Version 2.20.5
SenasteThis release introduces Directory Connector support, enabling FoxIDs to integrate with external authoritative user directories while maintaining internal user records.
It allows organisations to delegate authentication and password lifecycle operations to external systems such as Active Directory, while still leveraging FoxIDs for identity orchestration and claims handling.
In addition, a deployable Active Directory Directory Connector component is provided, simplifying integration with on-premises environments.
The release also strengthens security and consistency by enforcing stricter validation of enabled user identifiers in login authentication methods.
Further improvements include expanded Access Structure scalability with support for up to 2,000 nodes, enhanced visibility of certificate information in the NemLog-in template, improved master seed readiness error messages, and updated NuGet packages addressing known vulnerabilities.
⚠️ The External Login – API is now obsolete and will be phased out in a future release. It is recommended to migrate to the Directory Connector for all external authentication scenarios.
New Features and Improvements
Directory Connector
Added Directory Connector support for validating users against an external authoritative directory while maintaining internal FoxIDs users.
- Validate username and password against an external directory.
- Delegate password change and set-password operations to the external directory.
- Save a local password copy by default, allowing future transition to internal validation without forcing password resets.
- Automatically disable or delete internal users when the external directory reports changes.
- Support external directory identifiers via
directoryUserId. - Support password policy error codes from the external directory, enabling clear validation messages.
- Create or update internal users on successful authentication with identifiers, claims, and properties from the directory.
- Includes a documented API contract and sample implementation.
Active Directory Directory Connector Component
Added a deployable Active Directory Directory Connector component for Windows/IIS environments.
- Deployable as a standalone ZIP package.
- Uses static API key protection via FoxIDs Basic authentication, with optional
X-FoxIDs-Api-Keysupport for reverse proxy scenarios. - Supports user lookup by email, phone, or username.
- Returns
directoryUserIdas base64 encoded Active DirectoryobjectGUID. - Authenticates users by validating passwords against AD.
- Supports password change and set-password operations in AD (requires appropriate privileges).
- Returns configurable AD attributes as FoxIDs claims.
- Optional support for nested AD group claims.
- Includes a health endpoint for operational status and AD connectivity checks.
- Comprehensive documentation for configuration, IIS installation, deployment, patching, and updates.
Authentication Improvements
- Stricter user identifier validation
Enforced stricter compliance for which user identifiers are enabled in login authentication methods, improving consistency and reducing configuration errors.
Additional Improvements
Expanded Access Structure scalability
Increased Access Structure capacity to support up to 2,000 nodes, enabling larger and more complex hierarchical access models.Improved NemLog-in template visibility
Certificate information is now displayed in the NemLog-in template within the Control Client, improving transparency and troubleshooting.Improved master seed readiness error messages
Enhanced error messages related to master seed readiness to provide clearer diagnostics and easier troubleshooting.Security and dependency updates
Updated NuGet packages to address known vulnerabilities and improve overall platform security.
- www.foxids.com/foxids:2.20.5 Begränsad
- www.foxids.com/foxidscontrol:2.20.5 Begränsad
- FoxIDs-2.20.5-linux-x64.tar.gz Begränsad (166,5 MB)
- FoxIDs-2.20.5-win-x64.zip Begränsad (186,7 MB)
- FoxIDs.DirectoryConnector.ActiveDirectory-2.20.5-win-x64.zip (47,7 MB)
- FoxIDs.CosmosDbToPostgreSQLMigrator-2.20.5-linux-x64.tar.gz Begränsad (58,2 MB)
- FoxIDs.CosmosDbToPostgreSQLMigrator-2.20.5-win-x64.zip Begränsad (57,4 MB)
- FoxIDs.MasterSeedTool-2.20.5-linux-x64.tar.gz Begränsad (58,2 MB)
- FoxIDs.MasterSeedTool-2.20.5-win-x64.zip Begränsad (57,4 MB)
- FoxIDs.SeedTool-2.20.5-linux-x64.tar.gz Begränsad (58,2 MB)
- FoxIDs.SeedTool-2.20.5-win-x64.zip Begränsad (57,4 MB)