SaaS

SaaS Release Notes - December 11, 2023

Production release notes - December 11, 2023

Release notes might contain references to new features, enhancements, and fixes that will be gradually turned on in production over the next several weeks. See the SaaS Functional End of Life and Major Changes Policy.

Identity Security Cloud is SailPoint's next-generation identity security solution. It encompasses and builds on features and functions from IdentityNow. The release notes cover both Identity Security Cloud and IdentityNow features.

New features

ProductWhat's new

Connectivity - ServiceNow Service Catalog

This is related to SailPoint’s ServiceNow ServiceCatalog App for IdentityNow.

A mandatory upgrade by all customers is required before the end of Q2’24 irrespective of the previously published support calendar. Some of the API’s used by the catalog app are being decommissioned, therefore, present apps must be upgraded. All presently installed versions (including 3.0) must be upgraded, otherwise the app will not be able to perform its primary functionalities.

There is no change in setup required by admins for this release, however, caution needs to be maintained by keeping a close watch on skipped items during the upgrade.

Version 3.1

  • Upgraded API to comply with APIs being decommissioned.
  • Catalog App now supports the ability to search and request using the related Entitlement Owner.
  • Review existing access search query improvements related to special characters.

Platform

Configuration Hub introduces the ability to view the details of all objects in a backup. Refer to Using the Configuration Hub for more information.

Platform

Configuration Hub introduces Object Mapping, a new feature to enable tenant specific value substitutions by configuring tenant level mapping rules. Tenant level rules allows for attribute value substitution (tokenization). This gives the ability to configure attribute value substitution rules for a specified tenant and to automate value substitution while migrating configurations between two tenants. Refer to Using the Configuration Hub for more information.

Connectivity

Integrate SailPoint IdentityNow with SAP SuccessFactors Learning Management Systems to aggregate and provision user training information for user access governance.

Enhancements

ProductFeature enhancements

Platform

Administrators who do not currently have TOTP (MFA) enabled will be prompted to register an external authentication device before accessing their tenant. Refer to SaaS Updates for more information.

SailPoint CIEM

Certification and Report Admins can now view cloud entitlement details.

Platform

Workflows is proud to announce the official release of the Define Variable operator. This allows users to create one or more custom variables in a single operator step. As transforms are added and updated, a variable preview is updated in real time to show what the new variable looks like.

This release includes the following:

  • New user experience for defining a custom variable
  • Ability to create multiple variables in one operator step
  • Advanced and Basic variable builder
  • Date and Time transforms
  • Text transforms
  • Variable Preview

If you are currently using the “Beta” Define Variable operator in existing workflows, that operator will continue to work in enabled workflows, however you will no longer be able to select the “Beta” operator from the left side palette in the workflows builder to use in new workflows.

Connectivity - Active Directory

The Active Directory connector exchange management operation will now work with exchange servers where certificate-based signing of PowerShell serialization payloads is enabled.

Connectivity - Active Directory

The Microsoft Active Directory connector no longer supports Microsoft Exchange Server 2013 and Microsoft Lync Server 2013 as Microsoft has ended support.

Fixes

ProductIssue IDFixes

Access Intelligence Center

Access Intelligence Center updates:

Note: This applies to tenants with the Access Insights product flag only.

  • Custom Attributes are now available. All Org attributes are now loaded into Access Intelligence Center. If any charts have been authored utilizing the old attributes, they will need to be updated with the new fields. For example, what used to be Location might need to be updated to location.
  • Job Titles, Departments, Location, & State (on the identities sheet) are all derived from variables now, which are populated by attributes. If these attributes don’t exist in a tenant, the charts will not populate. vJobTitle – looking for the most populated attribute containing ‘title’. (i.e. title, jobTitle, Title, JobTitle) vDepartment – looking for the most populated attribute containing ‘dept’ or ‘department’ and not containing ‘number’. vState – looking for the most populated attribute containing ‘state’. (i.e. state, State, cloudLifecyclestate) vLocation – looking for the most populated attribute containing ‘location’ and not containing ‘number’.
  • Master Items now include Identity Created Date & Identity Updated Date fields to increase the functionality of Insight Advisor.

Connectivity - Azure AD

CONDOCS-2748

CONETN-4318

The Azure Active Directory connector now supports the ability to disable fetching of service plans during account and group aggregation when you set fetchServiceplan to false in the source XML using the IdentityNow REST APIs. For more information, refer to Additional Configuration Parameters.

Connectivity - Azure AD

CONETN-4313

The Microsoft Entra ID connector does not loop the API request during delta aggregation when there is an invalid Microsoft response or token when the contineOnError attribute is set to true.