Monthly Release Notes - April 2026
Alert Logic
Managed Web Application Firewall (WAF)
Version 5.2.5.1-3380
April 14, 2026
Fixes
-
Allow dots in string literals inserted into backend request headers.
-
Restored deleted indexes of custom IP list files and prevent their future deletion.
-
Apply URI masking rules when rewriting logged request paths.
-
Support DNS hostnames for cross-cluster synchronization peers.
-
Improved cross-cluster synchronization in several minor ways.
Version 5.2.5.0-3365
April 2, 2026
Features
-
Cross-cluster centralized policy management support.
-
Alternative SIEM mode support for all logs, including deny logs.
Enhancements
-
Turned SNI on by default for new proxies when proxying to HTTPS backend servers.
-
Ensured WAF block responses are not cached by browsers or CDNs.
-
Autoscaled instances report the auto-scaling group name as a CloudWatch dimension.
-
Allowed manual process for kernel-core updates on physical hardware appliances.
Fixes
-
Restored save functionality in the allowed HTTP methods policy section.
-
Fixed ACL reorder behavior that only persisted partial URL order.
-
Resolved ACME certificate issues involving redirects and timeouts.
-
Properly propagated IP trust/info reset commands in AWS auto-scaling clusters.
Boldon James
SAFEmail
Version 3.9.6
April 22, 2026
Enhancements
- Confirmed support for 32-bit and 64-bit Microsoft Office 2024.
Fixes
- Fixed issue where the Document Manager CMIS browser failed to load. The BJTrace logging message was "Could not find file 'CMISBrowser.resources'".
- Fixed issue where Next/Previous message buttons displayed IPM.Note based messages with an empty label.
SAFEmail GreenShield Expansion Pack
Version 3.9.6
April 22, 2026
Enhancements
- Confirmed support for 32-bit and 64-bit Microsoft Office 2024.
SAFEmail P7 Transport
Version 3.9.6
April 22, 2026
Enhancements
- Confirmed support for 32-bit Microsoft Office 2024.
SAFEmail Security
Version 3.9.6
April 22, 2026
Enhancements
- Confirmed support for 32-bit and 64-bit Microsoft Office 2024.
Core Security
Version: 9.7
April, 2026
Access Assurance Suite Enhancements and Fixes
-
Enhanced the help content by including an HTML version of the content with the product. This change modernizes the content and provides an alternative to the PDF versions of the documentation.
Core Access Enhancements and Fixes
-
Added three types of policy violations that can be configured to check only for roles and not for entitlements.
-
Updated the Approve Request page to display pending requests in a grid. This makes searching, sorting, and filtering more user friendly.
-
Updated the UI so you can configure request details relating to the grid using the Global Configuration values.
-
Updated the Approval Steps to display the approval status of previous, current, and future steps.
-
Added a log file for Approve Request page activity.
-
Added a filter to the subrequest status so approvers can see closed requests.
-
Updated the Global Configuration value to show user details in a grid.
-
Updated the Request Management page so when a filter is applied, the same filter is stored when you go to the Request Details page and then back to the main page.
-
Updated the Access Management page to allow users to select multiple accounts from the Missing Account page when requesting access.
Access Assurance Portal Enhancements and Fixes
-
Improved the portal UI. This includes reduced white space and improved user experience.
-
Upgraded Angular to version 21.
-
Removed multiple API calls from certain pages (Manage Access, Manage Access Catalog, Request Management, Data Management, and Manage Approval Process).
-
Encrypted Payload and Response so data cannot be seen by a user.
Data Management Enhancements and Fixes
-
Added a Deployventconfigvalue that can disable the datamanagement feature.
Core Provisioning Enhancements and Fixes
-
Updated the Profile Creation workflow to follow a traditional approval process.
-
Added a new password policy to workflows where passwords must be a minimum of 12 characters.
Core Compliance Enhancements and Fixes
-
Modernized the Manage Certification Cycle page.
-
Added a Preview Reviewer button, which shows all reviewers based on a specified rule.
-
Added the option to select a default reviewer when a reviewer is not present or is disabled.
-
Added a new tab, which shows the history of each certification, when it was created, what action was taken on it, and which user made the changes
-
Added a new tab, which shows review cycle decisions.
-
Updated the UI to display all active and completed review cycles. When you click a review cycle, the status of all reviewers, their decision, and pending approvals are displayed.
-
Added the ability to export review decisions.
-
When a user submits a review cycle, the user is redirected to the My Certification page.
-
Added the ability to add comments to reviewer actions on the My Certification page that follow the administrator-defined configuration (instead of being optional).
Digital Guardian
Analytics & Reporting Cloud
Version: 5.8.0
April, 2026
New Features & Enhancements
-
This release enhances both Component Lists and Watchlists by allowing users to update entries directly from their respective tables, without navigating to additional pages. Users can edit Description and Status fields in Component Lists, and Value, Description, and Status fields in Watchlists. These improvements streamline list management, enable faster updates, and reduce manual effort.
-
This release introduces "Bulk Update All" and "Delete All" actions in the Table component, allowing the user to apply changes to all alarms that match the current filters without manually selecting rows. These actions apply to Alarms only and do not apply to Events or Incidents. The “All” action includes all matching records, even those not currently visible in the table (beyond the 1,000 displayed rows), improving efficiency for highvolume and repetitive workflows.
NOTE: The system limits “All” actions to 250,000 records and disables them if this limit is exceeded. Additionally, "Delete All" requires confirmation when no filters are applied. -
In this release, the Classification Type options have been updated with two new categories: Classification Tag and Persistent Label. The existing types have been renamed to Classification Policy, Classification Rule, and Data Attribute. Additionally, the Event Details panel now presents these categories in a structured, hierarchical format, providing clearer insight into how ARC categorizes data.
NOTE: This update introduces a collapsible tree that improves navigation and provides a cleaner interface by organizing details into sections that are collapsed by default. -
This release adds audit logging for Sample Match Data Access to improve visibility into Sample Match usage. The system creates an audit entry each time a user views Sample Match data, capturing who accessed it and when. ARC retrieves detailed match information only when users select “See All Matches.” Audit records include the record ID and record type (for example, Event or Alarm) and store only access metadata, not Sample Match values. This enhancement improves accountability and traceability while supporting regulatory and security requirements.
Fixes
-
Resolved an issue that prevented the Sync Service from establishing an LDAPS connection to on-premises Active Directory over port 636.
-
Resolved an issue where scheduled reports failed due to an invalid query attribute.
-
Resolved an issue where the Removable egress channel in the Insights workspace did not display alarm counts to the corresponding Alarm Summary data, even when removable media alarms were triggering as expected.
-
Resolved an issue where certain complex circular link configurations in workspaces caused link binding to fail, causing filters to be applied inconsistently.
Agent for Windows
Version: 11.1.0
April, 2026
New Features
-
A new configuration paramete, aciMaxSecondsPerArchiveContainer is introduced that controls the maximum time spent inspecting archive files (supported for ZIP files only; other archive formats such as TAR and RAR are not supported) during real-time ACI operations such as copy, extract, and archive. The system stops inspection when the total time limit is reached.
The supported range is 1 to 300 seconds, with a default value of 30 seconds. Setting the value to 0 (custom configuration only) disables the timeout and reverts to legacy behavior. This setting applies to agent classification (data in motion). The system enforces an approximate timeout and allows any file already under inspection to complete, which may result in slightly exceeding the configured limit.
The aciSampleMatchArchiveDetails configuration is enabled by default starting in version 11.1.0 and enhances sample match visibility for ZIP files by including file-level details during archive operations using the native Windows archiving (Explorer) process.
NOTE: This feature is supported only for the Windows native archiving explorer process.NOTE: This behavior may result in some files within a ZIP container not being content-inspected. As a result, classified data may egress without detection or notification.NOTE: The aciSampleMatchArchiveDetails configuration does not apply to Archive events (destination). -
This release adds support for Proxy Auto-Configuration (PAC) files to enable dynamic proxy selection based on the target URL or host. Previously, only static proxy configuration was supported, requiring all outbound traffic to use a single fixed proxy. With this enhancement, the system can evaluate a PAC file to determine the appropriate proxy for each request.
This feature is currently supported via custom configuration only, using the following parameters:
-
proxyEnabled - Enables proxy usage
-
proxyPACUrl - Specifies the PAC file URL (defaults to http:// if no scheme is provided).
-
proxyPACRefreshSec - Defines the PAC file refresh interval (default: 300 seconds)
-
proxyPACFailRefreshSec - Defines the retry interval after a PAC fetch failure (default: 60 seconds)
-
proxyPACVariables - Specifies optional variables for PAC token substitution
Static proxy settings remain supported and are used as a fallback when PAC configuration is unavailable or PAC resolution fails. When both PAC and static proxy are configured, PAC is used first, with static proxy applied as a fallback. This proxy configuration applies to both CloudComm and MIP communication.
-
-
Added a configuration option to reduce duplicate alerts for NTU events. By default, the feature is disabled, so existing behavior remains unchanged unless explicitly enabled. This feature is supported via custom configuration. To enable this feature, add or update the following entry in the config.xml file:
<enableRetryFiltering>1</enableRetryFiltering>
When enabled, the agent filters duplicate records within events and improves retry correlation, reducing duplicate alerts.
-
In this release, the DGWIP default logical processor setting is updated to use two processors when no explicit value is configured, establishing a fixed out-of-the-box default of 2.
-
Enhanced the ACI mechanism to process large data in a single pass instead of multiple partial inspections, reducing delays from over 60 seconds to under one second.
-
DGDIAG now collects detailed information on all running processes and their loaded DLLs, including metadata such as vendor info, last modified date, size and location improving diagnostics and troubleshooting by providing more detailed insights.
Fixes
-
Resolved an issue where DGAgent reported schema parsing failures for DCS/Titus schema files.
-
Resolved an issue where excessive GetHash log entries were generated, increasing log volume. These messages now appear only when DEBUG tracing is enabled.
-
Resolved an issue where the DGAdmin process could crash when processing certain URL-encoded characters in MIP label values (such as “%20S”). This crash resulted in application delays during file classification.
-
Resolved an issue where prompts were not displayed when using Secure Desktop, causing user actions to be blocked and preventing interaction with prompt controls.
-
Resolved an issue where file capture failed during print operations in Microsoft Office applications when the source file was on a remote drive.
-
Resolved an issue where the Outlook plugin did not correctly handle non-ASCII characters in file paths in a case-insensitive manner.
-
Resolved an issue where the DG Agent did not send version-mismatch OpAlerts at startup when ACI was enabled. The Agent now sends a single OpAlert at startup if the OpenText SDK version does not match the required version.
-
Resolved an issue where agents were not upgrading via DGMC due to contention between agent threads communicating with the DGMC server.
-
Resolved an issue where the DGAgent did not raise an OpAlert when it was unable to process the latest associated Component List.
-
Resolved an issue that caused single-file uploads to generate duplicate NTU event alerts.
Agent for Linux
Version: 12.2.0
April 2026
New Features
-
Support for <aciTangibleCharacters> Property
-
The DG Agent for Linux now supports the <aciTangibleCharacters> property in release 12.2.0. This property enables the use of the following characters in files: & < > ' ". It can be configured using a custom configuration.
