What's new?

These features have been changed or added in this release.

Feature Affected Components Type of Change Description
eperi sEcure Anonymized Test Data split into eperi sEcure Anonymized Test Data and Data Protection API Data Protection API Enhancement Data Protection API has been seperated from eperi sEcure Anonymized Test Data, to now be an individual Adapter. It can therefore be installed without the need for eperi sEcure Anonymized Test Data.
Support for LUHN Algorithm Data Protection API Enhancement The Credit Card Tokenizer has been improved to support the LUHN Algorithm. Hence, the Tokens created for credit card numbers can now be verified as actual credit card numbers.
Date and PLZ Tokenizer eperi sEcure Anonymized Test Data Enhancement Tokenization of dates and PLZ has been improved.
New UI Compatibility Data Protection API Enhancement The UI is enhanced to support every existing feature of Data Protection API
Pre-Fill CSV column names Data Protection API Enhancement The columns needed for Policy configuration can be pre-filled by sending a file to the webservice.
Up- and Download of CSV Files Data Protection API Enhancement CSV files can now be uploaded to the Admin Console to be tokenized / encrypted. The resulting output CSV files can later be downloaded from the Admin Console as well.
Generate Test Data Data Protection API Enhancement Test data can be generated with a respective policy directly from the Admin Consolewithout providing input.
Feature Affected Components Type of Change Description
Solr Client Cache eperi sEcure Platform Enhancement The Solr client cache has been improved so that it creates less concurrent connections.
Feature Affected Components Type of Change Description
Proxy and TLS Key Management eperi sEcure Platform Enhancement The following configuration dialogues in the Admin Console have been enhanced:
  • TLS Key Import
  • Assigning imported certificates to Proxies
  • Enabling and disabling TLS for Proxies
  • Updating Advanced Settings of Proxies
Store Trusted Certificates in Gateway eperi sEcure Platform New Feature The trusted certificates imported via the Admin Console are now used to trust all connections from the eperi sEcure Platform so that after a Java upgrade, these do not have to be re-imported to the eperi sEcure Platform's truststore manually.
Key Rotation eperi sEcure Platform Enhancement Logging for changes to the Key Rotation settings has been improved.
Solr Connection using TLS eperi sEcure Platform Enhancement Choosing the right key for a Solr connection has been simplified.
Tomcat Upgrade eperi sEcure Platform Enhancement The automated installation packages will now ship with Apache Tomcat 9.0.52.
Java upgrade eperi sEcure Platform Enhancement The automated installation packages will ship with JRE 11.0.12_7 (AdoptOpenJDK/HotSpot).
Feature Affected Components Type of Change Description
Milter Truststore eperi Milter app Enhancement A custom truststore was introduced to prevent overwriting the Gateway's self-signed certificate during every upgrade of Milter. Please visit the following links (section 5d.) for more information about eperi sEcure M365: Configuring the eperi Milter app for O365. For eperi sEcure Salesforce: Configuring the eperi Milter app for Salesforce.
Open Files Limit for Ubuntu eperi sEcure Platform Enhancement The limit for the number of open files on Ubuntu is set to the maximum by default during initial installation of the eperi sEcure Platform. Therefore, the steps outlined under Gateway crashes because of too many open files are no longer mandatory.
Gateway Update Installation eperi sEcure Platform Enhancement Restarting the eperi sEcure Platform following the installation of updates for the eperi sEcure Platform or any of its Adapters can optionally be enabled or disabled for Ubuntu. For more info, please see Installing eperi sEcure Platform with automated installer.
TLS Keys Tab eperi sEcure Platform New Feature A new tab called TLS Keys has been introduced in the new UI for TLS Key management, separated from the Key Management tab. It also contains various improvements for importing TLS Keys.
UI Improvements eperi sEcure Platform Enhancement The Admin Password Reset feature is now also present in the new UI.
Feature Affected Components Type of Change Description
View catalina.out from the Admin Console eperi sEcure Platform New Feature The last 500 lines of catalina.out are displayed on the Admin Console under Info and the whole file can be downloaded easily via browser.
Control Cluster Licensing Multitenancy Enhancement Accurate licensing for Control Clusters according to the Max Active Nodes provided while acquiring licenses.
Feature Affected Components Type of Change Description
Email Attachments eperi sEcure Platform Enhancement Handling of unencrypted attachments of emails has been rectified.
Feature Affected Components Type of Change Description
eperi Milter Container eperi Milter app New Feature The eperi Milter is now also delivered as a Docker Container Image. Please acquire a suitable Postfix Image from a trusted source.
