Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Minor

Version: 20.11.1

Release Date: 2021-02-12

The Smart ID 20.11.1 release provides updates and bug fixes in Identity Manager, Digital Access and Messaging. Physical Access is not affected by this release.

Smart ID compatibility

Insert excerpt
Smart ID 20.11.1 - Compatibility
Smart ID 20.11.1 - Compatibility
nopaneltrue

Related information

  • Deploy Smart ID
  • Smart ID deployment recommendations
  • Smart ID Workforce modules
  • Smart ID components


    Detailed feature list

    Features

    Jira ticket no

    Description

    Digital Access

    Identity Manager & Self-Service

    Messaging

    Physical Access

    CRED-9952

    Secret Fields comparator task

    A new service task is introduced to validate secret fields. Two secret fields can be configured, the service task will check if the content is equal (e.g. to implement PIN/ password verification use cases). For more information, see: Standard service tasks in Identity Manager: under Process: Secret Fields comparator service task.


    x

    CRED-10342

    Separate service task for certificate Windows Cert Store publication

    Introduced a separate service task to publish certificates to Windows certificate Store via Smart ID Desktop App. Windows Cert Store feature was introduced already with the 20.11.0 release but needed to be configured via the virtual smart card (VSC) service task. Configuration via the new dedicated service task is more convenient.

    For more information, see: Standard service tasks in Identity Manager: under Personal Messaging: Create Key on Windows Cert Store and Personal Messaging: Install Cert on Windows Cert Store.


    x

    CRED-10363

    Extended EST and SCEP registration

    the service tasks for EST and SCEP registration have been extended. Now any DN or SAN certificate attribute can be added to the registration request.

    For more Information see: Standard service tasks in Identity Manager: under Certificates: Create SCEP order request and Certificates: Create EST order request.


    x

    CRED-10369

    Possibility to write additional certificate on SITHS card

    It is now possible to write an additional certificate on a SITHS card (Gemalto SIS EID IP1 profile) via the NetID v6.8.2.38_1992 middleware client. For more information, see: Encoding of SITHS cards with Identity Manager.


    x

    CRED-10387

    Improved system performance for MS SQL environment 

    The database field types in the tables ACL_CLASS and ACL_SID are changed from varchar to nvarchar. This improves the system performance on an MS SQL environment with a large database.


    x

    CRED-10419

    Improved system performance for MS SQL environment

    Added a computed column when using MS SQL Server in the CoreObject Table to improve performance on an environment with a large database.


    x

    PMOB-2701

    Improved retry logic for SQL queries when lock exceptions occur.



    x

    Corrected bugs

    Jira ticket no

    Description

    Digital Access

    Identity Manager & Self-Service

    Messaging

    Physical Access

    DA-4

    When Digital Access acts as Service Provider, it now accepts new lines in the SAML response from the Identity Provider.

    x


    DA-9

    When the OATH DB config settings are changed, after publishing from admin there is no need to restart the Authentication service now. The service will apply the changes and connect to the new DB.

    x


    DA-15

    Improved the user experience for callback (switching between browser and Smart ID Mobile App), in case of same device authentication for Smart ID Mobile App.

    Added support for Android + Chrome and Firefox, iOS + Chrome, Safari and Firefox.

    Known issues:

    • Android + Firefox -> redirecting back to the browser not working but after switching manually, able to login.
    • iOS + Firefox -> redirect works intermittently, sometimes it shows the auth method page and then clicking on PM same device authentication it logs in. 
    x


    DA-64

    Fixed the issue of SAML session attributes getting lost when acting as SAML Proxy and entering different Policy services.

    x


    DA-65Fixed the out-of-memory exceptions in the Administration service.x


    DA-85Fixed an issue for restoring OATH database.x


    DA-135

    Added ability to pass "tokenGroups" attribute in the SAML response when Digital Access acts as an Identity Provider.

    x


    DA-151

    Removed the Contact link from the login page footer. In case it needs branding, the link can be added to the bottom.html page under includes/login folder.

    x


    CRED-10163

    Fixed the behavior of multiple search buttons in combination with ObjectList component in a user form. Results from the different search buttons have been mixed up in the result lists. The ticket was reopened again after 20.11.0 and another error fixed in 20.11.1.


    x

    CRED-10321

    Improved error handling in PGP publication task: the error is now caught and handled properly if the provided serial number does not exist.


    x

    CRED-10349

    When encoding certificates on a smart card, that were issued by the D-Trust connector, the intermediate certificate could not be written. This has been fixed.


    x

    CRED-10393

    Fixed a memory leak in handling of cached connection in the PKI connector to Certificate Manager.


    x

    CRED-10394

    The CSV import service task (that is, client-side file upload) did not build the CoreObject DescriptorList correctly after import, which is needed for example for further processing in multi-instance tasks. This has been fixed.


    x

    CRED-10420

    Corrected logging of errors in REST interfaces of Identity Manager. Previously, a number of HTTP 500 errors have not been reported correctly into the logfiles. This has been fixed.


    x

    CRED-10434

    Fixed upload functionality for server-side Card SDK license in Identity Manager.


    x

    CRED-10462

    Removed data type "long" on data pool configuration in Identity Manager Admin. This was accidentally added as a new type with 20.11.


    x

    CRED-10475

    Improved error handling of change state task when an invalid state transition is done. The error can now be handled in the BPMN process.


    x

    Release announcement

    For details on the Smart ID configurations and deployment configurations, see here: 

    Expand
    titleSmart ID configuration release note

    Insert excerpt
    Smart ID 20.11 configuration release note
    Smart ID 20.11 configuration release note
    nopaneltrue


    Expand
    titleSmart ID deployment configuration release note

    Insert excerpt
    Smart ID deployment configuration release note
    Smart ID deployment configuration release note
    nopaneltrue

    Contact

    Contact Information

    For information regarding support, training and other services in your area, please visit our website at www.nexusgroup.com/

    Support

    Nexus offers maintenance and support services for Smart ID components to customers and partners. For more information, please refer to the Nexus Technical Support at www.nexusgroup.com/support/, or contact your local sales representative.