NOTE: To enable aciTangibleCharacters, update config.xml. For example, to enable &, add the following: <aciTangibleCharacters>&</aciTangibleCharacters>
-
-
Certification for Additional Kernels
This table lists the additional certified Linux kernels for Red Hat Enterprise Linux (RHEL) and Ubuntu in this release. Refer to the Agent for Linux User's Guide for details about the packages required to support the new kernel versions for the Agent. Refer to Agent_for_Linux_v12.x.x_and_Later_RHEL_Certified_Environments and Agent_for_Linux_v12.x.x_and_Later_Ubuntu_Certified_Environments for the complete lists of supported RHEL and Ubuntu kernels.
Distribution
Version
Architecture
Kernel
RHEL 10.1 64-Bit kernel-6.12.0-124.49.1.el10_1 RHEL 10.1 64-Bit kernel-6.12.0-124.47.1.el10_1 RHEL 10.1 64-Bit kernel-6.12.0-124.45.1.el10_1 RHEL 10.1 64-Bit kernel-6.12.0-124.43.1.el10_1 RHEL 10.1 64-Bit kernel-6.12.0-124.40.1.el10_1 RHEL 10.1 64-Bit kernel-6.12.0-124.39.1.el10_1 RHEL 10.1 64-Bit kernel-6.12.0-124.38.1.el10_1 RHEL 10.0 64-Bit kernel-6.12.0-55.66.1.el10_0 RHEL 10.0 64-Bit kernel-6.12.0-55.65.1.el10_0 RHEL 10.0 64-Bit kernel-6.12.0-55.64.1.el10_0 RHEL 10.0 64-Bit kernel-6.12.0-55.63.1.el10_0 RHEL 10.0 64-Bit kernel-6.12.0-55.62.1.el10_0 RHEL 10.0 64-Bit kernel-6.12.0-55.61.1.el10_0 RHEL 10.0 64-Bit kernel-6.12.0-55.60.1.el10_0 RHEL 9.7 64-Bit kernel-5.14.0-611.47.1.el9_7 RHEL 9.7 64-Bit kernel-5.14.0-611.45.1.el9_7 RHEL 9.7 64-Bit kernel-5.14.0-611.42.1.el9_7 RHEL 9.7 64-Bit kernel-5.14.0-611.41.1.el9_7 RHEL 9.7 64-Bit kernel-5.14.0-611.38.1.el9_7 RHEL 9.7 64-Bit kernel-5.14.0-611.36.1.el9_7 RHEL 9.7 64-Bit kernel-5.14.0-611.35.1.el9_7 RHEL 9.7 64-Bit kernel-5.14.0-611.34.1.el9_7 RHEL 9.6 64-Bit kernel-5.14.0-570.103.1.el9_6 RHEL 9.6 64-Bit kernel-5.14.0-570.100.1.el9_6 RHEL 9.6 64-Bit kernel-5.14.0-570.98.1.el9_6 RHEL 9.6 64-Bit kernel-5.14.0-570.96.1.el9_6 RHEL 9.6 64-Bit kernel-5.14.0-570.94.1.el9_6 RHEL 9.6 64-Bit kernel-5.14.0-570.92.1.el9_6 RHEL 9.6 64-Bit kernel-5.14.0-570.89.1.el9_6 RHEL 9.4 64-Bit kernel-5.14.0-427.117.1.el9_4 RHEL 9.4 64-Bit kernel-5.14.0-427.116.1.el9_4 RHEL 9.4 64-Bit kernel-5.14.0-427.115.1.el9_4 RHEL 9.4 64-Bit kernel-5.14.0-427.114.1.el9_4 RHEL 9.4 64-Bit kernel-5.14.0-427.113.1.el9_4 RHEL 9.4 64-Bit kernel-5.14.0-427.111.1.el9_4 RHEL 9.4 64-Bit kernel-5.14.0-427.110.1.el9_4 RHEL 8.10 64-Bit kernel-4.18.0-553.117.1.el8_10 RHEL 8.10 64-Bit kernel-4.18.0-553.115.1.el8_10 RHEL 8.10 64-Bit kernel-4.18.0-553.111.1.el8_10 RHEL 8.10 64-Bit kernel-4.18.0-553.109.1.el8_10 RHEL 8.10 64-Bit kernel-4.18.0-553.107.1.el8_10 RHEL 8.10 64-Bit kernel-4.18.0-553.105.1.el8_10 Ubuntu 24.04 64-Bit linux-image-6.17.0-20-generic Ubuntu 24.04 64-Bit linux-image-6.17.0-19-generic Ubuntu 24.04 64-Bit linux-image-6.17.0-14-generic Ubuntu 24.04 64-Bit linux-image-6.8.0-107-generic Ubuntu 24.04 64-Bit linux-image-6.8.0-106-generic Ubuntu 24.04 64-Bit linux-image-6.8.0-101-generic Ubuntu 24.04 64-Bit linux-image-6.8.0-100-generic Ubuntu 22.04 64-Bit linux-image-6.8.0-106-generic Ubuntu 22.04 64-Bit linux-image-6.8.0-101-generic Ubuntu 22.04 64-Bit linux-image-6.8.0-100-generic Ubuntu 22.04 64-Bit linux-image-5.15.0-173-generic Ubuntu 22.04 64-Bit linux-image-5.15.0-171-generic Ubuntu 22.04 64-Bit linux-image-5.15.0-170-generic
Fixes
-
Resolved an issue where Autonomy Content Infrastructure (ACI) stopped working in cases of root_squashed NFS drives.
-
Resolved an issue where Web Inspection Proxy (WIP) was not detecting NTU (Network Transfer Upload) events when source file was located in root_squashed NFS directory on Linux systems.
-
Resolved an issue in the Digital Guardian EDLP Linux agent where nested component rules were not consistently evaluated, causing rule logic to behave unexpectedly in some customer environments. The cache handling has been corrected so that component rule evaluations run reliably for each event.
Document Management (RJS)
Webdocs Invoice Manager
Version 2.5.0
April 15, 2026
New Features
New Analytics Features
• A new dashboard for displaying PO invoices approved automatically by the system vs approved by manual processing.
• A new report, showing invoices per route to the reporting dashboard.
• A new dashboard management page for the Analytics interface.
• Round all amounts to the nearest whole number.
• Dashboard and Drill Down customization in accordance with the customer's business logic.
• User-friendly positions for dashboards on the Analytics page.
• Allow hiding specific dashboards on the Analytics page.
• Users can select a time interval in the Export dialog.
• Users can select a time interval in the Drill Down page.
• Customizable columns on the Drill Down page.
New Template Modification Features
• Create a new Template
• Delete a Template if no related Forms exist.
• Add/Edit/Delete the Form Fields relating to a Template.
• Add/Edit/Delete the Events for a template.
• Add/Edit/Delete the Statuses related to a Template.
• Add/Delete the queries related to fields in the Template.
• Moved WebdocsKeyMap to Templates section as subtab.
• Moved WebdocsKeyMap to Templates section as subtab.
Other New Features
• Adds more logs to FormMatch, FormExport and FormImport tables.
• Added test connection button to database connections.
• Improved Template Schematas by making it possible to apply different sql functions to argument values.
Enhancements
• Improved form error handling and messaging by providing specific instructions to the user about what fields and errors need to be
handled.
• Subset archive folders in automation to allow for easier traversal on disk.
• Added the ability to change the Field Map type using a dropdown of choices from the template Schematas.
• Allow drop-down lists queries to be case-insensitive.
• Updated the templates detail tab design to match system design.
• Updates templates routing tab design to match system design.
• Updates templates key mapping tab to match system design.
• Added the ability to limit the selection's total results to the drop-down list queries.
• Added column name validation to the "Group By" column name in the schema details.
• Allow for invoice data to be saved from WIM in webdocs according to a specific format.
• Added the ability to reuse an existing email template and add a new one if necessary.
• Updated default installation of PO/NonPO template for automatic assignment of DefaultFolderID, DefaultDocumentTypeID,
NotesGroupsID, AttachmentFolderID, AttachmentDocumentTypeID.
Fixes
• Fixed issue where auto-complete dropdowns tied to database lookups would clear the value if user clicked in and out and did not type a
value.
• Fixed issue preventing the matcher tracking from logging correctly.
• Updated libraries to address open security vulnerabilities.
• Fixed issue where an inactive session does not properly redirect user to login page after timeout dialog appears.
Fortra
Platform
April 6, 2026
Enhancements
-
Added support for including spaces in passwords when creating or resetting them.
Globalscape
EFT Health Check Agent
Version 1.9.8
April 20, 2026
-
Application improvements and performance fixes, added cleanup routines for data retention. Improve usability for displaying large datasets of metrics.
-
Fixed issues on the setup page due to SSL validation issues.
EFT Reporting Plus
Version 2.0.0.0
April 20, 2026
-
Added multi-database sources.
-
Improved Filtering and navigation.
-
New, pre-select DB and site.
-
Added Support section.
-
Added Token management page.
-
New UI update.
-
Added CSV export button.
-
Security fixes.
-
EFT REST API only configuration.
-
New Dashboard charts.
-
Consolidation of the EFT Event Rule history report.
EFT
Version 8.3.2.569
April 8, 2026
Fixes
EFT Administration
-
Fixed an issue where EFT would fail to establish DMZ connections using the REST API protocol.
Secure Data at Rest (Encryption)
-
Fixed an issue where files downloaded using WinSCP or JAVA based clients from an encrypted EFT folder would cause file corruption due to file size differences.
-
Fixed an issue where the eftencrypt.exe file would partially encrypt or decrypt files and cause file corruption.
-
Fixed an issue that could cause data corruption in encrypted folders for certain configurations after upgrading to EFT 8.3.2.565. This corruption is resolved by upgrading to EFT 8.3.2.569.
Cloud Connectors
-
Fixed an issue where, under certain configurations, Azure cloud connection profiles that were already failing could cause the EFT service to crash after upgrading to EFT 8.3.2.
Cute FTP
Version 9.4.0
April 6, 2026
Enhancements
-
Added support for the latest version of Globalscape's EFT Server
-
Added support for the latest version of DMZ Gateway
-
Upgraded CuteFTP installer to 64-bit
-
Replaced the OpenPGP library used in CuteFTP
-
Updated the OpenPGP Key Generation UI
-
Updated the default OpenPGP key length value
-
Updated various third-party libraries in CuteFTP
-
Updated the OpenSSL library used in CuteFTP to version 3.6.1 and FIPS module 3.1.2
-
Added support for TLS v1.3
-
Added a new UI to configure SSL TLS Security settings
-
Updated the default SSL key creation settings
-
Updated the OpenSSH library used in CuteFTP to version 9.8.1
-
Added a new UI to configure SSH Security Algorithms settings
-
Updated the default SSH key creation settings
-
Removed the Common Name certificate validation prompt
-
Updated logos and splashscreens
-
Updated Help documentation to reference CuteFTP's online help
-
Removed the silent installer parameter for /USERNAME
-
Removed the Release Notes.txt file bundled with the CuteFTP installer
-
Removed the ftp.globalscape.com pre-configured site
Fixes
SFTP
-
Fixed an issue where CuteFTP would fail to connect to Red Hat Enterprise Linux version 8 or higher
-
Fixed an issue where CuteFTP would fail to accept SSH keys generated from Globalscape's EFT Server
-
Fixed links listed for CuteFTP in Windows Control Panel Add/Remove section
GoAnywhere
GoAnywhere MFT
Version: 7.10.0
April 20, 2026
New Features
- Added azure-identity of version 1.18.1 for Azure Entra ID support.
