O2G Release Note

14.7.003 (previous:14.7.002)

Patch 14.7.003.005


bootDVD 15.6.009.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-647O2G: rest/1.0/system/status empty answer.

Patch 14.7.003.004


bootDVD 15.6.009.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-659Recording enhancement: add applicationName initiator in GET link.
CRO2G-656Pbx command doesn't return result.
CRO2G-655Pilot: Add Advanced parameter for get Pilot information.
CRO2G-654O2G: API to start a call on a virtual UA / GhostZ and transfer it.
CRO2G-653O2G network vulnerability.
CRO2G-652Missing OnCallCreated in case of call to secondary set of the tandem.
CRO2G-651O2G security issue: it is possible to call ‘javax.management.remote.rmi.RMIServer.newClient’ on the RMI port 41357/tcp without providing any credentials.
CRO2G-648O2G sends OnCallModified events with old CallRef after OXE reboot.
CRO2G-644O2Gin recording mode: tomcat not starting with multiple network interface .
CRO2G-643Installation: postgresld doesn't start on multi-IP system.
CRO2G-641Security: Tomcat Do not display version on error page.
CRO2G-638Tandem modification not taken into account.
CRO2G-637O2G On-demand recording from ALE Connect: Some improvement.
CRO2G-635Pilot monitoring: Start/stop monitor without node.
CRO2G-633Cache monitoring: the pro-acd devices are not dynamically loaded.
CRO2G-631Pilot Monitoring: Do not stop monitor if another session is associated.
CRO2G-629O2G - Question for R&D - Multiline call event data.
CRO2G-628O2G Serviceability request : add the 'df -h' command result to info-collect.
CRO2G-626O2G: timout on REST API request (ex: Dynamic_State_Subscriber).

Patch 14.7.003.003


bootDVD 15.6.007.001

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".
  • Vulnerability : All FOSS have been updated, with the latest versions available.
  • Traceability : Improve the changing of trace levels, depending on features or packages.

Features

RQO2G-102No plaintext passwords.
O2G shall not store, display or return passwords in clear text.
RQO2G-86O2G Secure Access [SSH, Status Page].
Status page : The request is to use a dedicated O2G administrator account (maintenance) that can’t be used for another purpose such as REST API access.
SSH : Access must not grant access to Root.
SSH : A dedicated account (roxeadm) is implemented for SSH access with the appropriate level of rights.
SSH : In addition to Credential (login password), O2G must support the certificate-based SSH authentication to enforce the security policy.

Fixes

CRO2G-625roxe-config.sh error while parsing password when changing OXE connection mode from TELNET to SSH.
CRO2G-623UOD: case A4980 mode and provisionning a whole pbx not correctly handled.
CRO2G-622[Report] : O2G perte de services.
CRO2G-620[Report] : IP Recording: Error cases are not correctly handled.
CRO2G-615[Related] : ALE-Connect : Stats voix, description du KPI withdrawed for cause.
CRO2G-617CSTA TLS mode.
CRO2G-613Call center Agent: stop intrusion and permanent listening not directly provided.
CRO2G-611[Report] : ALE-Connect - Voice Statistics wrong strings in German language.
CRO2G-609[Report] : Bad error message when license number is exceeded.
CRO2G-603[Report] : ALE-Connect : layout of popups not consistent.

Patch 14.7.003.002


bootDVD 15.6.005.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-600[Report] OXE caller's with Secret Identity = YES. No information is available for this in O2G CTI event data.
CRO2G-588[Related] : ALE-Connect - scheduler behaviour not consistent.

