2023.6.26

Changes in Veza release v2023.6.26

Integrations

New Features

  • AWS Secrets Manager: Veza now supports searching and monitoring User and Role permissions on AWS Secrets.

    • The AWS integration now discovers new entity types Secrets Manager Service and Secrets Manager Secret, and Secret attributes such as last rotated and last accessed dates.

    • New out-of-the-box assessment queries: AWS Secrets Manager secrets that haven't been rotated for 90 days and AWS IAM Users with permission to delete Secrets Manager secrets.

    • Note that the integration trust policy now includes the secretsmanager:ListSecrets action. You should update your policy within AWS to avoid warnings, or edit the integration and choose Limit AWS Services > Secrets Manager.

Enhancements

  • Improved error handling for the Box integration.

Search and Insights

Enhancements

  • When saving a query, you can now apply an existing label or create a new one.

  • When saving a query and adding it to a report, you can now choose a report section for the query.

Bug Fixes

  • Fixed an issue with queries that could cause alerts to trigger incorrectly.

Workflows

Enhancements

  • Early Access: Reviewers on mobile devices can now use the Approve and Sign-Off action.

  • Improved performance when creating certifications and when loading certification results.

  • The grace period for marking expired certification results as Fixed after a certification has expired (default 7 days) is now configurable by the Veza support team.

Last updated