;li&gt;Corrected some timestamp errors in ARM reports generated using Oracle&lt;/li&gt;&lt;li&gt;Corrected error in tracking of Event Rule client transfers that caused EFT Server service to crash&lt;/li&gt;&lt;li&gt;Corrected slowdown that occured when an EFT site has a large number of VFS folders pointing to missing or non-accesible locations&lt;/li&gt;&lt;li&gt;Corrected and issue where auditing and reporting module didn't render certain parameters in a report&lt;/li&gt;&lt;li&gt;Corrected issue where trial extension requests did not behave as expected.&lt;/li&gt;&lt;li&gt;Corrected crash in SFTP occasionally caused by read errors&lt;/li&gt;&lt;li&gt;Corrected issue where OpenSSH client would require private key passphrase when using password authentication&lt;/li&gt;&lt;li&gt;Corrected issue rendering some Windows-1252 extended characters in the Plain Text Client (PTC)&lt;/li&gt;&lt;li&gt;Corrected crash in FTP when consecutive PASV commands were issued&lt;/li&gt;&lt;li&gt;Corrected issue so invalid username attempts will add the IP address to the ban list&lt;/li&gt;&lt;li&gt;Corrected crash when the mail template was less than 7 characters in total size and contained one of the following characters: f, i, l, e, :, /&lt;/li&gt;&lt;li&gt;Corrected issue in SFTP client that caused 0 length files to be created when downloading using a *.* file mask&lt;/li&gt;&lt;li&gt;Corrected crash in the Admin Interface (AI) when expanding site folders and navigating back to the Server tab&lt;/li&gt;&lt;li&gt;Restored ability to blind upload files without requiring LIST privilege&lt;/li&gt;&lt;li&gt;Corrected issue in SFTP upload MDTM that caused incorrect file date stamps&lt;/li&gt;&lt;li&gt;Corrected crash in SFTP caused by far side closing connection during or immediately after connection&lt;/li&gt;&lt;li&gt;Corrected hang in Scheduled Event Rule caused by AWE task crashed&lt;/li&gt;&lt;li&gt;Corrected issue in selected COM methods on Windows 2008&lt;/li&gt;&lt;li&gt;Corrected issue that prevented the custom Manage Account HTTP page from working on Firefox&lt;/li&gt;&lt;li&gt;Corrected two ARM reports that were not displaying the timestamp properly when the EFT Server database was running on Oracle&lt;/li&gt;&lt;li&gt;Corrected issue that caused the Web Transfer Client to stop working if the Site was configured to not allow the download of JavaScript (js) files&lt;/li&gt;&lt;li&gt;Corrected issue that prevented the Trial Extension Request from working on a 64 bit OS if the trial had expired&lt;/li&gt;&lt;li&gt;Corrected issue that caused "425" errors when making 10 or more concurrent FTPS PASV port connections through DMZ Gateway to a defined PASV port range&lt;/li&gt;&lt;li&gt;&lt;h3&gt;DMZ Gateway:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added DMZ Gateway support of compressed messages sent from EFT Server&lt;/li&gt;&lt;li&gt;Corrected DMZ Gateway to correctly return ports to pool on PASV connection attempts&lt;/li&gt;&lt;li&gt;Corrected ERROR logs to display as DEBUG, as they are not Application Errors&lt;/li&gt;&lt;li&gt;Corrected PASV Ports to be assigned randomly instead of sequentially&lt;/li&gt;&lt;li&gt;Corrected connection issues when significant configuration data is passed between the interface and the Server&lt;/li&gt;&lt;li&gt;Corrected issues caused by bad message processing logic for certain network environments&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>1/26/2011</pubDate></item><item><title>Changes in 6.2.18</title><description>&lt;ul&gt;&lt;li&gt;Added toggle for HTTP 100-CONTINUE message for interoperability with older AS2 systems that do not support HTTP 1.1&lt;/li&gt;&lt;li&gt;Added Quick Search (Control+F) feature to locate Users, Event Rules, Groups, etc. in the tree&lt;/li&gt;&lt;li&gt;Enhanced the Administrator user interface to support Trial Extension requests without requiring an administrator to login&lt;/li&gt;&lt;li&gt;Added optional directory listing method for customers with large numbers of files in a NAS folder (40,000). This method does not request the associated folder/file permissions during the directory listing. HKEY_LOCAL_MACHINE\SOFTWARE\GlobalSCAPE Inc.\EFT Server 4.0\LegacyDirListBehavior DWORD: any non-zero value activates the legacy (no permissions) directory listings&lt;/li&gt;&lt;li&gt;Added several VFS and Administrator methods to COM interface&lt;/li&gt;&lt;li&gt;Added more logging to SFTP and AS2 to provide greater visibility into transfer problems (enable in logging.cfg)&lt;/li&gt;&lt;li&gt;Corrected issue in quota calculation that was sometimes inconsistent for folders on a UNC share&lt;/li&gt;&lt;li&gt;Corrected crash in the administrator interface caused by copying an "if action FAILED" Event Rule statement&lt;/li&gt;&lt;li&gt;Corrected timing related crash if data socket was closed while trying to compute transfer speed&lt;/li&gt;&lt;li&gt;Corrected issue in AWE that caused AWE task that called a subtask to sometimes not complete&lt;/li&gt;&lt;li&gt;Corrected memory leak in LDAP user synchronization&lt;/li&gt;&lt;li&gt;Corrected issue that caused SFTP uploads to time out if a sizable number of On File Upload rules were enabled with email notifications&lt;/li&gt;&lt;li&gt;Corrected issue that caused filter options to be unavailable in Timer Event Rule Report Actions&lt;/li&gt;&lt;li&gt;Corrected issue where some user folders were not being restored from a backup&lt;/li&gt;&lt;li&gt;Corrected issue where the SFTP client’s automatic resume was not working properly&lt;/li&gt;&lt;li&gt;Corrected ASCII conversion issues that would occur during the RESUME once the network error was resolved&lt;/li&gt;&lt;li&gt;Corrected issue where the Cleanup Action was not deleting BAK files. Also added deletion of READONLY and HIDDEN files. The file path no longer has to end in a backslash \&lt;/li&gt;&lt;li&gt;Corrected