See the release notes below for Vault 10.5.1.
Upgrade path
See below for the versions that support upgrading to 10.5.1.
Product | Supported source versions |
|---|---|
Entrust Cryptographic Security Platform Vault | 10.4.3, 10.4.5, and 10.4.7 |
Entrust Policy Agent | 10.4.3, 10.4.5, and 10.4.7 |
Changes in this release
See below for the changes in this Vault release.
- Licenses are now enforced in the Cryptographic Security Platform. You will see pop-up warnings in the webGUI when there are important license issues.
- Expanded support for Post-Quantum Encryption and Key Management, including support for ML-KEM, ML-DSA, and SLH-DSA keys, as well as encapsulation, decapsulation, sign, and verify operations using these keys. Also added improved PQ security for KMIP Server with support for PQ-TLS.
- You can now use KeySafe5 (part of the CSP appliance) to monitor your nShield HSM when configured with the Cryptographic Security Platform Vault.
You can view the KeySafe5 GUI through the Cryptographic Security Platform Compliance Manager.
- Azure updates, including Multi-Vault keys and the ability to manage multiple Azure
- The Cryptographic Security Platform Vault for Cloud Keys now supports on-demand key rotation for AWS key versions with BYOK.
- The Cryptographic Security Platform Vault for Secrets now supports Microsoft SQL Server
- The Cryptographic Security Platform Vault for Secrets now supports EnterpriseDB Postgres.
- Added the Batch Encrypt, Batch Decrypt, and Batch Encrypt-Decrypt API and CLI commands in the Cryptographic Security Platform Vault for Cryptographic APIs.
- Added support for OCI users in non-default identity
- Added Authentication Inheritance, which enables Security Administrators to configure the Cryptographic Security Platform Vault Appliance with AD, OIDC, or OIDC with AD Authentication, and allows Vault Administrators to inherit that configuration in their vaults.
- Added the ImportClearKey API command in the Cryptographic Security Platform Vault for Cryptographic
- Made multiple enhancements to the Windows Policy Agent GUI, including support for TLS 3, increased launch speed, and reduced application size. You can also update mappings, perform encryption tasks on drives, and view encryption details.