Patch 14.7.003.001


bootDVD 15.6.005.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-596Stats: send mail doesn't work if report's name contains blanks.
CRO2G-587[Related] : ALE-Connect - Envoi de mail par o2g - champ programmé par incompréhensible.
CRO2G-586[Related] : ALE-Connect - Envoi de mail par o2g - champ description incorrect.
CRO2G-585[Related] : ALE-Connect - Envoi de mail par o2g - structure du message.
CRO2G-588[Related] : ALE-Connect - scheduler behaviour not consistent.
CRO2G-589[Related] : ALE Connect - Scheduler GUI not consistent.
CRO2G-590ROD-OXR : several improvements.
CRO2G-584Token generator : add UsersManagement feature.
CRO2G-580[Related] : ALE-Connect - CCS licence for Unified statistics from o2g.
CRO2G-583[Report] : AFE features : bypass OXE lock77 (CCS_mono).
CRO2G-573Service opening Token : add ROD feature.

Patch 14.7.003.000


bootDVD 15.6.004.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Features

RQO2G-87added feature User Management.
RQO2G-93O2G AES-256 for recording.
This request is linked with OXE implementation of AES-256 in addition to AES-128 , and more generally to anticipate other type of encryption algorithm that would be supported by OXE.
The purpose of this request is for O2G to consider the evolution of OXE CSTA that will provide optional information indicating which type of encryption is to be used to decrypt voice at the recorder application side.

Fixes

CRO2G-560[Related] : Voice Statistics - Progress bar.
CRO2G-562[Related] : Voice Statistics - Name of report.
CRO2G-544Add permanent mode settings for logs in Log4jAdmin web admin tool.

14.7.002 (previous:14.7.001)

Patch 14.7.002.007


bootDVD 15.6.003.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-558[Related] : Voice Statistics - email title for report notification.
CRO2G-568Tph non monitored calls: case Call State unknown not correctly handled.
CRO2G-559Voice Statistics - Progress bar.
CRO2G-561[Related] : Voice Statistics - Progress bar.
CRO2G-565[Report] : Recording - Start monitor - Is there a way to monitor multiple devices at once?.
CRO2G-564[Report] : Problem with Blind Transfer scenario. Missing OnCallModified and other events.
CRO2G-557[Report] : Recorder system - O2G IP disconnection.
At reconnection of the IP link on the O2G, the CSTA link (on OXE) is typed Generic.
CRO2G-524[Related] : Voice Statistics - Name of report.
CRO2G-553Add permanent mode settings for logs in Log4jAdmin web admin tool.
CRO2G-552[Related] : Voice Statistics - Progress bar.
CRO2G-551[Related] : Voice Statistics - Name of report.

Patch 14.7.002.006


bootDVD 15.6.002.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-546Missing information in notifications on REX for CCD Agent.
CRO2G-549Telephony: Call is not presented if the called device is in Secret identity.
CRO2G-550ACD Stats: SMTP server configuration improvements.

Patch 14.7.002.005


bootDVD 15.6.002.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-532HA: Event HTTP Server cannot start.
CRO2G-535[Report] : Telephony: monitoring user is delayed when starting.
CRO2G-536Report] : Second call presented to user.
CRO2G-533[Related] : Enhancement request: new statistical report creation.
CRO2G-541IMS : Wave File Reader obsolete.
CRO2G-540[Report] : License LMS regression: releasing license doesn't work.
CRO2G-543[Report] : PBX management: regression when creating user.

Patch 14.7.002.004


bootDVD 15.6.001.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-530Display inconsistency on license counters.

Patch 14.7.002.003


bootDVD 15.6.001.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-529Change date format to UTC (Web Socket).

Patch 14.7.002.002


bootDVD 15.6.001.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-523RSI: Wrong result on StartCollectDigits.
CRO2G-517Voice Statistic - New duplicated report replaces the existing one.

Patch 14.7.002.001


bootDVD 15.5.003.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-496O2G: request to get CVE-2024-27316 added in next boot DVD.
CRO2G-520Voice Reporting - Modify programming report.
CRO2G-519Voice Reporting - Cannot select the Agent.
CRO2G-521Voice Reporting - Programming window size.
CRO2G-503O2G HA upgrade or recovery: incorrect "13 -- high availability: no license available: only possible on secondary".
roxe-menu does not correct.
CRO2G-502O2G HA upgrade: license and certificate files not restored in the HA primary
or secondary recovery or upgrade process.
CRO2G-486Authentication security issue: reusing AlcUserId.

