GroupID Version 11.1 - Release Notes & Bug Fixes

The following information highlights the new and enhanced features introduced in Netwrix GroupID version 11.1.

New Features

Helpdesk Portal

A separate, configurable portal is now available for helpdesk users to perform delegated password resets. This includes administrator-enforced limitations and requirements of the helpdesk staff to confirm the target of a password reset or change.

SSPR Portal

A customizable self-service password reset (SSPR) portal is introduced, offering password change, reset, account unlock, and enrollment links, all configurable by administrators, with support for unauthenticated users in scenarios where no default role can be assigned. See the Welcome to the SSPR Portal topic.

Multi-Value Attribute Control

A highly customizable multi-value attribute control that enhances the user portal by enabling administrators to manage sub-attribute visibility and access on a per-role basis, allowing quick selection from a comprehensive list of attributes. See the Multi-Valued Control Display Type topic for additional information.

Object Type Membership Filter

Administrators can now control what objects can be added to a group based on specific criteria related to the object’s attributes, type, or organizational unit (OU). This helps in delegating membership changes more securely and efficiently. See the Membership Object Type Enforcement Policy topic for additional information.

Integration with Netwrix Password Policy Enforcer

  • Password Policy Feedback for Password Change and Reset (Requires Netwrix Password Policy Enforcer version 11 or later)
    Users now receive real-time feedback from Netwrix Password Policy Enforcer’s rules when changing or resetting passwords, providing immediate visual guidance to help construct compliant passwords.

  • Password Policy View in Credential Provider (Requires Netwrix Password Policy Enforcer version 11 or later)
    Real-time policy feedback from Netwrix Password Policy Enforcer’s rules is now displayed during password resets through the credential provider, ensuring compliance as users update their credentials.

Enhancements

Linked Identity Store

The Linked Identity Store feature is now fully available to licensed customers. This feature provides a unified view of managed objects linked to a user’s identities, allowing simultaneous changes across identities and groups. This enhances user management by offering visibility and control over both on-premises and cloud objects, with real-time synchronization of changes.

Entra ID Account Unlock

Account unlocking in Microsoft Entra ID is now supported.

Export Grid Functionality

The user portal now allows exporting results displayed in grids, such as group memberships or a manager’s direct reports, to external files (CSV and XML).

Entra ID QBDL Filter

Improve performance by configuring Netwrix GroupID to skip dynamic groups in Microsoft Entra ID, reducing the performance impact of frequent changes or a high number of dynamic groups in Microsoft Entra ID.

Smart Group Scripting

In-process scripting is introduced for Smart Groups, enabling more complex group update tasks, including unique name assignments and additional criteria evaluations.

Management Shell

The Management Shell is now available to all Netwrix GroupID customers, regardless of license. It supports the orchestration of create, read, update, and delete (CRUD) operations,

RESTful API

The new Netwrix GroupID RESTful API is officially released, enabling basic CRUD operations for managing groups and identities.

Remote IIS App Deployment

Web apps and services in Netwrix GroupID can now be deployed across multiple IIS hosts, improving scalability and load balancing.

.NET 8 Support

Netwrix GroupID now supports Microsoft’s latest .NET, offering security enhancements, performance improvements, and future-proofing.

Deprecated Features

Support for the Imanami PhoneID MFA option ended on January 31, 2025. The mobile application is no longer available in the app stores, and its integration has now been removed from the GroupID MFA configuration screens. Netwrix recommends alternative passkey-based hardware tokens like mobile devices or Yubikey. For additional details, please see the following Knowledge Base article: PhoneID Authentication Option Discontinued

Bug Fixes

See the Netwrix_GroupID_11.1_BugFixList.pdf (256.2 KB) for a list of bugs fixed in this version.

7 Likes

Hi Team,

Do you have any updates on the release of the Agent for Password Reset? I understand that integrating PPE with GroupID ensures compliance with PPE password rules. Additionally, I know we can add a link on the Windows login screen to unlock and reset passwords via portal redirection.

However, is there a way to apply these rules directly at the Windows login screen, similar to how PPE functions? Do you have an estimated release date for this feature?

Thanks!

Hello Karim, GroupID password center has a Credential Provider available. I assume there is a drive to have a universal CP for all psswords tools.

2 Likes

You can view the documentation of GroupID Credential Provider using the following link:
https://helpcenter.netwrix.com/bundle/GroupID_11.1/page/Content/GroupID/Portal/User/Manage/CredentialProvider.htm