Skip to main content

2023-28-April

Release Version: PK Protect Endpoint Manager April 2023

General Availability Date: April 28, 2023

Introduction

The following ‘minor’ release provides new product functionality, resolution to customer reported issues and other general improvements to the PKWARE software.

Updated Components and Versions

PKWARE Component

New Version

PK Endpoint Manager

v19.6.114

PK Endpoint Agent - Persistent Data Encryption (PDE) Agent

v17.6.0008

PK Transparent Server Agent (TDE)

v3.90.3

PKWARE SDK

Java 2020.2.1 / .NET 2020.2.4

PK Protect Mobile App for iOS

2.1.0

PK Protect for Intune Mobile App for iOS

2.1.0

PK Protect Mobile App for Android

2.1.0

PK Protect for Intune Mobile App for Android

2.1.0

 

PK Endpoint Manager / PK Endpoint Agent Application Version Compatibility

PEM Version

Archive Client Application Versions

 PEM v19.6.114

  April 2023

Endpoint Agent: 17.6.0008 (Apr 2023), 17.50.007 (Jan 2023),17.40.240 (Oct 2022), and
17.30.0011 (Jul 2022), 
Transparent Server Agent (TDE): v3.90.3

Supported 3rd Party Platforms

The following PKWARE and 3rd Party products and versions listed below represent those which have been tested for quality, interoperability, and functional operation. Customers are strongly encouraged to maintain their environment in accordance with the versions and dependencies listed below, to avoid unforeseen issues with compatibility or unexpected behavior.

PK Endpoint Manager

Operating System Type

Version

Microsoft Windows

Windows Server 2022, 2019, 2016, 2012, 2012 R2

Browser Type

Version

Edge

Edge 112.x

Firefox

102.x

Google Chrome

112.x

Safari

16

Database Type

Version

PostgreSQL

12

MSSQL

SQL Server 2016, 2014

Web Server

Version

Internet Information Server (IIS)

IIS 10.0, 8.5, 8.0

PK Endpoint Agent

Operating System Type

Version

 Microsoft Windows

Windows Server 2022, 2019, 2016, 2012, 2012 R2

Windows 11, 10

 MacOS

Ventura (13), Monterey (12), Big Sur (11) (with M1 chip – using Rosetta 2)

 Linux – RedHat

RedHat 6 or greater   

 Linux – SUSE

12 SP5 and 15 SP3 on x86_64

 Linux - Ubuntu

14.04 (LTS) and greater on X86 and X86_64

 UNIX – IBM AIX

7L version 7.1 (7100-00) or higher

 UNIX - Solaris

10 and 11.3 on UltraSPARC and X86

 UNIX – HPUX

11iv2 with patches

Operating System Type - Mobile

Version

PK Protect for iOS

15.x

PK Protect for Android

11

SDK                                                                      

 Language

Version

 Java

 v2019.7.1

Dependencies:

  • Java 8 or higher JRE

 Application Operating System

Version

 MacOS

Monterey (12), Big Sur (11)

 Windows

Windows Server 2019, 2016, 2012, 2012 R2

Windows 10 (64-bit)

 Linux – RedHat

RedHat Enterprise Linux 8 (64-bit)

 Linux – Ubuntu

Ubuntu 18.04 LTS

Other PKWARE Components

 Component

Version

PK Transparent Server Agent (TDE) - Server

Windows Server 2022, 2019, 2016, 2012, 2012 R2

PK Transparent Desktop Agent (TDE) – Desktop

Windows 11, 10

PK Protect Reader – Windows

Windows 10 and higher

PK Protect Reader – macOS

macOS 11 and higher  

Features and Improvements

The following capabilities have been added to the Manager, Agent or both in the current release.

PK Protect Endpoint Manager 

PK Endpoint Manager

Summary

Appliance / Windows

Version 19.6.114

  • Targets and Protection Policies
    o New objects available in the Policy menu: Protection Policies contain information pertaining to policy bundles and remediations and are used within targets. Targets contain information related to the scope of a Protection Policy.
    o New fields in target status page (sensitive, retention, and estimation data) help better understand a target’s health. This information can also be visualized in a Data Risk Assessment dashboard.
    o Horizontally scale with Targets and Distributed App Pools. 
    o Target functionality includes many advancements and will replace assignments and lockers. 

  • Distributed App Pools
    o Easily distribute the workload of assigned targets using a combination of devices. 
    o Faster completion of horizontally scaled agents and initial scans. 

  • Bulk Export/Import
    o New capability for bulk exporting and importing configurations and objects in PEM Administrator. 
    o Conveniently import exported files into different PEM Administrators. Test configurations in DEV environments and easily move changes to production to speed up implementation 
    time and reduce duplication of work.

  • Dashboard Changes
    o Share dashboards across all PEM Administrators. 
    o Export / import single dashboards into different PEM 
    Administrators. 
    o Jumpstart usage with a pre-made dashboard library. This growing library is available via PKWARE’s support website.

