v7.5
Knocknoc 7.5 π
Knocknoc 7.5 marks a major milestone in our journey to redefine secure network access. This release is a comprehensive redesign of the user experience, delivering a streamlined, intuitive interface that empowers both administrators and end users with greater control and clarity β without compromising on power.
But Knocknoc 7.5 isnβt just a facelift β itβs a massive uplift in features, performance, and security.
β¨ New UI & Streamlined Workflow
-
Redesigned interface with a responsive, intuitive layout
-
Cleaner workflows make complex tasks simpler and faster
- βClick to revokeβ now available alongside βclick to grantβ
- Improved visibility into admin, user and system activity
π Firewall & Integration Enhancements
-
Native orchestration for Fortinet and Palo Alto Networks (including Panorama)
-
Unified workflow to configure Passive, Passive+, and Active modes
-
Simplified integration with Linux Netfilter/IPTables/IPSets (existing IPSets now visible in your Server, per Agent)
-
HAProxy agent capabilities are now passed to the server, including socket locations
π Credential Security
-
Credentials for backend orchestrated systems (firewalls, clouds, custom scripts) are now encrypted using an approach akin to zero-knowledge, ensuring a breach of either the Server or Agent do not result in credential exposure.
-
Custom scripts support environment variables, with the username and other values passed by default (see here)
-
Protected (secret) environment variables now supported for safely passing API tokens and credentials
π SAML & Access Control Improvements
-
Simpler SAML integration and setup for administrators
-
User/group mapping now supports:
-
SAML groups
-
Local groups
-
Dynamic groups (combining local users with SAML groups)
-
-
Enhanced access-grant event de-duplication - boosting performance and reducing noise
- In-server SAML key management - no external handling required
βοΈ Platform and Minor Enhancements
- User license usage now allows for overages, preventing disruption during growth phases
- Increased logging visibility: access grants, admin actions, user activity
-
Better redaction in trace-level log mode to protect sensitive details
- More ports added to discovery methods, for better CGNAT detection
- Case-insensitive handling of
sessionDuration
SAML variable
π Architecture Simplification
-
Backends and ACLs replaced with Knocs β simplifying management
π¦ Security updates (packages)
-
Various package updates, including Golang security updates
Knocknoc 7.5 is built for the environments where access canβt just be controlled β it needs to be earned, verified, and continuously protected. Whether you're managing critical infrastructure, complex networks, or hybrid environments, this release is designed to meet you there.
Release Date: 10th April 2025