Keystore Import Wizard eperi sEcure Platform Enhancement PKCS#12 keystores can now be imported via the new Keystore Import Wizard in the new UI.
eperi sEcure Platform Performance eperi sEcure Platform Enhancement eperi sEcure Platform startup has become faster when Ignite is enabled. The new default timeout values (Cluster Node Discovery Socket Timeout (ms) and Cluster Node Discovery Acknowledge Timeout (ms)) can be adjusted in the Gateway's Advanced Settings, in case Ignite Cluster Node discovery fails given the new default values.
Logging eperi sEcure Platform Enhancement Enhanced logging for new REST endpoints as well as re-classification of some message types to DEBUG level.
Tomcat Upgrade eperi sEcure Platform Enhancement The automated installation package will ship with Apache Tomcat 9.0.50.
Feature Affected Components Type of Change Description
ZIP Files for Adapters eperi sEcure Platform New Feature Adapter JAR files are now compressed to a ZIP file in eperi's build jobs by default, resulting in only one ZIP file bundle per Adapter to be downloaded from the Customer Portal.
License Code Entering eperi sEcure Platform Enhancement The handling of entered licence codes which contain tabs or spaces was improved when entered via copy-paste.
MasterKey Display eperi sEcure Platform Enhancement The currently used MasterKey Method is now displayed in new UI under Settings.
Editing Running Proxies eperi sEcure Platform Enhancement Running Proxies can now be edited without being preliminarily shut down. It requires a Proxy Restart on all nodes afterwards to apply the new configuration.
Logging eperi sEcure Platform Enhancement Enhanced logging for configuration REST APIs to ease debugging and bring more value to logfile analysis.
Library Initialization eperi sEcure Platform Enhancement Initialization of libraries has been improved for a better email handling.
Feature Affected Components Type of Change Description
Push configuration to Tenant Clusters for Multitenancy Multitenancy New Feature It is now possible to share tenant-specific or global O365 Settings with Tenant Clusters from the Control Cluster when in Multitenancy Mode. Please refer to the Admin Manual for Multitenancy for configuration details.
Improvements to Ignite cluster configuration eperi sEcure Platform Enhancement The Advanced Settings for Ignite (see entry Cluster Seed Addresses in the table) have been extended with the port for a seamless identification of other Ignite nodes. If you have already configured Ignite, please adjust the settings accordingly.
Support for Instance names with MSSQL eperi sEcure Platform Enhancement Using >port=-1 in the eperi sEcure Platform CLI tool for creating a database.conf file will now omit the port. Instead of the port, the Instance name will be passed on to the JDBC driver for MSSQL, making it possible to connect to a different Instance than the default.
Tomcat upgrade eperi sEcure Platform Enhancement The automated installation package will ship with Apache Tomcat 9.0.46.
Java upgrade eperi sEcure Platform Enhancement The automated installation package will ship with JRE 11.0.11_9 (AdoptOpenJDK/HotSpot).
Feature Affected Components Type of Change Description
Activate Multitenancy License Multitenancy New Feature Control Cluster Mode can be activated via activating the Multitenancy License.
Activate Multitenancy Mode Multitenancy New Feature Multitenancy Mode can be activated on Tenant Clusters by connecting them to the respective Control Cluster.
Registering a Tenant on Control Cluster Multitenancy New Feature An up and running Tenant Cluster can be registered on a Control Cluster.
Configuring a Tenant via Control Cluster Multitenancy New Feature Configuration for Tenant Clusters can be applied via Control Cluster.
Get and Update Tenant Clusters Multitenancy New Feature Each registered Tenant Cluster can be viewed and updated on the Control Cluster.
Start/Stop Proxy simultenously Multitenancy New Feature If a proxy on one node has been started/stopped, this is executed for each node of the same Tenant Cluster simultenously, if triggered by the Control Cluster.
Configuring Solr Multitenancy New Feature Solr can be configured globally on the Control Cluster and the Solr connection can be derived automatically for all Tenant Clusters. Existing Tenant Clusters can be set up against the same Solr core with their own designated collections, which is configured inside the Control Cluster.
Feature Affected Components Type of Change Description
EmailModification-Interface in the eperi sEcure SDK eperi sEcure Platform New Feature Adapters which are based upon the eperi SDK can now also make use of email protection or generic unveiling of protected values inside of emails by making use of the EmailModification-Interface. Please take note of the System Requirements for Postfix if you intend to use this feature and find more information on how to configure it under Setting up Postfix as SMTP Relay
AgeCheck Token Profiles eperi sEcure Platform New Feature A new TokenProfile has been added which allows age-validation by the intercepted backend despite tokenization. Information on how to activate this TokenProfile is available upon request.