issue where the EFT Server service/admin interface would hang during the changing of the priority of Event Rules&lt;/li&gt;&lt;li&gt;Corrected issue with memory leaks when adding a user to a permission group and other user-management tasks&lt;/li&gt;&lt;li&gt;Corrected issue where SFTP client keys would not work when upgrading from Secure FTP Server to EFT Server 6.x&lt;/li&gt;&lt;li&gt;Corrected issue where EFT Server created the default permission groups "Administrative" and "Guest" that are not appropriate for an ODBC Site&lt;/li&gt;&lt;li&gt;Corrected issue where the "Allow FXP" (site-to-site transfers) toggle was not being honored&lt;/li&gt;&lt;li&gt;Corrected issue where the Event Rule offload client retry setting was not being honored&lt;/li&gt;&lt;li&gt;Corrected issue that would halt future transfers of files by the Event Rule client for specific types of transfer errors&lt;/li&gt;&lt;li&gt;Corrected crash in the administrator interface that resulted from monitoring a  user from other than the first Site&lt;/li&gt;&lt;li&gt;Corrected crash in the administrator interface that resulted from a speed calculation error&lt;/li&gt;&lt;li&gt;Corrected issue caused by improper processing of FTP MKDIR command&lt;/li&gt;&lt;li&gt;Corrected issue when connecting over SFTP using Transmit 3.5.4 client&lt;/li&gt;&lt;li&gt;Corrected issue in FTP directory listing - date sorting was sometimes out of order&lt;/li&gt;&lt;li&gt;Corrected delay that could occur to an FTP authentication while EFT admin was loading folders in the VFS tab&lt;/li&gt;&lt;li&gt;Corrected SFTP and HTTP login issue in Active Directory environments with multiple domains&lt;/li&gt;&lt;li&gt;Corrected issue where AS2 no longer requires the AS2-Version HTTP header for interoperability with older AS2 implementations&lt;/li&gt;&lt;li&gt;Corrected problem related to cleanup of OpenPGP temporary files&lt;/li&gt;&lt;li&gt;Corrected problem where OpenPGP would lockup if destination file already exists&lt;/li&gt;&lt;li&gt;Corrected issue where AWE module would hang related to the improper termination of AWE tasks&lt;/li&gt;&lt;li&gt;Corrected interoperability issue with WS_FTP Server related to large file transfers - other vendors have had to do the same&lt;/li&gt;&lt;li&gt;Corrected MDTM to always return values in GMT, even if EFT Server listings are configured for local time&lt;/li&gt;&lt;li&gt;Corrected parent folder permissions to no longer require SHOW and LIST&lt;/li&gt;&lt;li&gt;Corrected interoperability issue with OpenSSH&lt;/li&gt;&lt;li&gt;Corrected an issue where Event Rule comments were being lost&lt;/li&gt;&lt;li&gt;Corrected XCOPY custom commands errors&lt;/li&gt;&lt;li&gt;Corrected an issue where Event Rule Timer events would trigger 1 second early&lt;/li&gt;&lt;li&gt;Corrected issue with unnecessary SSH_DISCONNECT timeout messages&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Transfer Client:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added an option to the Web Transfer Client to select local time or GMT for the modified time for files in the local pane&lt;/li&gt;&lt;li&gt;Enhanced Web Transfer Client text to use "Current Password" instead of "Old Password" to reduce user confusion&lt;/li&gt;&lt;li&gt;Enhanced Web Transfer Client (WTC) to allow selection of GMT or local time for file timestamps in the remote pane&lt;/li&gt;&lt;li&gt;Corrected a CRC error that prevented Web Transfer Client from being able to successfully resume a download&lt;/li&gt;&lt;li&gt;Corrected issue where resume did not work on filenames &gt; 35 characters when transferring files with the WTC&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Secure Ad Hoc Transfer module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Corrected issue in SAT that could cause the temporary accounts to not be created on EFT Server&lt;/li&gt;&lt;li&gt;Corrected issue in SAT that caused the previous value of the FROM email address to be used instead of the one supplied by the user&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>9/9/2010</pubDate></item><item><title>Changes in 6.2.7</title><description>&lt;ul&gt;&lt;li&gt;Added new registry override for FTP SYST response. Default is "UNIX Type: L8"; common request is for "Windows_NT"&lt;/li&gt;&lt;li&gt;Corrected issue where home folders were being lost for AD users after an upgrade&lt;/li&gt;&lt;li&gt;Corrected crash that would occur under rare condition when corrupted configuration file was present&lt;/li&gt;&lt;li&gt;Corrected problem where EFT Server failed to notify user if site root physical folder was missing&lt;/li&gt;&lt;li&gt;Corrected problem where network errors would cause e-mail notifications to fail&lt;/li&gt;&lt;li&gt;Corrected problem where LDAP authentication would fail when a user was moved to a different OU or CN&lt;/li&gt;&lt;li&gt;Corrected memory leak resulting from COM API operations involving quota checker and folder monitor&lt;/li&gt;&lt;li&gt;Corrected crash that occurred upon manually refreshing user database for LDAP auth types&lt;/li&gt;&lt;li&gt;Corrected issue where user would not appear in EFT Server’s user list if the user connected prior to an AD synchronization event&lt;/li&gt;&lt;li&gt;Enhanced SFTP connection mechanism to work with non-RFC compliant SFTP servers&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>5/14/2010</pubDate></item><item><title>Changes in 6.2.3</title><description>&lt;ul&gt;&lt;li&gt;Multiple administrators can now add objects of the same type (users, event rules, custom commands, and AWE tasks) at the same time &lt;/li&gt;&lt;li&gt;Fixed issue when editing an event rule email action when another administrator had modified the user list in a separate AI GUI&lt;/li&gt;&lt;li&gt;Removed EFT software version number from HTTP headers to address security concern&lt;/li&gt;&lt;li&gt;Modified buffer size on HTTP downloads to achieve comparable file transfer speeds with uploads&lt;/li&gt;&lt;li&gt;Updated SAT tables in ARM to provide better performance and robustness&lt;/li&gt;&lt;li&gt;Fixed SAT to log the proper filename, instead of the temporary filename, in ARM when SAT is installed on a server remote from EFT&lt;/li&gt;&lt;li&gt;Corrected issue in SQL files that could inhibit the creation of the ARM indices on MSDE&lt;/li&gt;&lt;li&gt;&lt;h3&gt;DMZ Gateway:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed a problem where EFT Server Denial of Service updates could block legitimate client connection attempts.