- Added Flags for new/advanced settings.
- Support Microsoft Entra ID Authentication for Azure Storage Resources.
Enhancements
- Added "number of TCP stream" configuration to the FileCatalyst Task.
- Added a new Flag to control the maximum allowed bytes to be read by Excel Task.
- Added auth/api host override configuration via system properties:
- com.fortra.inner.common.threatBrain.authHost
- com.fortra.inner.common.threatBrain.apiHost
- Added indexes to Trigger tables for improved performance.
- Converted System Property
com.fortra.sftp.server.transferGC.enabledto an Advanced Flag 'SFTP Service Garbage Collection' AdjustedSFTP Service Garbage CollectionFlag to trigger garbage collection on a limited basis when transfers are occurring on the SFTP Service. - Enhanced the Active Trigger Query to reduce query server hops improving performance.
- Enhanced Agent Server to force remote decryption on all Agents (Agent restart is required).
- Enhanced the GoAnywhere Docker base image to reduce size and improve efficiency.
- Enhanced the IAM permissions checks to be more efficient.
- Enhanced the Mina SSH Client implementation to apply connection timeout to open subsystem for SCP/SFTP.
- Enhanced the SFTP Server when in BC FIPS-140-3 mode to support the following key exchange algorithms:
- diffie-hellman-group-exchange-sha256
- diffie-hellman-group14-sha256
- diffie-hellman-group16-sha512
- diffie-hellman-group18-sha512
- Enhanced the upgrade process to convert the System Property for the Excel Max Bytes Override from hot fix to an official Advanced Flag.
- Fixed the order of closing the index writer, directory, and the search manager.
- Hardened the X-Forwarded-For Filters for Admin and Web client to only resolve if trusted proxied ip and its not an IP to only resolve if trusted host Migrated Existing Admin Client X-Forwarded-For Trusted Proxy System Property to Flag and can now be managed via the UI Migrated Existing Web Client X-Forwarded-For Trusted Proxy System Property to Flag and can now be managed via the UI Added Admin Client X-Forwarded-For Trusted Hosts Flag to resolve only trusted hosts if encountered as client IP to retain backwards compatibility. Added Admin Client X-Forwarded-For Trusted Hosts Flag to resolve only trusted hosts if encountered as client IP to retain backwards compatibility.
- Improved performance of file listing and access operations for Azure Data Lake and Azure Blob Storage.
- SSH Resource now utilizes Mina provider by default.
- Updated the Support Bundle to generate a new 'Flags' report to provide the flag overrides by the admin user.
Fixes
- Fix missing Premain-Class in minimal upgrader jay in gamft-upgrader Fix executable permissions for mft_base_legacy shell scripts.
- Fixed an issue preventing importing of SSH Keys into KMS after SFTP server startup in FIPS-140-3 Mode.
- Fixed an issue preventing the import and usage of some ECDSA SSH Public or Private key types when in FIPS mode.
- Fixed an issue that would prevent a web user from being disabled after too many invalid SSH Key Attempts.
- Fixed an issue using MINA SSH Client during listings and downloads would miscalculate the bytes to allocate causing failure.
- Fixed an issue when an Agent message was received after the timeout causing the control channel to close.
- Improved the message handling within the Asynchronous messaging to fail fast.
- Fixed an issue when viewing web users where group consolidation was missing.
- Fixed an issue where a 500 error could be thrown when trying to validate an online license from the License page.
- Fixed an issue where agent projects that are large in payload could cause project xml corruption when in a cluster.
- Fixed an issue where clicking the Submit button on the two factor authentication screen for the Admin Client would cause a 500 error.
- Fixed an issue where File Buffer Size was not respected when reading files within Encrypted Folder feature.
- Fixed an issue where Force IDP Authentication was not respected for certain race conditions.
- Fixed an issue where setting a specific TLS protocol on FileCatalyst Service would cause FileCatalyst tasks to break without other configurations.
- Fixed an issue where the PeSIT Server would periodically get 299 errors when receiving a file.
- Fixed an issue where the upgrader could fail when trying to delete the index IDX_DPA_ACTIVE_JOB.
- Fixed an issue with LDAP Managed Login Methods configured with SSL would have strict host name failures due to missing host name on the socket.
- Fixed an issue with Master Encryption Key aliases not being loaded as lowercase on first decrypt.
- Fixed an issue with the AS4 Push Task where Source File(s) would not be sent when using certificate authentication.
- Fixed an issue with the MINA SSH Client that would leak threads.
- Increased the performance speed for uploads/downloads using MINA SSH Client.
- Fixed issue where for loops in FileCatalyst tasks would add extra log handlers for each iteration of the loop.
- Fixed issue where non-transfer transactions within FCService would show up as transfers in the "Active Transfers" UI.
- Fixed issue where one broken virtual folder/file would cause full listings to break in FileCatalyst Service.
- Fixed issue where transfer rates for Services weren't properly displaying the average rate over time.
- Fixing the issue where remote file pickers within the FileCatalyst Service were using the wrong validation method.
- Improved email template sanitization to block unsafe injected HTML/script content in generated emails without breaking supported formatting.
- Removed Base64 Encoded EICAR test string.
- Removed default SFTP Service DSA key from new installations.
- Removed spaces from Syslog Message Id values for Structured Data to conform to RFC5424.
- Added escaping for Syslog Structured Message Parameters to conform to RFC5424..
- Resolves issue with AS4 Push body XML parsing.
- Turn off BC native support to avoid permission issue on Unix systems.
- Updated FTP/FTPS/SFTP Put tasks to only refresh remote properties when output destination variables are being used.
- Updated the captcha verification to occur prior to any backend validation.
Updates
- Updated AWS SDK from V1 to V2
- Updated JNQ from version 2.5.6 to 2.7.1.
- Updated netty from version 4.1.128.Final to 4.2.12.Final
- Updated nimbus-jose-jwt library from version 9.48 to 10.0.2
- Updated Tomcat from version 9.0.111 to 9.0.117.
- Upgrade eslint from 9.39.2 to 9.39.3
- Upgrade log4j-2.24.3 to log4j-2.25.4
- Upgrade Lucene API from 4.7.2 to 9.12.3
- Upgraded mssql-jdbc from 12.8.0.jre11 to 12.8.2.jre11
- Upgraded reactor-netty-http from version 1.0.48 to version 1.2.14
GoAnywhere Agents
Version 2.6.0
April 20, 2026
New Features
- Support Microsoft Entra ID Authentication for Azure Storage Resources.
Enhancements
- Added "number of TCP stream" configuration to the FileCatalyst Task.
- Added the ability to override the maximum bytes allowed to be read by Excel Task using flags.com.fortra.mft.ga.workflow.excel.max.bytes.override.
- Adjusted the system property on agents to toggle SFTP Client Implementations from com.fortra.mft.security.ssh.provider to flags.com.fortra.mft.ssh.client.provider.
- Enhanced the Mina SSH Client implementation to apply connection timeout to open subsystem for SCP/SFTP.
- SSH Resource now utilizes Mina provider by default (new installations only).
Fixes
- Fixed an issue using MINA SSH Client during listings and downloads would miscalculate the bytes to allocate causing failure.
- Fixed an issue where setting a specific TLS protocol on FileCatalyst Service would cause FileCatalyst tasks to break without other configurations.
- Fixed an issue with the MINA SSH Client that would leak threads.
- Fixed FTP/FTPS/SFTP Put tasks to only refresh remote properties when output destination variables are being used.
- Fixed issue where for loops in FileCatalyst tasks would add extra log handlers for each iteration of the loop.
- Improved performance of file listing and access operations for Azure Data Lake and Azure Blob Storage.
- Improved the message handling within the Asynchronous messaging to fail fast.
- Increased the performance speed for uploads/downloads using MINA SSH Client.
- Turn off BC native support to avoid permission issue on Unix systems
- Updated FTP/FTPS/SFTP Put tasks to only refresh remote properties when output destination variables are being used.
Updates
- Updated AWS SDK from V1 to V2.
- Updated JNQ from version 2.5.6 to 2.7.1.
- Updated log4j from 2.24.2 to 2.25.4 Updated log4j-slf4j2-impl from 2.24.2 to 2.25.4.
- Updated mssql-jdbc from 12.8.0.jre11 to 12.8.2.jre11.
- Updated netty from version 4.1.128.Final to 4.2.12.Final.
- Updated reactor-netty-http from version 1.0.48 to version 1.2.14.
Halcyon
Level 1 Message Management Suite
Version 7.0
April 7, 2026
(PTF: 2026.070)
Enhancements
-
Hold Rule (HLDRULE) now allows a value of *ALLGROUPS for Rule group. When used, the hold will be applied to all groups within the specified Monitor.
-
Copy Rule (CPYRULE) now allows a value of *ADD for Replace which means the Rule will only be copied if it does not already exist.
-
Release Rule (RLSRULE) now allows a value of *ALLGROUPS for Rule group. When used, the release will be applied to all groups within the specified Monitor.
-
Work with Rules (WRKRULES) History can now consolidate the journal entries to show them as changes rather than deletes and adds.
-
Print Alert Log (PRTALTLOG) can now print a 255 column width report that includes all the 1st level Alert text via new parameter Basic detail length (BASIC) which defaults to *SHORT but can be set to *LONG.
-
Message Communicator can now send emails using SMTP for MS-OAuth.
-
Message Communicator email message text increased to 2048 characters.
-
Substitution Variable &MSGCOUNT (Message count) has been made available. This returns the number of occurrences of the message that resulted in the Alert. This only applies to Alerts for Message Queue Rules.
-
Dump Product Data (DUMP) now allows you to specify the Owner user profile and Authority to be applied to the resulting save file.
-
Message Monitor now has an Auxiliary Monitor dedicated to monitoring QHST.
-
HALINST/INSTALL now uses the IBM commands in library QSYS.
-
The EXTLOG Action now allows you to add to a file in the IFS (*STMF).
-
Customize Environment (CSTENV) will not overwrite the QSYSOPR Message Queue Rule Group or Rules that have the same Rule No. as the Customization being applied.
-
Substitution Variables can now be defined with Function *SUBSTRING. This will extract characters from the position defined in Operand #2 for the length of the Substitution Variable.
-
Work with Action Templates (WRKACTTPL) now includes SYSLOG2 for sending a long Syslog message using the SNDSYSLOG2 command.
-
Work with Action Templates now includes a SYSLOG2 Action for the SNDSYSLOG2 command.
-
The TCPIP Monitor now adds message to the Halcyon Message Log, which is also defined as an Admin Alert, when the user running the Monitor does not have *IOSYSCFG authority which is required for use of the IBM API from 7.6
-
Work files created within the IFS are set not to be audited.
-
Version 16.0 of Halcyon Event Manager (HEM) is now available.
-
Version 16.0 of Halcyon Common Functions (HAL) is now available.
-
Version 16.0 of Halcyon Message Communicator is now available.
-
Version 16.0 of Halcyon Message Manager (HMM) is now available.
Fixes
-
The Halcyon Install Control Panel (HALINST/CTLPANEL) now shows the IP address for the *SYSTEM Remote Location at time of upgrade.
-
Message Communicator now adds a message to the Halcyon Message Log when a Communications Log Entry is closed due to an Alert being closed. Message HMC0533 is added for a local request and message HMC0534 is added for a remote request.
-
Work with Alert Log (WRKALTLOG) correctly displays the Message CCSID Used within F11=Message information for Message Queue Alerts.
