Important: Downgrading the device to an older software or firmware version is not supported and can potentially cause data loss or impairment to the device functionality.



Version 6.6

Released 05/17/2022

Supported Devices: 

Sentry One, Sentry One Managed, H300/H350, DL4, K350, Sentry K300, Sentry EMS, Sentry 3 FIPS 


New Features:


- New in Unified Client 6.6

  • AV engine updated to version 6400


  • MacOS Monterey support
  • OpenSSL upgraded from 1.1.1d to 1.1.1L
  • cURL upgraded to 7.8.1.0
  • Updated debug logging - reasons for cert mismatch, device info, TLS info
  • Event Log: Malware infection file now shows MD5 



- Initial release of Unified Client for Sentry 3 FIPS


- New in keypad devices

  • K350 FIPS - v6.5 (FIPS firmware) / 6.5.1 (non-FIPS firmware) devices are now updatable to v6.6. with the same updater
  • DL4 and K350- The feature Managed Standalone Unlocks now enables you to boot from the device; you request a managed standalone unlock from the device software and can be granted a boot session. After the approved session, the device snaps back into a fully managed mode
  • K350 new capacities support 128GB & 512GB
  • K350 and DL4 can be now reset from system tray icon


Notable Bug fixes:

  •  PortBlocker 1.7 sees DataLocker devices as unlisted devices and the Control Panel is unlocked in Read-Only mode.
  •  Password policy restrictions cause recovery code/password reset failure (See DL4FE/K350 Known Issue)


Known Issues:

  • Sentry 3 FIPS - OS generated error might be displayed ‘The operation can't be completed because of an unexpected error occurred (Error code-1309)’ when a restricted file is copied to the private partition on macOS. No current fix. Workaround :  Click the OK button to dismiss the error.


  • Control Panel quits without an error message if ZoneBuilder is enabled and the device is updated with disallowed IP/Country policy. Won’t fix. The end user will see an ‘unauthorized location’ message upon the next unlock attempt.


  • If Unique Token is enabled in SC, it must be entered again after conversion from previous client v4.8.47/v4.8.49. Workaround:  Administrator must provide Unique Token to the user or disable Unique Token in SC


  • If ZoneBuilder mandatory connection is enabled in SC 6.x tab, the device needs to be reset in order to update to Unified Client. Unified Updater will detect such a device and prompt the user to reset the device prior to updating. Workaround: Disable ZoneBuilder mandatory connection in the SC 6.x tab policy, unlock DT4000G2/Sentry 3 FIPS device at least once to get the new policy. Run the Unified Updater again.


  • [Mac M1] Intermittent - Change Password screen/Create Password screen - cursor is not displayed in the input fields, unable to type. 
    • Workaround: Click Change password button. A message that fields cannot be left blank is displayed. Close the message, the cursor in both fields appears and it's possible to type into the input fields and finish changing the password.


Version 6.5
Released 07/28/2021

Supported Devices: DL4 FE, Sentry K300, Sentry K350, Sentry One, Sentry One Managed, 

H300, H350, Sentry EMS


New Features:

- A warning is displayed if a popular password is used (not supported on keypad devices K300/K350/DL4 FE)

Examples of popular passwords: 

1234567

abc123

qwerty

123321

1111111

121212

football

default

asdasd

superman

888888

000000




- Device status checks (Silver Bullet) is now more reactive (requested every time the device contacts the server, including file audit activity) 


- AV engine updated to version 6200


- Payload auto-update support

Devices with client version v6.5 will download a payload updater via Control Panel when future updates are released to SafeConsole (previously an .exe updater was downloaded). Client versions older than v6.5 remain downloading the .exe updater for auto-updates. 

Payload auto-update is supported on Windows and Mac OS on Sentry EMS, Sentry One, Sentry One Managed, 

and D300/D300M devices

IronKey H300/H350 and S1000 devices do not support payload auto-update on mac OS. (Windows is required to update these models)


- Unified Updater support for K300

All device types are now using Unified Updater and do not require Admin privileges to run the update except unmanaged keypad devices. (See Unified Updater Limitations section below)


- Control Panel now defaults to Settings Screen

Settings screen instead of Apps screen is now displayed when the Control Panel is unlocked. Settings and Apps icons are switched


- Check for Updates buttons remain disabled until the AV engine is fully loaded



Other Changes:

- Linux unlocker updated to match the latest release and allow device unlock


Unified Updater Limitations (applies to all keypad devices K300, K350, DL4 FE):

- The updater must be run as an administrator if the device is unmanaged and a password is created

- Current Software version for an unmanaged device is always displayed as ‘Unknown’


Known Issues:

- After auto-update downloads (.exe updater), the client fails to close onboard applications or fails to close before the updater is launched. 