&lt;/li&gt;&lt;li&gt;Fixed a resource leak that appears under some environments leading to resource exhaustion.&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>4/5/2010</pubDate></item><item><title>Changes in 6.2.1</title><description>&lt;ul&gt;&lt;li&gt;&lt;h3&gt;EFT Server and EFT Server Enterprise:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Corrected issue where (on new installations) PGP keys could not be created without a service restart&lt;/li&gt;&lt;li&gt;Changed default behavior for PGP signature verification to OFF by default (registry enabled). Search help for "signature verification" for instructions.&lt;/li&gt;&lt;li&gt;&lt;h3&gt;DMZ Gateway:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Corrected a problem with how DMZ Gateway handled certain error conditions that could affect the peer communication channel&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>3/9/2010</pubDate></item><item><title>Changes in 6.2</title><description>&lt;ul&gt;&lt;li&gt;New – Active Directory accounts for EFT Server administration&lt;/li&gt;&lt;li&gt;Updated – Advanced Workflow module updated with many new actions&lt;/li&gt;&lt;li&gt;Updated – SSL certificate support for outbound transfers&lt;/li&gt;&lt;li&gt;Enhanced – Secure Ad Hoc module faster performance and new configuration options&lt;/li&gt;&lt;li&gt;Fixed – Consolidation of all bug fixes done in 6.1.x patches&lt;/li&gt;&lt;li&gt;&lt;h3&gt;EFT Server and EFT Server Enterprise:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added Windows Authentication (Active Directory and local Windows accounts) to EFT Server’s administration authentication sub-system. Requires the High Security Module (HSM).&lt;/li&gt;&lt;li&gt;Added ability for EFT Server administrators to login via a desktop shortcut and Windows authentication without supplying credentials&lt;/li&gt;&lt;li&gt;Added ability to query the LDAP server to obtain a listing of all base DNs on the domain specified or the default domain.&lt;/li&gt;&lt;li&gt;Added ability to right-click a user account on the Server tab to open the user's VFS home folder on the VFS tab. You can also launch Windows Explorer from the VFS tree on the VFS tab.&lt;/li&gt;&lt;li&gt;Added ability to see virtual folders when using the FTP MLSD command.&lt;/li&gt;&lt;li&gt;Added Microsoft Encrypting File System (EFS) to EFT Server basic edition. Requires the High Security Module (HSM).&lt;/li&gt;&lt;li&gt;Added requirement for EFT Server administrator credentials when attempting to delete a Site or Server object in the administration interface.&lt;/li&gt;&lt;li&gt;Added SSL certificate options for EFT Server's client offload/download FTPS and HTTPS event rule actions.&lt;/li&gt;&lt;li&gt;Added support for the PFX format in the EFT Server SSL Certification Manager&lt;/li&gt;&lt;li&gt;Updated to version 0.9.8l the non-FIPS SSL libraries used by EFT Server for inbound and outbound SSL-based protocols.&lt;/li&gt;&lt;li&gt;Improved SSH key tool; when you rename an SSH key, EFT Server verifies that the name is unique and prompts you to change it if it is not unique.&lt;/li&gt;&lt;li&gt;Improved the remote administration interface installation process; the SFTPCOMInterface.dll and SSL.dll are automatically installed and registered.&lt;/li&gt;&lt;li&gt;Added Windows Event Log entries if long running custom commands or AWE tasks are terminated due to a timeout&lt;/li&gt;&lt;li&gt;Added signature verification to event rule OpenPGP decryption&lt;/li&gt;&lt;li&gt;Improved the folder monitor and event rule timers; EFT Server will "reset" only the affected (modified) folder monitor/timer when serializing to the configuration file, rather than all folder monitors and timers.&lt;/li&gt;&lt;li&gt;Improved text file auditing of Folder Monitor actions to aid Customer Support when assisting customers with Folder Monitors.&lt;/li&gt;&lt;li&gt;Added ODBC Authentication Manager SQL scripts for MS SQL and Oracle&lt;/li&gt;&lt;li&gt;Added a default logging.cfg file to EFT Server.&lt;/li&gt;&lt;li&gt;Plain HTML format can now be selected by appending ?html to the URL&lt;/li&gt;&lt;li&gt;&lt;h3&gt;DMZ Gateway:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added ability to install DMZ Gateway on Unix, Linux, and Solaris operating systems (in addition to Windows). Available on both 32-bit and 64-bit operating systems.&lt;/li&gt;&lt;li&gt;Added more functionality to DMZ Gateway's interface to accommodate multiple profiles and extended communication information.&lt;/li&gt;&lt;li&gt;Centralized DMZ licensing to EFT Server to simplify DMZ installation and licensing.&lt;/li&gt;&lt;li&gt;Added ability to connect up to 15 EFT Server Sites simultaneously.&lt;/li&gt;&lt;li&gt;Added automatic propagation of IP address access policy changes to DMZ Gateway when the policy is modified in EFT Server, whether in the interface or by the auto-ban logic.&lt;/li&gt;&lt;li&gt;DMZ and EFT Server have been hardened to withstand attack from several Denial of Service (DoS) attack tools&lt;/li&gt;&lt;li&gt;Improved and expanded DMZ Gateway logging.&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Auditing and Reporting Module (ARM):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Upgraded the SQL Server Express 2005 installer to SQL Server Express Edition, service pack 3.