Doppler On-Prem: v20.08.11


Version 20.08 of Doppler On-Prem has been released. This is a recommended maintenance release.

Downloads

An OVA without a manifest (marked legacy) has been provided for compatibility with VMware administration interfaces that don’t support SHA256 checksums.

We recommend verifying the integrity of the installation images.

Changes in 20.08.11

  • (Security) Linux base images for Debian 10.5 and dependencies have been updated to the latest patch levels as of 2020-08-19.

  • (Security) The administrator can now set ACLs for subnets that are allowed to access the different components of Doppler On-Prem.

  • (Security) A regression was found and fix where it preventing the nodejs containers from using the desired version of nodejs and packages.

  • (Security) A legacy websocket server component used in the dashboard has been removed to reduce the attack surface.

  • (Security) A bug was fixed where weaker than intended PBKDF2 parameters was being used for storing passwords.

  • (Security) A vulnerability was fixed where dashboard users and routers connecting to Doppler On-Prem could forge the IP address they connect from.

  • (Security) Configuration for the internal Redis container has been hardened.

  • (Security) The dx agent was found to be using an outdated version of the SSL protocol when connecting to Doppler On-Prem, this has been fixed in dx-v3.2.

  • (Security) Several minor vulnerabilities have been fixed in the URL dispatcher logic.

  • (Feature) Routers will be marked as “Inactive” if no data has been received in 30 days.

  • (Feature) RTask can now retry failed tasks

  • (Feature) RTask can now be run at specified times

  • (Feature) Users can set and manage their own API keys.

  • (Feature) System Preferences have options to configure time format, temperature scale, IP access control lists, and to disable certain features.

  • (Feature) Module temperature has been addded to the sample list, and warnings trigger when the go over a certain treshold.

  • (Update) Firmware images for MC7455 have been updated to the latest version.

  • Several minor bugs have been fixed, and other improvements to the user interface has been made.