1 Oracle Enterprise Single Sign-On Suite 11g Release 2 (11.1.2.3)

Oracle® is releasing version 11.1.2.3 of Oracle Enterprise Single Sign-On Suite. These release notes provide important information about this release. The information in this document supplements and supersedes information in the related product documents.

1.1 Installation and Upgrade Notes

If you currently have multiple components of the suite installed together, you must upgrade all components to this version. Older versions of components may not work properly with version 11.1.2.3. Consider the following as you plan your installations:

  • Installation on Windows XP is no longer possible.

  • You must install Logon Manager prior to installing any other component.

  • If you have a previous version of Kiosk Manager installed and are updating it with the Logon Manager Agent, you must first uninstall the previous Kiosk Manager using the Control Panel Add/Remove Programs or the Uninstall option of the earlier software installer.

  • For components containing both a server and client:

    • Always keep server and client versions in sync; be sure to upgrade both.

    • Always upgrade the server component first, then the client component.

Refer to the individual components' documentation for more detailed information.

1.2 What's New In Oracle Enterprise Single Sign-On Suite 11.1.2.3

A number of features and improvements have been incorporated into Oracle Enterprise Single Sign-On Suite 11.1.2.3. This section describes these additions. For more information on these features and settings, see the Oracle online documentation center and the online help systems for each suite component.

1.2.1 Windows XP and Windows Server 2003 No Longer Supported

The Windows XP operating system is no longer supported; installing the Oracle Enterprise Single Sign-On Suite 11.1.2.3 on Windows XP is no longer possible.

1.2.2 Windows 8 and Windows 8.1 Support

Oracle Enterprise Single Sign-On Suite now supports the Windows 8 and Windows 8.1 operating systems.

1.3 Administrative Console

The following features and functions have been added or improved in this release of the Oracle Enterprise Single Sign-On Administrative Console.

1.3.1 Oracle Access Portal Form Masking Settings

The Proxy tab within a Web application template's form definition now contains settings to enable form masking in Oracle Access Portal. For more information, see the guides Configuring and Diagnosing Logon Manager Application Templates and Administering Oracle Enterprise Single Sign-On Suite.

1.4 Logon Manager

The following features and functions have been added or improved in this release of Logon Manager.

1.4.1 Microsoft User Interface Automation API Support

Logon Manager now supports the Microsoft User Interface Automation (MS UIA) API, allowing detection and interaction with Java, SAP, and Windows 8/8.1 Metro ("Modern UI") applications. The MS UIA API to programmatically access the fields and controls of those applications.

1.5 Universal Authentication Manager

The following features and functions have been added or improved in this release of Universal Authentication Manager.

1.5.1 Windows Server 2012 R2 Repository Support

Universal Authentication Manager can now store data in an Active Directory or AD LDS repository running on the Windows Server 2012 R2 operating system. For configuration instructions, see the guide Installing Oracle Enterprise Single Sign-On Suite.

1.5.2 Windows 8/8.1 Virtual Smart Card Support

On Windows 8/8.1 systems, Universal Authentication Manager now allows the use of hardware-backed virtual smart cards. To utilize this functionality, the target machine must have a functional Trusted Platform Module.

1.5.3 Required BIO-Key Middleware Version Increased to 1.12

Universal Authentication Manager now requires version 1.12 of the BIO-Key middleware. Prior versions are not supported and must be removed before installing Universal Authentication Manager.

1.5.4 SmartCard PIN Mode Enhancements

The PIN mode for the Smart Card authentication method has been enhanced as follows

  • Certificates that do not allow "Key Encipherment" key usage are now allowed by default. A new setting, "Strict Key Cipher," has been added to revert to the old (strict) behavior.

  • The ”Session Key | Prompt Always" option is now enabled by default.

1.5.5 Morpho ypsID 6.4.0 Support

Universal Authentication Manager now supports the Morpho ypsID 6.4.0 (formerly Sagem) middleware, which enables fingerprint-on-smart-card (substituting a fingerprint for the PIN) functionality. A .REG configuration file is now included to facilitate this. For more information, see the guide Administering Oracle Enterprise Single Sign-On Suite.

1.5.6 Token Settings Enhancements

The smart card and proximity token settings each have been enhanced to include a new "Authenticator token description" setting (a "Global Branding" setting). These descriptions are now also enabled by default. For more information, see the guide Administering Oracle Enterprise Single Sign-On Suite.

1.5.7 New Language: French (Canada)

Universal Authentication Manager now supports the Canadian variant of the French language. For configuration instructions, see the guide Installing Oracle Enterprise Single Sign-On Suite.