You will find below the list of security issues fixed in this bugfixes version:
Authenticated SQL Injection (CVE-2023-43813)
SQL injection through inventory agent request (CVE-2023-46727)
Remote code execution from LDAP server configuration form on PHP 7.4 (CVE-2023-46726)
On this last point, we wanted to recall the 7.4 version of PHP is very outdated and not supported anymore by the developers! You should upgrade on a recent version, at least 8.2 (8.0 will be outdated at the end of the year and 8.1 will be only with security fixes).
Also, here is a short list of main changes done in this version:
Enhance pending reasons display
various LDAP fixes (timeout, location import, deletion/restoration scenarios)
several inventory fixes (unmanaged assets reconciliation, rules for phones, rules logs for discovery, Cisco stacks, removal of remote management)
several performance enhancements (defer entity tree loading, strong enhancement on actors loading, all assets query execution time, web cron removal, dual ajax call for tab loading)
highlights of security requirements on install/update page. Some options like PHP versions, web folder setup are suggested with a strong visual.
Since GLPI 10, we have added three new tools for companies willing to manage and keep track of security and investments on IT assets like computers, servers, monitors, printers and, software programs, for example.
Companies of various sizes must manage the assets, so they might plan correctly the lifecycle of purchase, usage, maintenance and/or disposal correctly and effectively. Imagine if an IT department can keep track of the number of computers or monitors there are to be fixed and how many should be bought the next year.
Native GLPI Inventory
The native inventory is the fundamental functionality at the heart of GLPI. It acts as a central hub for managing and tracking IT assets, covering everything from hardware and software to user accounts and basic inventory information.
You will always start here. The native inventory serves as the foundation, addressing basic inventory needs like tracking the number of computers that need attention or planning for new hardware acquisitions.
The GLPI Native Inventory lays the groundwork, providing the essential structure for all things asset management in GLPI.
GLPI Inventory Plugin
Think of the plugin as an extension that enhances GLPI’s inventory capabilities. It steps in when you require more advanced features such as detailed hardware and software information, network discovery, and robust reporting – ideal for medium to large organizations with complex IT infrastructure.
You will deploy the plugin when your IT landscape becomes intricate, demanding network discoveries, scheduled tasks, SNMP inventory, or software deployment. It’s the toolkit for handling the complexities of a dynamic IT environment.
The GLPI Inventory plugin expands GLPI’s functionality, introducing advanced features and additional capabilities beyond the native inventory.
GLPI Agent Toolbox
The GLPI Agent toolbox introduces an agent software deployed on client devices to collect detailed information. It serves two primary purposes: replacing certain GLPI Inventory plugin features like network discovery and inventory support via scheduled tasks, and providing real-time data from devices in challenging network environments.
You will turn to the toolbox when you need to supplement or replace features provided by the GLPI Inventory Plugin, particularly in scenarios where direct GLPI access is restricted, such as strongly segmented DMZs or isolated VLANs. It’s your go-to for detailed, real-time information and proactive monitoring.
The toolbox offers more reliable inventory data, more tools to manage inventory tasks, reduces manual data entry, facilitates proactive monitoring, supports remote inventory and tasks in isolated or secured network environments.
When to Choose
The native inventory is the cornerstone, always part of your GLPI infrastructure. The GLPI Inventory Plugin and GLPI Agent Toolbox are able to extend some GLPI’s capabilities to address advanced tasks, such as network discovery and inventory in segmented DMZs and VLANs, and provide solutions for restricted or challenging network environments.
Your choice depends on your organization’s specific requirements, the complexity of your IT infrastructure, and the need for enhanced features that go beyond the native inventory’s capabilities.
We would like to announce a new plugin – PowerDNS – available via our professional offers ! From the level “Basic” in GLPI Network Subscriptions (on-premise):
Plugin Features:
Import and manage domains/records from and to PowerDNS by using GLPI interface. We use PowerDNS API to retrieve these objects and insert them in the corresponding GLPI tables.
On plugin first installation and when configuration is done, we import all domains and records from PowerDNS to GLPI. Then, we keep them synchronized with the help of a GLPI crontask.
More, every actions done on GLPI side on related objects will be replicated on PowerDNS side. Domains deleted or updated, records deleted or updated, etc.
We are happy to announce our new Silver partner in Malaysia: Astiostech.
Founded in 2013, Astiostech has quickly established itself in the field of enterprise solutions, accumulating a rich experience of more than 15 years.
Our expertise covers various areas such as:
Enterprise voice,
monitoring,
Cybersecurity
IT asset management.
All with a deliberate emphasis on open platforms and software – open-source and enterprise open-source software. This isn’t merely about riding the wave of the latest tech trends; it’s about guaranteeing adaptability, flexibility, and scalability for our valued clientele. In providing a 360 degree ecosystem, our clients can rely on Astiostech for solution purchase, design, deployment, customization, training and importantly, reliable support.
Our track record is a testament to our prowess. Astiostech has consistently surpassed expectations, providing unparalleled support to ensure our clients encounter minimal roadblocks on their technological odysseys. This relentless pursuit of excellence has attracted a wide array of clients, including titans from banking, government, manufacturing, and other sectors.
The reputation of Astiostech is fortified by our robust partnerships with industry juggernauts like TM Malaysia and IBM. These collaborations not only vouch for our credibility but also empower us to furnish our clients with cutting-edge solutions of utmost reliability and quality.
However, quality alone isn’t our sole concern; reliability stands as the linchpin of our deployment strategies. We comprehend the need for solutions that not only work effectively but also stand as unwavering pillars, ensuring uninterrupted operations in the whirlwind of the digital landscape.
At Astiostech, our passion for technology coalesces with a steadfast commitment to effecting positive societal change. We champion equality, cherishing and embracing the diverse talents that grace our path. Our dedication to the environment echoes through our operations and solutions, placing a premium on sustainability. Moreover, community empowerment holds our earnest investment, for we believe authentic success lies in the transformative impact we bestow upon the world around us.
We are excited that GLPI ITSM solution is becoming more and more represented all over the world and GLPI Network (our support offer for on-premises – get your IT Infrastructure secured) subscription service will be available for more customers through our new partners.
Our large partnership network is always open for new collaborations. If you are interested in representing one of our products in your country, get in touch with us: https://glpi-project.org/contact_us/
Being a partner means:
Having an a direct access to the Teclib´s tech expertise;
Get special discounts;
Access official support,
Many other tools which will help you to gain more customers and increase reputation on the market by adding open source ITSM to your portfolio.
However, on a factory reset or when reinstalling the inventory agent, this UUID changes. And when an inventory is uploaded, GLPI will create a new device (because the serial number is different). It is now possible to define a serial number (with the one already stored in GLPI) to avoids duplication in the GLPI inventory.
The Agent Config plugin has also been updated, to feature a new QRCode / Deeplink on the device file containing the serial number.
Android compatibility
From Android 4 (Jelly Bean) to Android 13 (Sdk 33)
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.Ok