2024.4.1

Changes in Veza release v2024.4.1

Access Intelligence

New Features

Enhancements

  • EAC-32794 Risks usability: You can now filter and sort the Risks page by label or integration, and search by risk name or query name. The list of risks is now paginated for improved performance.

Access Monitoring (Early Access)

Enhancements

  • EAC-33272 Last activity details: Query Builder now shows a Last Activity with Resource At column indicating when a principal last interacted with a resource.

    The column appears for Activity Monitoring Queries, after enabling the Show {destination entities} option to include the destination in results.

Access Reviews

Enhancements

  • EAC-33401 Share links for filtered views: Reviewers now have the option to copy a shareable link to the current filtered set of results. Opening a review now applies the filter specified in the URL. This feature is now generally available.

  • EAC-33399 Tags in Access Reviews: The option to show tags on source or destination entities in additional columns is now generally available.

  • EAC-33400 Custom help pages: Help Page Templates are now generally available. Custom help pages are now shown when opening a review for the first time or clicking the User Guide button.

Access Visibility

Enhancements

  • EAC-33174 AWS Unsupported condition icons: AWS entities in Graph search now have an icon to indicate if the Unsupported Condition property is True.

Bug Fixes

Lifecycle Management

Enhancements

  • EAC-33369 Filter events for changes: The provisioning activity log now includes a Changes Only toggle to filter only actions that resulted in a change to the target system.

Veza Integrations

Enhancements

  • EAC-33423 HashiCorp Vault identity mapping: Added support for local users accessing Vault with the Okta authentication method. Vault aliases now have an idp_unique_id property, which you can use to configure Custom Identity Mappings for Okta and Vault.

  • FR-1915 Contained Resources for Okta Admin Roles: The Okta integration now creates Okta Constrained Resource and Constrained Resource Set entities indicating the resources associated with each admin role. Additionally, Okta Role Assignments now connect users and admin roles. This enables search and access reviews on relationships such as User > Role Assignment > Role, Role Assignment > Resource Set > Constrained Resource, and Role Assignment > Constrained Resource.

  • FR-1161 Salesforce Opportunities (Early Access): Veza now supports Opportunity entities, used to represent and track potential deals in Salesforce. This feature must be enabled by our support team, and requires additional permissions for the Veza service principal.

Bug Fixes

Veza Platform

Enhancements

  • EAC-33609: Added an option to delete local accounts associated with single sign-on users on the Administration > User Management page.

  • EAC-32880: When enabling SSO, you can now download a public certificate used by Veza to sign single log-out (SLO) requests.

Last updated