-
Message Monitor now adds a message to the Halcyon Message Log (DSPMSGLOG) when monitoring re-commences as an IASP is back online.
-
Import Environment (IMPENV) now drops user authorities for users that do not exist on the target system.
-
Message Communicator now encodes spooled file attachment names in ASCII.
-
Message Communicator now always uses colon (:) for the time when sending an email via SMTP as per RFC5322.
-
Message Communicator now sends emails to email addresses that contain the & character.
-
Message Communicator now prevents work file conflicts.
-
In a joblog rule selection criteria, a value of COPY is now valid for Message Type.
-
Changing a Message Queue Rule now removes Action Counts against open Alerts.
-
Exported Output Queue Rule Groups no longer include the Processing times.
-
Commands Export Calendar (EXPCAL), Export System Defaults (EXPSYSDFT), Export Substitution Variables (EXPSBSVAR), Export Admin Alert Criteria (EXPADMALT), Export Remote Location Groups (EXPRMTGRP) and Export User Lists (EXPUSRLST) now return the real cause of failure.
-
Work with Message Queue Recipients (WRKMSGQRCP) now updates the Where used list after 2=Change is used against a Device.
-
Work with System Defaults (WRKSYSDFT) now shows help text for user related System Defaults on 7.6
-
Work with Rules (WRKRULES) now correctly displays journal data against History.
-
Work with Rules (WRKRULES) for 23=Rule history now lists changes to Notes.
-
Work with Rules (WRKRULES) no longer allows a Rule Group for *LIST
-
Work with Rules (WRKRULES) now displays a + at the end of a message when editing criteria and there are multiple messages available.
-
Work with Rules (WRKRULES) within 23=Rule history now shows changes to Notes.
-
Work with Rules (WRKRULES) 23=Rule history now only shows history for the selected Rule Group.
-
Work with Rules (WRKRULES) now audits changes to Notes.
-
Exporting multiple Message Manager or Event Manager Rules from Work with Rules (WRKRULES) with Group Notes no longer fails.
-
F7=Previous and F8=Next now work when displaying a Rule History entry within Work with Rules (WRKRULES) when System Default HAL/AUTHMODE is set to 0 (zero).
-
Send Long Syslog Message (SNDSYSLOG2) now allows non-numeric characters as part of Alert ID.
-
Send Long Syslog Message (SNDSYSLOG2) sends the message without trailing blanks for RFC3164 and LEEF formats.
-
Import Environment (IMPENV) now renames a Remote Location with the same name as the Export Name on *SYSTEM to include an underscore to prevent the import failing.
-
An Action failed message is no longer added when a SNDTXT Action to a Remote Location is closed because the Alert is closed.
-
Start Watch (STRWATCH) now allows use of Substitution Vairable &JOBID for WatchID.
-
Close Watch (CLSWATCH) now allows use of Substitution Variables for WatchID.
-
Substitution Variable &ASPGRP now returns *SYSBAS for QHST
-
Message Monitor Not received “Watch” Rules now Alert when using Substitution Variables.
-
Display Message Console (DSPMSGCON) now checks for *USE authority to a message queue when replying to an Inquiry message Alert.
-
Display Message Console (DSPMSGCON) now lists SYSLOG2 within F13=Actions against a Sub-Console.
-
Modifying an existing Action for a *PC Remote Location to be a SNDTXT for an *I5 Remote Location gives an error that it is not an IBM i. This can now be cleared using F5=Refresh.
-
When a rule in the Audit Journal Monitor, Custom Journal Monitor, Job Log Monitor, Message Monitor or TCP/IP Monitor was held by HLDRULE command with automatic release, the rule was not released correctly. This issue has been resolved.
-
Job Log Rules now release when HLDRULE with Release *AFTER is performed.
-
Device Monitor no longer attempts to apply an Authorization List of QTEMP when System Default HEM/DEVMONTEMPLIB is set to QTEMP.
Level 2 System Operations Suite
Version 7.0
April 7 2026
(PTF: 2026.070)
Enhancements
-
New Object Rules for *JRNRCVENT, *JRNRCVSEQ, and *JRNRCVSIZ are now available. These monitor the number of entries, last sequence number, and the size of the receiver attached to a journal, respectively.
-
Audit Journal Monitor (CD) now supports Reason Code 'X' (Proxy command).
-
Audit Monitor now supports monitoring for M0 (Db2 Mirror Setup Tools) entries.
-
Audit Monitor now supports monitoring for M6 (Db2 Mirror Communication Services) entries.
-
Audit Monitor now supports monitoring for M7 (Db2 Mirror Replication Services) entries.
-
Audit Monitor now supports monitoring for M8 (Db2 Mirror Product Services) entries.
-
Audit Monitor now supports monitoring for M9 (Db2 Mirror Replication State) entries.
-
Custom Journal Rules now allow you to define the Type and Code.
-
Hold Rule (HLDRULE) now allows a value of *ALLGROUPS for Rule group. When used, the hold will be applied to all groups within the specified Monitor.
-
Copy Rule (CPYRULE) now allows a value of *ADD for Replace which means the Rule will only be copied if it does not already exist.
-
Release Rule (RLSRULE) now allows a value of *ALLGROUPS for Rule group. When used, the release will be applied to all groups within the specified Monitor.
-
Work with Rules (WRKRULES) History can now consolidate the journal entries to show them as changes rather than deletes and adds.
-
Print Alert Log (PRTALTLOG) can now print a 255 column width report that includes all the 1st level Alert text via new parameter Basic detail length (BASIC) which defaults to *SHORT but can be set to *LONG.
-
Message Communicator can now send emails using SMTP for MS-OAuth.
-
Message Communicator email message text increased to 2048 characters.
-
Substitution Variable &MSGCOUNT (Message count) has been made available. This returns the number of occurrences of the message that resulted in the Alert. This only applies to Alerts for Message Queue Rules.
-
Dump Product Data (DUMP) now allows you to specify the Owner user profile and Authority to be applied to the resulting save file.
-
Message Monitor now has an Auxiliary Monitor dedicated to monitoring QHST.
-
HALINST/INSTALL now uses the IBM commands in library QSYS.
-
The EXTLOG Action now allows you to add to a file in the IFS (*STMF).
-
Customize Environment (CSTENV) will not overwrite the QSYSOPR Message Queue Rule Group or Rules that have the same Rule No. as the Customization being applied.
-
Substitution Variables can now be defined with Function *SUBSTRING. This will extract characters from the position defined in Operand #2 for the length of the Substitution Variable.
-
Work with Action Templates (WRKACTTPL) now includes SYSLOG2 for sending a long Syslog message using the SNDSYSLOG2 command.
-
Work with Action Templates now includes a SYSLOG2 Action for the SNDSYSLOG2 command.
-
The TCPIP Monitor now adds message to the Halcyon Message Log, which is also defined as an Admin Alert, when the user running the Monitor does not have *IOSYSCFG authority which is required for use of the IBM API from 7.6
-
Work files created within the IFS are set not to be audited.
-
Version 16.0 of Halcyon Audit Journal Manager (HAM) is now available.
-
Version 16.0 of Halcyon Restricted Tasks Manager (HRT) is now available.
-
Version 16.0 of Halcyon Event Manager (HEM) is now available.
-
Version 16.0 of Halcyon Common Functions (HAL) is now available.
-
Version 16.0 of Halcyon Message Communicator is now available.
-
Version 16.0 of Halcyon Message Manager (HMM) is now available.
Fixes
-
Object Monitor only performs Open alert action processing when required.
-
Work with Rules (WRKRULES) now exits 5=Display on Enter when displaying an HRT Rule Group.
-
Work with Rules (WRKRULES) reports correctly errors on an Object *RCDCNT Rule when the Rule is invalid.
-
Work with Rules (WRKRULES) now validates the User List exists when specified within Criteria.
-
Work with Rules (WRKRULES) now correctly shows a Cache Battery message, if applicable, when creating a new Performance *SYSTEM Rule.
-
Fixed issue with Acknowledge only suspending a Performance Rule when used against the current Alert.
-
Object *JRN Rules now initially Alert with Prev objects the same as No. of objects to prevent the Open Alert Action being immediately performed.
-
Default Inactivity Rules now Alert.
-
Default Object Rules now Alert.
-
Performance *SYSTEM RSPMAX5 Rules now Alert.
-
Custom Journal Rules continue alerting after they have been changed.
-
Custom Journal Alerts now suspend.
-
Help text for Performance *SYSTEM BCHHLDQ monitoring has been clarified.
-
Custom Journal Monitor now alerts correctly for events in the Journal.
-
Work with Alert Log (WRKALTLOG) 11=Omit in future against a Custom Journal Alert now sets the values relating to the Object.
-
Work with Alert Log (WRKALTLOG) 11=Omit in future against a Custom Journal Alert now sets a correct value for Program Name.
-
Clear Alert Log (CLRALTLOG) now clears Suspends against Custom Journal Rules.
-
Performance *SYSTEM Alerts now left-align numeric values.
-
*RCDCNT rule types for Object Monitor now work correctly for queries having varying length fields.
-
Audit Journal Monitor now handles invalid characters in the UserID for PW (Invalid password) entries.
-
Custom Journal Monitor now handles invalid characters in the UserID for PW (Invalid password) entries in QAUDJRN.
-
Custom Journal Rules now release when HLDRULE with Release *AFTER is performed.
-
The Halcyon Install Control Panel (HALINST/CTLPANEL) now shows the IP address for the *SYSTEM Remote Location at time of upgrade.
-
Message Communicator now adds a message to the Halcyon Message Log when a Communications Log Entry is closed due to an Alert being closed. Message HMC0533 is added for a local request and message HMC0534 is added for a remote request.
-
Work with Alert Log (WRKALTLOG) correctly displays the Message CCSID Used within F11=Message information for Message Queue Alerts.
-
Message Monitor now adds a message to the Halcyon Message Log (DSPMSGLOG) when monitoring re-commences as an IASP is back online.
-
Import Environment (IMPENV) now drops user authorities for users that do not exist on the target system.
-
Message Communicator now encodes spooled file attachment names in ASCII.
-
Message Communicator now always uses colon (:) for the time when sending an email via SMTP as per RFC5322.
-
Message Communicator now sends emails to email addresses that contain the & character.
-
Message Communicator now prevents work file conflicts.
-
In a joblog rule selection criteria, a value of COPY is now valid for Message Type.
-
Changing a Message Queue Rule now removes Action Counts against open Alerts.
-
Exported Output Queue Rule Groups no longer include the Processing times.
-
Commands Export Calendar (EXPCAL), Export System Defaults (EXPSYSDFT), Export Substitution Variables (EXPSBSVAR), Export Admin Alert Criteria (EXPADMALT), Export Remote Location Groups (EXPRMTGRP) and Export User Lists (EXPUSRLST) now return the real cause of failure.
-
Work with Message Queue Recipients (WRKMSGQRCP) now updates the Where used list after 2=Change is used against a Device.
-
Work with System Defaults (WRKSYSDFT) now shows help text for user related System Defaults on 7.6
-
Work with Rules (WRKRULES) now correctly displays journal data against History.
-
Work with Rules (WRKRULES) for 23=Rule history now lists changes to Notes.
-
Work with Rules (WRKRULES) no longer allows a Rule Group for *LIST
-
Work with Rules (WRKRULES) now displays a + at the end of a message when editing criteria and there are multiple messages available.