Patch 14.7.002.000


bootDVD 15.5.002.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Features

RQO2G-90O2G to support KVM virtualization.PROXMOX Version 8.2.1.
RQO2G-85O2G Voice Statistics.

Fixes

CRO2G-486Authentication security issue: reusing AlcUserId.

14.7.001

Patch 14.7.001.005


bootDVD 15.5.005.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-538PBX management: regression when creating user.
CRO2G-539License LMS regression: releasing license doesn't work.
CRO2G-537[Report] : Display inconsistency on license counters.
CRO2G-534O2G: second call presented to user.
Server error when answering it using REST application.
CRO2G-531Telephony: monitoring user is delayed when starting.

Patch 14.7.001.004


bootDVD 15.5.004.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-527Rest doc : examples and call flows files disappeared.
CRO2G-525Error when set is configured with 4635 voice mail.

Patch 14.7.001.003


bootDVD 15.5.003.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-514O2G Recording Rest Documentation.
CRO2G-513Besoin de précision sur Requêtes API PBX MANAGEMENT avec O2G.
CRO2G-510PBX Mng issue.
CRO2G-505license file is not accepted when based on @MAC, in UPPER CASE,
and with RECORDING mode activated.
CRO2G-504no possibility to (re)boot on BootDVD 15.5.002.000 after SUSE being installed.

Patch 14.7.001.002


bootDVD 15.5.002.000

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".
  • This O2G version is associated to the boot DVD 15.5.002.000.

Fixes

CRO2G-500[Report] : Unable to update external Login on subscriber through O2G.
CRO2G-492[Report] : CSTA connection not restarted.
CRO2G-494Recording: the recorder must be able to register in non secured mod.
CRO2G-490[Report] : WebSocket: schema is missing in Origin header.
CRO2G-478Missing Trunk Identification information for Passive Recording.
CRO2G-481[Report] : O2G unable to create ARS 38 route 1.
CRO2G-483[Report] : O2G unable to create board.
CRO2G-498PRS not starting. Error message "undefined symbol: gzopen64".

Patch 14.7.001.001


bootDVD 15.5.000.005

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Fixes

CRO2G-485mutiple "command not found" error message when 2 DNS server are defined.
CRO2G-473the backup is possible when the secondary server is stopped of not available.
CRO2G-476O2G unable to create NPD.
CRO2G-478Missing "Trunk Identification" information for /“Passive Recording/”.
CRO2G-474Recording Only : ACD documentation missing.
CRO2G-471flexlm invalid host. error : resolv.conf contains space in search line.
CRO2G-470Some modifications in RSI service.

Patch 14.7.001.000


bootDVD 15.5.000.005

  • If the O2G previous version is greater than or equal to 14.7.000.000, an update of boot DVD and O2G can be done.
  • Else the installation must be done "from scratch".

Features

RQO2G-84O2G Recording API refactoring.
RQO2G-16O2G - OXE/AFE Real Time Information.

Fixes

CRO2G-465O2G 14.7.000.004: O2G application not working due to no license available.
CRO2G-464Tomcat logs.
CRO2G-461OXE Security: Vulnerable JavaScript dependency. (Found by Burp).
CRO2G-458Burp test: Client-side desync.
CRO2G-460O2G Security: Cross-site scripting (reflected)_Found by Burp Suite.
CRO2G-459Burp test: Cross-site scripting (reflected).
CRO2G-462O2G Installation failed with FQDN Error with using an "-" in the TLD part.
CRO2G-436O2G configuration: the NTP server cannot be the same IP as the Default Gateway.
CRO2G-452O2G: SSH Terrapin Prefix Truncation Weakness (CVE-2023-48795) detected.
CRO2G-444O2G configuration application when entering an unexpected menu entry.
CRO2G-437[Report]:O2G 2.6/2.7: missing "nodeId" information in OnUserInfoChanged on O2G.
CRO2G-411[Report]:O2G Event when ACD agent skills activation. Request to get a notification.
CRO2G-428Backward compatibility of a license file.