The Inverse team is pleased to announce the immediate availability of PacketFence 14.1 - a minor release bringing many improvements!
Here’s the complete list of changes included in this release:
New Features
- Upgrade to FreeRADIUS 3.2.6 (#8290) - Fixes RadiusBlast, enhances RADIUS security, and improves client and proxy handling.
- NTLM Auth multi-threaded machine-accounts (#8335) - Boosts authentication performance and scalability.
- OS based Cisco Switch Modules (#8365) - Simplifies setup and improves Cisco device compatibility.
- Secrets encrypted at rest (#8406) - Strengthens security by protecting sensitive data.
Enhancements
- Use proxysql packages in the docker image instead of compilling from the sources (#8267)
- Move SSO options to Firewall SSO from Advanced (#8303)
- PKI - Multiple certificate with same Common Name (#8310)
- Improved Ruckus Unbound DPSK (#8315)
- Improved Docker images (#8337)
- Support for case-insensitive LDAP Explorer attributes (#8366) @E-ThanG
- Custom taggable LDAP Explorer attributes (e6435e8)
- Performance improvements on pfacct (#8369)
- Added Aruba-MPSK-password attribute (#6957)
- Reduce time to flush the RADIUS log (#8397)
- Improve DPSK (#8356)
- Improve Mikrotik Disconnect (#8418)
- Select the first device that matches MFA (#8400)
- Improve pfdhcp DB connection (#8419)
- Track TLS certificate attributes per node (#8416)
- Kafka UI Config (#8421)
- Netdata Upgrade (#8399)
- Updated Cisco-WLC AireOS WiSM module (#8455)
- FortiGate syslog DHCP parser (#8459)
- Improved regex for Forti-analyser (#8470)
- Update documentation for node-specific domain configuration file (#8437)
- Add ProxySQL metrics to Netdata (#8502)
- Add Webauth, DPSK and unbound DPSK for Juniper Mist (#8495)
- Improve NTLM Auth API logging (#8516)
- Update ip4log on RADIUS authentication request with Framed-Ip-Address (#8521)
Bug Fixes
- Don’t generate all the time a mac address when using the GenericVPN switch module (#8270)
- Add missing parameters for authentication rule match (#8306)
- Fixed the dynamic role assignment issue for Aruba switch modules (#8331)
- Show only registered nodes on status page (#8382)
- Fixed pfperl-api restart (#8391)
- Fixed deauthOnPrevious with webauth (#7319)
- Fixed IP resolution on LDAP SSL verification (#6808)
- Fixed NAS-Port to ifIndex on Comware v7 switches (#8062) @bmp96
- Fix Debian sudoers (#7908) @andrew-grasso
- Fix Clickatell Messages (#7623)
- Fix Fingerbank profile overwrite (#8468)
- Clear person lookup cache after deleting a person (#8460)
- Fix pfconnector TCP/UDP port allocation (#8446)
- Fix set VLAN on generic SNMP switch (#8486)
- Fix unbound DPSK in Ruckus and OpenWifi switch module (#8496)
- Fix machine account creation on cluster (#8512)
Security Fixes
- Library updates (#8307, #8328, #8329, #8336, #8341, #8353, #8371, #8404, #8405, #8407, #8408, #8409, #8410, #8412, #8422, #8423, #8424, #8425, #8427, #8524)
See the complete list of changes and the upgrade guide file for notes about upgrading.
This release is considered ready for production use and upgrading from previous versions is strongly advised.
Back to 2025