GoAnywhere MFT: Release Notes | Version 7.9.0

12. November 2025
New Features
  • Added support for FIPS 140-3.
  • Added „FileCatalyst“ service option to report tasks within MFT Workflows.
  • Added an API action for removing SSL certificates and keys from KMS keystores.
  • Added FileCatalyst option to report UI in Workflows.
  • Added Old Dashboard Redirect URL.
  • Added the ability to import ED25519 PKCS8 and OpenSSH SSH Keys.
  • Added the ability to create ED25519 PKCS8 SSH Keys.
  • Added Mina as a new SSH client provider.
  • Added support for ED25519 key authentication within the Mina SSH client.
  • Added support for the following new algorithms within the Mina SSH client:
    • Host Key Algorithms
      • chacha20-poly1305@openssh.com
    • Cipher Algorithms
      • ssh-dss-cert-v01@openssh.com
      • ssh-ed26619
      • ssh-ed26619-cert-v01@openssh.com
      • ssh-rsa-cert-v01@openssh.com
      • rsa-sha2-512-cert-v01@openssh.com
      • ecdsa-sha2-nistp256-cert-v01@openssh.com
      • ecdsa-sha2-nistp384-cert-v01@openssh.com
      • ecdsa-sha2-nistp521-cert-v01@openssh.com
      • sk-ecdsa-sha2-nistp256@openssh.com
      • sk-ssh-ed25519@openssh.com
    • Key Exchange Algorithms
      • curve448-sha512
      • diffie-hellman-group15-sha512
      • diffie-hellman-group17-sha512
    • MAC Algorithms
      • hmac-sha1-etm@openssh.com
  • Added the ability to set the log level to TRACE log without needing to restart the application.
  • Added thread name to the system log when in DEBUG/TRACE log level.
  • Implemented Failover Connection pooling for LDAP Managed Login Methods.
  • Improved the LDAP Managed Login Method Test to be localized as well as attempt both primary and alternate servers.
Enhancements
  • Added the auto-archiving options to the FileCatalyst task.
  • Added FIPS compliance mode for the FileCatalyst service to ensure algorithms negotiated between client and server fall within FIPS 140-3 guidelines.
  • Added in connection mode settings for FileCatalyst task.
  • Added new Project Templates.
  • Added support for container-level SAS authentication in Azure Storage.
  • Added support for SHA256 and SHA512 SSH key digests when using the Host Key field for key fingerprint validation with SSH resources and tasks when using the new Mina SSH client.
  • Added the ability to configure ED25519 private key in SFTP Service.
  • Added the ability to configure target rate settings for the FileCatalyst Task.
  • Converted the Support Bundle Zipping process to reduce the size of the zip files.
  • Enhanced the job log indexing to include the first 8 lines of all job logs regardless of the file size.
  • Enhanced Web User File system so that permission changes or revocation of a Shared Secure Folders/Files now apply immediately to all active user sessions.
  • Hid unsupported algorithms when running in FIPS mode across the following areas: AS4 resource, SFTP resource/server, Web User AS4 tab (push/pull processing), PGP Sign/Encrypt and Send Email tasks, and certificate creation for both KMS and fiel-based keys pages.
  • Improved the user experience when creating invalid certificates within Key Management System (KMS) when in FIPS Approved Mode.
  • Now there is a possibility to turn on/off the syslog async logging and local async logging.
Updates
  • Updated the commons-lang3 from version 3.14.0 to 3.18.0.
  • Updated esapi from 2.6.0.0 to 2.7.0.0.
  • Updated log4j from 2.17.1 to 2.24.3.
  • Updated slf4j-api from 1.7.32 to 2.0.16.
  • Updated netty from version 4.1.118.Final to 4.1.125.Final.
  • Updated nimbus-jose-jwt library from version 9.37.3 to 9.48.
  • Updated poi-ooxml from 4.4.1 to 5.4.0.
  • Updated Tomcat from version 9.0.107 to 9.0.111.
  • Updated Unbound ID (SDK) from 4.0.14 to 7.0.2.
  • Updated bc-fips to 2.1.2.
  • Updated bctls-fips to 2.1.20.
  • Updated bcpg-fips to 2.1.11.
  • Updated bcmail-fips to 2.1.6.
  • Updated MFT SaaS WebDocs signing to use RSA-SHA256 instead of RSA-SHA1 to ensure FIPS 140-3 compliance
Fixes
  • Enhanced the FTP/FTPS/SFTP Resource File Syntax implementation to cache and reuse the resource.
  • Fixed a decryption issue preventing old installations from migrating from RSA FIPS mode to BCFIPS mode.
  • Fixed an issue where a flaw exists in the GoAnywhere MFT SFTP service that allowed a Web User configured with an Authentication Alias AND a valid SSH key but limited to Password authentication for SFTP to still login using their SSH key.
  • Fixed an issue parsing license responses with forged signatures.
  • Fixed an issue where a value of „null“ would be present in reports when a field didn’t contain data.
  • Fixed an issue where Admin and Web Users could inadvertently be disabled during LDAP login routing.
  • Fixed an issue where AS3 message creation could fail due to missing transfer information during processing.
  • Fixed an issue where resumed transfers in FCService would display as the wrong direction.
  • Fixed an issue where resumptions were not working with FCService uploads.
  • Fixed an issue where SFTP Web Users configured for one authentication type could still authenticate with a different method when using an alias.
  • Fixed an issue where the Cloud Connector Resource can become cleared out intermittently.
  • Fixed an issue where the Put action in the FTP, FTPS, and SFTP Tasks did not set the file size and modified timestamps for each file in the Destination Files list.
  • Fixed an issue where third-party PeSIT clients could receive erroneous timeout errors when targeting a File Template configured for compression.
  • Fixed an issue with opened streams hanging cancel project execution having Copy task.
  • Fixed an issue with SSH host key algorithms which were not properly being filtered while in FIPS mode.
  • Fixed an issue with SSH re-keying occuring in the wrong order.
  • Fixed inccorect ICAP header lengths when special characters weren’t counted as multi-byte, by computing, byte-accurate Encapsulated offsets per RFC 3507.
  • Fixed issue where bad local addresses were not bubbling up to MFT UI.
  • Fixed an issue where the Active Sessions page would not properly clear out already cancelled sessions.
  • Fixed an issue where cancelling an already terminated session would throw a NullPointerException.
  • Fixed issue where FCService was incorrectly allocating ports on Gateway.
  • Fixed issue where FileCatalyst Service transfers were releasing audit events too early.
  • Fixed issue where FileCatalyst Service would not execute Account Disabled triggers.
  • Fixed issue where the FileCatalyst task would fail when FIPS compliance was enabled on the system.
  • Fixed SLA gadget color.
  • Reduced the memory footprint when listing files within the SFTP server.

0 Kommentare