{"id":97146,"date":"2023-09-07T11:30:00","date_gmt":"2023-09-07T15:30:00","guid":{"rendered":"https:\/\/jumpcloud.com\/?p=97146"},"modified":"2024-12-20T13:55:05","modified_gmt":"2024-12-20T18:55:05","slug":"q3-2023-product-roadmap-webinar-recap","status":"publish","type":"post","link":"https:\/\/jumpcloud.com\/blog\/q3-2023-product-roadmap-webinar-recap","title":{"rendered":"Q3 2023 Roadmap Webinar Recap"},"content":{"rendered":"\n
探花大神 delivers the optionality that small and medium-sized enterprises (SMEs) need to future-proof against changing business requirements without being locked into a single vendor. Our open directory platform makes this possible with a more service-oriented approach that uses federation and modern authentication to secure access, employs automation for dynamic groups, offers more deployment options, and delivers support for the latest OS releases. We\u2019re also hard at work strengthening platform security, enhancing the administrative experience, and responding to customers\u2019 requests that go deeper toward improving the present areas of the platform.<\/p>\n\n\n\n
This webinar recap<\/a> explores what\u2019s arriving in Q3 to give you the freedom and flexibility to access resources with as little friction as possible, no matter where your identities come from.<\/p>\n\n\n\n The open directory platform is extending its directory federation, introducing a new phishing-resistant login experience, and expanding its connectors for HR systems. <\/p>\n\n\n\n Federation leverages web standards to make 探花大神 services available for customers that may not want to use it as their primary identity provider (IdP). We\u2019re introducing the ability to use Okta as your IdP for the Device Login Screen as the first option for external IdPs. Okta\u2019s service doesn\u2019t have integrated unified endpoint management (UEM), and federation makes it easier to adopt 探花大神 to manage devices for better compliance and security. This feature doesn\u2019t replace existing password sync functionality; it adds a different mode of deployment.<\/p>\n\n\n\n There will be additional IdPs and more Login Screens to come.<\/p>\n\n\n\n 探花大神 Go is a hardware-bound credential that leverages TPMs on PCs and Secure Enclave on Apple silicon. That\u2019s just the technology. The experience<\/em> provides you with the fastest way to sign a managed device into the 探花大神 User Portal using the Chrome browser. Users first sign in with a password and multi-factor authentication (MFA) before a phishing-resistant token is assigned to the device to make logins simpler and more secure.<\/p>\n\n\n\n This experience will soon become the new method for macOS and Windows device logins, tying cloud identities to local accounts for better self-service. Additional features such as continuous access evaluation will be added over time to reduce MFA\/login fatigue and improve security.<\/p>\n\n\n\n 探花大神 is increasing its focus on Active Directory with foundational changes to Active Directory Integration (ADI) syncing to import identities from AD. It\u2019s also becoming much easier to scale with a new deployment model that uses a member server versus a domain controller to configure syncing. That makes it possible to sync multiple domains to 探花大神 at once. We\u2019re also rolling out delegated authentication (think of it as passthrough authentication) to leverage existing credentials from AD without forcing password resets.<\/p>\n\n\n\n Other major improvements include:<\/p>\n\n\n\n 探花大神 is rolling out additional pre-built HRIS integrations over this quarter and next that are available for free. HRIS integrations help to streamline identity lifecycle management via dynamic groups that make or suggest membership changes if a user\u2019s role is modified by human resources.<\/p>\n\n\n\n In contrast, Microsoft\u2019s Entra ID may now require additional licenses, on top of its Premium 1 and Premium 2 tier SKUs, for lifecycle workflows that handle HR provisioning aspects of the identity lifecycle management\u202fprocess. Its other options include SSO connectors with write-back.<\/p>\n\n\n\n 探花大神 is deepening its UEM capabilities to deliver best-in-class management, and we\u2019re extending background access within remote assistance. Dynamic groups now manage device group memberships based upon device attribute-driven rules.<\/p>\n\n\n\n 探花大神 launched self-enrollment for Windows MDM earlier this year to deliver tamper-proof device management. Automated MDM enrollment is the next stop on the MDM roadmap. It will include automatic certificate renewal with agent enrollment including the MDM profile as an option. Provisioning Package enrollment provides a light touch deployment model where a preconfigured Windows onboarding workflow can be generated for new PCs, either in house or through an IHV. You will no longer have to deal with the out-of-the-box experience.