Workaround: unplug, replug and unlock the device. If AntiMalware is enabled on the device, wait until it’s fully loaded and has ‘Active’ status. Then navigate to Settings - Tools and click Check for Updates. Click Download. The Control Panel should now close before the updater launches. 

If the issue persists, download the updater from the DataLocker Device Firmware Updates page and run it manually. 


- Mac M1 (intermittent) - Change Password screen - cursor is not displayed in the input fields, unable to type

Workaround: Click the Change Password button. A message that fields cannot be left blank is displayed. Close the message, the cursor in both fields appears and it's possible to type into the input fields and finish changing the password.



Version 6.4.2
Released 04/16/2021

Supported Devices: H300, H350, DL4 FE


New Features:

- Mac M1 support for IronKey type devices (H3xx/S1000)

- Improved Unified Updater UI/UX


Other Changes:

- [mac] Fixed issues where user cannot add an application from the native Applications folder, the folder appears empty in the Choose file dialog


Unified Updater Limitations:

- Current software version for DL4 FE unmanaged device is always displayed as "Unknown"

- DL4 FE only: Updater *must* be run as Administrator if the device is unmanaged and a password has been created


Known Issues:

- Sanitize complete message is not displayed, Control Panel just exists (device is still sanitized)

- Client exits if device is reset when Control Panel is unlocked, no success message displayed (device is reset)


Version 6.4
Released 01/11/2021

Supported Devices: Sentry K300, Sentry One, Sentry One Managed, H300, H350, Sentry EMS, DL4FE


New Features:

- DL4FE support* (see DL4FE User Manual)

*Requires SafeConsole v5.8+


- Updated capacity meter UI

- Improved Strong Password policy help text


- Added macOS Big Sur support (see macOS Big Sur Compatibility KB for more details)

- Revised and optimized updater utility 


- Other minor improvements


Known Issues:

- [Linux] Error message 'Permission Denied' is displayed on running 'unlocker_32.exe & unlocker_64.exe' from the device build. Workaround: manually move Unlocker_xx.exe file from Linux folder to the application partition root folder (legacy issue)

- Control Panel is unresponsive/crashing when a lot of data (thousands of blocked and/or infected files) is being written to the hidden area. Workaround: Device reset might be necessary. (existing issue/corner case).


Version 6.3.2
Released 08/07/2020

Supported Devices: Sentry K300, Sentry One, Sentry One Managed, H300, H350, Sentry EMS


New Features:

- Detonate device on SafeConsole (requires SC 5.7+): H300/H350 and S1000 devices only

- Maximum days and hours without connections: It is now possible to Restrict devices to only use hours or days/hours combination

- Max Failed Unlock Attempts can now be controlled by policy (cannot exceed firmware requirements. Requires SC 5.7+): Brute Force actions can be Factory Reset, Detonate, or retain the last invalid password attempt to be saved for Password Reset

- Added support for Device Sanitization, resets the device without needing to be reactivated

- Added support for Anti-Malware Quarantine, isolating infected files stored on the device

- Restricted Device Access - Mandatory ZoneBuilder Certificate

- Show restricted files notifications (requires A/V subscription)


Other Changes:

- Improved Password Reset and Contact Info screens UI

- Improved ZoneBuilder certificate validation

- Improved message when ZoneBuilder cannot find a valid certificate

- Improved AD Credential prompt, auto-fills current logged in user

- Improved Reset status reporting in SafeConsole

- If a unique token is available in the Windows registry, the user will not see the unique token prompt

- Drive size and usage in SafeConsole

- Exit Control Panel on Lock

- New AV engine v6100


Version 6.3.1
Released 4/20/2020

Supported Devices: Sentry K300


New Features:

- Added support for Device Sanitization, resets the device without needing to be reactivated

- Added support for Anti-Malware Quarantine, isolating infected files stored on the device

- Added support for reformatting as fixed or removable media

Other Changes:

- Improved AD Credential prompt, auto-fills current logged in user

- Improved Reset status reporting in SafeConsole

- If a unique token is available in the Windows registry, the user will not see the unique token prompt

- Drive size and usage in SafeConsole

-Trusted accounts and Quarantined files tables have been changed to a light background for easier viewing


Version 6.3.0
Released 1/3/2020

Supported Devices: Sentry K300, Sentry One, Sentry One Managed, H300, H350, Sentry EMS

 

New Features:

- Support for Device Audit Mode (Requires SafeConsole 5.6, not compatible with K300)

