August 2024
Deployment August 28, 2024
feature GCP Managed Microsoft AD Domain Entity - 10:00 UTC
Description: Added support for GCP Managed Microsoft AD Domain entity in Compliance Engine and Protected Assets.
Case ID: CNAPP-6374
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
feature GCP VMware Engine Entities - 10:00 UTC
Description: Added support for GCP VMware Engine Network & GCP VMware Engine Network Policy in Compliance Engine and Protected Assets.
Case ID: CNAPP-1465
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
feature GCP Cloud TPU - 10:00 UTC
Description: Added support for GCP Cloud TPU in Compliance Engine and Protected Assets.
Case ID: CNAPP-9468
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
feature GCP Cloud Deploy Entities - 10:00 UTC
Description: Added support for GCP Cloud Deploy Delivery Pipeline & GCP Cloud Deploy Target in Compliance Engine and Protected Assets.
Case ID: CNAPP-9266
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
feature GCP Document AI entities - 10:15 UTC
Description: Added support for GCP Document AI Processor & GCP Document AI Processor Version in Compliance Engine and Protected Assets.
Case ID: CNAPP-10704
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
feature GCP Datastream Entities - 10:30 UTC
Description: Added support for GCP Datastream Private Connection & GCP Datastream Stream in Compliance Engine and Protected Assets.
Case ID: CNAPP-9264
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
IMPROVEMENT Azure App Registration properties - 12:30 UTC
Description: Added support for “Owners“ property in Azure App Registration entity.
Case ID: DFR-3686
Known limitations: Application.Read.All returns limited information on the owner data under the owners field. (this is Azure behavior where limited permissions returns limited data, to see more data Directory.Read.All is required)
Affected Components: COMPLIANCE ENGINE PROTECTED ASSETS
Deployment August 27, 2024
fixed Environment page | Validate permission getting errors - 13:00 UTC
Description: Fix validate permission in AWS org onboarding
Case ID: DFT-3959
Known limitations: N/A
Affected Components: ui
Deployment August 26, 2024
feature AWS Shield Subscription Entity - 10:15 UTC
Description: Added support for AWS Shield Subscription Entity in Compliance Engine and Protected Assets.
Case ID: DFR-3248
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
Deployment August 25, 2024
IMPROVEMENT AWS Inspector UI - 14:40 UTC
Description: Improved UI components for AWS Inspector vulnerabilities that are displayed under EC2 Instances.
Case ID: CNAPP-11032
Known limitations: N/A
Affected Components: Inspector ui
Deployment August 23, 2024
IMPROVEMENT Azure Role Definition properties - 5:50 UTC
Description: Added support for “properties.roleType“ property in “Azure RoleDefinition” entity.
Case ID: CNAPP-10227
Known limitations:
Affected Components: COMPLIANCE ENGINE PROTECTED ASSETS
Deployment August 22, 2024
IMPROVEMENT CDR Onboarding new wizard with manual option - 14:00 UTC
Description: The CDR Onboarding wizard now has a new look and feel and an additional option to manually add your configuration.
Case ID: CNAPP-10094, CNAPP-8306, CNAPP-10379
Known limitations:
Affected Components: CDR Onboarding
Deployment August 21, 2024
IMPROVEMENTAzure Application Gateway properties - 4:43 UTC
Description: Added support for “defaultPredefinedSslPolicy” property in “Azure ApplicationGateway” entity.
Case ID: DFR-3917
Known limitations:
Affected Components: COMPLIANCE ENGINE PROTECTED ASSETS
Deployment August 20 , 2024
fixed “When manually execute the CSPM Ruleset “AWS Cloud Guard Best Practices” on all the AWS environments in a single assessment, it crashes the Browser. “ - 15:00 UTC
Description: Add support for running manual assessment for unlimited number of accounts
Case ID: DFT-3489
Known limitations: N/A
Affected Components: ui COMPLIANCE ENGINE
Deployment August 19 , 2024
fixed UI | Run assessment | Environment search does not return account id if it have a name - 14:00 UTC
Description: Allow the option to search environment by account id when running an assessment
Case ID: DFT-4011
Known limitations: N/A
Affected Components: ui
fixed AWS Sage Maker Notebook - 14:30 UTC
Description: Fixed typo in AWS sage maker display name in protected assets table.
