Security by Sweden

Latest posts

PAS 5.1.0

PhenixID is proud to announce the new release of PhenixID Authentication Services (PAS) 5.1.0. The new release improves the stability, compatibility, and security of your solution, and is recommended for all installations.

Read full release notes


HIGHLIGHTS

 

The 5.1.0 version introduces a new way of configurating Authenticators, exceptionally simplifying for administrators by giving more control of authentication flows. In addition to this, increased built in support for SAML and OIDC protocols and updated guides for configuration makes this 5.1.0 release something that will not just make PAS more secure but also reduce complexity. 

Authenticators architecture

Clear separation of protocols versus authentication methods, new simplified configuration guides to support easier and faster configuration. Read more about how this will make the administrators life easier here.

 

OpenID Connect support

Significantly more OIDC functionality now available “out-of-the-box” in code instead of via manual configuration. Also some new OIDC support not previously possible, e.g Hybrid Flow support. Link to documentation here.

 

SIGN transaction for BankID and Freja EID

Force a SIGN request to BankID or Freja eID with clear information to the user on the intention of signing.


    PAS 5.0.1

    New maintenance release

    This new release includes defect fixes and addition of minor functions for the 5.0 release, and is recommended for all 5.0 installations.

    Bug fixes

    The 5.0.1 release includes important bug fixes for the 5.0 release, including:

    • MSSQL using integrated authentication
    • ACS-URL validation
    • security vulnerabilities mitigation
    • TLS version for MiuLookupValveApp

    New/updated features

    The 5.0.1 version does only contain defect fixes


    PAS 4.7.3

    New maintenance release

    This new release includes defect fixes and addition of minor functions for the 4.7 release, and is recommended for all 4.7 installations.

    Bug fixes

    The 4.7.3 release includes important bug fixes for the 4.7 release:

    • SAML2SithsEid
    • SAML ACS-URL validation
    • DSS-signing

    See full maintenance release information for 4.7.3 release here:

    Read full release notes


    PAS 5.0

    PhenixID is proud to announce the new release of PhenixID Authentication Services (PAS) 5.0. The new release improves the stability, compatibility, and security of your solution, and is recommended for all installations.

    Read full release notes


    HIGHLIGHTS

     
    Finally the PAS 5.0 version see the light of day! This version is a major technical upgrade, compared to 4.7 and earlier versions. It brings significantly better security level as well as futureproofing and enabling of further enhancements. There are no significant changes in terms of functionality or usability in this initial 5.0 version.

     

    Increased security

    PAS 5.0 includes a significant reduction of software security vulnerabilities in third party librariues used. The build and testing of PAS software has been enhanced by a mandatory vulnerability (OWASP) check, meaning that the software build process will catch known vulnerabilities – in each recurring and scheduled build.

     

    Upcoming features

    As PAS 4.7 branch is moved to maintenance mode, new and enhanced features will be developed and released on this new 5.0 branch. This strategic move ensures that new features are built on a more modern platform.

     

    Inclusion of additional modules and valves in the product

    Prior the 5.0 release, some specific modules and valves were treated as standalone entities necessitating separate installation procedures. By consolidating these components into the core product, you benefit from a more cohesive and streamlined life cycle management process, guaranteeing the availability of the latest and most secure versions – thereby fortifying the overall integrity and security of the system

    Known limitations

    Initially we recommend this version for those using internal HSQLDB database or MSSQL only

      Read the full release notes for Authentication Services here:

      Read full release

      © 2024 PhenixID AB. All Rights Reserved.