2025-Q2: RR Upgrade (May 2025)
Major version
Version: 8.2505
Lifecycle dates
| Minor Version | General Availability | End of Full Support | End of Fade-Out Support |
|---|---|---|---|
| 8.2505.6.2 | Oct 30, 2025 | Nov 18, 2025 | Jun 16, 2026 |
| 8.2505.6.1 | Sep 25, 2025 | Nov 18, 2025 | Jun 16, 2026 |
| 8.2505.6.0 | Aug 28, 2025 | Nov 18, 2025 | Jun 16, 2026 |
| 8.2505.5.0 | Aug 8, 2025 | Nov 18, 2025 | Jun 16, 2026 |
| 8.2505.4.1 | Jun 26, 2025 | Nov 18, 2025 | Jun 16, 2026 |
| 8.2505.4.0 | Jun 10, 2025 | Nov 18, 2025 | Jun 16, 2026 |
| 8.2505.3.0 | May 21, 2025 | Nov 18, 2025 | Jun 16, 2026 |
Breaking changes and required actions
The following components have breaking changes compared to the previous release, or require specific actions. For more information, see the Release Notes of each listed component.
- nevisAdmin 4 and its components are now compiled and run with Java 21. Using Java 17 is no longer supported.
- nevisAdmin 4: The Generation Engine has been discontinued and is no longer supported. We recommend to use NevisAdmin4 instead, which also offers Kubernetes resource generation and automated key generation—features not available in the Generation Engine.
- Patterns: The development of new, advanced use cases made patterns more interconnected.
- nevisFIDO now supports the official FIDO Alliance Metadata Service.
Every RR (minor and major) may contain breaking changes. See the release notes of the component you are upgrading. You should always stay up to date on the RR branch. If there are multiple releases between your current version and the version you are upgrading to, consult the release notes of each version.
Components Changelog
nevisAdmin 8.2505.3 Release Notes - 2025-05-21
Release information
- RPM: nevisadmin4-8.2505.3.16-1.noarch.rpm
- GUI Version: FE 8.2505.3-1502 - BE 8.2505.3.16
Upgrade instructions and breaking changes
Check the upgrade instructions for nevisAppliance, RPM, or Kubernetes usage.
- UPGRADED: nevisAdmin 4 is now compiled and run with Java 21. Using Java 17 is no longer supported. (NEVISADMV4-10440)
- CHANGED: The
nevisadmin.yaml.literal-block-style.enabledproperty’s default value is now set totrue. This feature may cause false changes on the publish screen, as the visualization of multi-line strings appears identical on the UI. See the documentation for more details on this property.
For Helm-based installations, to opt out, use--set nevisAdmin4.yaml.literalBlockStyle.enabled=falseor configure it in thevalues.ymlfile. - DEPRECATED: The Generation Engine has been discontinued and is no longer supported. We recommend to use NevisAdmin4 instead, which also offers Kubernetes resource generation and automated key generation—features not available in the Generation Engine. (NEVISADMV4-10411)
- CHANGED: The promotion of canary deployments now run asynchronously, without blocking the UI. Refer to the Kubernetes Status screen to monitor its progress. The HTTP response code for
PUT /api/inventories/{inventoryKey}/promotewas changed from 200 to 202. (NEVISADMV4-10220).
Main improvement
- NEW: Support REST API calls with a JWT token when SAML is enabled. (NEVISADMV4-10387)
- NEW: Supporting PostgreSQL version 17. (NEVISADMV4-10439)
- NEW: Supporting MariaDB version 11.4. (NEVISADMV4-10438)
- NEW: Canary deployments now support custom replica counts and resource settings, independent of their primary counterparts. During promotion, the canary will automatically scale up to match the primary’s current replica count before traffic is switched over. (NEVISADMV4-10220).