Please inquire with eperi Support for details.

SSO Proxy via API in new UI eperi sEcure Platform New Feature Configuration of an SSO Proxy has been implemented in the Gateway's configuration REST-API. This functionality is offered via the new UI as well.
Feature Affected Components Type of Change Description
Certificate operations for proxies eperi sEcure Platform Enhancement The operations:

> Select a TLS key and certificate for a proxy.

> Reassigning the default eperi sEcure Platform certificate to a Proxy.

have been implemented in the Gateway's configuration REST-API. This functionality is offered via the new UI as well.
Master Key eperi sEcure Platform New Feature Utimaco and Luna HSM keys are now also supported as Master Key.
Master Key operations eperi sEcure Platform New Feature Master Key can be changed via CLI and API or the new UI respectively. For more information: Master Key Settings
Feature Affected Components Type of Change Description
Key operations via API in new UI eperi sEcure Platform Enhancement The operations:

> Uploading/deleting TLS keys and trusted certificates

> Creating/hiding references to HSM keys

> Changing the Key Mode

have been implemented in the Gateway's configuration REST-API. This functionality is offered via the new UI as well.
Date token profiles eperi sEcure Platform Enhancement

Date tokenizer is now capable of tokenizing and detokenizing the following date and date time formats:

> yyyy-mm-dd

> yyyy/mm/dd

> dd.mm.yyyy

> dd/mm/yyyy

> yyyy-MM-ddTHH:mm:ssZ

> yyyy-MM-ddTHH:mm:ss.SSSZ

Date time and millisecond token profiles eperi sEcure Platform New Feature With the advanced setting default and configurable DateTime and DateTimeMillisecond token profiles are introduced. Date times in format:

yyyy-MM-ddTHH:mm:ssZ

and millisecond values in format:

yyyy-MM-ddTHH:mm:ss.SSSZ

can be tokenized using the respective DateTime and DateTimeMillisecond token profile.

Please inquire with eperi Support for details.

Number of available tokens eperi sEcure Platform Enhancement The number of unused tokens along with the initial possible number of tokens and the availability percentage are displayed when the details of token profiles are expanded. The data is presented in a format of: 2862332 out of 2922305 (=97,95%)
Two-way-SSL certificate script eperi sEcure Platform New Feature A new script designed to help with two-way-SSL certificate creation will be shipped with every eperi sEcure Platform release.
Feature Affected Components Type of Change Description
Installer eperi sEcure Platform Enhancement There is now a Windows Installer for the eperi sEcure Platform
Installer eperi sEcure Platform Enhancement There is now a Suse Linux Enterprise Server (SLES) Installer for the eperi sEcure Platform
REST-API eperi sEcure Platform Enhancement There are now additional REST Configuration endpoints for Certificates and for changing the Master Key
MD5-Hashes eperi sEcure Platform Enhancement MD5-hashes for all deliverables are now part of every release, available from the Customer Portal
Certificate Expiration eperi sEcure Platform Enhancement Certificate Expiration Warnings are now visible in the new UI
Java Update eperi sEcure Platform Enhancement The shipped JRE is upgraded to Adopt OpenJDK 11.0.9.1_1
Tomcat Update eperi sEcure Platform Enhancement The shipped Apache Tomcat is upgraded to 9.0.41