&lt;/li&gt;&lt;li&gt;Added three new intervals to the Generate Report Action: Today, Yesterday, and Last 24 hours.&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Advanced Workflow Engine (AWE):&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added new EFT Server variables SERVER_PUBLIC_KEYRING_PATH and SERVER_PRIVATE_KEYRING_PATH to pass the location of the public and private key ring to the AWE module.&lt;/li&gt;&lt;li&gt;Added ability to send user-defined (custom) variables from EFT Server to the AWE module.&lt;/li&gt;&lt;li&gt;Added several new AWE actions in these categories: Internet, File, Network, Variable and Cryptography&lt;/li&gt;&lt;li&gt;&lt;h3&gt;COM API&lt;/h3&gt;The following methods, properties, parameters, and enumerators were added or modified:&lt;/li&gt;&lt;li&gt;Server Interface (ICIServer) methods: ConnectEx, RemoveServerAdminAccount&lt;/li&gt;&lt;li&gt;Single-Site Interface (ICISite) properties: AllowChangePassword, ForcePasswordResetOnInitialLogin&lt;/li&gt;&lt;li&gt;Client Settings Interface (ICIClientSettings) methods: GetForcePasswordResetOnInitialLogin, SetForcePasswordResetOnInitialLogin&lt;/li&gt;&lt;li&gt;Enumerators and Constants: LoginType, ServerModule, PredefinedReportPeriod, AdminAccountType enumeration, AdminLoginType enumeration&lt;/li&gt;&lt;li&gt;Added more unique error descriptions&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Secure Ad Hoc Transfer module:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added ability to configure ad hoc permissions in the web.config file.&lt;/li&gt;&lt;li&gt;Added ability to define the default permissions used for the temporary user's home folder in the web.config file.&lt;/li&gt;&lt;li&gt;Added ability for SAT users to create subfolders in their home folder.&lt;/li&gt;&lt;li&gt;Added a variable in the web.config file to add a specified time delay before sending the password email.&lt;/li&gt;&lt;li&gt;Improved the speed of SAT upload transactions and when SAT is configured for File Copy to EFT Server.&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Web Transfer Client:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Added ability for WTC users to control whether preemptive proxy BASIC authentication credentials are sent.&lt;/li&gt;&lt;li&gt;&lt;h3&gt;Fixes:&lt;/h3&gt;&lt;/li&gt;&lt;li&gt;Fixed Oracle ODBC Authentication Manager character case problems: user login checks are no longer case sensitive and SQL commands are case consistent.&lt;/li&gt;&lt;li&gt;Updated tab sequences in various dialogs for Section 508 compliance.&lt;/li&gt;&lt;li&gt;Event Rule "if using WTC" condition now works properly in all scenarios.&lt;/li&gt;&lt;li&gt;Event Rule "On Server Startup" actions are now performed.&lt;/li&gt;&lt;li&gt;Email notifications are now sent for On Scheduled Timer events.&lt;/li&gt;&lt;li&gt;Access to the Web Services WSDL has been restored.&lt;/li&gt;&lt;li&gt;Fixed layout errors in some PCI Reports.&lt;/li&gt;&lt;li&gt;Fixed the SSH version number displayed in the Admin User Interface to reflect the update to SSH protocol version 4.&lt;/li&gt;&lt;li&gt;Fixed WTC to ensure user's AD credentials are used to access files and folders and not the EFT Server service credentials.&lt;/li&gt;&lt;li&gt;Fixed WTC so uploads are now as fast as downloads&lt;/li&gt;&lt;li&gt;Fixed a vulnerability to tampering in the messaging between the Admin GUI and the EFT Server&lt;/li&gt;&lt;li&gt;Fixed several instances where standard file deletion was being used instead of file sanitization&lt;/li&gt;&lt;li&gt;Fixed a timeout issue that would lead to a blank page being displayed by the plain text HTTP client during extremely large file uploads&lt;/li&gt;&lt;li&gt;Restored the ability to turn on detailed outbound client logging (controlled by registry key)&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>3/1/2010</pubDate></item><item><title>Changes in 6.1.10</title><description>&lt;ul&gt;&lt;li&gt;Improved network error handling and added retry logic to the Web Transfer Client (WTC)&lt;/li&gt;&lt;li&gt;Improved ability to distinguish between SQL connection and non-connection related errors&lt;/li&gt;&lt;li&gt;Improved Installer to ensure SQL stored procedures are upgraded&lt;/li&gt;&lt;li&gt;Improvements to WTC’s proxy authentication capabilities&lt;/li&gt;&lt;li&gt;Improved EFT Server compatibility with WebDrive&lt;/li&gt;&lt;li&gt;Improved CreateUserEx COM method performance&lt;/li&gt;&lt;li&gt;Improved folder deletion performance&lt;/li&gt;&lt;li&gt;Improved configuration file read/write performance&lt;/li&gt;&lt;li&gt;Enhanced WTC so that its help contents are linked to version specific online help pages&lt;/li&gt;&lt;li&gt;Enhanced Auditing and Reporting Module (ARM) reconnection logic by using additional SQL timeout error codes&lt;/li&gt;&lt;li&gt;Corrected issue where EFT Server would attempt to send ARM status updates to Admin connections that was disconnecting&lt;/li&gt;&lt;li&gt;Corrected issue where WTC upload speeds wasn’t on par with download speeds&lt;/li&gt;&lt;li&gt;Corrected issue where Multi-site DMZ Gateway used the wrong interface when attempting to connect using PASV mode.&lt;/li&gt;&lt;li&gt;Corrected issue where Multisite DMZ used the wrong interface when performing outbound transfers&lt;/li&gt;&lt;li&gt;Corrected issue where WTC sessions would not retain and honor the user's Active Directory credentials&lt;/li&gt;&lt;li&gt;Corrected server crash in error handling in EFT Server’s authentication sub-system&lt;/li&gt;&lt;li&gt;Corrected issue triggered when ftp command socket was closed as data socket connected&lt;/li&gt;&lt;li&gt;Corrected issue on FTP connection when using NLST&lt;/li&gt;&lt;li&gt;Corrected issue where disabling an event in the "Event Rules" pane would cause the server to crash&lt;/li&gt;&lt;li&gt;Corrected cross site scripting vulnerability reported by QUALSGuard scanner when HTTP to HTTPS redirection was enabled&lt;/li&gt;&lt;li&gt;Corrected intermittent issue when deleting physical or virtual folders&lt;/li&gt;&lt;li&gt;Corrected discrepancy between the timezone used for the FS.FILE_CREATE and FS.FILE_CREATE_TIME event rule variables&lt;/li&gt;&lt;li&gt;Corrected COM script memory leak triggered by the processing of deleted or invalid folders&lt;/li&gt;&lt;li&gt;Corrected issue with %FILE.