ESET Secure Authentication – Table of Contents

Changelogs

This page displays the changelog for ESET Secure Authentication (up to the last ten releases with the latest version on the top). The changelog is only available in English. See also the release dates and the latest versions of ESET products.

Version 4.27.0.0

ADDED: Note to Settings—Mobile Application informing that it is necessary to reprovision users after changing the setting “User Must Use a PIN Code” for the setting to take effect.

FIXED: Using 2FA during release does not work

FIXED: Rolling up custom realms in the console ends in a white screen

FIXED: Vulnerable NuGet packages

IMPROVED: Release process stability and reliability

Version 4.21.0.0

IMPROVED: Performance optimization for setting authentication types for user, logs are now created as one entry instead of multiple ones

FIXED: Services not started after component installation

FIXED: Push authentication not functioning for applications accessed via Safari on iOS (for example, webmail)

FIXED: Login to web console not successful for users with special characters in their name (for example, "ß")

FIXED: Test users present in Web Console Administrators after the release of a new version

FIXED: Vulnerable NuGet packages

Version 4.18.1.0

IMPROVED: Email set as default Delivery Option for provisioning users (instead of SMS)

IMPROVED: Delivery time for push notifications responses

IMPROVED: Communication in Access Denied page and License dashboard when customer allocates all units to Sites in ESET PROTECT Hub (Sites are not supported).

ADDED: List of RADIUS attributes extended to include Palo Alto vendor attributes

FIXED: Windows Login in offline mode, locked after 1st incorrect OTP used

FIXED: 2FA is not requested but should be when the program runs in 'Run as different user' mode

FIXED: Authentication using FIDO in Windows Login is not working with SafeNet eToken FIDO USB-A or multiple FIDO keys

FIXED: Authentication using Token2 NFC Card & Smartcard Reader in Windows login does not register the device

FIXED: The outdated component version in the console is not highlighted in color when other problems are also being reported (e.g., with the last connection)

FIXED: MSP is unable to log in to the ESA Web console when license (without ESA) is available in My company

FIXED: Vulnerable npm packages

Version 4.15.1.0

ADDED: Windows Server 2025 support

IMPROVED: Reports, dashboards, and tables loading performance

IMPROVED: The Create User button is now displayed but disabled when Realm is not selected. Delete button disabled with explanation in integrated AD realms

IMPROVED: Dashboards UI - line height, empty space diminished, dark mode improvements, titles

FIXED: Deactivated company or company with expired trial licenses cannot be reactivated after transition to paid license - Refresh button updates the state (if not updated already based on reactivation in ESET PROTECT Hub)

FIXED: User changes synchronization from Active Directory - user no longer deleted and created again when changing organizational units

FIXED: Emails not sent from ESA

FIXED: Usage of 2FA during the release process is not working

FIXED: Windows login component installation successful, but ESA Credential Provider Proxy service did not start

FIXED: Displaying "NaN" instead of numbers in columns All users and Components columns in License Settings when having multiple companies

FIXED: Deactivate API call does not clear OTP SMS units correctly

FIXED: Redirect between DE and US data center does not work correctly in some cases

FIXED: Admin not redirected to login page after logout

FIXED: Internal server error when using a double backslash before the username

FIXED: Vulnerabilities in NuGet packages

REMOVED: Virus Radar link in the Help menu (EOL)

Version 4.12.1.0

ADDED: Visual differentiation for expired hard tokens

REMOVED: Self-enrollment of unknown users using the RADIUS component

IMPROVED: Several security enhancements

FIXED: Deactivated companies and companies with expired licenses cannot be reactivated

FIXED: Error establishing a cache connection

FIXED: Copyright 2025

FIXED: Trimmed edit boxes in the Create Company dialog

FIXED: Updating license information for licenses with unit type Account

Version 4.9.3.0

ADDED: Capability to run ESA in a different data center than West Europe (feature will be fully accessible next week)

FIXED: RDP black screen after logon

FIXED: It is impossible to discard dialog for unsaved changes in the Settings section Default Fields

FIXED: Missing Azure function audit logs

FIXED: Error messages referring to logs clarified

FIXED: Vulnerabilities in npm and NuGet packages

FIXED: Show Synchronization Agent link does not lead to Synchronization Agent component tab

IMPROVED: Datetime picker design

FIXED: Redis Cache is not working

FIXED: SMS OTP license consumption

FIXED: Sending Mobile Application option enabled without Activation Mobile Application OTP/Push setting being saved

Version 4.4.6.0

ADDED: Network rules for custom deployments

ADDED: Company Creation Date

ADDED: Cloud deployment mistakes prevention (version mismatch, incorrect slot)

FIXED: RADIUS connection failed on 2FA

FIXED: Invalid XML imported for Hard Tokens handling

FIXED: Failure to launch ESA Web Console with specific language preferences (e.g. en-AT locale)

FIXED: User table filter throwing error "Item not found"

FIXED: Redis cache duplicate sessions failing with exceptions

FIXED: Error auto-registering user in synchronized realm in cloud

FIXED: Text displayed incorrectly in Installers modal window

FIXED: RADIUS - accepting push requests not working

FIXED: Inability to upgrade ESA via ESET PROTECT

FIXED: Various RADIUS connection and VPN login issues after upgrade

FIXED: The user list is not refreshed after creating a user

FIXED: Error "Item not found" when filtering user by status

FIXED: Incorrect IP parsing/validation in RADIUS when sent with port

FIXED: Minor vulnerability in NuGet package

FIXED: Installer maximum duration shown as exceeds the limit

FIXED: License password visible in a trace log

Version 4.0.123.0

ADDED: Message-Authenticator attribute (Vulnerability Blast-RADIUS (CVE-2024-3596)).

ADDED: Add link to Status Portal to WAF screens.

FIXED: Email from ,,Feedback from ESA user" are not coming for v4 version.

FIXED: RADIUS Missing attributes when user from selected realm.

FIXED: Redis Cache not working properly.

FIXED: Installation/upgrade fails on newer builds of Windows Server 2022.

FIXED: Upgrade fails on newer builds of Windows Server 2022 in uninstall phase of prev. version.

FIXED: ESA reactivation doesnt work.

FIXED: HUB doesn't reflect consume in ESA.

FIXED: Lazy loading in tables not working properly.

FIXED: Windows login win SafeNet FIDO keys fails with 'Internal sever error'.

FIXED: Assigning company to web admin fails (Company not found).

FIXED: Unable to set FIDO URL for Web Console.

FIXED: Filtering by Company not working.

Version 4.0.111.0

ADDED: Login with ESET PROTECT Hub

ADDED: Access rights defined in ESET PROTECT Hub

ADDED: Multi-tenancy (for the MSPs)

ADDED: Creation of live installers with already with integrated invitation

ADDED: AD synchronization in cloud

ADDED: User temporary pause for the 2FA

ADDED: Admins are now able to customise in settings/advanced

ADDED: Dark mode

IMPROVED: We have redesigned the whole dashboard to allow administrators to be able to easily understand their environments as well be able to provide more granular information to the managed about their company.