If you are still using the APPSSO service carried over from the old version of DualShield 5, then you must not upgrade to DualShield 8.
Version: 8.0.8, Build: 20260415, Date: April 15, 2026
Improvements
- Add locale support for security questions (7033)
- Add support for passwordless login by cache (7137)
- Add any user identity attribute to the alert message (7147)
- Upgrade log4j (7094)
Bug Fixes
- Fix the locale issue of the password strength level (7159)
- The 'Use Self-Signed Cert' option is automatically enabled while entering a new FQDN (7125)
Version: 8.0.7, Build: 20260219, Date: February 23, 2026
Improvements
- Service Consoles DSC, etc., accept username as a URL parameter (7027)
- Standardised the OIDC discovery endpoint URL (7030)
- When a biometric token, such as FaceSense, is ready, its enrollment is closed until the token is reset (7039)
Bug Fixes
- Attempting to unlock a user account gets "invalid status" error (7041)
Version: 8.0.6, Build: 20260205, Date: February 05, 2026
Improvements
- Added the token download endpoint for Entra-joined PCs for offline MFA (6897)
- Added the option for force deleting a domain (6885)
- Added new device name & device ID wildcards to message templates (6930)
Bug Fixes
- Whitespace character encoding in the OTP Token issuer name (6940)
- Empty device name in the activation code message (6989)
Version: 8.0.5, Build: 20251209, Date: December 16, 2025
Improvements
- Improve GSS-API configuration and error message (6854, 6863)
- Add support for PUT in SMS gateway (6828)
- Add resource ID for SSO logon step progress texts (6868)
Bug Fixes
- LDAP user cannot login after moving from one OU to another OU (6822)
- Batch update returned unexpected row count from update [0]
- Error: java.sql.SQLException: Connection is read-only. Queries leading to data modification are not allowed (6842)
- Error: 429: Invalid Hex encoding
- Federated Logon between OWA (WSFED)and DSC only works one way (6845)
- GridGo - Constantly prompted to change path when logging on (6847)
- Frontend installation bug: isExternal is set to true for dualshield portals (6848)
- Message Gateway: JSON variables are not escaped (6583)
- Signing a CSR with invalid data, got NullPointerException (6858)
- IDPName is missing in the request posted back by the ACS IdP (6861)
- No Signature of Method error when trying to log on via Windows Logon using FIDO U2F (6865)
- Error "SSO Server is not found" when sending out activation code in DAC (6873)
Version: 8.0.4, Build: 20251111, Date: November 13, 2025
Improvements
- Reduced the initial load-up time (6762)
- Reduced migration failure due to the renaming of the "system" column in some SQL tables (6806)
Bug Fixes
- Windows Logon Agent installation failed due to IP mismatch (6759)
- Linux Console Installer: All services on the same port did not work properly (6776)
- Linux Console Installer: It always installed the Certificate Server regardless of the option (6782)
- Task: "Replace the IDP Certificate of All SSO Servers" caused login looping (6791)
- Report template "Users have been inacitve for over n days" not found due to the misspelled word (6809)
Version: 8.0.3, Build: 20251013, Date: October 14, 2025
New Features
- A SAML & OIDC service provider can now be published on multiple SSO servers (2808)
- Support multiple syslog servers (6675)
- Removed log4j 1.2.17 (6704)
- Enable OCSP stapling (6686)
- Remove "DASApplicationID" from SAML Logout Response (6727)
Bug Fixes
- SSO error 500 (session exception) (6735)
- Upgrading failure from 8.0.0 to 8.0.1 (6671)
- Agent registration failed: (10002) SSL connect error due to missing CA (6556)
- Password complexity form validator throws JS Error (6685)
- Failed to install (Linux) (6728)
- Failed to listen on 443 port (Linux) (6732)
Version: 8.0.2, Build: 20250905, Date: September 09, 2025
New Features
- Support custom Geo Location (6624)
- Support custom ODIC Authentication Method Reference (AMR) (6623)
Bug Fixes
- GridID self-enrolment was not functional (6625)
- No signature of method: com.unboundid.ldap.sdk.FailoverServerSet.setReOrderOnFailover (6630)
Version: 8.0.1, Build: 20250814, Date: August 14, 2025
New Features
- Support OAUTH in SMS gateways (6293, 6541)
- New options to include raw biometric data, such as fingerprint and picture, in the audit and report (6559, 6560)
Bug Fixes
- DualShield failed to start after upgrading from an old version that can be traced back to 5.x (6611)
- DualShield service failed to start on Windows servers of some non-European languages (6546)
- Some non-European language characters did not display in PDF report documents (6552)
- Windows Logon Agent failed to register on Windows 2016 (6569)
- Failed to update the frontend server certificate if the size of the certificate is large (6570)
- The "Authentication Activity" report doesn't work (6612)
- Velocity policy check returns NullPointerException (6615)
Version: 8.0.0, Build: 20250702, Date: July 04, 2025
Main New Features
- Supports OpenID Connect (OIDC)
- Supports Microsoft Entra ID as an Identity Source
- Support any custom SQL database as an Identity Source
- Support MySQL 8.x
Other New Features
- Single port (443) for all services
- Export & Import Settings and Policies
- Blocked/Breached password list