Releases: gravitational/teleport
Teleport 16.5.5
Description
- Fixed incompatibility of client tools with servers older than v16.5.4. #54285
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64
Teleport 17.4.6
Description
- User Kind is now correctly reported for Bots in the
app.session.start
audit log event. #54241 - Fix a goroutine leak on TLS routing handler errors when Proxy is behind TLS-terminated load balancers. #54224
- Fix issue that prevent Kubernetes agents from connecting to GKE control plane using the new DNS-based access mechanism. #54216
- Tbot can now be configured to use a non-standard environment variable when sourcing the ID Token for GitLab joining. #54187
- Teleport-update: stabilize binary paths in generated tbot config. #54178
- Fix a bug where the
terraform-provider
preset role to lacked permissions to list Windows Desktops on clusters that got updated from v16 to v17. #54170 - Fixed OIDC SSO MFA with multiple redirect URLs. #54167
- Fix a bug causing the Terraform provider to fail to update
dynamic_windows_desktop
resources. #54162 - Reduce log spam in discovery service error messaging. #54149
- The web UI now shows role descriptions in the roles table. #54137
- Leaf cluster joining attempts that conflict with an existing cluster registered with the root now generate an error instead of failing silently. #54134
- Reduce backend load in clusters with large numbers of Windows desktops. #53719
Enterprise:
- Fix SCIM user update bug cause by missing revision.
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64
Teleport 16.5.4
Description
Caution
Do not upgrade to this version. Introduces a breaking change that is fixed in 16.5.5
- User Kind is now correctly reported for Bots in the app.session.start audit log event. #54242
- Fix issue that prevent Kubernetes agents from connecting to GKE control plane using the new DNS-based access mechanism. #54217
- Teleport-update: stabilize binary paths in generated tbot config. #54179
- Reduce log spam in discovery service error messaging. #54150
- The web UI now shows role descriptions in the roles table. #54136
- Leaf cluster joining attempts that conflict with an existing cluster registered with the root now generate an error instead of failing silently. #54133
Teleport 17.4.5
Description
- The Teleport Terraform Provider now supports setting the Managed Updates v2 resources
autoupdate_config
andautoupdate_version
. #54109 - Fix a bug in managed updates v1 causing updaters v2 and AWS integrations to never update if weekdays were set in the
cluster_maintenance_config
resource. #54088 - Teleport-update: ensure teleport-upgrade is always disabled when teleport-update is used. #54087
- Added an option for users to select database roles when connecting to PostgreSQL databases using WebUI. #54068
- Allow the use of expressions in the Where condition on Role RBAC rules for the Bot resource. #54065
- Machine and Workload Identity: Increase the maximum allowed bot certificate TTL to 7 days, up from 24 hours. Larger values than the default 12 hours must be explicitly requested using the new
--max-session-ttl
flag intctl bots add
. #54063 - Teleport-update: Improve defaulting for update groups. #54050
- Fixed VNet on MacOS with hardware keys. #54037
- Added SAML IdP service provider preset for Microsoft Entra External ID. #54021
- Fixed TLS errors when switching between VNet apps on Windows. #54010
Enterprise:
- Added support to Machine & Workload Identity SPIFFE CA for issuing X509-SVIDs using an external PKI hierarchy.
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64
Teleport 16.5.3
Description
- Fix a bug in managed updates v1 causing updaters v2 and AWS integrations to never update if weekdays were set in the
cluster_maintenance_config
resource. #54089 - Teleport-update: ensure teleport-upgrade is always disabled when teleport-update is used. #54086
- Teleport-update: Improve defaulting for update groups. #54049
- Restrict agent update days to Mon-Thu on Cloud. #53766
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64
Teleport 15.4.33
Description
- Fix a bug in managed updates v1 causing updaters v2 and AWS integrations to never update if weekdays were set in the
cluster_maintenance_config
resource. #54116 - Fix a bug in Teleport 15 causing
autoupdate_version
andautoupdate_config
creation to fail whenmetadata.id
field is set. #54047
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64
Teleport 17.4.4
Description
- Fixed formatting of Ed25519 SSH keys for PuTTY users. #53972
- Support Oracle join method in Workload Identity templating and rule evaluation. #53945
- Workload ID: the Kubernetes, Podman, and Docker attestors now capture the container image digest. #53939
- Fixed web UI and tsh issues when a SAML metadata URL takes an unusually long time to respond. #53933
- Updated Go to 1.23.8. #53918
- Added support for specifying a WorkloadIdentity-specific maximum TTL. #53902
- Fixed Azure VM auto discovery when not filtering by resource group. #53899
- Added new
proxy_protocol_allow_downgrade
field to theproxy_service
configuration in support of environments where single stack IPv6 sources are connecting to single stack IPv4 destinations. This feature is not compatible with IP pinning. #53885 - Support for managing the WorkloadIdentity resource in the Teleport Kubernetes Operator. #53862
- Added detailed audit events for SFTP sessions on agentless nodes. #53836
- Teleport-update: Add
last_update
metadata and update tracking UUID. #53828 - Restrict agent update days to Mon-Thu on Cloud. #53765
Enterprise:
- Fixed an issue in the Identity Center group provisioning where group and group membership provisioning was skipped if the provisioning service failed to get user account of Access List member.
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64
Teleport 16.5.2
Description
- Workload ID: the Kubernetes, Podman, and Docker attestors now capture the container image digest. #53940
- Fixed web UI and tsh issues when a SAML metadata URL takes an unusually long time to respond. #53934
- Updated Go to 1.23.8. #53919
- Fixed Azure VM auto discovery when not filtering by resource group. #53900
- Added new
proxy_protocol_allow_downgrade
field to theproxy_service
configuration in support of environments where single stack IPv6 sources are connecting to single stack IPv4 destinations. This feature is not compatible with IP pinning. #53884
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64
Teleport 15.4.32
Description
- Fixed web UI and tsh issues when a SAML metadata URL takes an unusually long time to respond. #53935
- Updated Go to 1.23.8. #53920
- Fixed Azure VM auto discovery when not filtering by resource group. #53901
- Restrict agent update days to Mon-Thu on Cloud. #53767
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64
Teleport 16.5.1
Description
- Added additional tracking metadata to teleport-update. #53829
- Fixed throttling in the DynamoDB backend event stream for tables with a high amount of stream shards. #53805
- Reduce backend load in clusters with large numbers of Windows desktops. #53720
- Workload ID: Support for adding custom claims to JWT-SVIDs. #53586
- Kubernetes app discovery now supports an additional annotation for apps that are served on a sub-path of an HTTP service. #53095
Download
Download the current and previous releases of Teleport at https://goteleport.com/download.
Plugins
Download the current release of Teleport plugins from the links below.
- Slack Linux amd64 | Linux arm64
- Mattermost Linux amd64 | Linux arm64
- Discord Linux amd64 | Linux arm64
- Terraform Provider Linux amd64 | Linux arm64 | macOS amd64 | macOS arm64 | macOS universal
- Event Handler Linux amd64 | Linux arm64 | macOS amd64
- PagerDuty Linux amd64 | Linux arm64
- Jira Linux amd64 | Linux arm64
- Email Linux amd64 | Linux arm64
- Microsoft Teams Linux amd64 | Linux arm64