Password Secure 26.8.10 Released: Complete Recycle Bin Cleanup

Netwrix Password Secure 26.8.10 is here with expanded recycle bin controls, web-based password rule management, and fixes for HSM login access, Active Directory profile switching, and more.

Want the full details? Click the link below!

Password Secure 26.8.10 Now Available

This release brings improved recycle bin controls, expanded password rule management, and a set of reliability fixes across the Web App, Windows App, Server, Server Manager, Browser Extension, and MSP components.

This release introduces no breaking changes and is recommended for all customers.


Highlights

Complete recycle bin removal

The web application and Windows application now let you permanently remove deleted documents, users, organizational units, roles, applications, and forms directly from the recycle bin.

Manage password rules from the web application

Password rules can now be managed directly in the web application’s advanced view, no longer requiring a separate tool.

HSM login fix restores access

Users without the “Is database administrator” right can once again log in when a database is configured to use a Hardware Security Module (HSM) to store its keys.

New

Web application: Advanced view and Windows application

  • You can now use the recycle bin to completely remove deleted documents, users, organizational units, roles, applications, and forms, too.

Web application: Advanced view

  • You can now manage password rules using the web application.

Improved

Windows application

  • The Windows application now uses the most recent PuTTY version (0.84) for SSH connections.
  • Using Public Key Infrastructure (PKI) as a second factor now also allows certificates from Cryptography API: Next Generation (CNG) Key Storage Providers. This also affects the Autofill add-on.
  • Updated several third-party dependencies to their latest compatible versions. These updates bring in bug fixes, security-related fixes, performance improvements, and maintenance changes from upstream. This also affects all other Windows components, both client-side and server-side.

Web application: Advanced view

  • The “Multiselection” toggle now behaves and looks like a checkbox.

Browser extension

  • The extension sometimes entered credential data in forms that aren’t login forms. New limitations minimize this behavior.

Fixed

All clients with server connection

  • When a database uses a Hardware Security Module (HSM) to store its keys, users without the “Is database administrator” user right can log in again.

Windows application

  • You can now switch the Active Directory profile of roles from end-to-end (E2E) encrypted profiles to MasterKey profiles again.

Web application

  • The web app now respects the browser’s language settings again if there is no explicit language set.

Server Manager

  • The web application no longer spams the error log with “VerifyObjectRight: Insufficient right” entries.
  • Managed Service Providers can now create customers without using a database template again.

Bug Fixes and Miscellaneous Updates

The following table contains a comprehensive list of updates and fixes introduced in this version.

Component Description Case # Escalation #
Web app The web app now respects the browser’s language settings again if there is no explicit language setting set. 451072 4310017, 4309994, 4309718, 4309594, 4309570, 4309430
Server Manager The error log on the Server Manager no longer gets spammed with “VerifyObjectRight: Insufficient right” entries when using the web application. 447195 4309828, 4309565, 4309256, 4309419
Server When a database is configured to use HSM to store its keys, users without the “Is database administrator” user right can log in again. 451673 4309993
Windows App, Autofill Add-on Using PKI as a second factor now also allows certificates from CNG Key Storage Providers. 450934 4309902
Windows App The Active Directory profile of roles can be switched from E2E-encrypted profiles to MasterKey profiles. 451663 4309771
Browser extension The browser extension sometimes entered credential data in forms that are not login forms. We added some limitations, so this behavior should be reduced to a minimum. 444110 4309697
MSP Managed Service Providers can now create customers without using a database template again. 450814 4309942

Compatibility

The following client versions are compatible with Netwrix Password Secure Application Server 26.8.10:

  • Windows & Web App: >= 26.8.10
  • Browser Extensions & API/SDK: >= 26.3.100

The following Netwrix Password Secure Application Server versions are compatible with the Password Secure Browser Extension 26.8.10:

  • Application Server: >= 26.3.100

Need help with this update?

There are many different ways to get help with our products!

Situation Action
If you feel the product is broken and not working as intended… Contact Support
If you have a question you’d like to ask other experts… Create a discussion in the community: Password Secure > Discussions & Questions
If you have a feature request… Let our product team know directly: Password Secure > Ideas
If you have something cool to show… Show everyone what you built: Password Secure > Show & Tell

What are your thoughts?

We are always happy to hear from our users on what you like, and what you hope to see in the future. Please, share your thoughts below!

Any known problems regarding server manager login after updating? In one environment the login was no longer possible. Compare certificate thumbprint was used to match the certificate used in the base configuration exactly. Sadly a restore was performed before I could investigate further. A 4096 Bits webserver certificate from a windows -ca is in production.

1 Like

Yes, we also had similar problems after the update.

Hi, everyone,

Are there any updates on this issue? Is it currently recommended to install the update?

We’re still waiting for a reply. It seems the version has a bug. Please provide an update as soon as possible.

We use the option for DNS for this issue. In almost every update this option gets resetted and magically the DNS setting survives when used. It’s pretty annoying but at least it seems to work.

We’re looking into this and will have a reply for you by tomorrow morning. Thanks for your patience!