*% related Event Rule variables&lt;/li&gt;&lt;li&gt;Corrected issues interoperating with servers using SFTP protocol version 4 or greater&lt;/li&gt;&lt;li&gt;Corrected issue where internal SQL commands had inconsistent casing&lt;/li&gt;&lt;li&gt;Corrected issue where some login clients account dates were showing up as Dec 31, 1969&lt;/li&gt;&lt;li&gt;Corrected issue where upgrades could cause system service instability in rare instances&lt;/li&gt;&lt;li&gt;Corrected issue that prevented OpenPGP encryption from signing ASCII armored files&lt;/li&gt;&lt;li&gt;Corrected issue that made user names case sensitive when using Oracle as an authentication source&lt;/li&gt;&lt;li&gt;Corrected issue where UPN style logins didn't find their AD Profile home directory&lt;/li&gt;&lt;li&gt;Corrected issue where Event ACTIONS and GROUPS would trigger errors on SQL text file import&lt;/li&gt;&lt;li&gt;Corrected issue where virtual folders not pointing to the C:\ drive were not visible&lt;/li&gt;&lt;li&gt;Corrected issue during client authentication in SSL&lt;/li&gt;&lt;li&gt;Corrected issue where folder names did not display a '&amp;' properly&lt;/li&gt;&lt;li&gt;Corrected minor GUI layout issue related to Advanced Workflow Engine (AWE) "Create Date" label&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>3/1/2010</pubDate></item><item><title>Changes in 6.1</title><description>&lt;ul&gt;&lt;li&gt;Improved Active Directory user authentication and synchronization to provide better support for foreign domain users and groups&lt;/li&gt;&lt;li&gt;Added SSH.com or OpenSSH formatted keys selection to SFTP key creation wizard&lt;/li&gt;&lt;li&gt;Added Message Level Security (MLS) to the AS2 module&lt;/li&gt;&lt;li&gt;Added support for Folder Monitor Event Rule to operate across network shares/forests in Active Directory&lt;/li&gt;&lt;li&gt;Added Windows authentication in addition to SQL authentication for EFT Server ARM connections to SQL Server&lt;/li&gt;&lt;li&gt;Added extensive and configurable text file logging to aid Customer Support in identifying customer environment unique behaviors&lt;/li&gt;&lt;li&gt;Added support for user principal and common name formats for the AD/LDAP user Change Password function&lt;/li&gt;&lt;li&gt;Moved the AD/LDAP test connection from the Administrator Interface to the Server&lt;/li&gt;&lt;li&gt;Updated Move Action context variables %FS.PATH%, %FS.FILE_NAME%, and %FS.FOLDER_NAME% to match the new file location&lt;/li&gt;&lt;li&gt;Added support for Powershell to Event Rule commands&lt;/li&gt;&lt;li&gt;Improved support for UNC paths to hold the resulting backup file for Event Rule Backup Action&lt;/li&gt;&lt;li&gt;Added support for Event Rule client transfers function through ISA and SQUID proxies&lt;/li&gt;&lt;li&gt;Added support for multi-part POST uploads for Event Rule client for compatibility with Tumbleweed Secure Transport Server&lt;/li&gt;&lt;li&gt;Added Advanced Workflow task names to Event Rule reports&lt;/li&gt;&lt;li&gt;Improved OpenPGP support of the ASCII-armored file format for data files&lt;/li&gt;&lt;li&gt;Added support in the installer wizard to install EFT Server and DMZ Server in a cluster&lt;/li&gt;&lt;li&gt;Improved installer wizard for the setup and upgrade of ARM and the associated SQL database&lt;/li&gt;&lt;li&gt;Added support for installing EFT Server from a command line/with a batch file&lt;/li&gt;&lt;li&gt;Added ability to extend the initial 30-day trial&lt;/li&gt;&lt;li&gt;Added new methods and properties to the COM API and removed deprecated ones&lt;/li&gt;&lt;li&gt;Added support in the Web Transfer Client (WTC) to provide wider character support&lt;/li&gt;&lt;li&gt;Upgraded WTC libraries to provide better proxy, cookie, and HTTP compatibility&lt;/li&gt;&lt;li&gt;Upgraded Plain Text Client (PTC) libraries to provide better performance when listing folders with thousands of files and folders&lt;/li&gt;&lt;li&gt;Removed (hid) Change Password button in the WTC when the user account does not have permission to change the password&lt;/li&gt;&lt;li&gt;Added ability to email user login credentials from EFT Server&lt;/li&gt;&lt;li&gt;Added Clear Command Channel (CCC) and Clear Data Channel for FTPS&lt;/li&gt;&lt;li&gt;Added ability to import and export Advanced Workflow tasks in the Administrator Interface&lt;/li&gt;&lt;li&gt;Added ability to configure Secure Ad Hoc Transfer (SAT) to prevent "spoofing" by forcing FROM address to match AD before sending the message&lt;/li&gt;&lt;li&gt;Added logging to SAT, which now logs the IP address of the sender to ARM and displays the address in new reports&lt;/li&gt;&lt;li&gt;Added verification of prerequisites in the SAT installer to verify IIS and .NET are installed and have the correct versions&lt;/li&gt;&lt;li&gt;Added IIS role setting to the SAT installer&lt;/li&gt;&lt;li&gt;Updated SFTP client to provide higher performance, compatibility, and FIPS-certified encryption&lt;/li&gt;&lt;li&gt;Added ability for the SFTP SSH_FXP_SETSTAT command to modify the file's accessed, modified, and created timestamps&lt;/li&gt;&lt;li&gt;Added upload and download speed for SFTP connections to the Server's Status tab&lt;/li&gt;&lt;li&gt;Included headers from transactions to the AS2 Transaction Detail report&lt;/li&gt;&lt;li&gt;Added ability to configure inbound only or outbound only AS2 