If you are using a client (RDM, PowerShell, etc.), version 2025.3 is required for this DVLS version
NEW FEATURES
- Core - Added a "Linked (External Vault)" option for entries, allowing sessions to reference credentials stored in an external vault
- Core - Added an onboarding experience for new installations to simplify initial setup
- Core - Added an option to enable biometric lock for the Workspace app
- Core - Added support for a custom, editable dictionary for passphrase generation
- Core - Added the ability for users to create an API key for their account
- Core - Added webhook support for specific trigger events
- Core - Require re-authentication before allowing users to change MFA
- Core - Users can now configure their own MFA
- Gateway - Added a new setting to enable RDP reconnection
- Gateway - Added network access rules for virtual gateways, with scoping by IP address, IP range, subnet, and DNS name
- Gateway - Added virtual gateways, enabling different permissions on the same physical gateway
- PAM - Added "Account Life Policies," consolidating PAM options and enabling inheritance at all levels (entry, folder, root)
- PAM - Added conditional policies based on JIT elevation status
- Web - Added support to disconnect WBEX sessions on close and when idle
IMPROVEMENTS
- BREAKING CHANGE Core - Changed default of password policy and password validation to be handled as "Inherited" - Make sure your inheritance structure is appropriate
- Core - Added password expiration to password policies
- Core - Added support for attachments when sending via Devo Send in DVLS
- Core - Editing an entry now triggers the checkout option
- Core - Improved image management with the ability to merge duplicate images
- Core - Improved LDAP domain controller fallback for faster failover
- Core - Improved the Entry Properties menu to align with RDM, making options easier to find
- Core - Removed the ability to grant permissions on entries in vaults the user cannot access
- Core - Renamed "Cleanup Log" to "Log Retention Policies"
- Core - Renamed "Password Templates" to "Password Policies"
- Core - Temporary access on a folder now extends to entries created in that folder after the request
- PAM - Added tier detection during account discovery for domain and Entra ID accounts
- PAM - Local Account scan results now exclude provider service accounts
FIXES
- Core - Fixed an issue where renaming a folder with a backslash (\) would break the folder
- Core - Fixed an issue where the password generator would not open when editing an entry
- Core - Reduced the number of emails sent when Syslog is down
- PAM - Fixed an error that occurred when adding JIT elevation to a PAM checkout
- PAM - Fixed an error when importing computers from an AD scan
- PAM - Fixed an issue where editing Account Life Policies could result in an infinite loading state
- Web - Fixed an issue where SSH sessions returned "The authentication sequence has failed" when launched in the web client with a linked-to-vault private key
- Web - Fixed an issue where web sessions could not be opened with a PAM credential
- Web - Restored the top menu button when opening ARD web sessions
- Web - Various user interface fixes and improvements
** CONSOLE RELEASE NOTES **
IMPROVEMENTS
- Improved performance when loading the DVLS instances list
- Renamed "Standalone Installation" to "Basic Installation" in the Gateway installer