Privacera Release 4.4
Release 4.4
Build/Image rel_4.4.0.1
12-Mar-2021
Versions
-
Discovery: rel_4.4.0.1
-
Access Manager: rel_4.4.0.1
-
Privacera Encryption Gateway (PEG): rel_4.4.0.1
Features/Changelist
Portal
- Added support for IdP-initiated logout for Privacera Platform.
- Reports:
- Enhancement in Discovery Overview report.
- Added provision to view Databricks Usage report.
-
Added the following property to define default user roles:
"privacera.portal.auth.default.user.role=ROLE_USER,ROLE_EXPLORER_ALL"
Discovery
- Added support for realtime scanning in cross-projects GCP.
Access Manager
- Added support for:
- Case-sensitive column-level access control and masking for PostgresSQL and Snowflake connectors.
- Redshift Spectrum database/table/column-level access control.
- View-level access control with column-masking and row-level filter using Data_Admin permission in PrestoSQL plug-in.
- File-level access control for views and tables created in PrestoSQL.
- Active Directory nested user structures in UserSync.
- KMS Azure Key Vault in Docker and Kubernetes environments.
- Apache Ranger KMS master key migration to Azure Key Vault from RangerDB in Docker and Kubernetes environments.
- Sync more than 15 users limit via group filter for Azure Active Directory.
- Access cross-account SQS queue for Postgres audits.
- Provision of generic DB Connection Manager for the multiple connectors in PolicySync.
- Added RocksDB performance statistics in Grafana.
- Tuned performance of RocksDB using Apache Ranger sync parameters with guidelines.
- PolicySync:
- [Preview] Added support for Databricks SQL Analytics.
- Added support for view-based row filter and masking in Amazon Redshift for users.
- Improved performance for loading large numbers of users in Ranger.
- [Preview] Added provision of Starburst Enterprise Presto Service definitions.
- [Preview] Integrated Apache Ranger with native Dremio plug-in.
- [Preview] Integrated Apache Ranger with Spark Thrift Server for MapR.
Privacera Manager
- Added support for:
- Run all the Privacera services as non-root user in the Docker container.
- Override default retention policy for Apache Ranger Admin Solr.
- Creating global-level keystore/truststore using pkcs12 format.
- HA Solr/Apache ZooKeeper along with Privacera Platform Portal.
- Audits to Kafka destination through audit server.
- AAD SAML assertion attribute variables in Privacera Manager.
- Upgraded from Solr version 8.5.1 to 8.7, with support for Solr authentication.
- Created default scheme policies for Privacera Encryption Gateway (PEG) service on Privacera Portal if Privacera Encryption Gateway service is enabled.
- Created default schemes on Privacera Portal if Crypto service is enabled.
- [Preview] Privacera Manager UI support for installation.
EMR
- Added support for JCEKS in Apache Ranger PrestoDB Plug-In.
- [Preview] Added provision of Amazon EMR Record Server.
Data Access Server
-
Added support for:
- AWS Instance Metadata Service v2 (IMDSv2).
- SSE S3 and SSE KMS-encrypted AWS S3 buckets through File Explorer and AWS CLI.
-
Certification of support for row-level and dynamic masking with PrestoDB Qubole.
Databricks
- Improved JWT token parsing logic to be more generic.
- Added support for:
- Azure signed URLs for abfss protocol in Databricks.
- View-level access control with Data_Admin in Databricks for Spark Plug-In.