Notable changes and bug fixes
- NEW: The
X-Frame-Optionsheader is disabled when theplatformspring profile is enabled. (IP-658) - IMPROVED: The Inventory help now has a section describing the usage of secrets and files. (NEVISADMV4-10384)
- FIXED: We fixed a GUI issue on the Kubernetes Status page which allowed the deletion, promotion and rollback of deployments even if the user had not have permission to do that, only to receive an error message (still no deployments were changed). Now the GUI correctly enforces the permissions on these buttons. (NEVISADMV4-9091)
- FIXED: We are skipping class loading for the
nevisadmin-plugin-marketplaceto avoid exceptions in the log. Furthermore, thenevisadmin-plugin-marketplaceis not set as a default library for new projects. (NEVISADMV4-10423) - FIXED: Fixed in inventory help (Kubernetes and Classic) the url of the Product-Analytics page. (NEVISADMV4-10434)
- FIXED: We resolved an issue where setting
nevisadmin.http.header.content-security-policywould incorrectly set the value ofnevisadmin.http.header.x-frame-options. (NEVISADMV4-10513)
Dependency upgrades
- jsch 0.2.24 (NEVISADMV4-10369)
- jackson 2.18.3 (NEVISADMV4-10369)
- jetty 12.0.18 (NEVISADMV4-10369)
- groovy 4.0.26 (NEVISADMV4-10369)
- snakeyaml 2.4 (NEVISADMV4-10369)
- aspectj 1.9.23 (NEVISADMV4-10369)
- slf4j 2.0.17 (NEVISADMV4-10369)
- logback-classic 1.5.18 (NEVISADMV4-10369)
- guava 33.4.6-jre (NEVISADMV4-10369)
- commonmark 0.24.0 (NEVISADMV4-10369)
- spring-boot 3.3.11 (NEVISADMV4-10524)
- spring-dependency-management 1.1.7 (NEVISADMV4-10369)
- mariadb-java-client 3.5.3 (NEVISADMV4-10369)
- postgres 42.7.5 (NEVISADMV4-10369)
- shiro 2.0.2 (NEVISADMV4-10369)
- nimbus-jose-jwt 10.1 (NEVISADMV4-10369)
- bcprov-jdk18on 1.80 (NEVISADMV4-10369)
- bcpkix-jdk18on 1.80 (NEVISADMV4-10369)
- bcpg-jdk18on 1.80 (NEVISADMV4-10369)
- bcutil-jdk18on 1.80 (NEVISADMV4-10369)
- kubernetes-java-client 23.0.0 (NEVISADMV4-10369)
Patterns 8.2505.3 Release Notes - 2025-05-21
Release information
- Build Version: 8.2505.3.14
This release includes the changes of the internal releases 8.2505.2 and 8.2505.1.
Please read those release notes as well.
Changes
The development of new, advanced use cases made the patterns more interconnected.
For instance, the nevisIDM User Lookup pattern now supports Passkey Autofill which requires assignment of a nevisFIDO FIDO2 Instance.
This does not mean that it is now always required to also select the nevisadmin-plugin-fido2 when using the nevisadmin-plugin-nevisidm.
You only have to do that if you use this feature.
As a consequence, we will rearrange the subsections to describe the changes.
Most patterns for building authentication flows are described in the Authentication section.
Authentication step patterns that connect to nevisIDM are now also described there.
For changes related to passwordless authentication see the Mobile Authentication and FIDO2 Passwordless sections.
General
- PAT-826: Add
always_onto sampler to ensure OpenTelemetrytraceIdis always generated.
Authentication
- ⚠️ We replaced the default
Login Templatewith a more modern design- If you notice any screen rendering issues in combination with your custom AuthState configuration, please contact support.
- You can also opt out of this change by setting
Default Templatetoclassicin the realm pattern. - The new template uses a
?vparameter for referenced resources (e.g., CSS, JavaScript, images) to avoid caching issues.
