Changes for v2.5.2
-
Improvements
- Authentication token store was redesigned to improve security measures (SEC-3389)
- Automatic logout after a period of inactivity can now be prevented without needing to re-enter password (SEC-3670)
- Delete organization now requests the word DELETE instead of a full organization name (SEC-3455)
- New filter for Regulation Checklists added to Security Posture and Security Requirements Catalog (filter values not remembered yet) (SEC-3525)
- User passwords are now protected with additional obfuscation in addition to standard HTTPS encryption (SEC-3636)
Bug Fixes
- Adding a new entry in Regulation Catalogue triggered an unsaved changes modal even after save operation (SEC-3621)
- Attempt to include @ in username resulted in an empty error message (without any text) (SEC-3512)
- Cloning system dashboard wrongly set widget name on cloned layout to Select Tenant instead of Select Organization (SEC-3660)
- Expired license threw license errors on Account screen, which is not license relevant (SEC-3671)
- In User Management it was not possible to unassign RBAC role by clicking on x next to a role (SEC-3659)
- Missing thresholds exclamation mark now properly disappears once all thresholds are set (SEC-3451)
- Missing translations added to filters in asset, owner, and report browsers (SEC-3404)
- Organization selector in User Management showed even organizations that were impossible to be managed (if user was only License User for them) (SEC-3663)
- Regulation Checklist – breadcrumb failed to navigate back to a view with a pre-selected regulation (SEC-3652)
- Requirement Clauses subtable in Requirement Catalogue was missing data in Regulation Checklist column (SEC-3583)
- Selection of menu entry in Organization group failed to properly highlight organization section (SEC-3669)
- Several reports in browser and viewer mode were missing translation strings for column names (SEC-3637)
- Several subtables showed the same value in both Description fields — one is for core object description and the second is for description of mapping relation (SEC-3517)
- Some reports were missing tooltips showing full column name for an abbreviated column name (SEC-3494)
- Some users were not provided a recovery code on 2FA setup screen (SEC-3658)
- Sorting based on Format column in Report Manager was incorrectly sorting Risk Register reports (SEC-3501)
- Users without License Admin role were always shown “No license assigned” on License information on Select Organization screen instead of “Valid” or “Invalid” (SEC-3662)
- Word Tenant was used instead of Organization in error toast in wizard when organization name already existed (SEC-3630)