Release 9.2.34.1¶
These are the Rolling Release Notes for Release 9.2.34.1. These release notes are applicable to Privacera's Self-Managed version.
Apache Ranger¶
Diagnostic Test Cases for Ranger Service Definition Drift
Diagnostic Test Cases for Ranger Service Definition Drift¶
Added diagnostic test cases to compare each connector's local Ranger Service Definition with the definition registered in Ranger, reporting functional configuration drift while ignoring cosmetic metadata differences.
Security Vulnerability Fixes
Security Vulnerability Fixes¶
Addressed known CVEs (Common Vulnerabilities and Exposures) by updating vulnerable dependencies.
Apache Solr¶
Updated Apache Solr Dependencies
Updated Apache Solr Dependencies¶
Upgraded Apache Solr dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
Apache Zookeeper¶
Updated Apache Zookeeper Dependencies
Updated Apache Zookeeper Dependencies¶
Upgraded Apache Zookeeper dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
Audit Fluentd¶
Audit Fluentd Base Image Upgraded
Audit Fluentd Base Image Upgraded¶
Updated the Audit Fluentd base image to a newer Debian version to address known security vulnerabilities identified in the Common Vulnerabilities and Exposures (CVE) report.
Updated Fluentd Dependencies
Updated Fluentd Dependencies¶
Upgraded Fluentd dependencies to address known security vulnerabilities identified in the CVE report.
PEG¶
Updated PEG Dependencies
Updated PEG Dependencies¶
Upgraded PEG dependencies to address known security vulnerabilities identified in the CVE report.
PEG Base Image Upgraded
PEG Base Image Upgraded¶
Updated the PEG base image to a newer Debian version to address known security vulnerabilities identified in the CVE report.
PolicySync Connector¶
POLICY_RESPONSE for Every Changed Policy
POLICY_RESPONSE for Every Changed Policy¶
- For Lake Formation, Databricks Unity Catalog, and Databricks SQL Analytics connectors, PolicySync now emits a
POLICY_RESPONSEaudit event for every directly changed resource and tag policy, including policies that produce no ACL actions — for example, when the change results in no ACL updates, or when the policy affects no managed resources or principals. - When a policy produces no ACL actions, the
POLICY_RESPONSEevent explains why and lists the top failure or skip reasons.
Skip Child Resource Load for On-Demand Sync for Lake Formation, Databricks Unity Catalog, and Databricks SQL Analytics Connectors
Skip Child Resource Load for On-Demand Sync for Lake Formation, Databricks Unity Catalog, and Databricks SQL Analytics Connectors¶
Added support to skip loading a schema's child tables and volumes during schema-scoped on-demand syncs when the request does not include a table key, improving performance for large schemas. - Databricks Unity Catalog: This behavior is opt-in and can be enabled using CONNECTOR_DATABRICKS_UNITY_CATALOG_ONDEMAND_SKIP_CHILD_LOAD_ENABLED. - Lake Formation and Databricks SQL Analytics Connectors: This behavior is enabled by default.
MSSQL – Fixed an Issue with Purview Tag Sync at Restart
MSSQL – Fixed an Issue with Purview Tag Sync at Restart¶
- Fixed an issue where Purview tag sync at restart did not run if resource sync was still in progress. It now waits for the first resource sync to complete and runs immediately after.
Parallel Table Describe for On-Demand Sync of Foreign Catalogs in Databricks Unity Catalog Connector
Parallel Table Describe for On-Demand Sync of Foreign Catalogs in Databricks Unity Catalog Connector¶
Added support to run per-table DESCRIBE TABLE EXTENDED calls in parallel during schema-scoped on-demand syncs of foreign (federated) catalogs, improving resource-load time for large schemas. Applies to on-demand loads only. The table-count threshold for switching from sequential to parallel describes is configurable using CONNECTOR_DATABRICKS_UNITY_CATALOG_LOAD_RESOURCES_LOAD_FOREIGN_TABLE_DESCRIBE_PARALLEL_MIN_COUNT. The parallel describe thread-pool size is configurable using CONNECTOR_DATABRICKS_UNITY_CATALOG_LOAD_RESOURCES_LOAD_FOREIGN_TABLE_DESCRIBE_THREAD_COUNT.
Portal¶
Improved On-Demand Event Task History and Event Resource Display
Improved On-Demand Event Task History and Event Resource Display¶
- Added a Resource keys tab in the On-Demand Event Task History to browse and search resource keys by category.
- Long database and table names are now fully visible on the Event Task page.
Policy Sync Logs: Security Zone-based visibility with Zone Name column and filter
Policy Sync Logs: Security Zone-based visibility with Zone Name column and filter¶
Policy Sync Logs are now scoped by Security Zone. Zone Admins and Zone Auditors see only the logs for the zones assigned to them, while full administrators continue to see all logs (including logs not tied to a zone). A new Zone Name column and filter let you view and narrow Policy Sync Logs by Security Zone.
Privacera Kafka¶
Updated Privacera Kafka Application Dependencies
Updated Privacera Kafka Application Dependencies¶
Upgraded application dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
Privacera Manager¶
Base Image Upgraded
Base Image Upgraded¶
Updated the base image to a newer Debian version to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
Privacera Monitoring¶
Updated Grafana Image
Updated Grafana Image¶
Upgraded Grafana dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
Updated Prometheus Image
Updated Prometheus Image¶
Upgraded Prometheus dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
Updated Opentelemetry-collector Image
Updated Opentelemetry-collector Image¶
Upgraded Opentelemetry-collector dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
Updated Post Install Job Image
Updated Post Install Job Image¶
Upgraded Post Install Job dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
Privacera PKafka¶
Updated Privacera PKafka Application Dependencies
Updated Privacera PKafka Application Dependencies¶
Upgraded application dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.
- Prev topic: Releases