- PAT-863: New
Reset Session Steppattern. - PAT-811: Support setting custom properties in
Kerberos Loginpattern. - PAT-844: Do not filter out terms with
silentAcceptanceinnevisIDM Terms & Conditions Acceptancepattern. - IP-700: Improved display of
OATH OnboardingandOATH Authentication. - IP-683: New
nevisIDM Recovery Code Onboarding&nevisIDM Recovery Code Authenticationpatterns. - IP-697: New experimental setting for inline display of the button as a link in
Dispatcher Buttonpattern.- This mode is not supported in all places yet.
- If you would like to this feature, and it does not work for you, contact support.
- ⚠️ PAT-867: Deprecated
Remember Inputsetting- This feature does not work in all scenarios and was therefore marked for removal in the Nov 25 release.
- A warning message will be displayed when the setting is enabled.
- PAT-839: Added
domainto defaultSecTokenfields to ease integration with nevisAdapt. - ⚠️ PAT-872: Align naming of button labels
login.social.generic.button.label->login.social.button.labelmobile_auth.cancel.button.label->cancel.button.labelfido2.cancel.button.label->cancel.button.label- If you have changed the translation for any of those labels, check that the new label is translated as required.
- IP-704: Ensure roles are always fetched the generated
IdmGetPropertiesState. - N/A: Added support for buttons to
nevisIDM Second-Factor Onboardingpattern. - PAT-840: Fixes for
nevisIDM Terms & Conditions Acceptancepattern- The Groovy script generated by the pattern did not work when the user had multiple terms to accept.
- IP-706: Added optional user property update to
nevisIDM User Updatepattern.
Identity Management
- PAT-842: Support exposure of REST API for use by
nevisIDM Administration GUIwhen the project contains nevisIDM REST Service pattern and domains differ. - PAT-837: Add
env.confupload possibility tonevisDataPorter Instancepattern.
Adaptive Authentication
- NEVISDETECT-2113: New experimental pattern
nevisAdapt Risk Calculation Stepwith minimal setting options and no persistence. - IP-665: new setting allows
nevisAdapt Authentication Connectorto opt out of assigning it to the logout flow.
SAML / OAuth / OpenID Connect
- N/A: Fixed a generation failure caused by
Generic Social Login Step. - PAT-865: Improved handling of invalid requests in the dispatcher script generated by the
SAML IDPpattern. - PAT-841: Improved error handling in
OAuth 2.0 Authorization Server / OpenID Provider. - PAT-782: Allow disabling role re-assignment for
SAML IDP Connectorpattern in case SP does not belong to Nevis. - PAT-794: Added setting to configure old signer to support certificate rollover for
OAuth 2.0 Authorization Server / OpenID Provider. - PAT-812: Only require
IDP Signer Trust StorewhenSignature Validationis notnone. - PAT-790: Support PKCE config for
RelyingPartyandOAuth2Clientstates.
Mobile Authentication
- PAT-861: Add support for
App Attestationfor iOS and Android to thenevisFIDO UAF Instancepattern. - PAT-878: Outbound proxy support for
App Attestationconnections. - PAT-860: Add support for usage of nevisProxy Login Renderer in
In-Band Mobile Authentication Realm. - PAT-873: Add connection pool settings to
nevisFIDO UAF Databasepattern. - PAT-858: New setting
Push Message TimeoutonnevisFIDO UAF Instanceto configure the lifetime of a push message on the Google and Apple push servers. - PAT-836: New setting
Full Basic Attestation - Android Permissive ModeinnevisFIDO UAF Instancepattern.
FIDO2 Passwordless
- PAT-873: Add connection pool settings to
nevisFIDO FIDO2 Databasepattern. - PAT-855: Support for Passkey autofill in
nevisIDM User Lookuppattern. - PAT-868: Support optional nevisIDM policy ID configuration in
nevisFIDO FIDO UAF Instancepattern for UAF and generic dispatch target credentials. - ⚠️ PAT-832: Improved support for
FIDO2 MetadatainnevisFIDO FIDO2 Instancepattern:- It is now possible to fetch the metadata from a remote metadata service, e.g., https://mds3.fidoalliance.org/
- The default is backward compatible, but we recommend to check the settings in the
FIDO2 Metadatatab and configure the metadata as desired.