-
Work with Rules (WRKRULES) within 23=Rule history now shows changes to Notes.
-
Work with Rules (WRKRULES) 23=Rule history now only shows history for the selected Rule Group.
-
Work with Rules (WRKRULES) now audits changes to Notes.
-
Exporting multiple Message Manager or Event Manager Rules from Work with Rules (WRKRULES) with Group Notes no longer fails.
-
F7=Previous and F8=Next now work when displaying a Rule History entry within Work with Rules (WRKRULES) when System Default HAL/AUTHMODE is set to 0 (zero).
-
Send Long Syslog Message (SNDSYSLOG2) now allows non-numeric characters as part of Alert ID.
-
Send Long Syslog Message (SNDSYSLOG2) sends the message without trailing blanks for RFC3164 and LEEF formats.
-
Import Environment (IMPENV) now renames a Remote Location with the same name as the Export Name on *SYSTEM to include an underscore to prevent the import failing.
-
An Action failed message is no longer added when a SNDTXT Action to a Remote Location is closed because the Alert is closed.
-
Start Watch (STRWATCH) now allows use of Substitution Vairable &JOBID for WatchID.
-
Close Watch (CLSWATCH) now allows use of Substitution Variables for WatchID.
-
Substitution Variable &ASPGRP now returns *SYSBAS for QHST
-
Message Monitor Not received “Watch” Rules now Alert when using Substitution Variables.
-
Display Message Console (DSPMSGCON) now checks for *USE authority to a message queue when replying to an Inquiry message Alert.
-
Display Message Console (DSPMSGCON) now lists SYSLOG2 within F13=Actions against a Sub-Console.
-
Modifying an existing Action for a *PC Remote Location to be a SNDTXT for an *I5 Remote Location gives an error that it is not an IBM i. This can now be cleared using F5=Refresh.
-
When a rule in the Audit Journal Monitor, Custom Journal Monitor, Job Log Monitor, Message Monitor or TCP/IP Monitor was held by HLDRULE command with automatic release, the rule was not released correctly. This issue has been resolved.
-
Job Log Rules now release when HLDRULE with Release *AFTER is performed.
-
Device Monitor no longer attempts to apply an Authorization List of QTEMP when System Default HEM/DEVMONTEMPLIB is set to QTEMP.
Level 3 Advanced Automation Suite
Version 7.0
April 7, 2026
(PTF: 2026.070)
Enhancements
-
To improve performance of Work with Archived Spooled Files (WRKARCSPLF):
-
New System Default HEM/DFTARCSPLFSTRDT has been made available to define the number of days to be subtracted from the current date to determine the beginning date of spooled files to look for. This allows values in the range -366 to 0 or a value of *BEGIN
-
Work with Archived Spooled Files (WRKARCSPLF) now allows and defaults a value of *DFT for Begin date which uses the value in the new System Default. This allows the initial search to be performed over a shorter, more current, time frame thus improving initial response when there are lots of historic archived spooled files.
-
-
Disk Space Manager can now compare two builds.
-
Display Disk Analysis Data (DSPDSKDTA) now allows you to select a comparison build via new Compare build parameter on the command or by using F9=Select build in a new Compare build field once the data has been displayed.
-
Print Disk Analysis Data (PRTDSKDTA) now allows you to select a comparison build via new Compare build parameter on the command.
-
Output Disk Analysis Data (OUTDSKDTA) now allows you to select a comparison build via new Compare build parameter on the command.
-
-
Work with Subset Templates (WRKSUBTMP) now allows a value of *DFT for Start Date. This value will only be applied when the Subset Template is used in Work with Archived Spooled Files (WRKARCSPLF).
-
New Object Rules for *JRNRCVENT, *JRNRCVSEQ, and *JRNRCVSIZ are now available. These monitor the number of entries, last sequence number, and the size of the receiver attached to a journal, respectively.
-
Audit Journal Monitor (CD) now supports Reason Code 'X' (Proxy command).
-
Audit Monitor now supports monitoring for M0 (Db2 Mirror Setup Tools) entries.
-
Audit Monitor now supports monitoring for M6 (Db2 Mirror Communication Services) entries.
-
Audit Monitor now supports monitoring for M7 (Db2 Mirror Replication Services) entries.
-
Audit Monitor now supports monitoring for M8 (Db2 Mirror Product Services) entries.
-
Audit Monitor now supports monitoring for M9 (Db2 Mirror Replication State) entries.
-
Custom Journal Rules now allow you to define the Type and Code.
-
Hold Rule (HLDRULE) now allows a value of *ALLGROUPS for Rule group. When used, the hold will be applied to all groups within the specified Monitor.
-
Copy Rule (CPYRULE) now allows a value of *ADD for Replace which means the Rule will only be copied if it does not already exist.
-
Release Rule (RLSRULE) now allows a value of *ALLGROUPS for Rule group. When used, the release will be applied to all groups within the specified Monitor.
-
Work with Rules (WRKRULES) History can now consolidate the journal entries to show them as changes rather than deletes and adds.
-
Print Alert Log (PRTALTLOG) can now print a 255 column width report that includes all the 1st level Alert text via new parameter Basic detail length (BASIC) which defaults to *SHORT but can be set to *LONG.
-
Message Communicator can now send emails using SMTP for MS-OAuth.
-
Message Communicator email message text increased to 2048 characters.
-
Substitution Variable &MSGCOUNT (Message count) has been made available. This returns the number of occurrences of the message that resulted in the Alert. This only applies to Alerts for Message Queue Rules.
-
Dump Product Data (DUMP) now allows you to specify the Owner user profile and Authority to be applied to the resulting save file.
-
Message Monitor now has an Auxiliary Monitor dedicated to monitoring QHST.
-
HALINST/INSTALL now uses the IBM commands in library QSYS.
-
The EXTLOG Action now allows you to add to a file in the IFS (*STMF).
-
Customize Environment (CSTENV) will not overwrite the QSYSOPR Message Queue Rule Group or Rules that have the same Rule No. as the Customization being applied.
-
Substitution Variables can now be defined with Function *SUBSTRING. This will extract characters from the position defined in Operand #2 for the length of the Substitution Variable.
-
Work with Action Templates (WRKACTTPL) now includes SYSLOG2 for sending a long Syslog message using the SNDSYSLOG2 command.
-
Work with Action Templates now includes a SYSLOG2 Action for the SNDSYSLOG2 command.
-
The TCPIP Monitor now adds message to the Halcyon Message Log, which is also defined as an Admin Alert, when the user running the Monitor does not have *IOSYSCFG authority which is required for use of the IBM API from 7.6
-
Work files created within the IFS are set not to be audited.
-
Version 16.0 of Halcyon Disk Space Manager (HDM) is now available.
-
Version 16.0 of Halcyon Performance Analyzer is now available.
-
Version 16.0 of Halcyon Spooled File Manager is now available.
-
Version 16.0 of Halcyon Alert Intelligence is now available.
-
Version 16.0 of Halcyon Log File Monitor is now available.
-
Version 16.0 of Halcyon Audit Journal Manager (HAM) is now available.
-
Version 16.0 of Halcyon Restricted Tasks Manager (HRT) is now available.
-
Version 16.0 of Halcyon Event Manager (HEM) is now available.
-
Version 16.0 of Halcyon Common Functions (HAL) is now available.
-
Version 16.0 of Halcyon Message Communicator is now available.
-
Version 16.0 of Halcyon Message Manager (HMM) is now available.
Fixes
-
Halcyon Work with Spooled Files (WRKSPLF) now correctly lists spooled files after an option has been used against them.
-
Fixed issue with Disk Space Manager Command Trigger Actions failing with error.
-
Work with Rules (WRKRULES) now triggers auto-export for a source Rule when an AI Action is added as part of maintaining an Alert Intelligence Rule.
-
Work with Rules (WRKRULES) allows Rule Groups with Check Interval greater than 59940 seconds (999 minutes) in Alert Intelligence Rules criteria.
-
Work with Rules (WRKRULES) now allows use of Custom Journal Rules in the criteria on Alert Intelligence Rules.
-
Disk Space Manager Command Trigger Actions are now evaluated correctly when using Substitution Variables.
Note: Command Trigger Actions can affect the level of analysis performed.
-
Work with Archive Files (WRKARCF) correctly sets the values when F13=Repeat is used.
-
Work with Archived Spooled Files (WRKARCSPLF) now sets the End time correctly within F17=Subset when you set End date to *END
-
Work with ASP Analysis Settings (WRKASPSET) now allows Substitution @T within Command Trigger Action.
-
Work with ASP Analysis Settings (WRKASPSET) now allows use of F1 on an error message relating to Command Trigger Action.
-
Substitution @A now returns blank when no value is relevant as part of a Command Trigger Action, as defined within Work with ASP Analysis Settings (WRKASPSET).
-
An Alert Intelligence Rule now correctly gets released for a HLDRULE *AFTER Action.
-
Display Disk Analysis Data (DSPDSKDTA) now shows an error when a dynamic build fails.
-
New System Default HAL/DFTSPLCPYTXTIGN controls output of spooled files when copied to IFS TXT files as part of the CPYTOTXT, SNDTXTMSG, SNDEMLMSG commands and the EMAILSPLF Action.
-
*NONE - No change compared to existing functionality. Overprinting for blanks/spaces is replaced with underscores and blank lines are retained to keep the correct page size.
-
*IGNOVR - Ignores overprinting. Does not replace overprinting for blanks/spaces with underscore.
-
*IGNPAG - Ignore page throws. Does not add blank lines before next page.
-
*IGNOVRPAG - Both of the above.
Commands CPYTOTXT and SNDEMLMSG have new parameter IGNOPT, which defaults to *DFT, which allows the System Default value to be overridden.
-
-
Work with Applications (WRKAPP) no longer allows deletion of *ALLSYS or *ALLUSR
-
Object Monitor only performs Open alert action processing when required.
-
Work with Rules (WRKRULES) now exits 5=Display on Enter when displaying an HRT Rule Group.
-
Work with Rules (WRKRULES) reports correctly errors on an Object *RCDCNT Rule when the Rule is invalid.
-
Work with Rules (WRKRULES) now validates the User List exists when specified within Criteria.
-
Work with Rules (WRKRULES) now correctly shows a Cache Battery message, if applicable, when creating a new Performance *SYSTEM Rule.
-
Fixed issue with Acknowledge only suspending a Performance Rule when used against the current Alert.
-
Object *JRN Rules now initially Alert with Prev objects the same as No. of objects to prevent the Open Alert Action being immediately performed.
-
Default Inactivity Rules now Alert.
-
Default Object Rules now Alert.
-
Performance *SYSTEM RSPMAX5 Rules now Alert.
-
Custom Journal Rules continue alerting after they have been changed.
-
Custom Journal Alerts now suspend.
-
Help text for Performance *SYSTEM BCHHLDQ monitoring has been clarified.
-
Custom Journal Monitor now alerts correctly for events in the Journal.
-
Work with Alert Log (WRKALTLOG) 11=Omit in future against a Custom Journal Alert now sets the values relating to the Object.
-
Work with Alert Log (WRKALTLOG) 11=Omit in future against a Custom Journal Alert now sets a correct value for Program Name.
-
Clear Alert Log (CLRALTLOG) now clears Suspends against Custom Journal Rules.
-
Performance *SYSTEM Alerts now left-align numeric values.
