Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Note that 7.37.x is a functional copy of 6.37.x and should only contain minor differences caused by platform 7.

Changelog

Excerpt

Changes in 7.37.17

Release summary: SAML/OIDC related minor bug fixes

Bug fixes

  • Status
    colourBlue
    titlesaml/oidc
    Allow whitespace to hide specific texts on login pages like

  • Status
    titlemisc
    Better handling of internal URLs for Force login

  • Status
    colourBlue
    titlesaml/oidc
    Fix default redirect rules override for JSM

  • Status
    colourBlue
    titlesaml/oidc
    Fix ability to disable IdP icons

Changes in 7.37.16

Release summary: Fixed bug on scim user and group sync

Bug fixes

  • Status
    colourBlue
    titleSCIM
    Fixed bug on scim user and group sync occurring on newest Atlassian platforms

Changes in 7.37.15

Release summary: Fixed bug with websudo button showing up without websudo being enabled

Bug fixes

  • Status
    colourBlue
    titlesaml/oidc
    Fixed issue where the “Reauthenticate with SSO” button for websudo was shown without Jira prompting the user for reauthentication.

Changes in 7.37.14

Release summary: Bug fixes

Bug fixes

  • Status
    colourRed
    titlesaml/oidc
    Newly introduced Bitbucket & Bamboo websudo (secure admin session) did not isolate to the given host product and gave failure on Jira

  • Status
    colourRed
    titlesaml/oidc
    An additional closing bracket ')' snuck into the DOM of the SAML/OIDC login page

Changes in 7.37.13

Release summary: Google Workspace API connector bug fix

Improvements

  • Added a utility page under dark-features for viewing and editing groups in specific user directories on the URI /plugins/servlet/no.kantega.kerberosauth.kerberosauth-plugin/showGroupsInDirectories

Bug fixes

  • Status
    colourRed
    titleapi connector
    Google Workspace API connector sync failed after incorrect JSON object key for isArchived and isSuspended on the fix in 7.37.10

Changes in 7.37.12

Release summary: Bug fixes

Bug fixes

  • Status
    colourBlue
    titleFederated sso
    Fixed the Continue-button on the login screen not working when trying to log in with username/password.

  • Status
    colourYellow
    titlekerberos
    Config upgrade logic introduced in 7.37.4 incorrectly checks for breaking changes comparing incorrect versions.

Changes in 7.37.

0

Release summary: Added support for custom API token authorization header

Changes

This is a functional copy of 6.37.0. See https://kantega-sso.atlassian.net/wiki/spaces/KSE/pages/1793261569/Kantega+SSO+Enterprise+6.37.x+release+notes#Changes-in-6.37.0

11

Release summary: Bug fix of config upgrade logic and dependency update

Improvements

  • Status
    titlemisc
    Update bouncy castle dependency from 1.78 to 1.80 to patch CVE-2024-29857, CVE-2024-30171, CVE-2024-30172.

Bug fixes

  • Status
    colourYellow
    titlekerberos
    Config upgrade logic introduced in 7.37.4 incorrectly checks for breaking changes comparing incorrect versions.

Changes in 7.37.10

Release summary: Improvements, bug fixes and dependency updates

Improvements

  • Status
    colourBlue
    titlesaml/oidc
    Websudo SSO is now available for Bitbucket and Bamboo

  • Status
    titlemisc
    Update dependencies

Bug fixes

  • Status
    colourRed
    titleApi connector
    Google Workspace API connector did not update archived users as “not active” during sync

  • Status
    colourBlue
    titlesaml/oidc
    Make manual redirect more available on login page when users enter username

Changes in 7.37.9

Release summary: Bug fix for prevent traditional login

Bug fixes

  • Status
    titleMISC
    Fixed a bug with prevent traditional login introduced with 7.37.8

Changes in 7.37.8

Info

This release has been made private due to a discovered bug with prevent traditional login. Please use 7.37.9 instead.