Kubernetes
- NEVISADMV4-10220: Support for minimal canary deployment
- ⚠️ IP-669: Improved defaults for
Startup Probe Delay:- nevisMeta: 30s
- nevisDetect: 30s
- nevisLogrend: 30s
- nevisAuth: 50s
- nevisFIDO: 30s
- nevisDP: 30s
- nevisIDM: 60s
- nevisProxy: 30s
- nevisAdapt: 60s
nevisAdapt 8.2505.3.5 - 21.05.2025
Changes and new features
-
ADDED: Oracle 23ai support
-
ADDED: MariaDB 11 support
-
ADDED: PostgreSQL 17 support
-
ADDED: (Experimental) New REST endpoint for risk calculation service:
/calculateRisk. This endpoint does not increase the observation counts. -
ADDED: (Experimental) New AuthState for the service above:
NevisAdaptCalculatorAuthState -
FIXED: Dependencies updated
-
FIXED: Country persistence of IP2Location DB1BIN handler
-
CHANGED: JRE upgraded to 21
-
CHANGED: Java 21 specific refactorings (records, pattern matching, deprecated APIs)
-
CHANGED: Increased the length of
USER_AGENTin the tableTACAC_BROWSER_FINGERPRINT_OBVto 512 -
CHANGED: Geolocation file overwrite threshold reduced from 1 MiB to 1 kiB during deployment
-
CHANGED: Default key object reference
DefaultKeyStore/DefaultSigner->DefaultKeyStore -
CHANGED: AuthState HTTP client creation failure no longer allowed, leads to
BadConfigurationExceptioninstead
nevisAuth 8.2505.3.5 - 21.05.2025
Breaking changes
- UPGRADED: nevisAuth is now compiled and run with Java 21. Using Java 17 is no longer supported. Using custom Java based authentication states compiled with older Java than 21 is technically possible. However as Nevis cannot test those in practice, providing support for non Java 21 compiled custom authentication states is not possible. (NEVISAUTH-4934)
- FIXED:
KeyStoreUtil.getKeyStore()now returns all certificates in the keystore whenkeystorerefandkeyobjectrefconfiguration options are specified, before this change, it returned a keystore with the first certificate only. Note that in case a direct file reference was configured usingkeystorefilethen there's no change in behaviour, as that already correctly returned all certificates. This affects your setup if you configured a keystore in theWSSHeaderValidationauth state or used theKeyStoreUtil.getKeyStore()orAuthState.getKeyStore()methods in a custom auth state or Groovy script state. If this change is causing issues for you, you should either create a new keystore file with only one certificate or define a separate keyobject specifying the alias in the file url. We generally advise to check your configured keystores to ensure they only contain certificates for intended purposes. (NEVISAUTH-4869) - CHANGED:
CertStoreManager.getCertificate()throws and exception if multiple certificates are found in the configured keystore, before this change the method returned the first certificate and logged a warning. The motivation of this change is that this method should be only used when a single certificate is expected. The original behaviour created hard to debug scenarios and made it too easy to create a flawed PKI setup. SAML, OAuth2, JWTToken, DynCert, SAPTicketIssuer, MobileSignatureState, authentication states are possibly involved as well custom auth states or Groovy script states in case you used any of the following methods:AuthState.getCertificates(),AuthState.getCertificate(),CertStoreManager.getCertificate(). For existing configurations in case this change causes issues, you should either create a new keystore file with only one certificate or define a separate keyobject specifying the alias in the file url. In general if you don't receive an exception there is nothing needed to be done. (NEVISAUTH-4869) - REMOVED: We removed the deprecated
