|
|
New releases 2026 JuneAugust
|
Welcome everyone.
We are pleased to inform you that Soffid new releases are now available and we have updated our download page with new versions of the Soffid components.
Please note that in Soffid 4, you will only find the Console and Syncserver on our enterprise download page. Starting with this version 4, Addons and Connectors must be downloaded directly from the internal marketplace on the Licence and plugins page. For more information, please consult our online documentation.
Below is the list of the components and changes made since the previous version was published. |
|
Soffid 4
|
|
Console 4.0.72 (from 67)
In the network discovery process, the search for service accounts has been improved to enable the detection of accounts with different naming conventions |
On the “Sync server monitoring” page, a new option has been added to send each of the logs to the syslog that has been configured. Bookstack |
On the “Password vault” page, there was an error when configuring the access permissions (owners, managers and sso users) for the folders |
Now, in some agents, when accounts are retrieved from the target system, the externalId attribute will be updated |
On the “Search in PAM recordings” page, the process for downloading video recordings has been improved. |
The mechanism for retrieving Soffid parameters (Soffid parameter page) for proxy syncservers has been changed, as they were not being refreshed until the system was restarted. Now, if a parameter value is changed, that value will be available for the next request. |
In the attribute mapping properties on the “Agents” page, all the ticked boxes were displayed even if they were not actually ticked. |
On the “Sync server monitoring” page, a new option has been added to download a full log. Bookstack |
A loading indicator has been added to the “Search in PAM recordings” page while the browser downloads the videos. |
The method for checking the “user:group:delete” authorisation has been fixed, this authorisation allows you to remove a group from a user. |
The performance of the search box in the top bar has been improved. |
When a reconcile process detects that a new account already exists in Soffid with the same externalId, an error will now be returned. |
When a reconcile process detects that a new role already exists in Soffid with the same externalId, an error will now be returned. |
On the “Issue policies” page, the quick search was not working. |
On the “Search PAM recordings” page, depending on the screen resolution, some videos used to be cropped; they will now be scaled so that they are displayed 100% within the page. |
Until now, the “externalId” field was for internal use only and was not displayed; it can now be viewed on the accounts screen. |
|
|
Syncserver 4.0.43 (from 39)
Shared accounts used by agents to obtain the agent’s password will now always be forced to remain active. |
In environments where there were multiple instances of the same syncserver, when one instance was restarted, it would detect the processes running on other instances as an error and display the message “Server restarted during execution”, but the process would continue to run correctly on its own syncserver instance |
When an agent was deactivated, its tasks were deleted, and this process could take quite a long time; it now runs asynchronously, allowing agents to be deactivated and reactivated quickly. |
Agents will now use domain passwords of the “Password vault” on Windows Server agents. |
In environments where there were several instances of the same synchronisation server, these had different URLs and caused performance issues; now they will all have the same URL. |
Improve method to set domain password in agents |
On the “Sync server monitoring” page, a new option has been added to send each of the logs to the syslog that has been configured. Bookstack |
The update of the externalId attribute has been added to reconciliations, for both roles and accounts. |
|
|
Federation addon 4.0.40 (from 37)
Communication between the sync servers has been improved because communication from one sync server to another sometimes took a long time. |
When connection bursts are detected via ESSO, an issue of the type “esso-failed-login” will be created. |
On the “Attribute definition” page, the last modified date was not being updated when an attribute was updated or deleted. |
In a Virtual Identity provider, when configuring a workflow for user registration or progressive profiling, it was not starting correctly. |
The performance of the configuration update for virtual identity providers has been improved. |
On the “Service providers” page, when configuring the “Script to filter out group membership”, you can now use the “serviceProvider”, the “authenticationMethod” and the “accountName” attributes. New feature |
From now on, you will be able to use a colon character in an agent’s name. |
In some cases, the system was not correctly recording whether the login required a password or a password plus an OTP. |
In some cases, when using adaptive authentication, the system incorrectly requested an OTP when it should only have requested a password. |
When an IDP was running across multiple instances, the process of purging expired sessions would delete sessions that were actually active on the other instance. |
CPU usage has improved following changes to the IDP settings. |
|
|
GoogleApps plugin 4.0.1 (from 0)
We have updated our Google permissions to adapt to their changes. |
We have updated the actions we carry out on Google to adapt to its changes. |
The agent has been modified to store the password in a shared account published in the password vault. |
|
|
SQL plugin 4.0.2 (from 1)
Drivers have been added to the connector to enable us to connect to an AS400 system. |
When a query was executed using the “invoke” function, null values were not being detected correctly. |
|
|
Windows plugin 6.0.16 (from 15)
The “Active Directory only password” agent has been migrated from version 3 to version 4. |
When the property “key” contained a space, an error was generated. |
The “createDisabledAccounts” property has been duplicated; it has now been normalised. |
|
|
ESSO 3.5.52-enterprise (from 50) [Soffid 4 & Soffid 3]
It is now possible to configure the ESSO properties using /cfg variablename. Bookstack |
Modify the device posture checking to detect more than one antivirus. |
When using pam desktop, when elevating privileges, the Soffid options will now appear first instead of the Windows options. |
|
|
Soffid 3
|
|
Console 3.6.76 (from 75)
Global SAML logout has been enabled; a service provider can now completely log the user out of the federation. |
When logging out of the Soffid Console, a button has been enabled to completely close the federation session. |
|
|
Federation addon 3.6.94 (from 93)
When using a proxy to retrieve the source IP address via the X-Forwarded-for header, in some cases it returned an extra comma along with the IP address. |
|
|
Oracle plugin 2.2.6.17 (from 14)
Role profile management has been added (table DBA_PROFILES). |
A transaction carried out during logon has been modified, as it sometimes failed. |
|
Thank you very much for your time, and see you next month!
Best regards,
The Soffid Team |
©Copyright Soffid 2025 |
 |
|
|