Skip to content

Release 9.2.34.1

These are the Rolling Release Notes for Release 9.2.34.1. These release notes are applicable to Privacera's Self-Managed version.

Apache Ranger

Diagnostic Test Cases for Ranger Service Definition Drift

Diagnostic Test Cases for Ranger Service Definition Drift

Added diagnostic test cases to compare each connector's local Ranger Service Definition with the definition registered in Ranger, reporting functional configuration drift while ignoring cosmetic metadata differences.

Security Vulnerability Fixes

Security Vulnerability Fixes

Addressed known CVEs (Common Vulnerabilities and Exposures) by updating vulnerable dependencies.

Apache Solr

Updated Apache Solr Dependencies

Updated Apache Solr Dependencies

Upgraded Apache Solr dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.

Apache Zookeeper

Updated Apache Zookeeper Dependencies

Updated Apache Zookeeper Dependencies

Upgraded Apache Zookeeper dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.

Audit Fluentd

Audit Fluentd Base Image Upgraded

Audit Fluentd Base Image Upgraded

Updated the Audit Fluentd base image to a newer Debian version to address known security vulnerabilities identified in the Common Vulnerabilities and Exposures (CVE) report.

Updated Fluentd Dependencies

Updated Fluentd Dependencies

Upgraded Fluentd dependencies to address known security vulnerabilities identified in the CVE report.

PEG

Updated PEG Dependencies

Updated PEG Dependencies

Upgraded PEG dependencies to address known security vulnerabilities identified in the CVE report.

PEG Base Image Upgraded

PEG Base Image Upgraded

Updated the PEG base image to a newer Debian version to address known security vulnerabilities identified in the CVE report.

PolicySync Connector

POLICY_RESPONSE for Every Changed Policy

POLICY_RESPONSE for Every Changed Policy

  • For Lake Formation, Databricks Unity Catalog, and Databricks SQL Analytics connectors, PolicySync now emits a POLICY_RESPONSE audit event for every directly changed resource and tag policy, including policies that produce no ACL actions — for example, when the change results in no ACL updates, or when the policy affects no managed resources or principals.
  • When a policy produces no ACL actions, the POLICY_RESPONSE event explains why and lists the top failure or skip reasons.
Skip Child Resource Load for On-Demand Sync for Lake Formation, Databricks Unity Catalog, and Databricks SQL Analytics Connectors

Skip Child Resource Load for On-Demand Sync for Lake Formation, Databricks Unity Catalog, and Databricks SQL Analytics Connectors

Added support to skip loading a schema's child tables and volumes during schema-scoped on-demand syncs when the request does not include a table key, improving performance for large schemas. - Databricks Unity Catalog: This behavior is opt-in and can be enabled using CONNECTOR_DATABRICKS_UNITY_CATALOG_ONDEMAND_SKIP_CHILD_LOAD_ENABLED. - Lake Formation and Databricks SQL Analytics Connectors: This behavior is enabled by default.

MSSQL – Fixed an Issue with Purview Tag Sync at Restart

MSSQL – Fixed an Issue with Purview Tag Sync at Restart

  • Fixed an issue where Purview tag sync at restart did not run if resource sync was still in progress. It now waits for the first resource sync to complete and runs immediately after.
Parallel Table Describe for On-Demand Sync of Foreign Catalogs in Databricks Unity Catalog Connector

Parallel Table Describe for On-Demand Sync of Foreign Catalogs in Databricks Unity Catalog Connector

Added support to run per-table DESCRIBE TABLE EXTENDED calls in parallel during schema-scoped on-demand syncs of foreign (federated) catalogs, improving resource-load time for large schemas. Applies to on-demand loads only. The table-count threshold for switching from sequential to parallel describes is configurable using CONNECTOR_DATABRICKS_UNITY_CATALOG_LOAD_RESOURCES_LOAD_FOREIGN_TABLE_DESCRIBE_PARALLEL_MIN_COUNT. The parallel describe thread-pool size is configurable using CONNECTOR_DATABRICKS_UNITY_CATALOG_LOAD_RESOURCES_LOAD_FOREIGN_TABLE_DESCRIBE_THREAD_COUNT.

Portal

Improved On-Demand Event Task History and Event Resource Display

Improved On-Demand Event Task History and Event Resource Display

  • Added a Resource keys tab in the On-Demand Event Task History to browse and search resource keys by category.
  • Long database and table names are now fully visible on the Event Task page.
Policy Sync Logs: Security Zone-based visibility with Zone Name column and filter

Policy Sync Logs: Security Zone-based visibility with Zone Name column and filter

Policy Sync Logs are now scoped by Security Zone. Zone Admins and Zone Auditors see only the logs for the zones assigned to them, while full administrators continue to see all logs (including logs not tied to a zone). A new Zone Name column and filter let you view and narrow Policy Sync Logs by Security Zone.

Privacera Kafka

Updated Privacera Kafka Application Dependencies

Updated Privacera Kafka Application Dependencies

Upgraded application dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.

Privacera Manager

Base Image Upgraded

Base Image Upgraded

Updated the base image to a newer Debian version to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.

Privacera Monitoring

Updated Grafana Image

Updated Grafana Image

Upgraded Grafana dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.

Updated Prometheus Image

Updated Prometheus Image

Upgraded Prometheus dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.

Updated Opentelemetry-collector Image

Updated Opentelemetry-collector Image

Upgraded Opentelemetry-collector dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.

Updated Post Install Job Image

Updated Post Install Job Image

Upgraded Post Install Job dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.

Privacera PKafka

Updated Privacera PKafka Application Dependencies

Updated Privacera PKafka Application Dependencies

Upgraded application dependencies to address known security vulnerabilities identified in the CVE (Common Vulnerabilities and Exposures) report.