New in v4.2.1.16
Version 4.2.1.15 contains minor upgrades along with security and vulnerability fixes. The full set of changes can be found in the change log. Below is an overview of the improvements.
New Features
Connectors
- An Aerospike connector has been added, enabling integration with Aerospike-based systems. This expands OpenIAM’s connectivity options for organizations using Aerospike as part of their data infrastructure. More on Aerospike connector configuration and use can be found in this document.
- The SAP UME connector is now bundled with the standard distribution. This simplifies deployment and reduces setup time for customers integrating with SAP environments.
- Workday SOAP provisioning enhancement. OpenIAM now supports provisioning of a custom samAccountName attribute to Workday via SOAP, enabling more advanced and flexible integration scenarios.
Improved “Clone Rights from User” functionality
The Clone rights from user feature has been enhanced to copy not only group memberships but also access rights associated with those groups, ensuring more accurate and complete access replication.
Automatic notification in Access Certification
When a reviewer completes their portion of an access certification, the next reviewer now receives an automatic email notification. This streamlines certification workflows and reduces delays between review stages.
Enhanced UAR Reporting
User Access Reports (UAR) have been significantly improved. Large reports (approximately 17,000 rows and over 110 MB) can now be generated and saved reliably, improving performance and stability for enterprise-scale datasets.
Bug fixes
This release resolves multiple issues across:
- SelfService and Request Management (pagination, filtering, 404 navigation errors, delegation, inbox display).
- Service Catalog and User Management (role/group access selection, user type handling, password reset behavior).
- Connector and Integration Stability, including restored functionality for the Tableau connector and improved handling of large audit data.
- Security vulnerabilities, including XSS prevention and protection of sensitive configuration fields.
These fixes improve usability, reliability, and overall system stability.
Improvements
This release includes enhancements in:
- Logging and auditing clarity, including safer handling of sensitive attributes.
- Search and data model flexibility, such as filtering deactivated users and extending user type field length.
- Out-of-Office validation logic.
- Upgrade and deployment processes, including SQL packaging, RPM upgrades, Helm pipeline updates, and infrastructure updates (e.g., HashiCorp Vault and Cassandra updates).
- High availability and cluster resilience improvements
Together, these updates streamline administration, strengthen security, and improve operational reliability.