Doppler On-Prem: v20.08.11
Version 20.08 of Doppler On-Prem has been released. This is a recommended maintenance release.
Downloads
- doppler-onprem-v20.08.11.ova
- doppler-onprem-v20.08.11.legacy.ova
- CHECKSUMS.SHA256
- CHECKSUMS.SHA256.sig
An OVA without a manifest (marked legacy
) has been provided for compatibility
with VMware administration interfaces that don’t support SHA256 checksums.
We recommend verifying the integrity of the installation images.
Changes in 20.08.11
-
(Security) Linux base images for Debian 10.5 and dependencies have been updated to the latest patch levels as of 2020-08-19.
-
(Security) The administrator can now set ACLs for subnets that are allowed to access the different components of Doppler On-Prem.
-
(Security) A regression was found and fix where it preventing the nodejs containers from using the desired version of nodejs and packages.
-
(Security) A legacy websocket server component used in the dashboard has been removed to reduce the attack surface.
-
(Security) A bug was fixed where weaker than intended PBKDF2 parameters was being used for storing passwords.
-
(Security) A vulnerability was fixed where dashboard users and routers connecting to Doppler On-Prem could forge the IP address they connect from.
-
(Security) Configuration for the internal Redis container has been hardened.
-
(Security) The dx agent was found to be using an outdated version of the SSL protocol when connecting to Doppler On-Prem, this has been fixed in dx-v3.2.
-
(Security) Several minor vulnerabilities have been fixed in the URL dispatcher logic.
-
(Feature) Routers will be marked as “Inactive” if no data has been received in 30 days.
-
(Feature) RTask can now retry failed tasks
-
(Feature) RTask can now be run at specified times
-
(Feature) Users can set and manage their own API keys.
-
(Feature) System Preferences have options to configure time format, temperature scale, IP access control lists, and to disable certain features.
-
(Feature) Module temperature has been addded to the sample list, and warnings trigger when the go over a certain treshold.
-
(Update) Firmware images for MC7455 have been updated to the latest version.
-
Several minor bugs have been fixed, and other improvements to the user interface has been made.