What's New in Policy Audit?

This topic gives you an overview of Policy Audit (PA) releases. For more information, refer to Policy Audit Release Notes.

Policy Audit Release 1.13

The Policy Audit 1.13 release includes the following updates:

UI Updates

  • Authenticate NSX using additional vault providers
    You can now use more vault providers to authenticate NSX environments. Previously, vault-based authentication for NSX supported only HashiCorp Vault. With this release, you can choose from multiple supported vault providers, giving you greater flexibility in securely managing credentials.  
  • Policy Revision Visibility with Change LogWith this release, we have introduced the View Changelog feature that displays the changes made to a policy. The changelog records all additions, modifications, and deletions, including control-level changes made to the policy.
  • Support for Tags in Widgets
    You can now use Tags while configuring widgets, making it easier to visualize and analyze tag-related asset data directly from the dashboard.

API Updates

  • PCAS Control List API
    This new API provides all the functionality available in the Control List API and additionally supports Audit Commands, enabling you to retrieve the audit commands configured for a control.
  • Mandatory Input Parameters for Updating HashiCorp and WAB Vaults
    With this release, we have made certain input parameters mandatory for updating authentication records created using HashiCorp or Wallix AdminBastian (WAB) authentication vaults. Previously, this existed for the Infloblox authentication technology V2.0 API.

For more details on the UI and API updates, refer to the Release Notes.

Policy Audit Release 1.12

The Policy Audit 1.12 release includes the following updates:

UI Updates

  • Support for One Identity Safeguard Vault
    We now support integration with One Identity Safeguard vault for authenticated scanning. With this enhancement, you can now perform authenticated scans using credentials securely stored in the One Identity Safeguard Vault, improving security posture and simplifying credential management. 
  • Add Policies when Generating Audit Readiness Report
    You can now add policies when generating an Audit Readiness Report, allowing policy details to be included in the report.
  • Support for New Authentication Technology - IBM DB2 12
    IBM DB2 12 technology is supported for Policy Audit authenticated scans using both scanners and agent.

API Updates

  • Support for One Identity Safeguard Vault Across all Authentication Record APIs
    We now support integration with One Identity Safeguard vault for authenticated scanning. You can now create One Identity Safeguard vaults and use them in authentication technologies.
  • Compliance Framework Reports APIs
    We are introducing new Compliance Framework Reports APIs. These APIs help in providing the required data and for managing compliance framework reports. 
  • List Policies API: View Response Progress Updates
    The List Policies API now provides progress updates in the response, showing the number of policy asset tags processed out of the total asset tags being retrieved.
  • Use Asset Tags and Tag Rules Across all Authentication Record APIs
    You can now use asset tags and tag based rules across all authentication record APIs, enabling consistent scoping of authentication records beyond Unix and Windows authentication types.

For more details on the UI and API updates, refer to the Release Notes.

Policy Audit Release 1.11

The Policy Audit 1.11 release includes the following updates:

UI Updates

  • View TruRisk™ Score in Policy Reports in CSV Format
    Enable the TruRisk™ score in Policy report templates and view it in Policy reports generated in CSV format 
  • Support for Active Directory VMware NSX Authentication
    Use Active Directory (AD) support with HashiCorp Vault when you create, update, list, and delete VMware NSX authentication records for authenticated scans of VMware NSX environments.
  • Support for the following:
    • GCP Instance-Based Scans for IPv4
      Cloud Internal Scan now supports Google Cloud Platform (GCP) provider.
    • Tag Rule and Asset Tag for Authentication Technologies
      Added support for adding IP Range in Tag Rule and Asset Tags for multiple authentication technologies.
    • New Authentication Technologies - ArubaOS, Google Chrome (MacOS), and CrowdStrike Falcon Endpoint Protection

API Updates

  • Get Policy List API: View Tag Information for Policy
    The API response now includes a new input parameter, requireTagInfo, is introduced to display tag information for a policy.
  • Added Active Directory Support to VMware NSX Authentication
    Uuse Active Directory (AD) support with HashiCorp Vault when you create, update, list, and delete VMware NSX authentication records.
  • Scans API: Support for Google Cloud Platform Instance-Based Scans for IPv4
    Provided support to Google Cloud Platform (GCP) instance based scans. You can now create and update internal scans for Assets in GCP Cloud.
  • Revised EOS and EOL dates for Posture Streaming APIs
    Revised the End of Support (EOS) and End of Life (EOL) dates for Resolve Host IDs API and Get Posture Info API.
  • Extended EOL Timelines for API Endpoints
    Extended the End of Life (EOL) dates from June 2026 to December 2026 for all APIs previously scheduled for EOL in June 2026.

For more details on the UI and API updates, refer to the Release Notes.

Policy Audit Release 1.10

The Policy Audit 1.10 release includes the following updates:

UI Updates

  • Availability of Policy Audit Fix 
    Policy Audit Fix feature is now available to all users as a 30-day free trial. During this trial, you can explore the Policy Audit Fix feature. Once the trail ends, you can purchase the feature and continue using its benefits.
  • Run Audit Fix Scripts by Bypassing PowerShell Execution Policy 
    Using the Bypass PowerShell Execution Policy, you can override the PowerShell execution policy on Windows agents. When this option is switched on, both signed and unsigned scripts are executed on the agent regardless of the PowerShell execution policy configured on the asset.
  • VMware Renamed to Hypervisors and Virtualization
    Previously, this option displayed only VMware related databases. With the addition of support for Oracle databases, the scope has expanded beyond VMware. To better reflect this support, the option has been renamed to Hypervisors and Virtualization.
  • Support for New Authentication Technology - Oracle Linux Virtualization Manager
    Oracle Linux Virtualization Manager (OLVM) technology is supported for Policy Audit authenticated scans using scanners.

API Updates

  • PCAS Policy Export API: Confirm Control Definition Updates
    The API response now includes a new field, controlDefinitionUpdateAvailable, which indicates whether any updates have been made to the existing controls fix values. 
  • PCAS Policy Section Control Technology Evaluate API: Retrieve Control Definition Updates
    The API response now includes a new input parameter, showUpdatedControlDefinition, to help view updates made to control definitions for a technology.
  • New Oracle Linux Virtualization Manager Record API
    Policy Audit now supports Oracle Linux Virtualization Manager (OLVM) Record API. The new Oracle Linux Virtualization Manager Record API lets you create, update, delete, and list OLVM authentication records.

For more details on the UI and API updates, refer to the Release Notes.