partners (no longer need to configure both)&lt;/li&gt;&lt;li&gt;Increased administrator password length from 20 to 99 characters&lt;/li&gt;&lt;li&gt;Increased Group and Settings Template name length to 255 characters&lt;/li&gt;&lt;li&gt;Provided new controls, notifications, and events regarding users that are locked out due to invalid login attempts&lt;/li&gt;&lt;li&gt;Fixed WTC properly supports the Euro symbol in folder and file names&lt;/li&gt;&lt;li&gt;Fixed WTC supports configuration of retries for users transferring large file sets over networks with intermittent errors&lt;/li&gt;&lt;li&gt;Fixed WTC properly throttles bandwidth per the specified limits for both uploads and downloads&lt;/li&gt;&lt;li&gt;Fixed WTC transfer percentages are displayed and updated correctly for resumed transfers&lt;/li&gt;&lt;li&gt;Fixed WTC properly notifies user if a remote folder cannot be created because it already exists on the remote server&lt;/li&gt;&lt;li&gt;Fixed WTC displays a single error dialog if the connection to the remote server is lost while transferring multiple files&lt;/li&gt;&lt;li&gt;Fixed WTC and PTC users are returned to their previous page instead of an error page when selecting CANCEL during login&lt;/li&gt;&lt;li&gt;Fixed PTC properly sorts file listings based on the Modified Date and Size columns&lt;/li&gt;&lt;li&gt;Fixed SAT detects if IIS 7 is installed and extends the maxAllowedContentLength value in the IIS ApplicationHost.config file to 2 GB&lt;/li&gt;&lt;li&gt;Fixed SAT supports semicolon delimiter for multiple email send addresses&lt;/li&gt;&lt;li&gt;Fixed DMZ Single Site now accepts the queued EFT Server connection when the active connection ends&lt;/li&gt;&lt;li&gt;Fixed Turning off SSL FIPS reenables Auto Negotiate&lt;/li&gt;&lt;li&gt;Fixed SSL cert creation wizard ensures a valid ISO country code is selected&lt;/li&gt;&lt;li&gt;Fixed NTLM user authentication renamed to "Local System Accounts"&lt;/li&gt;&lt;li&gt;Fixed Copy/move Action now honors the retry counter instead of trying indefinitely&lt;/li&gt;&lt;li&gt;Fixed On Timer rule supports specifying *.* or *.ext to download files from a remote folder&lt;/li&gt;&lt;li&gt;Fixed Restore places the AUD file in the correct folder&lt;/li&gt;&lt;li&gt;Fixed PCI DSS report is available in the Generate Report selection dropdown&lt;/li&gt;&lt;li&gt;Fixed XCRC now works on files greater than 2GB&lt;/li&gt;&lt;li&gt;Fixed A value in the Description column is not necessary for ODBC user entriesq&lt;/li&gt;&lt;li&gt;Fixed OpenPGP will not create a separate signature file if "Output to target file" is selected&lt;/li&gt;&lt;li&gt;Fixed Removed the Advanced FTP settings that were not relevant to SFTP&lt;/li&gt;&lt;li&gt;Fixed Users reenabled in Active Directory will be reenabled in EFT Server&lt;/li&gt;&lt;li&gt;Fixed AWE and AS2 "not registered" Windows Event Log entries are now INFO instead of ERROR&lt;/li&gt;&lt;li&gt;Added many additional stability, usability, and user interface improvements and fixes&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>11/9/2009</pubDate></item><item><title>Changes in 6.0.17</title><description>&lt;ul&gt;&lt;li&gt;Fixed SFTP protocol command validation&lt;/li&gt;&lt;li&gt;Fixed DMZ issue that occurred when two EFT Servers used same IP/port&lt;/li&gt;&lt;li&gt;Fixed WTC to notify user if local folder creation failed due to invalid characters&lt;/li&gt;&lt;li&gt;Improved several prompts and messages in the WTC&lt;/li&gt;&lt;li&gt;Updated the Help files and the copyright date to 2009&lt;/li&gt;&lt;li&gt;Improved various error messages.&lt;/li&gt;&lt;li&gt;Added the ability to transfer folders containing subfolders.&lt;/li&gt;&lt;li&gt;Set status to "INTEGRITY CHECK FAILURE" only for CRC failures. CRC check failure caused by reasons other than CRC value difference are assigned  the "UNABLE TO VALIDATE INTEGRITY" state.&lt;/li&gt;&lt;li&gt;Fixed the occasional missing icon problem.&lt;/li&gt;&lt;li&gt;Changed client SFTP key generation to use ssh.com style keys by default.&lt;/li&gt;&lt;li&gt;Removed spaces from LDAP query strings so comparisons match properly.&lt;/li&gt;&lt;li&gt;Enhanced WTC to provide a &lt;%=client_ip%&gt; token replacement in htm files.&lt;/li&gt;&lt;li&gt;Corrected a problem with binary to ASCII conversion over SFTP.&lt;/li&gt;&lt;li&gt;Fixed a crashing issue that could occur when user list was not in sync with authentication provider.&lt;/li&gt;&lt;li&gt;Made permissions checks when switching into a UNC directory consistent with that of switching into a local directory.&lt;/li&gt;&lt;li&gt;Fixed a crashing that occured when a PCI DSS report was generated on an LDAP site.&lt;/li&gt;&lt;li&gt;Fixed issue where files uploaded over HTTP using the PUT method were visibile while being transferred.&lt;/li&gt;&lt;li&gt;Fixed issue where webservices invocation failed because of random data being appended to parameters.&lt;/li&gt;&lt;li&gt;Fixed issue where server inactivity led to ADO errors being recorded to the system application log.&lt;/li&gt;&lt;li&gt;Fixed issue where AS2 would fail MDN verification.&lt;/li&gt;&lt;li&gt;Fixed issue where AS2 hot folder would fire early and send a 0 byte file.&lt;/li&gt;&lt;li&gt;Fixed hang that could occur when deleting a user while system quotas were enabled.&lt;/li&gt;&lt;li&gt;Fixed a crash that could happen when the system bans a user for disconnects.&lt;/li&gt;&lt;li&gt;Increased allowed length of administrator passwords.&lt;/li&gt;&lt;li&gt;Fixed issue that could lead to crash when using COM.&lt;/li&gt;&lt;li&gt;HTTP 401 page now redirects you to previous page in browser history.&lt;/li&gt;&lt;li&gt;Fixed hang that could occur when deleting a user while system quotas were enabled.&lt;/li&gt;&lt;li&gt;Fixed a crash that could happen when the system auto-bans a user.&lt;/li&gt;&lt;li&gt;Increased allowed length of administrator passwords.&lt;/li&gt;&lt;li&gt;Fixed issue that could lead to crash when using COM.&lt;/li&gt;&lt;li&gt;HTTP 401 page now redirects you to previous page in browser history.&lt;/li&gt;&lt;li&gt;COM ClientSettings Get/Set HTTPS/FTPS methods now work.&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>9/3/2009</pubDate></item><item><title>Changes in 5.2.21</title><description>&lt;ul&gt;&lt;li&gt;Fixed SFTP protocol command validation&lt;/li&gt;&lt;li&gt;Fixed WTC FireFox issue that was introduced when new signing cert was used for jars&lt;/li&gt;&lt;li&gt;Merged 6.0/6.1 LDAP fix for base DN's that contain spaces&lt;/li&gt;&lt;li&gt;Added registry entry that will allow wildcard transfers of local files to fail if no files.