-
*RCDCNT rule types for Object Monitor now work correctly for queries having varying length fields.
-
Audit Journal Monitor now handles invalid characters in the UserID for PW (Invalid password) entries.
-
Custom Journal Monitor now handles invalid characters in the UserID for PW (Invalid password) entries in QAUDJRN.
-
Custom Journal Rules now release when HLDRULE with Release *AFTER is performed.
-
The Halcyon Install Control Panel (HALINST/CTLPANEL) now shows the IP address for the *SYSTEM Remote Location at time of upgrade.
-
Message Communicator now adds a message to the Halcyon Message Log when a Communications Log Entry is closed due to an Alert being closed. Message HMC0533 is added for a local request and message HMC0534 is added for a remote request.
-
Work with Alert Log (WRKALTLOG) correctly displays the Message CCSID Used within F11=Message information for Message Queue Alerts.
-
Message Monitor now adds a message to the Halcyon Message Log (DSPMSGLOG) when monitoring re-commences as an IASP is back online.
-
Import Environment (IMPENV) now drops user authorities for users that do not exist on the target system.
-
Message Communicator now encodes spooled file attachment names in ASCII.
-
Message Communicator now always uses colon (:) for the time when sending an email via SMTP as per RFC5322.
-
Message Communicator now sends emails to email addresses that contain the & character.
-
Message Communicator now prevents work file conflicts.
-
In a joblog rule selection criteria, a value of COPY is now valid for Message Type.
-
Changing a Message Queue Rule now removes Action Counts against open Alerts.
-
Exported Output Queue Rule Groups no longer include the Processing times.
-
Commands Export Calendar (EXPCAL), Export System Defaults (EXPSYSDFT), Export Substitution Variables (EXPSBSVAR), Export Admin Alert Criteria (EXPADMALT), Export Remote Location Groups (EXPRMTGRP) and Export User Lists (EXPUSRLST) now return the real cause of failure.
-
Work with Message Queue Recipients (WRKMSGQRCP) now updates the Where used list after 2=Change is used against a Device.
-
Work with System Defaults (WRKSYSDFT) now shows help text for user related System Defaults on 7.6
-
Work with Rules (WRKRULES) now correctly displays journal data against History.
-
Work with Rules (WRKRULES) for 23=Rule history now lists changes to Notes.
-
Work with Rules (WRKRULES) no longer allows a Rule Group for *LIST
-
Work with Rules (WRKRULES) now displays a + at the end of a message when editing criteria and there are multiple messages available.
-
Work with Rules (WRKRULES) within 23=Rule history now shows changes to Notes.
-
Work with Rules (WRKRULES) 23=Rule history now only shows history for the selected Rule Group.
-
Work with Rules (WRKRULES) now audits changes to Notes.
-
Exporting multiple Message Manager or Event Manager Rules from Work with Rules (WRKRULES) with Group Notes no longer fails.
-
F7=Previous and F8=Next now work when displaying a Rule History entry within Work with Rules (WRKRULES) when System Default HAL/AUTHMODE is set to 0 (zero).
-
Send Long Syslog Message (SNDSYSLOG2) now allows non-numeric characters as part of Alert ID.
-
Send Long Syslog Message (SNDSYSLOG2) sends the message without trailing blanks for RFC3164 and LEEF formats.
-
Import Environment (IMPENV) now renames a Remote Location with the same name as the Export Name on *SYSTEM to include an underscore to prevent the import failing.
-
An Action failed message is no longer added when a SNDTXT Action to a Remote Location is closed because the Alert is closed.
-
Start Watch (STRWATCH) now allows use of Substitution Vairable &JOBID for WatchID.
-
Close Watch (CLSWATCH) now allows use of Substitution Variables for WatchID.
-
Substitution Variable &ASPGRP now returns *SYSBAS for QHST
-
Message Monitor Not received “Watch” Rules now Alert when using Substitution Variables.
-
Display Message Console (DSPMSGCON) now checks for *USE authority to a message queue when replying to an Inquiry message Alert.
-
Display Message Console (DSPMSGCON) now lists SYSLOG2 within F13=Actions against a Sub-Console.
-
Modifying an existing Action for a *PC Remote Location to be a SNDTXT for an *I5 Remote Location gives an error that it is not an IBM i. This can now be cleared using F5=Refresh.
-
When a rule in the Audit Journal Monitor, Custom Journal Monitor, Job Log Monitor, Message Monitor or TCP/IP Monitor was held by HLDRULE command with automatic release, the rule was not released correctly. This issue has been resolved.
-
Job Log Rules now release when HLDRULE with Release *AFTER is performed.
-
Device Monitor no longer attempts to apply an Authorization List of QTEMP when System Default HEM/DEVMONTEMPLIB is set to QTEMP.
Level 4 Operations Center Suite
Version 7.0
April 7, 2026
(PTF: 2026.070)
Enhancements
-
Unlock Group (UNLGRP) will now stop and error if a User Program fails.
-
Work with Schedule (WRKSCH) now allows you to subset by Job Name.
-
To improve performance of Work with Archived Spooled Files (WRKARCSPLF):
-
New System Default HEM/DFTARCSPLFSTRDT has been made available to define the number of days to be subtracted from the current date to determine the beginning date of spooled files to look for. This allows values in the range -366 to 0 or a value of *BEGIN
-
Work with Archived Spooled Files (WRKARCSPLF) now allows and defaults a value of *DFT for Begin date which uses the value in the new System Default. This allows the initial search to be performed over a shorter, more current, time frame thus improving initial response when there are lots of historic archived spooled files.
-
-
Disk Space Manager can now compare two builds.
-
Display Disk Analysis Data (DSPDSKDTA) now allows you to select a comparison build via new Compare build parameter on the command or by using F9=Select build in a new Compare build field once the data has been displayed.
-
Print Disk Analysis Data (PRTDSKDTA) now allows you to select a comparison build via new Compare build parameter on the command.
-
Output Disk Analysis Data (OUTDSKDTA) now allows you to select a comparison build via new Compare build parameter on the command.
-
-
Work with Subset Templates (WRKSUBTMP) now allows a value of *DFT for Start Date. This value will only be applied when the Subset Template is used in Work with Archived Spooled Files (WRKARCSPLF).
-
New Object Rules for *JRNRCVENT, *JRNRCVSEQ, and *JRNRCVSIZ are now available. These monitor the number of entries, last sequence number, and the size of the receiver attached to a journal, respectively.
-
Audit Journal Monitor (CD) now supports Reason Code 'X' (Proxy command).
-
Audit Monitor now supports monitoring for M0 (Db2 Mirror Setup Tools) entries.
-
Audit Monitor now supports monitoring for M6 (Db2 Mirror Communication Services) entries.
-
Audit Monitor now supports monitoring for M7 (Db2 Mirror Replication Services) entries.
-
Audit Monitor now supports monitoring for M8 (Db2 Mirror Product Services) entries.
-
Audit Monitor now supports monitoring for M9 (Db2 Mirror Replication State) entries.
-
Custom Journal Rules now allow you to define the Type and Code.
-
Hold Rule (HLDRULE) now allows a value of *ALLGROUPS for Rule group. When used, the hold will be applied to all groups within the specified Monitor.
-
Copy Rule (CPYRULE) now allows a value of *ADD for Replace which means the Rule will only be copied if it does not already exist.
-
Release Rule (RLSRULE) now allows a value of *ALLGROUPS for Rule group. When used, the release will be applied to all groups within the specified Monitor.
-
Work with Rules (WRKRULES) History can now consolidate the journal entries to show them as changes rather than deletes and adds.
-
Print Alert Log (PRTALTLOG) can now print a 255 column width report that includes all the 1st level Alert text via new parameter Basic detail length (BASIC) which defaults to *SHORT but can be set to *LONG.
-
Message Communicator can now send emails using SMTP for MS-OAuth.
-
Message Communicator email message text increased to 2048 characters.
-
Substitution Variable &MSGCOUNT (Message count) has been made available. This returns the number of occurrences of the message that resulted in the Alert. This only applies to Alerts for Message Queue Rules.
-
Dump Product Data (DUMP) now allows you to specify the Owner user profile and Authority to be applied to the resulting save file.
-
Message Monitor now has an Auxiliary Monitor dedicated to monitoring QHST.
-
HALINST/INSTALL now uses the IBM commands in library QSYS.
-
The EXTLOG Action now allows you to add to a file in the IFS (*STMF).
-
Customize Environment (CSTENV) will not overwrite the QSYSOPR Message Queue Rule Group or Rules that have the same Rule No. as the Customization being applied.
-
Substitution Variables can now be defined with Function *SUBSTRING. This will extract characters from the position defined in Operand #2 for the length of the Substitution Variable.
-
Work with Action Templates (WRKACTTPL) now includes SYSLOG2 for sending a long Syslog message using the SNDSYSLOG2 command.
-
Work with Action Templates now includes a SYSLOG2 Action for the SNDSYSLOG2 command.
-
The TCPIP Monitor now adds message to the Halcyon Message Log, which is also defined as an Admin Alert, when the user running the Monitor does not have *IOSYSCFG authority which is required for use of the IBM API from 7.6
-
Work files created within the IFS are set not to be audited.
-
Version 16.0 of Halcyon Advanced Job Scheduler (HJS) is now available.
-
Version 16.0 of Halcyon Disk Space Manager (HDM) is now available.
-
Version 16.0 of Halcyon Performance Analyzer is now available.
-
Version 16.0 of Halcyon Spooled File Manager is now available.
-
Version 16.0 of Halcyon Alert Intelligence is now available.
-
Version 16.0 of Halcyon Log File Monitor is now available.
-
Version 16.0 of Halcyon Audit Journal Manager (HAM) is now available.
-
Version 16.0 of Halcyon Restricted Tasks Manager (HRT) is now available.
-
Version 16.0 of Halcyon Event Manager (HEM) is now available.
-
Version 16.0 of Halcyon Common Functions (HAL) is now available.
-
Version 16.0 of Halcyon Message Communicator is now available.
-
Version 16.0 of Halcyon Message Manager (HMM) is now available.
Fixes
-
Work with Schedule (WRKSCH) now shows an error when a User Program fails.
-
Corrected the message added to the Halcyon Message Log by Advanced Job Scheduler when an *INVOKE'd Group that runs an HRP Script fails.
-
Halcyon Work with Spooled Files (WRKSPLF) now correctly lists spooled files after an option has been used against them.
-
Fixed issue with Disk Space Manager Command Trigger Actions failing with error.
-
Work with Rules (WRKRULES) now triggers auto-export for a source Rule when an AI Action is added as part of maintaining an Alert Intelligence Rule.
-
Work with Rules (WRKRULES) allows Rule Groups with Check Interval greater than 59940 seconds (999 minutes) in Alert Intelligence Rules criteria.
-
Work with Rules (WRKRULES) now allows use of Custom Journal Rules in the criteria on Alert Intelligence Rules.
-
Disk Space Manager Command Trigger Actions are now evaluated correctly when using Substitution Variables.
Note: Command Trigger Actions can affect the level of analysis performed.
-
Work with Archive Files (WRKARCF) correctly sets the values when F13=Repeat is used.
-
Work with Archived Spooled Files (WRKARCSPLF) now sets the End time correctly within F17=Subset when you set End date to *END
-
Work with ASP Analysis Settings (WRKASPSET) now allows Substitution @T within Command Trigger Action.
