Reporter for Cisco Firepower Release Notes
Reporter for Cisco Firepower 1.0.3.102 (2026-01-30)
Fixes & Improvements
  • Security update: Updated the bundled Log4j libraries to version 2.25.3 in both the Elasticsearch 5 and OpenSearch 2 packages to address CVE-2025-68161.
  • Safeguarding Report: The ‘Top Users’ widgets are now correctly sorted by ‘Total Incidents’.
  • Scheduled Reports: Fixed an issue where the validation message “Check email address!” would appear as an email address chip in Scheduled Report settings when no email address had been configured.
Known Issues
  • Video drilldowns: Drilling down into video titles from an existing report does not work (for example, hovering over a YouTube video title, then over the green arrow, and choosing a report). The filter that gets applied includes HTML characters in the video title, so it doesn’t filter the report properly and returns ‘No Data’. As a workaround, copy the video title, run a new report, click the ‘Filters’ option, and add a Media Title ‘Equal to’ filter with the video title pasted in. Fixed in 1.0.3.103.

Reporter for Cisco Firepower 1.0.3.101 (2025-12-01)
Fixes
  • Security Group filters: Fixed an issue introduced in 1.0.3.99 (Microsoft 365 integration) where reports filtered by Security Groups would return “No Data”.
Known Issues
  • Video drilldowns: Drilling down into video titles from an existing report does not work (for example, hovering over a YouTube video title, then over the green arrow, and choosing a report). The filter that gets applied includes HTML characters in the video title, so it doesn’t filter the report properly and returns ‘No Data’. As a workaround, copy the video title, run a new report, click the ‘Filters’ option, and add a Media Title ‘Equal to’ filter with the video title pasted in. Fixed in 1.0.3.103.

Reporter for Cisco Firepower 1.0.3.100 (2025-11-21)
Fixes & Improvements
  • Large emails: Fixed an issue in the new Microsoft 365 integration where a large email body could stop data import.
  • HTML entities: HTML entities in emails and Microsoft Teams messages (such as   and ") were being shown in reports. These are now properly decoded and removed.
  • Import options: The Microsoft 365 Integration import options have been renamed to Channel Messages, User Chats (Direct Messages), Emails, and Draft Emails.
Known Issues
  • Security Group filters: Reports filtered by Security Groups return “No Data”. Fixed in 1.0.3.101.
  • Video drilldowns: Drilling down into video titles from an existing report does not work (for example, hovering over a YouTube video title, then over the green arrow, and choosing a report). The filter that gets applied includes HTML characters in the video title, so it doesn’t filter the report properly and returns ‘No Data’. As a workaround, copy the video title, run a new report, click the ‘Filters’ option, and add a Media Title ‘Equal to’ filter with the video title pasted in. Fixed in 1.0.3.103.

Reporter for Cisco Firepower 1.0.3.99 (2025-11-12)
Microsoft 365 Integration

Fastvue Reporter now imports keyword-matched Microsoft Teams messages and emails directly from Microsoft 365 and displays them in the Safeguarding Report.

Fixes & Improvements
  • YouTube Videos: Improved the formatting of the YouTube Videos table.
  • Elasticsearch: Reduced the load on Elasticsearch by reducing the frequency of LoadIndex calls.
  • Entra ID: Fixed an issue with username aliasing when importing your directory from Entra ID and the firewall only logs the username without the domain.
  • Safeguarding Report: Fixed an issue where the data in the Top Users chart did not match the Top Users table.
Known Issues
  • Security Group filters: Reports filtered by Security Groups return “No Data”. Fixed in 1.0.3.101.

Reporter for Cisco Firepower 1.0.3.98 (2025-11-09)
Fixes & Improvements
  • Docker: When using Docker, the Elasticsearch auto-memory calculation now uses the container’s RAM allocation instead of the host’s total RAM.
  • Existing reports: Fixed an issue introduced in 1.0.3.96 where loading an existing report failed with the error “ErrorWidget has no blank constructor”.

Reporter for Cisco Firepower 1.0.3.97 (2025-11-03)
Improvements
  • Elasticsearch: Reduced the frequency of Elasticsearch node stats and cluster state API calls to reduce load on Elasticsearch.
Known Issues
  • Existing reports: Opening an existing report may fail with the error “ErrorWidget has no blank constructor”. Fixed in 1.0.3.98.

Reporter for Cisco Firepower 1.0.3.96 (2025-10-29)
Fixes & Improvements
  • Keyword lookups: Optimised keyword lookup performance.
  • Keyword filters: The “In Keyword Group” operator can no longer be applied to fields that don’t support keywords.
  • Report errors: Fixed a “too many buckets” error that could occur when running reports.
  • Widget errors: If a widget (table or chart) within a report fails, it no longer causes the entire report to fail. The message “An error occurred when generating this report widget” is shown instead. If all widgets fail, the entire report fails with “All widgets failed”.
Known Issues
  • Existing reports: Opening an existing report may fail with the error “ErrorWidget has no blank constructor”. Fixed in 1.0.3.98.

Reporter for Cisco Firepower 1.0.3.95 (2025-10-14)
Keyword Matching at Import

Keyword matching is now performed during log import, with the results saved into the database to improve report performance. When installing this build, each historical database index (date) will be updated over time to bake in the new keyword data. The software will continue functioning normally during this time.

A new Update Data button has been added to each index in Settings > Diagnostic > Database > Index Management to update the keyword match data in that index. This is useful after making keyword changes when you want them reflected in historical reporting.

Improvements
  • Database indexes: Tomorrow’s database index is now created 2 hours before midnight, to reduce the chance of import issues just after midnight before the new index is initialised.

Reporter for Cisco Firepower 1.0.2.94 (2025-10-14)
Fixes & Improvements
  • Security update: Updated the Apache / Ubuntu package in the Linux/Docker image to apache2:2.4.58-1ubuntu8.8, addressing the CVEs listed in the Ubuntu changelog.
  • Log import: Supports log file changes in Cisco Secure Firewall Threat Defense firmware 7.6.2.1 that were preventing log import.

Reporter for Cisco Firepower 1.0.2.93 (2025-09-22)
Fixes
  • Report errors: Fixed an issue where reports on large datasets could fail with a “too many buckets” error.
  • Elasticsearch: Fixed an issue where Elasticsearch timeouts could pause data import and cause the log queue to grow.