Improved log entry parsing via GraphQL. Individual arguments are now parsed and displayed, making it easier to use them for rule configuration.
Enhanced Arg Analysis engine. Arg Analysis engine now processes requests more quickly.
Mobile SDK now has enhanced abilities to detect emulators.
Rate limits. Fixed an issue where include/exclude values were only partially matched. Now they are exact matched.
UI Timeout has been increased, so that users won’t get timeout errors as quickly.
Dashboard challenge counter now displays correct values.
Redis configuration: Added GCP Israel region.
Flow Control is a new feature that allows users to define a sequence (flow) of submitted requests which, if followed, will be permitted. In cases where the conditions of the sequence are violated, a user-defined Action is initiated.
Checkboxes were added to the Web Filter screen for activating or inactivating security types. They appear on the Web Proxy screen for each of a user’s sites. For example, below, a Default site is shown. Checkboxes at the top of the page can be checked to Activate a security feature or unchecked to switch the feature to Inactive mode. Redis configuration moved to global settings screen Redis configuration was moved from the Rate Limiting page to the Global page.
Dynamic trusted sources can now be configured from Tag Rules that are regularly updated from various lists and providers.
In View Log, when viewing extended event details, new up/down buttons were added at the top of the pop up to improve browsing through the events.
Tag Rules, multiple entries of type header/cookie/args with the same name can be added and matched
Negate ("!") in Tag Rules for attributes now works
Fixed Rate Limit to properly support protocol attribute
Rate limit can redirect based on relative path as well
Fixed user-agent missing verification
Added "max-dpi-length" tag on messages with oversized body
Error pages now work with utf-8
Masked input now inspected too; added masking to headers/cookies
Fixed Event Log issues filtering with special characters like "<" and "&"
A Landing page is now the first screen when logging into Reblaze. It provides a comprehensive summary of stats and activity in 13 areas, from Traffic Volume to Quarantined requests to active and expiring Certificates. You can drill down further into several areas by clicking on them.
Thumbnails of the Dashboard and the View Log appear on the page. Clicking them will open them.
The Dashboard function has changed slightly. Activity for the last 30 minutes is no longer automatically presented. You must now specify the timeframe you wish to see.
Include and Exclude rules can now only be specified using Tags – already existing ones or if needed, newly created ones. Enforcement of Tag rules follows the Origin Response Codes specified for rule.
The Flow Control feature, introduced in Version 2.20 is not available in Version 2.20.2.
Args Analysis – a reminder to Publish appears after a change to Args is saved
CDN Configuration tab – error message now appears when incorrect information is filled for “Add Provider”
Cloud functions – can now see full name for all name lengths. Web Proxy and Tag Rules one line with “…” at the end
Cloud functions – an error message is now received if a function name is not filled
Tag Rules – an error message is now received for a rule is saved with no tag
Tag Rules – ASN list updated
Tag Rules UI – changing an action from default to response no longer highlights the header field in red
View Log - extended attack information now appears in request details for blocked requests
Web Proxy – error message now appears when only a space char is entered at the path name/match