- Support for Restrict device login until Anti-malware update has finished (Requires SafeConsole 5.6)

- Added support for Custom URL for Anti-Malware definitions in SafeConsole

- Added support for Unlock Screen Message (Requires SafeConsole 5.6)

- Added Contact Info (Email address and phone number) from SafeConsole policy to the password help screen on the device


Other Changes:

- Remove two-minute wait after unlock before updating device policy

- Only allows the device to be unlocked once per recovery code if offline (Requires the device to be unlocked while connected to SafeConsole Server before a new recovery code is generated)

- Disables reformat button in control panel if 'Disable Users from resetting device policy' is enabled

- Improved pre-registration and basic to managed functionality


Known Issues:

-  Existing unlock message is wiped when basic devices are updated to v6.3 



Version 6.2.2
Released 10/18/2019

Supported Devices: H300, H350

 

New Features:

- MacOS 10.15 Catalina support for H300 and H350 devices


Version 6.2.1
Released 08/12/2019

Supported Devices: H300, H350

 

New Features:

- Prevent users from accidentally resetting their drives, by requiring manual user interaction

- New reset info stored on the device and sent to SafeConsole during next registration


Bug Fixes:

- Resolved Audit Logs not recording resets to SafeConsole for H300/H350 devices

- Resolved a visual UI issue regarding the device hardware ID when managed with SafeConsole

- Resolved a visual UI issue with strong password enforcement


Known Issues:

- MacOS 10.15 Catalina not supported on H300 and H350 devices.


Version 6.2.0
Released 06/28/2019

Supported Devices: Sentry K300, Sentry One, Sentry One Managed, H300, H350, Sentry EMS

 

New Features:

- Full 64bit macOS Support

- Support for automatic Updates through SafeConsole with next available device update

- Support for strong password enforcement (FIPS compliant password) 

        - Can be controlled by policy on SafeConsole

        - User optional on devices activated against EMS

- Minimum password length requirement for all devices is now 8 characters. 

- Support for newly added SafeConsole policy, "Control Panel Application List"

- Support for SafeConsole policy, Publisher

- Support for newly added Maximum number of logins without a connection to SafeConsole as defined in the Device State policy

- Support for Web Proxy Auto-Discovery Protocol on both Windows and macOS


Bug Fixes:

- Fix for File Audit Logs regarding Unicode characters


Known Issues:

- Updated device version is not displayed correctly in EMS after updating Sentry devices using v6.2 updater

- MacOS 10.15 Catalina not supported on H300 and H350 devices.


Version 6.1.5
Released 03/08/2019

 

New Features:
- Added SafeConsole Support to the K300

- Implement StandAlone mode for the K300


Bug Fixes:

- Error when loading antimalware could trigger a false positive malware detection

- Crashes when registering to SafeConsole outside Trusted Network


Known Issues:

- K300 can be unlocked using the Password Reset Code from SafeConsole only once. If the password is changed and subsequently forgotten before checking into SafeConsole, data can be lost. It is important that users immediately unlock their device in SafeConsole mode after a password reset. Resetting password will also reset the available Standalone logins. 


Version 6.1.2
Released 08/06/2018 

New Features:
- Anti-Malware support on MacOS (EMS and SafeConsole)

- File Auditing on MacOS (SafeConsole only)

- File Blocking on MacOS (SafeConsole only)

- Hardware Id field added to Device Info tab and device Configuration dialog (opened by ctrl+click on the logo)


Known Issues:

- MacOs users updating H3xx device with version 6.1 and older need to rename the private partition manually. This can be done before or after the update to v6.1.2. If the private partition is not renamed, users will experience Control Panel issues with Application screen, capacity meter and Anti-Malware.


Suggested steps:


1) Unlock the drive


2a) If you are using Windows:

  • Using Explorer, navigate to “Computer”,  right click on the H3xx device private partition and select "Properties"

  • In the “General” tab, change the label from  "PRIVATE USB" to "PRIVATE_USB"

  • Click Apply and Save


2b) If you are using MacOS

  • Using Finder, right click on the H3xx device private partition and select "Rename PRIVATE USB"

  • change the label from  "PRIVATE USB" to "PRIVATE_USB" 


3) Lock & unlock again


4) To proceed with the update unlock the drive on Windows computer and run IKUpdater_H300_H350_v6.1.2


Note: if you have already updated your device to v6.1.2 and experience described issues on MacOS, please follow steps 1-3 above. 


- Device info incorrectly shows the H350-Enterprise PID on all H300 and H350 devices in Device Info under device settings. This does not affect the actual PID of the device and should be ignored.