RSA1_5andRSA_OAEPencryption methods from theDiscovery Endpointand related configurations inAuthorizationServer. (NEVISAUTH-4980) - CHANGED: The artifact
nevisauth-test-authstateharness-fatnow only contains Nevis classes. 3rd party dependencies are now supplied in a pom file which can found near the jar file. (NEVISAUTH-5026) - CHANGED: The classes
EngineTestContext,InMemoryCertStoreProvider,KeyStoreHandle,TestContextin thenevisauth-test-authstateharness-fatartifact can now be created using staticofmethods instead of constructors. (NEVISAUTH-4963) - CHANGED: The
HttpClientin nevisAuth is backed by the Apache HttpClient, which changed the default encoding toUTF-8for text type contents. This could break setups in case ifISO8859-1is expected on the called side. In theTanStatefor theHttpchannel you can already configure the encoding, so changing this is already possible, theSwissphonechannel is now fixed toISO8859-1to match specifications. We did not detect any other place where this could be an issue. Contact support if you find it otherwise. In case of issues when you use the HttpClient from custom Java or ScriptStates, you can configure encoding via the charset in entity. (NEVISAUTH-5036) - UPGRADED: We upgraded the Nevis OpenTelemetry java agent to version 3.0.0.0. wich changes the OpenTelemetry span names and the number of spans. This only affects you if you export OpenTelemetry tracing to a backend of your choosing. Using version 2.x will cause duplicated spans and missing HTTP request headers when your logging pattern contains
%X{httpHeader.yourHttpHeader}entries. Therefore version 2.x is no longer supported. (NEVISAUTH-5007)
Changes and new features
- NEW: Supporting PostgreSQL version 17. (NEVISAUTH-4933)
- NEW: Supporting MariaDB version 11.4. (NEVISAUTH-4939)
- NEW: We support the option for scopes to be selected via JWT bearer flow or not in
AuthorizationServerlocal datasource. (NEVISAUTH-4591) - NEW: We support
max_ageparameter inAuthorizationServer. User will be forced to re-login when elapsed time is greater thanmax_agevalue. (NEVISAUTH-4878) - NEW: We introduced
addKidparameter inAuthorizationServerAuthState to addkidinID TokenandAccess Token. (NEVISAUTH-4837) - NEW: Return error
request_uri_parameter_supportedwhen Authorization Request toAuthorizationServercontainrequest_uribut PAR is not enabled. (NEVISAUTH-4945) - NEW: We introduced
keycurve.old,keyID.old,addKid.old,keystoreref.oldandkeyobjectref.oldparameters inAuthorizationServer. When AuthorizationServer do a certificate rollover, Token(s) generated by the old key still able to be verified and old key will be displayed in JWKS with provided keyID. (NEVISAUTH-4952) - NEW: We added
jwksEndpointparameter toOAuth2ClientStatefor validating the Access Token signature when needed. (NEVISAUTH-4954) - NEW: We introduced
keystoreref.old,keyobjectref.oldandkeycurve.oldwhenAccessTokenConsumerAuthState need to validate the Access Token with old certificate during certificate rollover period. (NEVISAUTH-4953) - NEW: Audit log property
Detailfor Info messages in case of AUTH_DONE can now be set using thenotes:lastinfoproperty. (NEVISAUTH-5043) - CHANGED: Change
request_uri_parameter_supportedreturn fromfalsetotrueforDiscoveryService. (NEVISAUTH-4945) - CHANGED: Backend side validation of gui elements now can be also done using the new
