The following is a list of issues addressed in this release.
Resolved issue |
Issue ID |
The Required unique characters rule now evaluates the password correctly. |
432728 |
Users can now register with the Personal Email method. |
432389 |
Printing is now disabled in the Secure Password Extension browser window. The Self-Service Site help icon is now also empty if the help URL is set empty. |
425262 |
Removed all obsolete Internet Explorer dependencies and restrictions from the product. |
278249 |
Resolved issue |
Issue ID |
The Administration Site now navigates to the correct Secure Token Server configuration page when stating that there are some configuration issues with a link pointing to the configuration page. |
432924 |
On the Administration Site, the STS configuration page now sets the properties for External Federation providers correctly. NOTE: This fix will work correctly only if you save all External Federation authentication providers that you previously configured but did not work correctly. |
432659 |
The Administration Site now displays the Not configured state of the Authentication Methods activity based on its settings. |
426384 |
Previously, in the Password Policies > Policy Rules > User Properties Rule > Password must not contain > x beginning characters of a user property value setting, the default value of 0 was saved regardless of the entered value. This issue is now fixed so the entered value is now saved correctly. |
421155 |
Previously, the Reset password in connected systems through embedded connectors activity could not load its settings. This issue is now fixed so administrators can now edit the settings of this activity. |
420963 |
The Administration Site now supports ECDSA certificates. |
404015 |
The Allow user search from external network setting now stores its state correctly if the Do not allow users to search for their accounts setting is also selected. NOTE: This fix will work correctly only if you first reconfigure the Allow user search from external network option in the Administration Site. |
395034 |
Fixed certain vulnerabilities revealed by previous penetration tests. |
308651 |
Resolved issue |
Issue ID |
Helpdesk Site operators can now search for accounts across multiple domains based on the settings of the Helpdesk Site, even if domain selection is not available. |
433314 |
The Helpdesk Site now displays the User cannot change password information correctly. |
426861 |
Error pages now reflect the previously configured site customization settings. |
409587 |
Previously, the password change and reset password methods of the Self-Service Site did not support special characters. This issue is now fixed, and special characters are allowed in password inputs. |
407735 |
Resolved issue |
Issue ID |
The Self-Service Site can now load activities of the same type consecutively correctly. |
434544 |
The Self-Service Site now authenticates the user correctly in the Authentication with external provider activity if the Popup login style is in use. |
432719 |
The Password Manager Self-Service Site now uses the word server in the routes instead of api. |
427249 |
The Self-Service Site now presents HTML-coded UI text labels in custom activities. The HTML code is sanitized by default, but you can disable this behavior via the config.json file in the following location: <password-manager-folder>/Password Manager/Web/SelfService/Scripts/libs/assets/config/config.json. |
417153 |
If configured to use the pop-up login style, the Authenticate with external provider activity now correctly detects successful authentication and will forward the workflow to the next activity. |
416350 |
Previously, the Password Manager Self-Service Site could not log actions and errors. This is now fixed so that it can log according to the configuration set on the Administration Site. |
413037 |
Previously, users could not enter the Self-Service Site site if they had / (forward slash) character in the cn attribute. This issue is now fixed, so having a forward slash in the cn attribute no longer blocks entry to the Self-Service Site. |
412456 |
Previously, Self-Service Site did not provide troubleshooting information if Troubleshooting was enabled on the Administration Site. This issue is now fixed, so troubleshooting information is present and analyzing custom activities is easier. |
307341 |
Resolved issue |
Issue ID |
Fixed a potential security vulnerability in Secure Password Extension (SPE). The Chromium component of SPE has been also updated to 126.2.7. |
438569, 460592 |