⚙️Create policies from the ZLI
24 August 2022
zli v. 6.7.15
zli v. 6.7.15New
Create a new policy from the
zli. Create a policy from thezliusing:zli policy create-clusterfor a cluster policyzli policy create-proxyfor a proxy policyzli policy create-tconnectfor a target connect policyzli policy create-recordingfor a session recording policy
Run
zli policy helpor see thepolicyentry in the zli reference manual for additional guidance
Enhancements
Execute all policy-related commands with
zli policy. Complete all policy-related commands fromzli policy. This change encompasses the previouspolicy,describe-cluster-policy,user,group,targetUser, andtargetGroupcommands. Runzli policy helpor see thepolicyentry in the zli reference manual for additional guidanceRemove
zli generate-bash. Thegenerate-bashcommand was deprecated inzli v.6.0.8in favor ofzli generate bash. It is now fully removed from thezliPrompt for log in. Identity providers routinely rotate their keys. When this happens, BastionZero will prompt users for new log in
Fixes
Run ZLI Quickstart against an existing target. Modified the error message returned when running Quickstart against a target with the BastionZero agent already installed
Include all download options for the ZLI on Github. Updated the Github ZLI repo to include all download options
Cancel a
zli connectrequest. Resolved issue where users were unable to cancel a shell session request in between the request and the session being established. This action can now be performed usingctrl+c,ctrl+d, orctrl+\Connect to target names that contain periods. Resolved issue where users were unable to connect to targets with names that contained periods following
zli v.6.7.3. Note thatzli connectwill work as long as the string following the first period in the target name does not conflict with an environment name
bzero v. 6.5.4
bzero v. 6.5.4Fixes
Use environment variables to pass arguments from the
zlito thebzerodaemon. Resolved a potential issue with arguments being visible by processes when passed fromzlito the daemonRare race condition in
bzeroagent. Resolved a rare race condition that could cause connection requests throughzli connectto failRevoke user connections. Resolved an issue where revoking user connections caused cluster, database, and web connections to hang
iperf -R. Resolved an issue where
iperf -Rwould hang prior to output
Web app & backend
Enhancements
Webshell and spaces removal. Removed the webshell from the web app as the first step in our plan to create a web app centered around the admin-focused experience
Fixes
Close database connections. Resolved an issue with the daemon poller that was preventing database connections from closing correctly
Target type in tables. Fixed naming inconsistency with target types in the web app where "Target Connect" was "TargetConnect" and "Session Recording" was "SessionRecording"
For questions or to give us feedback on how we can make our updates better, please reach out to [email protected].
Last updated
Was this helpful?
