github inverse-inc/packetfence v14.1.0

latest release: stable
3 days ago

The Inverse team is pleased to announce the immediate availability of PacketFence 14.1 - a minor release bringing many improvements!


Here's the complete list of changes included in this release:

New Features

  • Upgrade to FreeRADIUS 3.2.6 (#8290) - Fixes RadiusBlast, enhances RADIUS security, and improves client and proxy handling.
  • NTLM Auth multi-threaded machine-accounts (#8335) - Boosts authentication performance and scalability.
  • OS based Cisco Switch Modules (#8365) - Simplifies setup and improves Cisco device compatibility.
  • Secrets encrypted at rest (#8406) - Strengthens security by protecting sensitive data.

Enhancements

  • Use proxysql packages in the docker image instead of compilling from the sources (#8267)
  • Move SSO options to Firewall SSO from Advanced (#8303)
  • PKI - Multiple certificate with same Common Name (#8310)
  • Improved Ruckus Unbound DPSK (#8315)
  • Improved Docker images (#8337)
  • Support for case-insensitive LDAP Explorer attributes (#8366) @E-ThanG
  • Custom taggable LDAP Explorer attributes (e6435e8)
  • Performance improvements on pfacct (#8369)
  • Added Aruba-MPSK-password attribute (#6957)
  • Reduce time to flush the RADIUS log (#8397)
  • Improve DPSK (#8356)
  • Improve Mikrotik Disconnect (#8418)
  • Select the first device that matches MFA (#8400)
  • Improve pfdhcp DB connection (#8419)
  • Track TLS certificate attributes per node (#8416)
  • Kafka UI Config (#8421)
  • Netdata Upgrade (#8399)
  • Updated Cisco-WLC AireOS WiSM module (#8455)
  • FortiGate syslog DHCP parser (#8459)
  • Improved regex for Forti-analyser (#8470)
  • Update documentation for node-specific domain configuration file (#8437)
  • Add ProxySQL metrics to Netdata (#8502)
  • Add Webauth, DPSK and unbound DPSK for Juniper Mist (#8495)
  • Improve NTLM Auth API logging (#8516)
  • Update ip4log on RADIUS authentication request with Framed-Ip-Address (#8521)

Bug Fixes

  • Don’t generate all the time a mac address when using the GenericVPN switch module (#8270)
  • Add missing parameters for authentication rule match (#8306)
  • Fixed the dynamic role assignment issue for Aruba switch modules (#8331)
  • Show only registered nodes on status page (#8382)
  • Fixed pfperl-api restart (#8391)
  • Fixed deauthOnPrevious with webauth (#7319)
  • Fixed IP resolution on LDAP SSL verification (#6808)
  • Fixed NAS-Port to ifIndex on Comware v7 switches (#8062) @bmp96
  • Fix Debian sudoers (#7908) @andrew-grasso
  • Fix Clickatell Messages (#7623)
  • Fix Fingerbank profile overwrite (#8468)
  • Clear person lookup cache after deleting a person (#8460)
  • Fix pfconnector TCP/UDP port allocation (#8446)
  • Fix set VLAN on generic SNMP switch (#8486)
  • Fix unbound DPSK in Ruckus and OpenWifi switch module (#8496)
  • Fix machine account creation on cluster (#8512)

Security Fixes

Don't miss a new packetfence release

NewReleases is sending notifications on new releases.