Horizon 2.4.0 release notes

Here are the release notes for EverTrust Horizon v2.4.0, released on 2023-05-16.

For the installation and upgrade procedure, please refer to the Installation and Upgrade guide.

horizon-upgrade tool no longer supports mongo legacy shell. mongosh is now required.

1. New Features

  • [HRZ-404] - Adding support for CRMP Protocol

  • [HRZ-417] - Implementing rules to grade certificate in accordance with NIST, ANSSI…​

  • [HRZ-418] - Add Automation policy

  • [HRZ-478] - Adding support for WCCE Escrow

  • [HRZ-479] - Rework renew workflow: renew, PoP renew and WebRA Direct renewal

  • [HRZ-488] - Expose Trust Chains on the Registration Authority interface

  • [HRZ-628] - Implementing Standard/Expert mode in the Configuration interface (Standard mode → only mandatory fields and simple concepts are displayed / Expert mode → all fields are displayed to do specific setup)

  • [HRZ-631] - Adding a Crypto decoder tool on the Registration Authority interface

  • [HRZ-684] - Creating ownership section on request summary

  • [HRZ-766] - Add trigger results info in a dedicated tab

  • [HRZ-716] - Implementing suggestions in order for the end-user to choose a value from a whitelist or add a new one

  • [HRZ-733] - Implementing Custom dashboard for requests

  • [HRZ-733] - Implementing HRQL expert mode

  • [HRZ-733] - Implementing Audit request permission

2. Enhancements

  • [HRZ-477] - Refactoring the certificate templates and introducing computation rules

  • [HRZ-662] - Owner can implicitly submit self requests regardless of permissions

  • [HRZ-706] - Improving displayed message when wrong HCQL/HRQL is submitted

  • [HRZ-750] - Various UI/UX improvements

  • [HRZ-1175] - Adding SCEP renewal events

3. Bug Fixes

  • [HRZ-624] - An EST challenge could be asked on non challenge profiles

  • [HRZ-698] - Manage request popup was not hidden when the PKI is very slow to sign certificate

  • [HRZ-700] - Missing label display names in certificate view

  • [HRZ-1031] - Deleting an referenced identity provider is not allowed

  • [HRZ-1231] - Migrating discovered certificates showed unnecessary profiles

4. Known Defects

  • [HRZ-1283] - Enrolling a certificate on CertEurope, DigiCert, Entrust, FCMS, GSAtlas, GlobalSign or MetaPKI fails