Case ID: DFT-4049
Known limitations: N/A
Affected Components: ui PROTECTED ASSETS
Deployment August 14 , 2024
fixed Remediation | Policy filter failed - 12:00 UTC
Description: Selection for entity name / id was removed from the remediation UI (cloudbot)
Case ID: DFT-3540
Known limitations: N/A
Affected Components: ui
Deployment August 8 , 2024
IMPROVEMENT Toxic Combination Evidence - 12:40 UTC
Description: You can now see detailed IAM Privilege information for Toxic Combination that have high IAM Privileges
Case ID: CNAPP-11004
Known limitations: N/A
Affected Components: TOXIC Combinations UI
IMPROVEMENT Protected Assets API - 10:40 UTC
Description: Enhanced filtering capabilities in Protected Assets search API.
Case ID: CNAPP-10827
Known limitations: N/A
Affected Components: API
Deployment August 7 , 2024
fixed When Azure subscription is Onboarded pop says "Tenant" has been onboarded - 12:00 UTC
Description: Fixed typo in Azure onboarding wizard
Case ID: DFT-4050
Known limitations: N/A
Affected Components: ui
fixed UI | Azure Onboarding - Manual onboarding cannot be reached - 12:00 UTC
Description: Add back manual onboarding to Azure
Case ID: DFT-3975
Known limitations: N/A
Affected Components: ui
feature GCP Analytics Hub Data Exchange - 11:30 UTC
Description: Added support for GCP Analytics Hub Data Exchange Entity in Compliance Engine and Protected Assets.
Case ID: CNAPP-9492
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
feature AWS Cloud Directory Directory Entity - 11:30 UTC
Description: Added support for AWS Cloud Directory Directory Entity in Compliance Engine and Protected Assets.
Case ID: CNAPP-9505
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
feature AZURE SignalR Service Entity - 11:30 UTC
Description: Added support for Azure SignalR Service Entity in Compliance Engine and Protected Assets.
Case ID: CNAPP-9489
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
feature AZURE Machine Learning Workspace Entity - 11:30 UTC
Description: Added support for AZURE Machine Learning Workspace Entity in Compliance Engine and Protected Assets.
Case ID: CNAPP-10807
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
Deployment August 6 , 2024
fixed UI | Edit credentials | missing option to update all subscriptions - 13:00 UTC
Description: Add option to edit credentials to all subscriptions
Case ID: DFT-3963
Known limitations: N/A
Affected Components: ui
IMPROVEMENT CDR Rulesets Update - 11:00 UTC
Description: New Azure rules. A complete list can be found here.
Case ID: CNAPP-10765, DFT-3950
Known limitations: N/A
Affected Components: CDR RULESETS
IMPROVEMENTAWS RAM Resource Share - 13:00 UTC
Description: Added support for ‘principals' property in AWS RamResourceShare in Compliance engine & Protected Assets.
Case ID: DFR-3514
Known limitations:
Affected Components: COMPLIANCE ENGINE PROTECTED ASSETS
IMPROVEMENT CIEM for Azure - ‘AppRegistration’ over permissive support & suggestions- 11:00 UTC
Description: Added support for CIEM for Azure AppRegistration entity + over permissive CIEM findings with suggestions.
Case ID: DFR-3256
Known limitations: N/A
Affected Components: CIEM API UI
Deployment August 4 , 2024
feature AZURE Express Route Circuit Entity - 14:00 UTC
Description: Added support for AZURE Express Route Circuit Entity in Compliance Engine and Protected Assets.
Case ID: CNAPP-9470
Known limitations:
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS
Deployment August 2 , 2024
IMPROVEMENTAzure Storage Account - 10:30 UTC
Description: Added support for ‘allowCrossTenantReplication' property in Azure StorageAccount in Compliance engine & Protected Assets.
Case ID: DFR-3528
Known limitations:
Affected Components: COMPLIANCE ENGINE PROTECTED ASSETS