Changelog 4.0-26.01.21

Prev Next

Release Date: 2026-01-21


Certificate Manager

Bug fixes

Item Description
SSGR-6321 Fixed the writing and formatting of the Batch operations > Verify revoked certificates > Actions > Verification details report.

Product Updates

Item Description
SSGR-4893 Changed the behavior of the Batch Renewal feature where now it is only possible to batch renew base certificates. After renewal, the base certificate automatically generates the corresponding new random certificates, which are no longer displayed in the Renovation report. See the documentation:
- Renovation
- How to batch renew certificates

Translation Fixes

Item Description
SSGR-7662 Fixed an issue where, by creating a request and entering an invalid password in the Store password or Revocation password, the error message wasn’t being translated to Portuguese.

Cloud IAM

Translation Fixes

Item Description
SSGR-8318 Fixed an issue where the button New in the JIT access - settings report wasn’t being translated to Portuguese.

Discovery

Bug fixes

Item Description
SSGR-8330 Fixed an issue that prevented existing credential pools from being displayed when editing a record. All available pools are now listed correctly, allowing them to be selected.

Domum Remote Access

Bug fixes

Item Description
SSGR-8376 Fixed an issue where the credentials policies' Allow simultaneous session? parameter wasn’t working properly for Domum Remote Access, causing the termination of an active session when a third-party user started a session via Domum.
SSGR-8485 Fixed an issue where, when entering an invalid token for the first time in Domum and then entering the correct token, the login was blocked for exceeding the maximum number of attempts.
SSGR-8568 Fixed an issue where, when reactivating Domum Remote Access third-party users through LDAP synchronization, the roles were not being restored.

Framework

Bug fixes

Item Description
SSGR-8357 Fixed an issue on the Schedule report form where the button to add the current report to an existing schedule wasn’t being displayed.
SSGR-8347 Fixed the Active Directory import simulation, which was ignoring the expired users filter in LDAP group sync via AD. The preview now matches the actual outcome: expired users already in the system are flagged for deactivation and valid users are preserved.
SSGR-8349 Fixed an issue in the AD user synchronization process, where the synchronization logs on the Settings > Provisioning > Active directory > Synchronization logs report screen showed repeated activation and deactivation events for expired users, even though the user remained inactive. Now, the logs are recorded clearly and accurately, avoiding duplicates in the report.
SSGR-8509 Fixed issues related to the login banner registration field in Settings > System Parameters > Global, allowing the field to be resized and ensuring that the banner display respects registered line breaks.
SSGR-8487 Fixed an issue in the notifications module where cached items were not displayed in the application. Notifications are now properly loaded from cache and the counter reflects the actual pending count.
SSGR-7715 Centralized cluster setup by making the web interface the exclusive method for configuration. The orbit cluster config command-line tool has been deprecated for this action to ensure consistency and prevent synchronization errors. See the documentation: How to manage a cluster.

Product Updates

Item Description
SSGR-8536 Fixed an issue where users with approver permissions were able to access and register new ITSM providers in PAM Core. Now, only users with administrator permissions have access to this feature.

MySafe

Bug fixes

Item Description
SSGR-8135 Fixed the translation of the term "Secret" in Portuguese, now correctly displaying the button name as “Adicionar Segredo de API” in MySafe.

PAM Core

Bug fixes

Item Description
SSGR-8656 Fixed an issue where, by starting an SSH session using the Terminal Proxy, the justification and approval workflows weren’t being displayed according to the access policy settings.
SSGR-8636 Fixed an issue where RDP Gate (RDP Proxy) sessions failed to start when the access policy required approval to begin the session. The approval workflow is now handled correctly and, once approved, the RDP session starts as expected.
SSGR-8037 Fixed the issue where text logs for certain sessions weren't being generated on specific days.
SSGR-5532 Fixed an issue where database connections would fail when the "Force MFA at Session Start" policy was enabled. The system no longer incorrectly requests a second MFA token when one is already included in the connection string, ensuring the session starts successfully.
SSGR-8616 Enhances security for the file upload feature. The directory view is now restricted to only show authorized folders, preventing access to the underlying operating system's file structure.

Product Updates

Item Description
SSGR-8511 Changed the TOTP token visibility on the credential details screen in PAM Core > Credentials > All Credentials > Credential, restricting the access to users with permission to view credentials or start sessions. See the documentation: How to access the TOTP token for a credential.
SSGR-6944 Fixed an issue where, after an RDP Web session was locked and then unlocked by the administrator, the user could only interact with the session again after closing the notification. Now, users can interact with RDP Web sessions immediately after unlocking.
SSGR-8366 Introduced a compliance validation in the Credential Backup report to flag credentials whose passwords contain the backslash (\) character as Non-compliant. The backslash message has the lowest priority in the compliance cycle and is evaluated only when all other compliance checks pass (only one rule is validated at a time).

SaaS

Bug fixes

Item Description
SSGR-8488 Fixed an issue where the "Enter" key would become unresponsive in SSH sessions (both Web and Terminal Proxy) immediately after a Sudo Automation was executed.

Task Manager

Bug fixes

Item Description
SSGR-8315 Fixed an issue when editing an executed task record in the Task Manager where plugin fields appeared empty, ensuring that the registered information is loaded correctly.