SaaS

SaaS Release Notes - June 19, 2023

Production release notes - June 19, 2023

Release notes might contain references to new features, enhancements, and fixes that will be gradually turned on in production over the next several weeks. See the SaaS Functional End of Life and Major Changes Policy.

Identity Security Cloud is SailPoint's next-generation identity security solution. It encompasses and builds on features and functions from IdentityNow. The release notes cover both Identity Security Cloud and IdentityNow features.

New features

ProductWhat's new

Connectivity - Active Directory

The Microsoft Active Directory connector now supports to aggregate the domain “NetBIOSName” attribute as a part of account and entitlement aggregation.

Enhancements

ProductFeature enhancements

IDN Access Request

Entitlement Display Name and Description updated in Entitlement Aggregations
IdentityNow can now aggregate changes in entitlement display names and descriptions made in the source system while preserving any manual changes made directly in IdentityNow. Prior to this release, entitlement display names and descriptions were only synchronized from a source to IdentityNow the first time they were aggregated. Any subsequent changes had to be made manually in IdentityNow. Now IdentityNow can detect which items have been changed manually (through the UI, a CSV upload, or an API call), so it can allow aggregations to modify the rest.

A new property, “manually_updated_fields”, has been added to entitlements to track the properties that have been updated manually per entitlement. As manual changes are made in IdentityNow, this property is updated automatically. This property must be initially set through a one-time analysis that will be performed automatically during the first entitlement aggregation after enablement of this new feature. The analysis compares the display name and description values in IdentityNow with the aggregated values from the source for each entitlement. If the values are different, the property is added to manually_updated_fields for the entitlement so it will not be overridden in future aggregations. Otherwise, the properties will be eligible for updates through future entitlement aggregations.

Platform

The sp-config API export operation has been expanded to include the IDENTITY_OBJECT_CONFIG object.

Fixes

ProductIssue IDFixes

IDN Provisioning

IDNARSENAL-14411

Added error handling to prevent identity errors during aggregation when the identity’s Lifecycle State attribute is calculated to a value that does not match a defined lifecycle state.

Connectivity - SAP Concur

CONUMSHIAN-5747

The SAP Concur connector has been enhanced to support role assignment to the user during the update operation.

Connectivity - SAP Concur

CONUMSHIAN-5756

The SAP Concur connector now supports date provisioning and retrieval in a fixed format, also resolving an attribute sync problem.

Connectivity - Azure AD

CONETN-4180

The Azure Active Directory Connector now respects the HTTP Proxy Authentication configured as Java System properties.

Connectivity - Azure AD

CONETN-4154

The Azure Active Directory Connector now provisions the Guest user successfully even if the “password” attribute is present in the “Create Account” Provisioning Policy.