Version 6.5.0
Original release notes
- IPv6 support for communicating with other on-premises applications, servers, and devices. Please note that communication with Duo's cloud service will still resolve the API hostname to an IPv4 address.
- Connections to DNS hostnames will now honor multiple IP addresses and choose the fastest connection.
- When specifying hostnames in ad_client sections or in the Admin Panel configuration for Duo SSO Active Directory authentication, Active Directory sync, and OpenLDAP sync, the hostnames must be RFC-1034-compliant and:
- Start with a letter.
- End with a letter or digit.
- Only contain letters, digits, or hyphens (-) in the host or domain name.
- No longer prints ModuleNotFoundError during successful build.
- Fix logfile rotation when an extra file exists in log directory
- Improves handling of None values in HTTP client.
- Add rate-limiting logic for 429 errors.
- Upgrade Python to 3.11.10 to address multiple CVEs, such as CVE-2024-6923 and CVE-2024-4030.
- Upgrade to Cryptography 43.01 / OpenSSL 3.3.2 to address CVE-2024-6119.
- Updates to various third-party dependencies.