Changelog
Version 3.22
version release 02/03/2022
Check below the new features, improvements and errors fixed in this version of senhasegura.
Here you will find the changes of the entire senhasegura platform. Part Number changes are not considered in this document. Consult your sales representative to purchase other features.
For details on which features have been improved or fixed, check the section of each module.
For more details on how new items or improvements were introduced into the solution, see the documentation.
Release highlights
Automatic submission of high risk sessions for auditing
The administrator can now configure that all high-risk sessions are automatically submitted for auditing. To do so, just enable the parameter Submit high-risk sessions to audit? available in Settings ➔ System Parameters ➔ System Parameters ➔ User Behavior.
Configuration of an auditor user is required. The high-risk sessions will be sent so he can review them.
Triggers for recording a session on senhasegura.go for Linux
All sessions that comply with the Binary Run directive and are Allow in an access policy will have their session automatically recorded.
The administrator will be able to create multiple access policies and define in which situations the sessions must be recorded.
Publishing certificates in NetScaler
New plugin for publishing certificates in Citrix NetScaler available.
To use it, just select the NetScaler option in the Publishing plugin during the certificate publish configuration.
SSH execution plugin update
This update ensures security and compatibility with new algorithms for creating and exchanging SSH keys. Executions that use SSH as a plugin will be automatically updated.
Devices that only support SSH-1 should use the SSH V1 plugin in the options.
Network Connector
Network Connector allows users to perform sessions on devices located on networks where senhasegura server does not have connectivity or networks with IP overlapping.
For more information, access the Network Connector manual.
Segregation of Protected Information registration API parameters
Now the information for registering protected information has been separated and can be sent individually. The new fields are:
- name (required)
- type (required)
- content (required)
- service
- url
- users_allowed
- identifier
It is necessary to refactor integrations before the senhasegura update so that errors do not occur in services that are integrated through this API.
Changelog per Module
senhasegura
Item | Description |
---|---|
New Feature 3496 | Added support for senhasegura Network Connector. |
New Feature 3466 | Added French web interface translation. |
New Feature 3678 | Added Russian web interface translation. |
Improvement 3492 | Added on the device registration screen the option to select from which Network Connector the connection will be made. |
Improvement 3486 | Added monitoring for unusual changes to credential password change. |
Improvement 3183 | Added link to session details in suspicious session notification email. |
Improvement 3365 | Changed the RDP shortcut file so that it comes with the application name instead of the IP of the main instance. |
Improvement 4083, 3715, 3641, 3454, 3659, 3502 | Improvements in solution translations. |
Improvement 3240 | Added new exclusive permissions for managing Tentants. |
Improvement 3239 | Added the Tenant selection combo in the user creation and editing screen. |
Improvement 3223 | Changed in Settings ➔ Authentication ➔ Active Directory ➔ group synchronization the field name User Filter to AD query and field limit to 2048 characters. |
Improvement 3185 | Improved user experience with SAML-related screen naming and actions standardizations. |
Improvement 2741 | SSH execution plugin update. |
Bugfix 3853 | Fixed bug in report filter Settings ➔ Services ➔ Storage Files. |
Bugfix 3727 | Fixed in PAM > Credentials > all when clicking on view authorization and opening the justification screen for the date component blocking access approval at the turn of the day. |
Bugfix 3723 | Fixed purge issue of session files in clustered environments. |
BugfiX 3555 | Fixed It was fixed a bug that caused the password view report in Reports > Events > Password view to not be coming with the action filter filled. |
Bugfix 3545 | Fixed the error in the text field of the pagination of the reports of the module Reports. |
Bugfix 3505 | Fixed a bug in the Information Protected expiration notification that allowed a user to be listed more than once in the grid. |
Bugfix 3501 | Fixed bug in batch import of Protected information that is registered with service users. |
Bugfix 3456 | Fixed error in the presentation of data that was modified in senhasegura Web Proxy when scrolling the page. |
Bugfix 3237 | Fixed access group registration layout error. |
Bugfix 3224 | Fixed error that occurred when making changes to a provider without the Client Secret populated. |
Bugfix 4108 | Fixed bug when performing batch import of file with Cyrillic characters. |
Deprecated 3415 | Removed the Screen View report that was in Reports ➔ Access to the system. |
Security 2690 | Added the feature that allows automatic submission of high-risk sessions to system auditors. |
Terminal Proxy
Item | Description |
---|---|
Bugfix 4095 | Fixed bug that prevented logging into devices using personal credentials. |
RDP Proxy
Item | Description |
---|---|
Bug Fix 3720 | Fixed the error that prevents the use of strings in Devangari in the registration system fields. |
Cloud
Item | Description |
---|---|
Bugfix 3561 | Fixed a bug that prevented the correct Provider Provisioning Profile, when the checkbox was selected. |
WebService A2A
Item | Description |
---|---|
Bugfix 3561 | Fixed a bug that prevented the Dynamic Provisioning Profile from being saved correctly when the provider box was selected. |
DSM
Item | Description |
---|---|
New Feature 3340 | Added DSM ➔ Events ➔ API Logs report which shows DSM API usage logs. |
New Feature 1064 | Added the DSM ➔ Events ➔ Audit tracking report with information about changes in Secrets, Applications and Authorizations. |
Improvement 1442 | Added status if it generates an error when dynamically provisioning a secret. |
Bugfix 3562 | Fixed bug that caused ephemeral credentials to not be queried via API. |
Orbit Command Line
Item | Description |
---|---|
Improvement 3721 | Improved support for Latin and Germanic special characters. |
Scan & Discovery
Item | Description |
---|---|
New Feature 3683 | Added support for certificate discovery in Citrix NetScaler. |
Improvement 3554 | Improved Discovery ➔ Discovery ➔ Devices report for displaying credentials used by services. |
Improvement 3483 | Added support for credential discovery in PostgreSQL. |
Bugfix 4104 | Fixed the error when importing credential found by a discovery. |
Domum
Item | Description |
---|---|
Improvement 3402 | Improved vendor edit screen for photo display. |
Improvement 3393 | Improved user experience with standardization of screen names and actions. |
Bugfix 3600 | Fixed the bug where the user was transformed into a third party. |
senhasegura.go for Linux
Item | Description |
---|---|
New Feature 3552 | Added in Go ➔ Linux ➔ Access Policies when creating New Rule the Alias tab in the Access policy Register screen that allows the creation of command aliases through of PEDM Linux. |
New Feature 3447 | Added the option to create new policies through reported events. |
New Feature 3069 | Added the functionality that allows the creation of Access Policy to start recording the session automatically. |
Improvement 3551 | Improved user experience in viewing PEDM Linux event report. |
Orbit Web Interface
Item | Description |
---|---|
New Feature 3743 | Added in the Orbit ➔ Replication ➔ Elasticsearch module the status of the data search engine to track the cluster report. |
Bugfix 3969 | Fixed internal firewall blocking issues when mounting the cluster. |
Certificate Manager
Item | Description |
---|---|
New Feature 3684, 3556, 3683, 3895, 3897 | Added certificate publishing using Netscaler plugin. |
Improvement 3448 | Improved certificate publishing plugin template using Nginx. |
Bugfix 3228 | Fixed error when viewing User Signing Certificate details. |