-
Work with ASP Analysis Settings (WRKASPSET) now allows use of F1 on an error message relating to Command Trigger Action.
-
Substitution @A now returns blank when no value is relevant as part of a Command Trigger Action, as defined within Work with ASP Analysis Settings (WRKASPSET).
-
An Alert Intelligence Rule now correctly gets released for a HLDRULE *AFTER Action.
-
Display Disk Analysis Data (DSPDSKDTA) now shows an error when a dynamic build fails.
-
New System Default HAL/DFTSPLCPYTXTIGN controls output of spooled files when copied to IFS TXT files as part of the CPYTOTXT, SNDTXTMSG, SNDEMLMSG commands and the EMAILSPLF Action.
-
*NONE - No change compared to existing functionality. Overprinting for blanks/spaces is replaced with underscores and blank lines are retained to keep the correct page size.
-
*IGNOVR - Ignores overprinting. Does not replace overprinting for blanks/spaces with underscore.
-
*IGNPAG - Ignore page throws. Does not add blank lines before next page.
-
*IGNOVRPAG - Both of the above.
Commands CPYTOTXT and SNDEMLMSG have new parameter IGNOPT, which defaults to *DFT, which allows the System Default value to be overridden.
-
-
Work with Applications (WRKAPP) no longer allows deletion of *ALLSYS or *ALLUSR
-
Object Monitor only performs Open alert action processing when required.
-
Work with Rules (WRKRULES) now exits 5=Display on Enter when displaying an HRT Rule Group.
-
Work with Rules (WRKRULES) reports correctly errors on an Object *RCDCNT Rule when the Rule is invalid.
-
Work with Rules (WRKRULES) now validates the User List exists when specified within Criteria.
-
Work with Rules (WRKRULES) now correctly shows a Cache Battery message, if applicable, when creating a new Performance *SYSTEM Rule.
-
Fixed issue with Acknowledge only suspending a Performance Rule when used against the current Alert.
-
Object *JRN Rules now initially Alert with Prev objects the same as No. of objects to prevent the Open Alert Action being immediately performed.
-
Default Inactivity Rules now Alert.
-
Default Object Rules now Alert.
-
Performance *SYSTEM RSPMAX5 Rules now Alert.
-
Custom Journal Rules continue alerting after they have been changed.
-
Custom Journal Alerts now suspend.
-
Help text for Performance *SYSTEM BCHHLDQ monitoring has been clarified.
-
Custom Journal Monitor now alerts correctly for events in the Journal.
-
Work with Alert Log (WRKALTLOG) 11=Omit in future against a Custom Journal Alert now sets the values relating to the Object.
-
Work with Alert Log (WRKALTLOG) 11=Omit in future against a Custom Journal Alert now sets a correct value for Program Name.
-
Clear Alert Log (CLRALTLOG) now clears Suspends against Custom Journal Rules.
-
Performance *SYSTEM Alerts now left-align numeric values.
-
*RCDCNT rule types for Object Monitor now work correctly for queries having varying length fields.
-
Audit Journal Monitor now handles invalid characters in the UserID for PW (Invalid password) entries.
-
Custom Journal Monitor now handles invalid characters in the UserID for PW (Invalid password) entries in QAUDJRN.
-
Custom Journal Rules now release when HLDRULE with Release *AFTER is performed.
-
The Halcyon Install Control Panel (HALINST/CTLPANEL) now shows the IP address for the *SYSTEM Remote Location at time of upgrade.
-
Message Communicator now adds a message to the Halcyon Message Log when a Communications Log Entry is closed due to an Alert being closed. Message HMC0533 is added for a local request and message HMC0534 is added for a remote request.
-
Work with Alert Log (WRKALTLOG) correctly displays the Message CCSID Used within F11=Message information for Message Queue Alerts.
-
Message Monitor now adds a message to the Halcyon Message Log (DSPMSGLOG) when monitoring re-commences as an IASP is back online.
-
Import Environment (IMPENV) now drops user authorities for users that do not exist on the target system.
-
Message Communicator now encodes spooled file attachment names in ASCII.
-
Message Communicator now always uses colon (:) for the time when sending an email via SMTP as per RFC5322.
-
Message Communicator now sends emails to email addresses that contain the & character.
-
Message Communicator now prevents work file conflicts.
-
In a joblog rule selection criteria, a value of COPY is now valid for Message Type.
-
Changing a Message Queue Rule now removes Action Counts against open Alerts.
-
Exported Output Queue Rule Groups no longer include the Processing times.
-
Commands Export Calendar (EXPCAL), Export System Defaults (EXPSYSDFT), Export Substitution Variables (EXPSBSVAR), Export Admin Alert Criteria (EXPADMALT), Export Remote Location Groups (EXPRMTGRP) and Export User Lists (EXPUSRLST) now return the real cause of failure.
-
Work with Message Queue Recipients (WRKMSGQRCP) now updates the Where used list after 2=Change is used against a Device.
-
Work with System Defaults (WRKSYSDFT) now shows help text for user related System Defaults on 7.6
-
Work with Rules (WRKRULES) now correctly displays journal data against History.
-
Work with Rules (WRKRULES) for 23=Rule history now lists changes to Notes.
-
Work with Rules (WRKRULES) no longer allows a Rule Group for *LIST
-
Work with Rules (WRKRULES) now displays a + at the end of a message when editing criteria and there are multiple messages available.
-
Work with Rules (WRKRULES) within 23=Rule history now shows changes to Notes.
-
Work with Rules (WRKRULES) 23=Rule history now only shows history for the selected Rule Group.
-
Work with Rules (WRKRULES) now audits changes to Notes.
-
Exporting multiple Message Manager or Event Manager Rules from Work with Rules (WRKRULES) with Group Notes no longer fails.
-
F7=Previous and F8=Next now work when displaying a Rule History entry within Work with Rules (WRKRULES) when System Default HAL/AUTHMODE is set to 0 (zero).
-
Send Long Syslog Message (SNDSYSLOG2) now allows non-numeric characters as part of Alert ID.
-
Send Long Syslog Message (SNDSYSLOG2) sends the message without trailing blanks for RFC3164 and LEEF formats.
-
Import Environment (IMPENV) now renames a Remote Location with the same name as the Export Name on *SYSTEM to include an underscore to prevent the import failing.
-
An Action failed message is no longer added when a SNDTXT Action to a Remote Location is closed because the Alert is closed.
-
Start Watch (STRWATCH) now allows use of Substitution Vairable &JOBID for WatchID.
-
Close Watch (CLSWATCH) now allows use of Substitution Variables for WatchID.
-
Substitution Variable &ASPGRP now returns *SYSBAS for QHST
-
Message Monitor Not received “Watch” Rules now Alert when using Substitution Variables.
-
Display Message Console (DSPMSGCON) now checks for *USE authority to a message queue when replying to an Inquiry message Alert.
-
Display Message Console (DSPMSGCON) now lists SYSLOG2 within F13=Actions against a Sub-Console.
-
Modifying an existing Action for a *PC Remote Location to be a SNDTXT for an *I5 Remote Location gives an error that it is not an IBM i. This can now be cleared using F5=Refresh.
-
When a rule in the Audit Journal Monitor, Custom Journal Monitor, Job Log Monitor, Message Monitor or TCP/IP Monitor was held by HLDRULE command with automatic release, the rule was not released correctly. This issue has been resolved.
-
Job Log Rules now release when HLDRULE with Release *AFTER is performed.
-
Device Monitor no longer attempts to apply an Authorization List of QTEMP when System Default HEM/DEVMONTEMPLIB is set to QTEMP.
Document Management System
Version 16.0
April 7, 2026
(PTF: 2026.070)
Fixes
-
Run Bundle (RUNBDL) now supports Message Communicator Email Device names that include special characters.
HA-MX Monitor
Version 16.0
April 7, 2026
(PTF: 2026.070)
Fixes
-
Work with Rules (WRKRULES) now exits 5=Display on Enter when displaying a HA-MX Rule Group
MQ Manager
Version 16.0
April 7, 2026
(PTF: 2026.070)
Fixes
-
Work with Rules (WRKRULES) now ensures the full MQ Configuration has been loaded before allowing Rules to be edited.
-
Work with Rules (WRKRULES) now exits 5=Display on Enter when display a MQ Rule Group.
-
MQ Manager Alert text has been standardized.
-
New System Default HMQ MMQRUNINACT defines whether the MQ Monitor should continue running when all MQ Managers are inactive.
-
MQ Monitor now clears previously cached configuration on start-up.
Record & Playback
Version 16.0
April 7, 2026
(PTF: 2026.070)
Enhancements
-
Halcyon Record & Playback now uses an SC library by default for Scripts and Screen Templates.
Fixes
-
Display HRP Script Help (DSPHRPSCRH) now highlights that for %FMTTIME() the input time must be in format hhmmss.
-
Run HRP Script (RUNHRPSCR) correctly records and displays the screen when a FIND statement is used.
Network Server Suite
Version 11.7
April 6, 2026
Enhancements
-
NSS: When the Ping Monitor performs a DNS lookup prior to executing the ping command, it may not consistently return the primary IP address of the target system. This behavior can affect systems configured with multiple IP addresses. To ensure accurate monitoring, specify the correct device in Device Manager by setting the Host/Address field explicitly to the system’s primary IP address.
-
NSS: The HELD status of a rule is now written to the Windows Registry whenever the rule is updated, ensuring that the status remains consistent across sessions.
-
NSS: The Halcyon Trap Receiver service has been updated to use the latest Microsoft OLE DB driver for SQL Server, replacing older components to address security vulnerabilities and deprecated dependencies.
-
NSS: The default Administrator password has been removed for enhanced security. During new installations or upgrades, the installer now prompts you to create a custom administrator user and password.
-
NSS: The application now targets .NET Framework 4.7.2, and all components have been rebuilt to ensure compatibility and improved stability.
-
NSS: SQL Server connectivity has been migrated to the Microsoft OLE DB Driver for SQL Server (MSOLEDBSQL), replacing the deprecated SQL Server Native Client (SNAC). This ensures continued support for modern OLE DB interfaces and TLS protocols.
-
NSS: You can now configure logging levels in the TrapReceiver.exe.config file. The default level is INFO. Available levels, in order of increasing priority, are: ALL, DEBUG, INFO, WARN, ERROR and FATAL. To disable logging completely, set the level to OFF.
-
NSS: Several components used by Halcyon Trap Receiver service have been updated and replaced to address known security vulnerabilities and deprecated dependencies.
-
NSS: A new Password Policy tab enables administrators to define comprehensive password rules, including minimum length requirements and the need for uppercase letters, lowercase letters, numbers, and special characters. Additionally, usernames must now be at least five characters long to improve consistency and security.
-
NSS: This release introduces enhanced security for SQL Server connections used by Halcyon applications. All SQL connections are now encrypted using TLS, improving data security and compliance with best practices.
-
NSS: Stronger password validation has been implemented to improve overall security.
-
NSS: When users attempt to change their password, a new Password Policy section is displayed, outlining the rules defined by administrators. These rules may include requirements such as minimum password length, and the inclusion of uppercase letters, lowercase letters, numbers, and special characters."
Fixes
-
NSS: When upgrading the main NSS/Enterprise Console installers, you might see an error message saying: "This installation cannot be run by directly launching the MSI package. You must run setup.exe."
-
NSS: This message is expected in some cases. Simply click OK to dismiss it and continue with the installation process. The setup will proceed normally."