  • Menu Changes
    o A new menu item called Devices contains Devices, Pools, and Profiles. Devices and Profiles were previously found under Archive menu item. 
    o A new menu item called Policies contains Targets and Protection Policies. 
    o Bulk Export and Bulk Import pages are found under the Advanced menu item. 

PK Endpoint Agent

Windows, Mac, Linux
Version 17.6.0008

Features

  • Targets and Protection Policies
    o New objects available in the Policy menu: Protection Policies contain information pertaining to policy bundles and remediations and are used within targets. Targets contain information related to the scope of a Protection Policy.
    o New fields in target status page (sensitive, retention, and estimation data) help better understand a target’s health. This information can also be visualized in a Data Risk Assessment dashboard.
    o Horizontally scale with Targets and Distributed App Pools. 
    o Target functionality includes many advancements and will replace assignments and lockers. 

  • Distributed App Pools
    o Easily distribute the workload of assigned targets using a combination of devices. 
    o Faster completion of horizontally scaled agents and initial scans.

Mobile Apps 2.1.0

Features

  • •Added support for QR code passphrase reading. 

Fixed Issues

 

Component

 

ID

 

Details

Affected Version

PEM

 PEM-194

When logged in as Super Sys Admin, the following pages user interfaces (UI) did not match standard PEM styling: Appliance -> System, Basics -> Import, MIP -> DKE Keys, MIP -> Labels. These pages were updates.

 19.6+

PEM

PEM-217

When a Trusted Root Certificate is added or removed the PEM Administrator application does not become aware of change until restart. Updates were made to force this recognition.

19.6+

PEM

 PEM-269

Empty dashboard panels are included in dashboard exports. Empty panels are now removed from any export.

 19.6+

PEM

PEM-481

Many updates were made to improve Active Directory (AD) syncing.

  • Account sync maintains state and will leave off where it stopped during a server restart.

19.4+

PEM

PEM-355

There were inconsistencies in the amount of time identities received group changes after account syncs. This standardized among all login types.

19.6+

PEM

PEM-373

Delete memos are created for various object deletes but they were never deleted. A background task was set up to purge these.

19.6+

PEM

PEM-412

A dashboard exported as PNG contained the spinner. This was resolved to export after spinner was hidden.

19.6+

PEM

PEM-615

When editing an email or file encryption remediation which uses a Smartkey is edited to not use a Smartkey, the resulting remediation table still showed a Smartkey as selected. This did not impact functionality but was confusing. The Smartkey is now cleared from the table as expected. 

19.5+

PEM

PEM-697

When editing a discovery locker, a JavaScript error occurred preventing saving. This was resolved.

19.4+

PEM

PEM-736

An error was discovered when using the propagation page to force propagation of an identity to CMDS. This was resolved.

19.6+

Agent

PEM-385

Fixed a few minor UI oddities related to Windows 11.

17.6+

Agent

PEM-498

Certificates with private keys imported to CNG provider did not show as Personal. The UI was modified not to filter CNG keys using

17.6+

PK Secure

Email

PEM-362

With an encryption email policy enabled, an email with a sensitive attachment and nonsensitive body saw both attachment and body

1.2+

PK Secure

Email

PEM-400

When PEM Agent is closed and a user attempts to send an email a prompt stating the PEM Agent is offline. The cancel button in this prompt did not respond to user click. This was fixed so cancel and X buttons close the prompt.

1.2+

PK Secure Email

 PEM-463

The minimum Microsoft SDK version supported was dropped to 1.5, allowing customers with older versions of Microsoft software to take advantage of PK Secure Email. For our full support matrix, please contact support.

 1.1+

PK Secure Email

PEM-676

When sending to a distribution list the external recipient prompt would lock up. This has been fixed and there are no known issues sending to distribution lists.

 1.2+

iOS Mobile

PEM-521

Some options were not clearly visible when in Light mode. UI was adjusted to make these options clearly visible.

2.1+

iOS Mobile

PEM-528

With Azure AD authentication enabled, the app crashes when wrong login credentials are inputted. The app crash was fixed.

2.1+

iOS Mobile

PEM-535

With Azure AD authentication disabled, some scenarios allowed users to login using Azure AD credentials. This was fixed to block Azure AD logins.

2.1+

PK Endpoint Manager Appliance – OS and Major Packages

For a full list of the packages included in your appliance, see the Systems/Packages page.

