Skip to main content

SecureAuth IdP 9.3 release notes

Requirements for upgrading to version 9.3

See SecureAuth Identity Platform version 19.07+ appliance installation and upgrade information for prerequisites and important installation information.

Released on January 21, 2019

9.3.0 New features

Ref ID

Feature

References

----

Behavioral Analysis Powered by Machine Learning – Analyze user behavior for suspicious activity. Boost identity protection by unmasking attackers masquerading as legitimate users and uncover hard to detect insider threats.

Machine learning user risk score calculations

IDP-934

Support for Proof Key for Code Exchange (PKCE) Standard – The PKCE standard helps prevent man-in-the-middle attacks, or interception of authentication information, between users and systems.

OpenID Connect and OAuth 2.0 configuration

IDP-1132

Inline initialization Enhancement – Users can now be redirected to a self-service page to update their profile with missing data and then continue the authentication process. This helps preserve user experience while minimizing administrator and helpdesk involvement.

Inline Initialization - Self-service profile update

IDP-3049

Windows SSO / IIS enhancement saves some web.config settings in the user interface.

Windows desktop SSO configuration

IDP-3191

Self-service Password Reset support available for eDirectory.

IDP-3245

SP metadata upload feature available for application integrations created in the new user interface.

SAML Application integration

IDP-3291

Application onboarding feature added in the new user interface.

App onboarding

IDP-3292

Reusable Directory Integration Objects – Instead of completing directory integration work every time a new application or system is deployed, administrators can now build directory integrations once and reuse them. When changes need to be made, they are made once and propagated through the environment automatically. This enhancement saves significant administrative time and resources.

Directory integrations

IDP-3451

New Cloud-based Architecture – With the move to a cloud-based architecture, your administrators can get the most up-to-date settings, features, and enhancements without undergoing time-consuming upgrades.

IDP-3594

Application Template Library – Application on-boarding has been streamlined and shortened with the creation of a library of application templates. Instead of building integrations for each application individually, administrators can now simply pick the applicable template from a pre-defined library. For templates not yet built, we can accelerate the process by auto-populating fields.

Application template library master list

IDP-3768

Customizable PIN Length – To increase security, administrators can now configure the length of PINs, making them longer and more difficult for attackers to guess. Instead of the default 4-digit PIN, administrators can choose a 4, 6, 8, or 10-digit PIN. The longer the pin, the less likely it will be compromised.

Multi-factor app enrollment QR code configuration

Multi-factor app enrollment URL configuration

IDP-3949

Create User support available for eDirectory.

IDP-4130

Inverted User Risk Score – SecureAuth IdP can consume third party risk scores for use in evaluating authentication risk, but varying solutions present risk differently. With this release, SecureAuth IdP is able to change the risk score scale to accept scores that are presented in varying formats.

Adaptive Authentication configuration