  Are found (legacy behavior is all wildcard operations succeed even if no files are found)&lt;/li&gt;&lt;li&gt;Update to authentication manager to correctly pull domain name in certain instances where it previously failed.&lt;/li&gt;&lt;li&gt;Fixed problem with random session expiration/timeouts over HTTP.&lt;/li&gt;&lt;li&gt;Automatic re-queue of file transfers when they fail.&lt;/li&gt;&lt;li&gt;Bug fixes  to Web Transfer Client.&lt;/li&gt;&lt;li&gt;Fixed crash upon login caused by use of a special registry key.&lt;/li&gt;&lt;li&gt;Improved AD support for retrieving a user's domain.&lt;/li&gt;&lt;li&gt;Improved BlueCoat proxy support.&lt;/li&gt;&lt;li&gt;Fixed issue with Web Transfer Client only reporting 10 licenses even if more were registered.&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>9/3/2009</pubDate></item><item><title>Changes in 6.0.6</title><description>&lt;ul&gt;&lt;li&gt;0KB files uploaded via SFTP now trigger events and are reported in logs.&lt;/li&gt;&lt;li&gt;LIST permission is no longer required for a WTC upload.&lt;/li&gt;&lt;li&gt;Plain text web transfers now correctly handle sending files with an octothorpe (#) in the file name.&lt;/li&gt;&lt;li&gt;Opening a Microsoft Office document via the HTML Listing and Upload form in Internet Explorer no longer triggers a reauthentication prompt.&lt;/li&gt;&lt;li&gt;AD accounts in WTC can no longer rename and delete virtual folders.&lt;/li&gt;&lt;li&gt;WTC now allows signing certificate to be accepted.&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>6/15/2009</pubDate></item><item><title>Changes in 6.0.4</title><description>&lt;ul&gt;&lt;li&gt;Enhanced ARM performance under load&lt;/li&gt;&lt;li&gt;Enhanced the layout of the User Templates, Groups, and Custom Command dialogs to support longer names&lt;/li&gt;&lt;li&gt;Corrected SQL connection timeout handling to ensure ARM auditing of all transactions&lt;/li&gt;&lt;li&gt;Corrected SQL error handling to eliminate repeated email notifications&lt;/li&gt;&lt;li&gt;Corrected issue that occurred if APPEND was disabled and a WTC user attempted to resume a transfer&lt;/li&gt;&lt;li&gt;Corrected database error triggered by AS2 configuration Test button&lt;/li&gt;&lt;li&gt;Updated SAT installer to grant permission to EFT /adhoc folder for Vista and Win2K8&lt;/li&gt;&lt;li&gt;Updated SAT installer to properly list/select the IIS web sites&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>5/20/2009</pubDate></item><item><title>Changes in 6.0.1</title><description>&lt;ul&gt;&lt;li&gt;Enhanced WTC proxy support for JREs after 1.6.7&lt;/li&gt;&lt;li&gt;Enhanced EFT Server Enterprise installer to provide both the Single Site and Multi-Site DMZ Gateway sub-installers&lt;/li&gt;&lt;li&gt;Enhanced the logic used to complete the removal of a previous version of EFT Server or Secure FTP Server&lt;/li&gt;&lt;li&gt;Enhanced the SAT-related ARM reports to display multiple files if more than one file was sent per transaction&lt;/li&gt;&lt;li&gt;Enhanced the Administrator GUI to support User Setting Templates and Permission Groups with names greater than 20 characters (max of 255)&lt;/li&gt;&lt;li&gt;Enhanced EFT Server (core) with support for operation on 64 bit&lt;/li&gt;&lt;li&gt;Corrected issue with WTC Active Directory change password&lt;/li&gt;&lt;li&gt;Corrected issue in plain-text HTTP that required DELETE permission to download files&lt;/li&gt;&lt;li&gt;Corrected issue caused when uploading a file to a folder with a path exceeding 255 characters&lt;/li&gt;&lt;li&gt;Corrected issue with WTC not showing download prompt with Firefox&lt;/li&gt;&lt;li&gt;Corrected issue caused when Web Services interface was disabled but Event Rule invocation was attempted&lt;/li&gt;&lt;li&gt;Corrected logos and formatting issues in SAT and AS2 ARM reports&lt;/li&gt;&lt;li&gt;Corrected issue related to generation of output in Custom Command log files&lt;/li&gt;&lt;li&gt;Corrected EFT Server crash that occurred for Copy/Move Event Rule Actions that did not have a leading “\\”&lt;/li&gt;&lt;li&gt;Replaced HTTP Java update link with HTTPS link to eliminate warnings about "insecure content&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>4/8/2009</pubDate></item><item><title>Changes in 5.2.15</title><description>&lt;ul&gt;&lt;li&gt;Fixed Java errors on the change password page&lt;/li&gt;&lt;li&gt;Fixed crash that occurred when there was a high number of user-to-group assignments&lt;/li&gt;&lt;li&gt;HTTPS clients without Java installed are now prompted to install it&lt;/li&gt;&lt;li&gt;Improved EFT Server stability by identifying and removing thread unsafe code&lt;/li&gt;&lt;li&gt;Fixed crash that occurred when logging in via SFTP and connection limit is already reached.