PKWARE Enterprise Manager Virtual Appliance

Package / OS

Version

Ubuntu

20.04.4 LTS

Dotnet-host

7.0.4-1

Dotnet-runtime-3.1

3.1.32-1

Dotnet-runtime-6.0

6.0.15-1

Apache2

2.4.41-4ubuntu3.14

Postgresql

12+214ubuntu0.1

Openssl

1.1.1f-1ubuntu2.17

Python3

3.8.2-0ubuntu2

PKWARE Software Checksums

 

New PEM Updates:

Type

Sha256 Checksum

Windows Installer

 A48D8C2A30B651B6A15B71730F2A31B8EACE19F4FFAF1A45D833507A2B3D9888

Appliance Upgrade

CODE
50A1EE1A6AC8089A326DBCFB1C7BDDCEE7ACC870C47DF7F1FC46D391017A2BAC

Appliance OS Upgrade

CODE
26743385126CCCEF55B1D832B887D6EE0F386E2C9B4D3829A47CC53F4D15951C

 

Base PEM VM:

Format

Sha256 Checksum

OVA

CODE
A7D372935FD5FFEDB21603355898C12E37562945D327B9FD608ED51865D44404

QCOW2

8B5474BDBE96BB9D0A00CE142BD0CAADA5FE2BC87CC82C74A47134AB42B0E5DE

VHD

E2503B080E858F10DADBD340FD8B931535AE07D3DB9E7BA017C5C3121CBC816D

 

PEM Supporting Software:

Product

Checksum

PowerShell Azure App Helper (Create App)

CODE
E7CE0827A46B9B062EB2B74DAD0FF8A184A31A5CEF7C6F13DBE73D9271F581BE  

PowerShell Azure App Helper (Delete App)

CODE
189BBFB48022FCE61146E3FA66BAD3E438B70D816B6EFB77CABEBB185207DAB8  

Elasticsearch 7.9.2

CODE
1EAF78D94C37EA8ACECF0B2702FC71E54E2A73259CD777056FA92361D8EB0890  

AdoptOpenJDK 11

CODE
6EB277A3E9305FDF380900D20F4EF7A474F13FDBC92F7709B57945F6FFDC80FC  

 

PK Endpoint Agent (Archive Agent):

Platform

Checksum

Windows 64- bit

CODE
D16A2136C38D214E53E76B63FD24D9F3A788AE19C576927011DD51BFA2B24E3F

macOS

CODE
E0EBCF4F59F4649B86EE0C7BF2C7F37F8BCE58635DEC18C8BD50F11BEDD45C4E

deb 32-bit

CODE
C493B48CAE0B920A87B9D3C8B21C9CB957AFB558A3D35F458ACDB422BAD0BC95

deb 64-bit

CODE
030CBB3F57344297470BE658118EE33C0AF131F69DF55FA42B2ABCADE782E076

rpm 32-bit

37BEF345FED4366D94CC8A3245C7835CDF5505102FC4D363EDFAEED86D006FF8

rpm 64-bit

B5ED0D01B40B4F51A77CB0BB955B1ACF7F1FB2A1F3879E27028E37BEF37E0A53

Linux Discovery Supplemental Package

N/A

aix bff

072C70CEF417121B9CAE053B275627E5E6456704E95C4E591437928C5CA617BB

sun4u pkg

4AD18D80388C1D78A382E1C31902B05E301AB4804900462753390222815A8085

i86pc pkg

9EB846DD2C4365CF9914633ADB21DC26BF96E71DAEB997E0BB171BF4E4B01675

Windows Deployment JSONs:

Type

Checksum

Upgrading from 16.9 or newer

5D688F009BE130BCFBCC82BEFFE8F8C9ED1388F385F0C6BDE096D63E76D79BC0

Upgrading from 16.8 or older

A6A78344DB965B5CBE3C7D90145D1644CC279164555F07C0650BD1AB25C61E4C

 

Outlook Add-in PK Secure Email:

Transparent Server and Desktop Agent (TDE)

Download

Checksum

DesktopTDE 64- bit

CODE
92ECB203998AA42DA0A9D059D6B69DB1A59D949602203903E30DA9EAB61F69AD

DesktopTDE 32- bit

CODE
37DE065B830294A9932D3FAB8A9014065252F85A4A3033CB05D82A359BAA3B02

TDE 64-bit

CODE
20C7E297A4218993AF3E143090CB85515820A1D6C09AB3B4C7F2C546754CD66E

TDE 32-bit

CODE
C5B295880B373E7C2362A66419C1519888E9C6F2076CB7A0A116EB3934CB438A

 

Classification

Installers

Checksum

Boldon James Manual Installer

CODE
F90F4DEDDD3A92F1397A2D8C5247FA1D4693026A6C1BCEB6D9F90A0DBA184B6F

PKWARE Bundled Installer

CODE
B832A7516E2E83915E9FE9753D0793BAD0CC7B5C84953012B89445FBB8296CB7

Related documentation

Questions and Support

Support Hours and Contact Information

  • Monday through Friday 8-6 Eastern Time Zone

  • Technical Support 937.847.2687

  • Customer Service 937.847.2374

  • Request Tech Support Form

Support Links

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.