backendValidationattribute where you can write an El expression to do validation logic. So far thevalidationattribute ofGuiElemexecuted the client side javascript on the backend side as well. From the November 2025 release on nevisAuth will no longer execute the javascript defined in thevalidationattribute on the backend side, use thebackendValidationinstead. (NEVISAUTH-5032) - FIXED: ACR claim in ID Token will only return 1 value without space. (NEVISAUTH-4883)
- FIXED: The correct error message is displayed when code_challenge is empty but S256 is required for AuthorizationServer. (NEVISAUTH-4800)
- FIXED:
auth_timewon't be changed in new ID Token when user does not need to login withprompt=noneormax_agestill in the valid period. (NEVISAUTH-4879) - FIXED: We fixed a bug in the LocalSessionStore session reaper which caused a deadlock when manual session invalidation and LocalSessionStore reaper collided. (NEVISAUTH-4988)
- FIXED: We fixed a bug that empty SessionIndex caused session not found in IdentityProviderState. (NEVISAUTH-5004)
- UPGRADED: We upgraded the Nevis OpenTelemetry java agent to version 2.0.1.1 (NEVISAUTH-4941)
- FIXED: Form encryption no longer logs excessive stacktraces when there is no input to be decrypted. (NEVISAUTH-5018)
- FIXED: We fixed the logging of Assertion's Subject Confirmation validation. (NEVISAUTH-4946)
- FIXED: We check for the missing
request_uriparameter first when PAR is required forAuthorizationServer. (NEVISAUTH-4754) - FIXED: OpenTelemetry PeriodicMetricReader no longers logs a WARN level message when Metrics export fails during shutdown due to the application is already unloaded. (NEVISLOG-547)
- FIXED: Double resolution of EL expressions on Gui labels. (NEVISAUTH-5068)
- FIXED: The
HttpResponseimplementation in the nevisAuthHttpClientincorrectly returned HTTP headers in theheaderandheaderDatemethods case sensitively. Headers are now returned case insensitively in these methods. (NEVISAUTH-5080) - UPGRADED: We upgraded the Apache EL third-party dependency to version 11.0.4. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Apache Httpclient third-party dependency to version 5.4.3. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Apache XML beans third-party dependency to version 5.3.0. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Bouncy Castle third-party dependencies to version 1.80. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Checker-qual third-party dependency to version 3.49.2. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Commons codec third-party dependency to version 1.18.0. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Commons-text third-party dependency to version 1.13.0. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Groovy third-party dependencies to version 4.0.26. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Guava third-party dependencies to version 33.4.6-jre. (NEVISAUTH-5036)
- UPGRADED: We upgraded the HikariCP third-party dependencies to version 6.3.0. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Jackson third-party dependencies to version 2.18.3. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Jaxrs-ri third-party dependency to version 3.1.10. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Jetty third-party dependencies to version 12.0.18. (NEVISAUTH-5036)
- UPGRADED: We upgraded the jcan-saml, jcan-sectoken dependency to version 8.2505.x. (NEVISAUT
- UPGRADED: We upgraded the Ldap-unboudid third-party dependency to version 7.0.2. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Libphonenumber third-party dependency to version 9.0.2. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Log4j third-party dependencies to version 2.24.3. (NEVISAUTH-5036)