&lt;/li&gt;&lt;li&gt;Fixed memory leak when uploading files via HTTP&lt;/li&gt;&lt;li&gt;Resolved issue wherein certain COM scripts would never time out&lt;/li&gt;&lt;li&gt;Resolved issue where custom command parameters would not appear in cmdout.log&lt;/li&gt;&lt;li&gt;Resolved issue where plain text client would not reload when a non-standard port was used&lt;/li&gt;&lt;li&gt;Fixed memory leak in the authentication managers&lt;/li&gt;&lt;li&gt;Fixed EFT Server hang issue caused by administrative users timing out&lt;/li&gt;&lt;li&gt;Fixed memory leak caused under certain circusmtances by NLST command&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>3/18/2009</pubDate></item><item><title>Changes in 6.0</title><description>&lt;ul&gt;&lt;li&gt;Added - compatibility with x64 Windows including Server 2008&lt;/li&gt;&lt;li&gt;Added - Oracle database support added for Auditing &amp; Reporting&lt;/li&gt;&lt;li&gt;Added - Backup and restore wizard for disaster recovery and migration between servers&lt;/li&gt;&lt;li&gt;Added - New Server Administrator role: "Create User" - has ability to create users within designated templates&lt;/li&gt;&lt;li&gt;Added - Optional Advanced Workflow Engine module - extends EFT Server event rules by over 200 additional actions, including send to mainframe, send SNMP traps, query SQL database, parse an XML or Excel file, and hundreds more&lt;/li&gt;&lt;li&gt;Added - New wizards for the Download (Pull) and Copy/Move (Push) Event Rules&lt;/li&gt;&lt;li&gt;Added - DMZ Gateway Enterprise - allows multiple EFT Servers to connect to the gateway.&lt;/li&gt;&lt;li&gt;Added - FIPS certified SSL and SSH libraries as part of High Security Module (HSM).&lt;/li&gt;&lt;li&gt;Added - Comprehensive auditing and reporting of all administrator changes made to the server (requires HSM)&lt;/li&gt;&lt;li&gt;Added - Ability to modify the default messages sent upon account creation and password expiration reminders&lt;/li&gt;&lt;li&gt;Added - Ability to switch between UTC/GMT and server local time for timestamps returned in directory listings&lt;/li&gt;&lt;li&gt;Enhanced - Setup (installation program) can configure EFT Server’s auditing database on an existing SQL or Oracle server&lt;/li&gt;&lt;li&gt;Enhanced - complete revamp of EFT Server’s Administrator Interface including dozens of small usability fixes&lt;/li&gt;&lt;li&gt;Enhanced - Support for designating EFT Server's configuration file path&lt;/li&gt;&lt;li&gt;Enhanced - New User setup wizard can now designate a home folder including variable names&lt;/li&gt;&lt;li&gt;Enhanced - Replaced MSDE with SQL Server Express for the bundled database&lt;/li&gt;&lt;li&gt;Enhanced - Updated PCI compliance to match the latest PCI DSS 1.2 specification (requires High Security Module)&lt;/li&gt;&lt;li&gt;Enhanced - Ability to create Custom Commands "on the fly" from within Event Rules&lt;/li&gt;&lt;li&gt;Enhanced - Various visual and usability improvements to the Event Rule builder&lt;/li&gt;&lt;li&gt;Enhanced - Send E-mail Event Rule action now allows multiple "To:" values&lt;/li&gt;&lt;li&gt;Enhanced - Send E-mail Event Rule action now includes an Address Browser to search and insert addresses with ease&lt;/li&gt;&lt;li&gt;Enhanced - Replaced OpenPGP library - provides many more options, including signing options, cipher/hash options, self-decryption archive creation, compression levels, and debug logging&lt;/li&gt;&lt;li&gt;Enhanced - Updated SFTP library - provides import/creation of OpenSSH keys and public key select/export&lt;/li&gt;&lt;li&gt;Enhanced - Ban IP address on invalid account now counts invalid login attempts when a non-existing username is provided.&lt;/li&gt;&lt;li&gt;Enhanced - Plain HTTP interface has been updated and exposed so that it can be completely customized&lt;/li&gt;&lt;li&gt;Enhanced - Web Transfer Client (WTC) interface updated and various minor bugs fixed&lt;/li&gt;&lt;li&gt;Enhanced - Dozens of minor usability and bug fixes in AS2&lt;/li&gt;&lt;li&gt;Added - Complete backwards compatibility with Secure FTP Server 3 and EFT Server 5&lt;/li&gt;&lt;li&gt;Enhanced - Password reset and complexity are now part of the core feature set&lt;/li&gt;&lt;li&gt;Fixed - Various defects of varying level of severity&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>3/2/2009</pubDate></item><item><title>Changes in 5.2.12</title><description>&lt;ul&gt;&lt;li&gt;Corrected an issue with WTC logout on Firefox.&lt;/li&gt;&lt;li&gt;Added registry setting that allows OS-selected IP address assignment for outbound client connections (pre-5.2.11 behavior).&lt;/li&gt;&lt;li&gt;Internet Explorer Enhanced Security Window no longer interferes with the Administrator interface.&lt;/li&gt;&lt;li&gt;Added expiring session cookie for WTC on Chrome browser for logout (fixes the repeated logon issue in Chrome).&lt;/li&gt;&lt;li&gt;The Event Rule MailAction::FROM parameter is now exposed so that it can be overridden with an event rule specific value. If the FROM email address is not overridden in the rule, the Server level default value is used for the FROM address.&lt;/li&gt;&lt;li&gt;Now deploying PCI report files to PCI subfolder rather than Reports subfolder.&lt;/li&gt;&lt;li&gt;Provided option (via registry key) to redirect cl*.log output to the Windows Event Log.&lt;/li&gt;&lt;li&gt;OpenPGP keyrings can now be in a location other than the EFT Server installation folder.&lt;/li&gt;&lt;li&gt;OpenPGP updated to support selection of hashing algorithm.&lt;/li&gt;&lt;li&gt;EFT Server outbound client now uses site IP address instead of defaulting to OS-selected IP address.&lt;/li&gt;&lt;li&gt;(SAT) Fixed problem with send upload notification not functioning due to URL format supplied in user description field.&lt;/li&gt;&lt;li&gt;(SAT) Increased logging in send upload notification script.&lt;/li&gt;&lt;li&gt;(SAT) Fixed problem with uploading popup opacity and animated gif not moving in IE7.&lt;/li&gt;&lt;li&gt;(SAT) Fixed problem with “From” cookie storing more than one email address.&lt;/li&gt;&lt;li&gt;(SAT) Updated COM for compatibility with EFT 5.2.12.&lt;/li&gt;&lt;/ul&gt;</description><link>http://www.globalscape.com/mft/history.aspx</link><pubDate>11/5/2008</pubDate></item></channel></rss>