Changes in 7.37.8

Release summary: Fixes in JSM and in Jira handling root page “/” better on Jira 10+

Bug fixes

  • Status
    colourBlue
    titleKerberos
    Make Kerberos work in all cases for JSM portal login page

  • Status
    titlemisc
    Handle SSO login for root page

  • Status
    titlemisc
    Better handling prevent traditional login (with username / password) for unlicensed users

Changes in 7.37.7

Release summary: Added support for Confluence 9.3

Improvements

  • Status
    colourGreen
    titleCloud user provisioning
    The cloud user provisioning overview now shows if a connected user directory is disabled

  • Status
    titlemisc
    Added support for Confluence 9.3

Bug fixes

  • Status
    titlemisc
    Fixed bug where some group selectors were unable to load groups

  • Status
    colourBlue
    titleTraditional login
    Fixed assigning groups on traditional login

Changes in 7.37.6

Release summary: Bug fixes for API tokens

Bug fixes

  • Status
    colourYellow
    titleAPI Token
    Fixed bug where non-admin users could not create tokens if maximum token lifetime was set to forever

  • Status
    colourYellow
    titleAPI Token
    Fixed unnecessarily noisy logging in some scenarios

  • Status
    colourBlue
    titleKerberos
    Fixed Kerberos logging in users trying to log out on Jira 10

Changes in 7.37.5

Release summary: Fixed SAML/OIDC bug with target after redirect containing the entire URL

Bug fixes

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed SAML/OIDC bug with target after redirect containing the entire URL.

Changes in 7.37.4

Info

This release removes the login logic from Jira dashboards since the login widget does not exist with the new login interface. This means that Kerberos will no longer trigger when visiting the dashboard unless Force Login is enabled and configured to use /* as a force path.

Force login

Release summary: Bug fixes. Improved UX on disable Kerberos.

Improvements

  • Status
    colourBlue
    titleKerberos
    Reworked “Disable Kerberos” to improve UX and make the feature easier to understand.

Bug fixes

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed issue with Single Logout in Jira.

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed issue with IdP button not being clickable with certain configurations.

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed bug where using SAML/OIDC would remove the title of Jira dashboards.

Changes in 7.37.3

Release summary: Bug fixes for prevent traditional login and initial SAML signing certificate

Bug fixes

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed prevent traditional login not working well with manual redirect for users permitted to log in with username/password

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed problem when setup of first identity provider where SAML signing certificate was created

Changes in 7.37.2

Release summary: Added support for generating 4096 bit certificate for SAML Request Signing

Improvements

  • Status
    colourBlue
    titleSAML/OIDC
    Added option to generate certificate for SAML Request Signing with size of 4096 bits

Bug fixes

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed problem with reactivating users who are both deactivated and missing license group

Changes in 7.37.1

Release summary: Various bug fixes and improvements

Improvements

  • Status
    colourBlue
    titlekerberos
    Improved error handling for LDAP test

  • Status
    colourBlue
    titleSAML/OIDC
    Changed default behaviour to include username/password link

  • Status
    colourGreen
    titleSCIM
    Updated UI for SCIM setup wizard

  • Status
    colourGreen
    titleSCIM
    Added lozenge for showing local groups in group list

  • Status
    colourGreen
    titleUser management
    Added the option to copy groups and memberships to read-only directories

  • Status
    colourGreen
    titleUser management
    Added an overview to make discovering duplicate groups easier at /showGroupsInDirectories

Bug fixes

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed instant redirect trigger on JSM despite being disabled

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed redirecting user to the page they attempted to visit before being sent to IdP for Bitbucket

  • Status
    colourGreen
    titleUser management
    Fixed issue with viewing groups containing &

  • Status
    colourBlue
    titleSAML/OIDC
    Fixed SSO for Bamboo and JSM

Changes in 7.37.0

Release summary: Added support for custom API token authorization header

Improvements

  • Status
    colourYellow
    titleAPI Token
    Added support for custom API token authorization header

Bug fixes

  • Status
    colourGreen
    titleAPI COnnector
    Entra ID API connector will no longer crash during synchronization when user or group filtering is enabled and a nested group matching the filter contains a group not matched by the filter.