Oracle® is releasing version 11.1.2.3 of Oracle Enterprise Single Sign-On Suite. These release notes provide important information about this release. The information in this document supplements and supersedes information in the related product documents.
If you currently have multiple components of the suite installed together, you must upgrade all components to this version. Older versions of components may not work properly with version 11.1.2.3. Consider the following as you plan your installations:
Installation on Windows XP is no longer possible.
You must install Logon Manager prior to installing any other component.
If you have a previous version of Kiosk Manager installed and are updating it with the Logon Manager Agent, you must first uninstall the previous Kiosk Manager using the Control Panel Add/Remove Programs or the Uninstall option of the earlier software installer.
For components containing both a server and client:
Always keep server and client versions in sync; be sure to upgrade both.
Always upgrade the server component first, then the client component.
Refer to the individual components' documentation for more detailed information.
A number of features and improvements have been incorporated into Oracle Enterprise Single Sign-On Suite 11.1.2.3. This section describes these additions. For more information on these features and settings, see the Oracle online documentation center and the online help systems for each suite component.
The following features and functions have been added or improved in this release of the Oracle Enterprise Single Sign-On Administrative Console.
The Proxy tab within a Web application template's form definition now contains settings to enable form masking in Oracle Access Portal. For more information, see the guides Configuring and Diagnosing Logon Manager Application Templates and Administering Oracle Enterprise Single Sign-On Suite.
The following features and functions have been added or improved in this release of Logon Manager.
Logon Manager now supports the Microsoft User Interface Automation (MS UIA) API, allowing detection and interaction with Java, SAP, and Windows 8/8.1 Metro ("Modern UI") applications. The MS UIA API to programmatically access the fields and controls of those applications.
The following features and functions have been added or improved in this release of Universal Authentication Manager.
Universal Authentication Manager can now store data in an Active Directory or AD LDS repository running on the Windows Server 2012 R2 operating system. For configuration instructions, see the guide Installing Oracle Enterprise Single Sign-On Suite.
On Windows 8/8.1 systems, Universal Authentication Manager now allows the use of hardware-backed virtual smart cards. To utilize this functionality, the target machine must have a functional Trusted Platform Module.
Universal Authentication Manager now requires version 1.12 of the BIO-Key middleware. Prior versions are not supported and must be removed before installing Universal Authentication Manager.
The PIN mode for the Smart Card authentication method has been enhanced as follows
Certificates that do not allow "Key Encipherment" key usage are now allowed by default. A new setting, "Strict Key Cipher," has been added to revert to the old (strict) behavior.
The ”Session Key | Prompt Always" option is now enabled by default.
Universal Authentication Manager now supports the Morpho ypsID 6.4.0 (formerly Sagem) middleware, which enables fingerprint-on-smart-card (substituting a fingerprint for the PIN) functionality. A .REG configuration file is now included to facilitate this. For more information, see the guide Administering Oracle Enterprise Single Sign-On Suite.
The smart card and proximity token settings each have been enhanced to include a new "Authenticator token description" setting (a "Global Branding" setting). These descriptions are now also enabled by default. For more information, see the guide Administering Oracle Enterprise Single Sign-On Suite.