Horizon 2.5.0 release notes

Here are the release notes for EverTrust Horizon v2.5.0, released on 2024-02-07.

For the installation and upgrade procedure, please refer to the Installation and Upgrade guide.

horizon-upgrade tool no longer supports mongo legacy shell. mongosh is now required.

1. New Features

  • [HRZ-1353] - Credentials are now regrouped in a dedicated section and can be used by multiple targets

  • [HRZ-1393] - Adding the capability to send REST notifications

  • [HRZ-1561] - Adding the capability to enroll an ACME certificate on a public PKI, and manage it on Horizon

  • [HRZ-1572] - Adding an Authorized mode in SCEP protocol to allow enrollment by a challenge containing credentials of a user with enroll permissions

  • [HRZ-1630] - Adding the capability to receive notifications for the license expiration, the license usage and credentials expiration

  • [HRZ-1559] - Adding Eviden IDCA support

  • [HRZ-1575] - Add Google Certificate Manager support

  • [HRZ-1397] - Adding RHEL9 support

  • [HRZ-1478] - The administration interface of Horizon has been revamped to enhance user experience

  • [HRZ-1731] - Adding the capability to customize the interface by adding a logo on the Web interface in the header and in the login menu

2. Enhancements

  • [HRZ-1599] - Setting a password is now part of the Local Identity creation workflow

  • [HRZ-1384] - Adding the support of Edwards Curves

  • [HRZ-1586] - Adding the support for new license calculation mode

  • [HRZ-1629] - Notification can be sent to all members of a team

  • [HRZ-1576] - Change the p7b format from base64 only to the PEM format

  • [HRZ-1809] - Charts can now be duplicated in a custom dashboard

  • [HRZ-1736] - Adding polar and pyramid charts

  • [HRZ-1834] - Renaming Reenroll to Duplicate in WebRA workflow

3. Bug Fixes

  • [HRZ-1583] - The PKI Connector Manager actor is now notified when a HTTP proxy is updated

  • [HRZ-1799] - Setting a team via computation rule on the request information now properly works

4. Known Defects

[None]

5. API modifications

  • [HRZ-1572] - The authorizationMode parameter is now mandatory on SCEP profiles. It replaces the mscepEmulation boolean with the ndes mode, and has challenge and the new authorized mode

  • [HRZ-1728] - The authorizationMethods parameter is now mandatory on ACME profiles

  • [HRZ-1353] - PKI and Third Party Connectors, OpenID identity providers, SCEP, Jamf and Intune profiles now use credentials