Endpoint Privilege Management SaaS 24.8 release notes
December 12, 2024
Requirements
- Microsoft .NET Framework 4.6.2 (required to use EPM Windows adapter)
Note
For more information about Windows or macOS requirements, see the Privilege Management Release Notes.
Enhancements
Updated Windows and macOS message previews to more accurately reflect the operating system display where the endpoint is deployed.
-
Windows Hello and TouchID can be configured without requiring a password.
-
TouchID authentication is now integrated into EPM-M messages.
-
Policy Assistant is now a tab accessible from the Policy Editor navigation pane.
-
Added more in-depth checks to policy with a focus on Windows elevated and passive allow single matcher application definitions.
Increased the maximum number of characters allowed for fields on the Create Webhook page (Configuration > Webhook Settings).
Auditing now includes JIT Admin events. Select Auditing > Just-in-time (JIT) Access Auditing > Admin Access Auditing tab.
The columns displayed by default:
- Ticket Number
- User
- Computer Name
- Reason
- Decision Performed By
- Time of Request
- Decision
- Decision Duration
- Decision Start Time
- Decision Time
We’ve improved the flexibility of filtering for strings.
Strings which can have many possible values (listed below) can now be searched using a substring contains match.
These text box filters require a minimum of 3 characters to ensure the search remains performant. Matching results are updated in the grid.
- App Description
- App Name
- Publisher
- User Name
- Host Name
- Host Domain
- Service Display Name
- Service Name
- Store App Name
- COM Display Name
The Applications page and Application Details page can now be filtered by Policy Name and Workstyle Name.
Can now delete user accounts which removes all personal identification information (PII) to meet compliance standards (required in some regions). Deleting user accounts will not affect information previously handled by those users.
Issues resolved
Product Area | Description | Resolution |
---|---|---|
Policy Editor | When copying applications and application groups that use other application groups (child or parent process), the parent or child group was not included as part of the copying process. | Copying an application that includes a child or parent application group will now include all information. |
Computers | Incorrect policy status on computers. Computers on the assigned policy would report as Awaiting Policy Update, if the policy they were on was not the latest revision. | Computers now report On Assigned Policy as expected. |
Dashboard | Clear Filters button on the dashboard is not resetting the Operating System filter. | Clear Filters button on the Dashboard is now resetting the Operating System filter to Windows. |
Adapter install | The Adapter installer should not copy configuration from Package Manager during upgrade. | The adapter installer no longer copies Package Manager configuration information. |
Analytics | Events export slow | Added performance improvements to the CSV export of data from the Events page in Analytics. |
Computers | Computers grid is loading too slowly | |
JIT Application access | Cannot navigate through JIT Application Access request details using breadcrumbs (JIT Access Management > Admin Access Request > Details) | Users can navigate using the breadcrumbs. |
Adapters | Fixed an issue that was causing adapters to be upgraded via old Package Managers after the computer is deleted from EPM. |
Components:
- PM Reporting Database: 23.9.13
- Web Policy Editor: 24.8.191
- PMR UI: 24.8.38
- Event Collector: 24.8.5
- PM Cloud: 24.8.446
Compatibility
Important
Do not install a new adapter version before you are running a version of Endpoint Privilege Management SaaS that supports it. Installing an unsupported adapter can result in endpoints that no longer connect. You will be notified before your instance of Endpoint Privilege Management SaaS is upgraded.
Supported Versions
- PM Windows adapter: Recommended: 24.8.446 | 24.7.831 | 24.6.697 | 24.5.1037 | 24.4.361 | 24.3.766 | 24.2.499 | 24.1.581 | 23.9.578 | 23.8.515 | 23.7.356 | 23.6.562 | 23.5.516| 23.4.424 | 23.3.256 | 23.2.506 |23.1.942.0
- PM for Windows: Recommended: 24.8.98.0 | 24.7.425.0 | 24.5.361.0 | 24.5.351 | 24.3.294.0 | 24.1.108.0 | 23.9.225.0 | 23.7.150.0 | 23.6.76.0 | 23.5.212 | 23.3.130.0 | 23.1.259.0
- PM for macOS: Recommended: 24.8.0.1 | 24.7.0.1 | 24.5.2.3 | 24.5.1.1 | 24.5.0.1 | 24.3.0.1 | 24.1.0.1 | 23.9.0.1 | 23.7.0.3 | 23.5.0.3 | 23.3.1.1 | 23.3.0.1 | 23.1.0.1
- PM macOS adapter: Recommended: 24.8.0.1 | 24.7.0.1 | 24.5.2.3 | 24.5.1.1 | 24.5.0.1 | 24.3.0.1 | 24.1.0.1 | 23.9.0.1 | 23.7.0.3 | 23.5.0.3 | 22.5.1.1 | 23.3.0.1 |23.1.0.1
- PM Rapid Deployment Tool for Mac OS: Recommended: 24.8.0.1 | 24.7.0.2 | 24.5.0.1 | 24.3.0.1 | 24.1.0.1 | 23.1.0.1 | 23.9.0.1 | 23.7.0.1 | 23.5.0.1 | 23.3.0.1 | 23.1.0.1
- PM Response Generator for Windows: Recommended: 24.8.98.0 | 24.7.425.0 | 24.5.361.0 | 24.5.351.0 | 24.3.294.0 | 24.1.108.0 | 23.9.225.0 | 23.7.150.0 | 23.5.212 | 23.3.130.0 | 23.1.259.0
- PM Response Generator for macOS: Recommended: 24.8.0.1 | 24.7.0.1 | 24.5.2.3 | 24.5.1.1 | 24.5.0.1 | 24.3.0.1 | 24.1.0.1 | 23.9.0.1 | 23.7.0.3 | 23.5.0.3 | 23.3.1.1 | 23.3.0.1 | 23.1.0.1