Skip to content

Releases: gravitational/teleport

Teleport 16.5.5

24 Apr 23:14
1da4087
Compare
Choose a tag to compare

Description

  • Fixed incompatibility of client tools with servers older than v16.5.4. #54285

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.

Teleport 17.4.6

23 Apr 21:10
0d91409
Compare
Choose a tag to compare

Description

  • User Kind is now correctly reported for Bots in the app.session.start audit log event. #54241
  • Fix a goroutine leak on TLS routing handler errors when Proxy is behind TLS-terminated load balancers. #54224
  • Fix issue that prevent Kubernetes agents from connecting to GKE control plane using the new DNS-based access mechanism. #54216
  • Tbot can now be configured to use a non-standard environment variable when sourcing the ID Token for GitLab joining. #54187
  • Teleport-update: stabilize binary paths in generated tbot config. #54178
  • Fix a bug where the terraform-provider preset role to lacked permissions to list Windows Desktops on clusters that got updated from v16 to v17. #54170
  • Fixed OIDC SSO MFA with multiple redirect URLs. #54167
  • Fix a bug causing the Terraform provider to fail to update dynamic_windows_desktop resources. #54162
  • Reduce log spam in discovery service error messaging. #54149
  • The web UI now shows role descriptions in the roles table. #54137
  • Leaf cluster joining attempts that conflict with an existing cluster registered with the root now generate an error instead of failing silently. #54134
  • Reduce backend load in clusters with large numbers of Windows desktops. #53719

Enterprise:

  • Fix SCIM user update bug cause by missing revision.

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.

Teleport 16.5.4

23 Apr 20:35
e041d68
Compare
Choose a tag to compare

Description

Caution

Do not upgrade to this version. Introduces a breaking change that is fixed in 16.5.5

  • User Kind is now correctly reported for Bots in the app.session.start audit log event. #54242
  • Fix issue that prevent Kubernetes agents from connecting to GKE control plane using the new DNS-based access mechanism. #54217
  • Teleport-update: stabilize binary paths in generated tbot config. #54179
  • Reduce log spam in discovery service error messaging. #54150
  • The web UI now shows role descriptions in the roles table. #54136
  • Leaf cluster joining attempts that conflict with an existing cluster registered with the root now generate an error instead of failing silently. #54133

Teleport 17.4.5

18 Apr 21:25
2e39cdf
Compare
Choose a tag to compare

Description

  • The Teleport Terraform Provider now supports setting the Managed Updates v2 resources autoupdate_config and autoupdate_version. #54109
  • Fix a bug in managed updates v1 causing updaters v2 and AWS integrations to never update if weekdays were set in the cluster_maintenance_config resource. #54088
  • Teleport-update: ensure teleport-upgrade is always disabled when teleport-update is used. #54087
  • Added an option for users to select database roles when connecting to PostgreSQL databases using WebUI. #54068
  • Allow the use of expressions in the Where condition on Role RBAC rules for the Bot resource. #54065
  • Machine and Workload Identity: Increase the maximum allowed bot certificate TTL to 7 days, up from 24 hours. Larger values than the default 12 hours must be explicitly requested using the new --max-session-ttl flag in tctl bots add. #54063
  • Teleport-update: Improve defaulting for update groups. #54050
  • Fixed VNet on MacOS with hardware keys. #54037
  • Added SAML IdP service provider preset for Microsoft Entra External ID. #54021
  • Fixed TLS errors when switching between VNet apps on Windows. #54010

Enterprise:

  • Added support to Machine & Workload Identity SPIFFE CA for issuing X509-SVIDs using an external PKI hierarchy.

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.

Teleport 16.5.3

17 Apr 22:51
7d7043f
Compare
Choose a tag to compare

Description

  • Fix a bug in managed updates v1 causing updaters v2 and AWS integrations to never update if weekdays were set in the cluster_maintenance_config resource. #54089
  • Teleport-update: ensure teleport-upgrade is always disabled when teleport-update is used. #54086
  • Teleport-update: Improve defaulting for update groups. #54049
  • Restrict agent update days to Mon-Thu on Cloud. #53766

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.

Teleport 15.4.33

18 Apr 01:51
6dbc18a
Compare
Choose a tag to compare

Description

  • Fix a bug in managed updates v1 causing updaters v2 and AWS integrations to never update if weekdays were set in the cluster_maintenance_config resource. #54116
  • Fix a bug in Teleport 15 causing autoupdate_version and autoupdate_config creation to fail when metadata.id field is set. #54047

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.

Teleport 17.4.4

15 Apr 02:21
5bca9f4
Compare
Choose a tag to compare

Description

  • Fixed formatting of Ed25519 SSH keys for PuTTY users. #53972
  • Support Oracle join method in Workload Identity templating and rule evaluation. #53945
  • Workload ID: the Kubernetes, Podman, and Docker attestors now capture the container image digest. #53939
  • Fixed web UI and tsh issues when a SAML metadata URL takes an unusually long time to respond. #53933
  • Updated Go to 1.23.8. #53918
  • Added support for specifying a WorkloadIdentity-specific maximum TTL. #53902
  • Fixed Azure VM auto discovery when not filtering by resource group. #53899
  • Added new proxy_protocol_allow_downgrade field to the proxy_service configuration in support of environments where single stack IPv6 sources are connecting to single stack IPv4 destinations. This feature is not compatible with IP pinning. #53885
  • Support for managing the WorkloadIdentity resource in the Teleport Kubernetes Operator. #53862
  • Added detailed audit events for SFTP sessions on agentless nodes. #53836
  • Teleport-update: Add last_update metadata and update tracking UUID. #53828
  • Restrict agent update days to Mon-Thu on Cloud. #53765

Enterprise:

  • Fixed an issue in the Identity Center group provisioning where group and group membership provisioning was skipped if the provisioning service failed to get user account of Access List member.

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.

Teleport 16.5.2

15 Apr 07:16
e750a35
Compare
Choose a tag to compare

Description

  • Workload ID: the Kubernetes, Podman, and Docker attestors now capture the container image digest. #53940
  • Fixed web UI and tsh issues when a SAML metadata URL takes an unusually long time to respond. #53934
  • Updated Go to 1.23.8. #53919
  • Fixed Azure VM auto discovery when not filtering by resource group. #53900
  • Added new proxy_protocol_allow_downgrade field to the proxy_service configuration in support of environments where single stack IPv6 sources are connecting to single stack IPv4 destinations. This feature is not compatible with IP pinning. #53884

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.

Teleport 15.4.32

15 Apr 07:09
d6ca24d
Compare
Choose a tag to compare

Description

  • Fixed web UI and tsh issues when a SAML metadata URL takes an unusually long time to respond. #53935
  • Updated Go to 1.23.8. #53920
  • Fixed Azure VM auto discovery when not filtering by resource group. #53901
  • Restrict agent update days to Mon-Thu on Cloud. #53767

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.

Teleport 16.5.1

09 Apr 18:51
7a26e04
Compare
Choose a tag to compare

Description

  • Added additional tracking metadata to teleport-update. #53829
  • Fixed throttling in the DynamoDB backend event stream for tables with a high amount of stream shards. #53805
  • Reduce backend load in clusters with large numbers of Windows desktops. #53720
  • Workload ID: Support for adding custom claims to JWT-SVIDs. #53586
  • Kubernetes app discovery now supports an additional annotation for apps that are served on a sub-path of an HTTP service. #53095

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

Plugins

Download the current release of Teleport plugins from the links below.