Latest features & updates

We're constantly aligning the tech docs with the latest hotfixes and SaaS update information. Find out below what's new or updated.

This list changes often, so be sure to check back soon.

April 2024 Update

User Password Management Made Easier

A new parameter allows administrators to change user passwords without the need to enter the administrator password each time. To enable, set the configuration parameter CHANGE_PASS_WITHOUT_ADMIN_PASS to 'yes'. See CHANGE_PASS_WITHOUT_ADMIN_PASS. (Released 9-April-2024)

January 2024 Update

AAD (formerly AlgoSec AutoDiscovery) is now called AlgoSec Application Discovery

We've given AlgoSec AutoDiscovery a snazzy new title: AlgoSec Application Discovery! But fear not, The acronym AAD remains unchanged. See Welcome to Application Discovery. (Released 9-January-2024)

December 2023 Update

View your Account ID (AppViz)

You can now easily access your Account ID directly from AppViz. This is ideal if you're managing multiple accounts. It also simplifies the process of referencing an Account ID for support queries. To view and copy your account ID, just click on your username located at the top right corner of the screen to open the drop down. See View your Account ID. (Released 12-December-2023)

AppViz Flow Insights (AppViz)

Now, by selecting a flow name in the Flow tab, you can access to insights about the flow-related rules. This feature reveals not only which rules are covered by the flow but also provides details about their usage. The newly added button displays the flow's Traffic Simulation Query results directly in AFA. See Flows tab interface. (6-December-2023)

June 2023 Update

AWS and Azure Permissions: Why Each Permission Is Required (AFA)

Based on feedback from our customers, we updated our documentation to include more information about permissions required in ASMS for AWS and Azure. (Released 4-June-2023)

May 2023 Update

Update Risk Definitions (AFA)

We added documentation for the endpoint POST /api/v1/risks/profiles. It updates the risk profile definitions of existing risks. See Update Risk Definitions . (Released 22-May-2023)

March 2023 Update

Access ObjectFlow and AppViz from ASMS

Access our ASMS and SaaS products conveniently from the ASMS dropdown. Links to ObjectFlow and AppViz now join AFA, AFF, and AppViz (SaaS). And if you don't yet have ObjectFlow, you can now explore its features and capabilities in a demo environment. Just select ObjectFlow from the dropdown menu to get started. See Switch between AlgoSec products. (Released 26-March-2023)

January 2023 Updates

Official support for OKTA for SSO (AppViz)

Official support for OKTA for SSO (AppViz)

AlgoSec Algosec SaaS applications now officially support OKTA as an SSO provider. See Manage Single Sign-On (SSO).

November 2022 Updates

Welcome to AppViz in the SaaS environment (AppViz)

AlgoSec is proud to announce that we have moved AppViz to the SaaS environment to offer the following significant benefits:

  • Scalable infrastructure powered by AWS

  • Eliminates efforts around updates and troubleshooting

  • Reduces maintenance costs for the customer

  • Rapid deployment of new capabilities

  • Be always on the latest and greatest

All new AppViz deployments will be SaaS-based. Existing AppViz customers can continue using the legacy on-prem version of AppViz.

See Welcome to AppViz.

October 2022 Updates

Risk Profiles | Enhancement to defining service objects on the Traffic sheet data table (AFA)

For multiple service objects, you can enter None as the first service group in a cell. Add negated services objects in the cell to specify risk severity.  Services not defined in any of the service objects in the cell will trigger an unauthorized service risk. See Service objects.

Exclude unattached objects from device report (AFA)

We've added a new parameter Skip_unattached_objects_in_report that allows you exclude unattached objects from device reports. You can choose whether to exclude all devices or only specific ones. See Skip_unattached_objects_in_report.

September 2022 Updates

Risk Profiles | Enhancement to defining service objects on the Traffic sheet data table (AFA)

For multiple service objects, you can enter None as the first service group in a cell. Add negated services objects in the cell to specify risk severity.  Services not defined in any of the service objects in the cell will trigger an unauthorized service risk. See Service objects.

Prisma Access devices in Early Availability (AFA)

ASMS now supports Prisma Access visibility for remote networks and service connections (in changes, TSQ and risks). See Palo Alto Networks Prisma Access devices in ASMS.

August 2022 Updates

Configure incoming mail for FireFlow using modern authentication (AFF)

Now you can configure incoming mail for FireFlow using modern authentication. See Incoming mail.

Prisma Access devices in ASMS (AFA)

ASMS now supports Prisma Access visibility for remote networks and service connections (in changes, TSQ and risks). See Palo Alto Networks Prisma Access devices in ASMS.

AppViz enhancements: Edit multiple flows (AppViz )

Now you can edit one or more flows at a time on the FLOWS tab. See Edit application flows.

AppViz enhancements: Control automatic connectivity check by permissions (AppViz )

We added a new user permission: Check connectivity when saving a flow. Now you can control automatic connectivity check by permissions. Users with this permission can set whether or not the system will automatically update the connectivity of applications after saving a flow. We have also improved the connectivity check triggers to run only on TSQ field changes (and not after changes to custom field / comments).See Check connectivity when saving a flow.

July 2022 Updates

Create a Custom UID parser when setting up SSO (AFA)

Formerly presented as an optional step, we now recommend creating a custom UID parser when setting up SSO. See Configure user authentication.

HTTP tunnel troubleshooting | Tunnel connectivity (AFA)

The HTTP tunnel connects ASMS to AlgoSec SaaS Services. We’ve added instructions for troubleshooting the HTTP tunnel when the Chisel service is unresponsive. The results show whether there are connectivity issues or if routing rules in the customer environment block the traffic.

See Troubleshoot AlgoSec SaaS HTTPS tunnel.

Cisco Meraki is now GA (AFA)

Formerly only supported in Early Availability, support for Cisco Meraki is now a GA feature.

See Cisco Meraki devices in AFA.

June 2022 Updates

System Service Names (AFA)

We’ve added a list of system service names to use when running commands via the CLI.

See If services are down:

Before Upgrading | ART now maintains custom graphs and dashboard (AFA)

Since the June 6, 2022 hotfix, AFA now maintains customized graphs and dashboards in AlgoSec Reporting Tool after software upgrade. We have removed the recommendation to backup Elasticsearch data before upgrading. Also, you no longer need to backup the Scheduled Dashboard Notifications before upgrading.

Recommendation removed from Upgrade prerequisites.