2023.10.9

Changes in Veza release v2023.10.9

Access Intelligence

New Features

  • Snowflake Data Governance Dashboard (Early Access): Veza introduces a specialized dashboard for customers using the Snowflake integration, providing a range of out-of-the-box insights, including:

    • Inert Snowflake Users and Roles

    • Snowflake Super Users and Super Roles

    • Users with Default Roles

    • Users with Privileged Access

    • Snowflake Users with Privileged Role as Default Role These insights can be accessed on the main Dashboards page under the Snowflake tab. You can customize the featured queries by editing the Snowflake Data Governance Dashboard report.

Enhancements

  • FR-1431: The maximum length for saved query descriptions is now extended to 16,383 characters.

Access Monitoring

Bug Fixes

  • EAC-27562: To prevent errors, enabling Over Provisioned Scores in Query Builder is no longer available when showing Destination Entities or Summary Entities.

  • EAC-28126: Fixed an issue with suggestions not appearing when clicking to pick entity types in Query Builder.

Access Reviews

Enhancements

  • EAC-27881: Swipe mode is now enabled by default when opening certifications on a mobile device.

Bug Fixes

  • EAC-27923: Resolved an issue where custom entity types were not shown as valid destination entity types during Workflow creation.

  • EAC-28035: Fixed an issue where exporting results from the certification view did not include all columns (such as decision or sign-off state) by default.

Enhancements

  • FR-1089, FR-1158 Entity Type Visibility in Authorization Graph: To improve Graph readability, "Service"-type entities are now hidden by default, along with some other entities such as Organizational Units, Accounts, and Domains. These entities are now shown by enabling Relationship Options > Advanced View.

Bug Fixes

  • EAC-27976: Optimized loading of time machine snapshots during query creation.

Veza Integrations

New Features

  • FR-943 CSV Import (Early Access): Administrators can now create custom providers and populate data sources directly from CSV files. Use the provided template to upload user, group, and role metadata and create OAA integrations with no command-line interaction required.

Enhancements

  • EAC-27172 SharePoint Sharing Capabilities: SharePoint Online entities now have the Sharing Capability property. This property can be queried by attribute filter, indicating the maximum-permitted sharing settings available to all children of the given tenant. To extract this property, the SharePointTenantSettings.Read.All permission must be added to the integration capabilities.

  • EAC-27995 SharePoint Lists: SharePoint Lists are now supported by default.

  • EAC-26926 SharePoint Folder Library Type: SharePoint Folders now inherit the Library Type property from their parent Library. This property can have the following values:

    • personal (OneDrive Personal Drive)

    • business (OneDrive Business Drive)

    • documentLibrary (SharePoint Library)

  • EAC-27170 SharePoint Folder - Sharing Links: Sharing Links are now listed as properties on SharePoint Folders. Folders with any Links are denoted by a boolean IsShared property, allowing users to easily query for shared Folders. Links are reported in the format <scope>|<type>|<url>.

Bug Fixes

  • EAC-27502: When configuring integrations, you can now deselect all non-required services on the Limit Services tab. For customers using Azure AD and no other Azure services, this prevents extraction of all resources outside of Azure AD.

Last updated