- UPGRADED: We upgraded the MariaDB connector third-party dependency to version 3.5.3. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Moxy third-party dependency to version 4.0.5. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Nevis OpenTelemetry java agent to version 3.0.0.0 (NEVISAUTH-4941)
- UPGRADED: We upgraded the Nimbus oicd sdk third-party dependency to version 11.23.1. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Nimbus JWT third-party dependency to version 10.0.2. (NEVISAUTH-5036)
- UPGRADED: We upgraded the OpenSaml third-party dependency to version to 5.1.3 (NEVISAUTH-4707)
- UPGRADED: We upgraded the Opentelemetry api third-party dependency to version 1.48.0 (NEVISAUTH-5036)
- UPGRADED: We upgraded the PostgreSQL jdbc driver third-party dependency to version 42.7.5. (NEVISAUTH-5036)
- UPGRADED: We upgraded the Slf4j third-party dependency to version 2.0.17. (NEVISAUTH-5036)
- UPGRADED: We upgraded the XmlSec third-party dependency to version to 4.0.3 (NEVISAUTH-4707)
- UPGRADED: We upgraded the Woodstox third-party dependency to version 7.1.0. (NEVISAUTH-5036)
nevisDataporter 8.2505.3.4 - 21.05.2025
Changes and new features
- CHANGED: The nevisDP supports Java 21 and this is the required minimum version of JVM. (NEVISDP-585)
- UPGRADED: We upgraded json-smart to 4.4.11. (NEVISDP-572)
- UPGRADED: We upgraded artemis to 1.18.0. (NEVISDP-585)
- UPGRADED: We upgraded beanutil to 1.18.0. (NEVISDP-585)
- UPGRADED: We upgraded c3p0 to 0.10.2. (NEVISDP-585)
- UPGRADED: We upgraded commons-cli to 1.9.0. (NEVISDP-585)
- UPGRADED: We upgraded commons-codec to 1.18.0. (NEVISDP-585)
- UPGRADED: We upgraded commons-lang to 3.17.0. (NEVISDP-585)
- UPGRADED: We upgraded commons-io to 2.18.0. (NEVISDP-585)
- UPGRADED: We upgraded groovy to 4.0.26. (NEVISDP-585)
- UPGRADED: We upgraded gradle-os-package-plugin to 11.11.2. (NEVISDP-585)
- UPGRADED: We upgraded gson to 2.12.1. (NEVISDP-585)
- UPGRADED: We upgraded jackson to 2.18.3. (NEVISDP-585)
- UPGRADED: We upgraded jax-ws to 4.0.3. (NEVISDP-585)
- UPGRADED: We upgraded jax-ws-api to 4.0.2. (NEVISDP-585)
- UPGRADED: We upgraded jersey to 3.1.10. (NEVISDP-585)
- UPGRADED: We upgraded json-smart to 2.5.2. (NEVISDP-585)
- UPGRADED: We upgraded log4j to 2.24.3. (NEVISDP-585)
- UPGRADED: We upgraded maria-jdbc to 3.5.2. (NEVISDP-585)
- UPGRADED: We upgraded netty to 4.1.119.Final. (NEVISDP-585)
- UPGRADED: We upgraded narayana to 7.2.1.Final. (NEVISDP-585)
- UPGRADED: We upgraded postgresql to 42.7.5. (NEVISDP-585)
- UPGRADED: We upgraded quartz to 2.5.0. (NEVISDP-585)
- UPGRADED: We upgraded servlet to 6.1.0. (NEVISDP-585)
- UPGRADED: We upgraded slf4j2 to 2.0.17. (NEVISDP-585)
- UPGRADED: We upgraded snake-yaml to 2.4. (NEVISDP-585)
- UPGRADED: We upgraded unboundid-ldapsdk to 7.0.2. (NEVISDP-585)
- UPGRADED: We upgraded woodstox to 7.1.0. (NEVISDP-585)
- UPGRADED: We upgraded jakarta-jms-api to 3.0.0. (NEVISDP-585)
- UPGRADED: We upgraded commons-text to 1.10.0. (NEVISDP-585)
nevisDetect 8.2505.3.4 - 21.05.2025
Changes and new features
-
ADDED: Oracle 23ai support
-
ADDED: MariaDB 11 support
-
ADDED: PostgreSQL 17 support
-
ADDED: ActiveMQ Artemis support
-
FIXED: Dependencies updated
-
CHANGED: JRE upgraded to 21
-
CHANGED: Java 21 specific refactorings (records, pattern matching, deprecated APIs)
-
CHANGED: nevisAdapt plugin code cleanup
-
CHANGED: Default key object reference
DefaultKeyStore/DefaultSigner->DefaultKeyStore -
CHANGED: AuthState HTTP client creation failure no longer allowed, leads to
BadConfigurationExceptioninstead -
CHANGED: removed
DeviceCookieAuthStateas it is now part ofnevisadaptcl