23.4 enhancements and patches


Review the BMC Helix Upgrade policy 23.4 enhancements and patches for features that will benefit your organization and to understand changes that might impact your users.

Version

SaaS

On premises

Fixed issues

Updates and enhancements

23.4.02

✅️


23.4.01

✅️


23.4.00

✅️

✅️

For a list of recent updates and enhancements across multiple versions, see Release-notes-and-notices.

BMC applies upgrades as described in the BMC Helix Upgrade policy. BMC applies upgrades and patches during Maintenance windows.


23.4.02


Simplify network routing and processing of login requests when authenticating users by using the Remedy AR System identity provider

AR Authentication can be configured to AR System REST APIs to simplify the use of AR Authentication by using standard HTTPS ports for authentication requests. Additionally, configure a period so that authentication requests time out after the defined time.

For more information about configuring AR REST APIs for AR authentication and timeout value, see Configuring-AR-authentication

LDAP authentication request timeout

Configure timeout periods for LDAP authentication connection and read requests so the authentication requests time out after the defined time.

For more information about configuring timeout values for LDAP authentication, see Configuring-LDAP-authentication.

23.4.01


Filtered view of audit records for improved usability

For better usability, when you view the audit records, audit data is displayed only after you perform a search based on the default time period or for the specified search criteria. The display of a limited number of audit records makes it easier to review the audit details and view only the relevant data. 

For more information about viewing audit records, see Reviewing-audit-records.

audit-message.png

token_list_old.png

Easy access to tokens associated with a user session

You can view details of all tokens issued for a user session directly from the Session record without having to search for active tokens associated with the user session. This information helps analyze application issues for the user based on the tokens associated with the application. 

For more information about viewing the token data for a user session, see Viewing-tokens-for-a-user-session-to-analyze-application-issues.

23.4


Log records to track requests for additional user information requests

Log entries to track the status of requests for additional user information are available to maintain an audit record of these requests.

For more information about viewing audit records, see Reviewing-audit-records.


Additional security for managing the cookie security

The Strict samesite cookie settings provide additional security when using cookies. When the same site cookie value is set to Strict, the browser does not send cookies for cross-site requests. Cookies are included only if the target site for the request matches the site currently shown in the browser's address bar.

For more information on configuring the Strict option for samesite cookies, see Configuring settings for the BMC Helix SSO server.

sameSiteCookie.png


saasHost.png

Easily update SaaS host name from the BMC Helix SSO Admin Console

SaaS administrators can update the SaaS host name in the Tenant settings screen of the  BMC Helix SSO Admin Console, if the value has not been set in the RSSO_SAAS_HOST environment variable.

For more information about updating the SaaS host name, see Setting-up-tenants.