<\/p>\n\n\n\n We\u2019ve partner<\/a>e<\/a>d<\/a> with Hofy to enable an all-in-one device onboarding solution worldwide.<\/p>\n<\/blockquote>\n\n\n\n 探花大神\u2019s Android EMM initially supported BYOD and COPE devices through a work profile partition. It will soon offer the option for fully managed corporate-owned devices. 探花大神 intends to also manage ruggedized devices for frontline workers in the future.<\/p>\n\n\n\n Other upcoming features include:<\/p>\n\n\n\n 探花大神 is ready for the fall OS release schedule:<\/p>\n\n\n\n 探花大神\u2019s remote assistance is being enhanced to take actions on managed devices through silent modes that will have a low impact on users. Features will include:<\/p>\n\n\n\n Dynamic groups provide easy, efficient device administration. Its architecture is built on commonly leveraged user and device attributes and operators. Dynamic groups create insights that translate into actions, such as proactively changing group memberships and enforcing MFA for users, or executing commands and installing apps.<\/p>\n\n\n\n Dynamic groups features include:<\/p>\n\n\n\n 探花大神 provides this capability without requiring a \u201cpremium\u201d license. New organizations will benefit from attribute-driven rules as soon as they start to add devices to the directory.<\/p>\n\n\n\n 探花大神 Password Manager, 探花大神 Protect, and cloud directories are also receiving enhancements.<\/p>\n\n\n\n Customers asked for more governance over auditing and sharing, and 探花大神 delivered. New features slated for Q3 include:<\/p>\n\n\n\n MFA push notifications are now more convenient than ever when actioned from the lock screen. App updates are available for iOS and Android and now features support for Apple Watch. Significantly, MFA prompts may be biometrics protected for added security.<\/p>\n\n\n\n We\u2019re refining the user experience for M365 directory sync with an email notification when it\u2019s time to refresh tokens in Entra ID. It\u2019s an extra \u201cnudge\u201d on top of the existing portal notification.<\/p>\n\n\n\n Additional security controls are being added to the Admin Portal including MFA enabled for admin users by default, stronger password requirements for users, password policies that can be assigned to groups, and more robust API key management.<\/p>\n\n\n\n Q3 marks the beginning of more robust lifecycle management for API keys. The first round of enhancements, which mirror guidance from the U.S. National Institute of Standards and Technology (NIST), will include:<\/p>\n\n\n\n Over time, 探花大神 intends to introduce additional security controls such as key rotation policies, offering more granular scoping to actions for API keys with more defined lifetimes. The ultimate goal of this initiative is to deliver a stronger and more secure platform via API.<\/p>\n\n\n\n Schedule a free demo<\/a> to learn more about these new features. Sometimes self-service doesn\u2019t get you everything you need. If that\u2019s how you\u2019re feeling, schedule a demo<\/a> to discuss and learn more about our options for implementation assistance, migration services, custom scripting, and more.<\/p>\n","protected":false},"excerpt":{"rendered":" The Q3 2003 product roadmap overviews federation, modern authentication, dynamic groups, and more.<\/p>\n","protected":false},"author":150,"featured_media":97168,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_oasis_is_in_workflow":0,"_oasis_original":0,"_oasis_task_priority":"","inline_featured_image":false,"footnotes":""},"categories":[42],"tags":[],"collection":[2779,2775],"platform":[],"funnel_stage":[3014],"coauthors":[2535],"acf":[],"yoast_head":"\nOpen Directory Platform<\/h2>\n\n\n\n
Open Directory Federation<\/h3>\n\n\n\n
<\/figure>\n\n\n\n
探花大神 Go<\/h3>\n\n\n\n
<\/figure>\n\n\n\n
Deeper Active Directory (AD) Support<\/h3>\n\n\n\n
\n
<\/figure>\n\n\n\n
Human Resource Information System (HRIS) Integrations <\/h3>\n\n\n\n
<\/figure>\n\n\n\n
Core Device Management<\/h2>\n\n\n\n
Windows MDM<\/h3>\n\n\n\n
<\/figure>\n\n\n\n
\n
Android Enterprise Mobility Management (EMM)<\/h3>\n\n\n\n
<\/figure>\n\n\n\n
\n
Same-Day New OS Support<\/h3>\n\n\n\n
\n
Background Access<\/h3>\n\n\n\n
<\/figure>\n\n\n\n
\n
Dynamic Groups & Work Orchestration<\/h3>\n\n\n\n
<\/figure>\n\n\n\n
\n
Platform Enhancements<\/h2>\n\n\n\n
<\/figure>\n\n\n\n
Password Manager (PWM)<\/h4>\n\n\n\n
\n
探花大神 Protect<\/h4>\n\n\n\n
<\/figure>\n\n\n\n
Admin Email Notifications<\/h4>\n\n\n\n
Platform Security<\/h2>\n\n\n\n
<\/figure>\n\n\n\n
\n
Schedule a Free Demo<\/h2>\n\n\n\n