-
NSS: This update resolves an intermittent defect in the Instant Alert system that caused failures when saving incoming message requests from the Enterprise Console to the database.
-
NSS: The upgrade process now correctly preserves configuration settings in Instant Alert Server.
-
NSS: The Network Manager has been updated to drop unauthorized connections without attempting to write back XML trace data. This change prevents unnecessary processing and ensures system stability.
-
NSS: Resolved an issue in the Enterprise Console where switching from CLOSED to OPEN alerts could cause a blank screen and require re-sign in. Layout handling has been corrected and any existing corrupt layouts are now automatically detected and rebuilt so alerts display correctly.
-
NSS: An NSS agent encountered an error when attempting to send an Instant Alert message. Instant Alert returned an invalid response due to a missing status attribute in the message response when an Address Book entry no longer exists. This issue has been resolved.
-
NSS: A defect that prevented the NSS Windows Agent installer from warning users about an existing Halcyon Windows Suite has been fixed. The installer now correctly detects Halcyon and stops the installation to avoid conflicts.
Human Risk Management (prior Terranova Security)
Version: 1.125.2
April 09, 2026
Fixes
-
Fixed a verbiage issue affecting dashboards.
Version: 1.125.1
April 01, 2026
Fixes
-
An issue where courses and quizzes created by users with a custom role restricted to managing a subset of users lost their managed filter when additional filters were added. Previously, if a user with this kind of role added another filter value from the Course or Quiz Access Management tab, the system removed the role‑based managed filter and applied only the newly selected filter, resulting in incorrect course access. This issue has been fixed, and managed filters are now always applied and correctly combined with any additional filters, ensuring courses and quizzes are assigned only to the intended audience.
IBM Partnership
IBM PowerHA SystemMirror for IBM i
Version 7.6 HA 6.1.3 PTF SJ09133
April, 2026
Fixes
-
Updated third-party libraries and dependencies for the PowerHA Web Interface.
Version 7.5 HA 5.8.3 PTF SJ09132
April, 2026
Fixes
-
Updated third-party libraries and dependencies for the PowerHA Web Interface.
Version 7.4 HA 4.14.3 PTF SJ09131
April, 2026
Fixes
-
Updated third-party libraries and dependencies for the PowerHA Web Interface.
Powertech
BoKS Manager
Version 8.1
April 23, 2026
Server s-8.1.0.22
This package requires that BoKS client package c-8.1.0.29 is also installed on the Master or Replica.
Fixes
-
Sped up adding host to a Host Group.
Version 8.1
April 23, 2026
Client c-8.1.0.29
This package requires that BoKS server package s-8.1.0.22 is also installed on the Master or Replica. This package does not need to be installed on BoKS Server Agents, only the Master and Replica servers.
Fixes
-
Sped up adding host to a Host Group.
Version 9.0
April 22, 2026
Client c-9.0.0.5
New Features
-
Added support for Red Hat 10 on s390.
-
Added support for Suse 15 on s390.
Compliance Monitor for IBM i
Version 4.7
April 22, 2026
Fixes
-
Backed out a change to batch report cover page related to report run time displaying as the assessment date range.
Version 4.6
April 6, 2026
Consolidator
Enhancements
-
Added support for new 7.6 entry subtypes in Journal reporting.
-
To prevent overwriting when multiple batch reports run concurrently to the same IFS directory, the Batch Assessment ID is now appended to the zip file name, ensuring each batch report is uniquely preserved.
Fixes
-
Corrected an issue on the T:CP report, where the home directory name and length were incorrect.
-
Updated activity descriptions to improve clarity and accurately reflect what happened.
-
Addressed several open-source security vulnerabilities.
-
Resolved a port conflict with GoAnywhere by restoring the secure server port to 3036.
-
Improved or corrected several minor formatting issues on audit reports.
-
Batch reports lacking transactional data now display the report run time as the assessment date on the cover page.
-
The Compliance Monitor Installer is now digitally signed.
Endpoint
Enhancements
-
Improved Help to deliver context‑specific guidance based on the user’s location in the application.
-
Updated copyright for IBM i programs.
Database Monitor for IBM i
Version 3.19
April 21, 2026
New Features
-
The product library now contains programs which allow the include and exclude transactions at user profile, group profile, or program name level. Contact support for details.
Enhancements
-
Implemented an emergency method to add product admins.
Fixes
-
Resolved an issue where a company name with a special character caused an error.
-
Resolved an issue where security swap option was visible when it should not be.
-
Resolved an issue where the current user was not always being logged as the user who made the change.
SIEM Agent for IBM i
Version 4.10
April 6, 2026
Enhancements
-
The "Monitoring Powertech Antivirus with SIEM Agent” help topic in the User Guide has been updated to explain how to use the new *ANTIVIRUS type of event source to monitor Powertech Antivirus.
Fixes
-
Events are now sent to *NETWORK outputs that use both the TLS protocol and a format that is based on the *MODERN, *CEF, or *SYSLOG message style.
Robot
Robot Monitor
Version 16.01
April 13, 2026
New Features
-
The PC software can now also be downloaded via HTTP, in the same manner as the AIX, Linux, and VIOS agent software.
-
Added an Auto Export option to Dashboards.
Enhancements
-
Windows Registry now contains a Fortra tree, containing Robot Monitor product settings. The AppData\Roaming directory will now contain a Fortra\RobotMonitorCommon directory with various folders, .ifs, .autdta, .ddfdta, .xthdta, .tldta extension files. The older data for Robot Monitor in the HelpSystems registry sections can be deleted once satisfied.
-
Updated the shipped version of Performance Navigator to the 19.07 release.
-
Removed the Quick Access Toolbar options.
-
The Monitor ribbon setting can now be configured under Options, to be remembered.
-
The Installer, icon, and version format have been updated to match Fortra standards.
-
The File Record Count and a few other Global Threshold limits have been extended to allow larger numbers to be accommodated.
-
Updated the colors in the UI to Fortra green.
-
Removed the "Look up PTF" and "Look up release" links.
-
Simplified the installer's Select Upgrade Type panel.
-
Robot Monitor now includes a Dark Mode or Light Mode experience.
-
Added Robot Alert device information to the Thresholds list view and the Export function.
-
Reorganized the Views navigation panel to be more intuitive. The Reports section follows directly after the Threshold Activity section. The Security section follows directly after the Configuration section.
-
Added MIMIX 10 data definitions to the product's Help Text.
-
Improved the shipped Home (Default) Dashboard layout.
-
Entering any type of Expiry Code will now facilitate the display of Fortra's License Agreement.
-
Added the Dashboard Slideshow Settings to the Save and Restore configuration options.
Fixes
-
Updated MONDSTIP to allow V7R5M0 and V7R6M0 entries to be made.
-
The Disk Utilization definition descriptions have been added to the Help Text.
-
Individual libraries and directories can now correctly be specified in the Disk Summary view.
-
Improved the sequencing when copying User Defined SQL Data Definitions to make it more clear.
-
Improved the Secure Connection functionality for the GUI, via SSL.
-
Improve Robot Monitor's integration with Robot Alert.
-
Fixed issue with the timing of Threshold Reset messages.
-
Fixed issue with the Disk Summary dashboard widget, configured for a Daily view for Directories, showing the /QOpenSys directory only, rather than from the selected top 10.
-
Fixed issue with Menu RM not found after upgrading on environments using a non-standard installation library.
-
Fixed issue with a Short-Term History dashboard widget displaying blank for *ALL or a Group.
-
Fixed a minor Robot Alert threshold integration issue.
Secure Collaboration (Vera)
Version 3.25.2
April 2026
New Features
Support for Adobe Acrobat and Reader
Digital Guardian Secure Collaboration (Vera) announces support for Adobe Acrobat and Reader (26.001.21367):
-
Adobe Acrobat and Reader for Windows Client
-
Adobe Acrobat for the Mac Client
Sequel
Abstract
Version: R11M00
April 22, 2026
New Features
-
The Abstract Rdi Plug-in has been completely revamped in this release. While most functionality stays the same, the user interface design is much improved and more integrated into the Rdi IDE. Note that this version of the plug-in requires RDi 9.8 or later.
-
Support has been added for fully free-form source, with the special directive **FREE in the first line. Abstract will scan beginning in column 1 to the end of the line, based on the source file record length.
-
Abstract now supports free format File (F) and Data (D) specifications.
Fixes
-
Corrected an error where the X-Ref Usage was reported as unknown when a prototyped call used a different name, or called from a procedure.
-
Corrected an error when scanning a *QRYDFN which included a cross-join.
-
Corrected an error when scanning embedded SQL that used a period qualifier (library.file), instead of a forward slash.
-
Corrected an error RXN0105 when running command PRTDSPF on a source file.
-
Corrected an error where Abstract did not recognize procedure calls if the procedure was not prototyped.
-
Fixed an issue where the LOADXREF process may not parse an SQL statement correctly.
-
Corrected an error in scanning an externally defined data structure definition which included INZ or qualified keywords.
-
Various terminology updates and minor corrections/enhancements have been made to the documentation.
-
Fixed an issue where the LOADXREF process may not parse an SQL statement correctly.
Titus
DCS Policy Manager (Customer-hosted)
Version 5.3
April 1, 2026
New Features
-
For DCS One:
-
Added App Settings (under DCS Audit Settings) to support DCS One sending events and properties to the Fortra DLP Analytics and Reporting audit logger.
NOTE: DCS for Windows will support the Fortra DLP Analytics and Reporting audit logger in a future release.
-
-
For DCS for Windows:
-
Added “Documents > On check policy” policy event that occurs when a user clicks the “Check Policy” button in a document. To use this feature, you must enable two different App Settings. You must enable the button in the “Check Policy Settings” group, and you must enable the Options Ribbon in the “Ribbon Settings” group.
-
Added “Documents > On save and send” policy event that occurs before any open document is shared by email using Microsoft Office.
-
Added “Password-protect Office attachments” action. This action enforces the password protection of Microsoft Office documents (.xlsx, .pptx, and .docx) that a user attaches to an email message.
-
Added “Classifier Interoperability” App Settings (under Metadata Handlers) that enables DCS for Windows to read or read/write Classifier labels. There is also a setting to enable DCS for Windows to remove Classifier visual markings the first time a user changes the classification, opens a document, or saves a document.
-
Added “Message.OriginalUserProperty.<PropertyName>” and “Message.UserProperty.<PropertyName>” properties. The value of the named property can be a MAPI property, user property, or X-header.
NOTE: “Message.UserProperty.<PropertyName>” is available for all supported email policy events in DCS Policy Manager. “Message.OriginalUserProperty.<PropertyName>” is not available for the “Email > On open” policy event.
-
Fixes
-
Fixed issue with credit card numbers not being detected for the Content Validation Profiles feature. By default, DCS Policy Manager now enables the “Use Luhn algorithm” option for the following Predefined Matches:
-
Canada - Social Insurance Number
-
Credit Card - American Express
-
Credit Card - Diners Club
-
Credit Card - Japan Credit Bureau
-
Credit Card - MasterCard
-
Credit Card - Visa
-
DCS Services Layer (Customer-hosted)
Version 6.0
April 1, 2026
New Features
-
Updated installer to allow DCS Services Layer to forward audit events to Fortra DLP Analytics and Reporting.
NOTE: Microsoft Visual C++ 2015-2022 Redistributable (x64) is now installed by default to support this feature.