Passive Identity Agent Release Notes

List of defects fixed in passive identity agent releases.

Defects fixed in the Passive Identity Agent 1.1.1 release

Resolved issues

Caveat ID Number Description

CSCws79909

The passive identity agent 1.1.1 installer now has the Cisco digital signature.

Defects fixed in the Passive Identity Agent 1.1.2 release

This table provides a list of defects that are fixed in this release
Table 1. Resolved issues

Caveat ID Number

Description

CSCwu58085

The passive identity agent 1.1.2 recognizes Windows Server 2025 as a supported platform. The agent logs no longer displays the "unsupported OS" error message.

CSCwr98907

With passive identity agent 1.1.2, if the primary Firewall Management Center becomes unreachable and later recovers, the agent automatically retrieves missed user identity sessions from the Active Directory domain controller event viewer. The agent then sends these sessions to the Firewall Management Center once it is back online. The agent accomplishes this process without manual intervention.

CSCwv11579

With this fix the passive identity agent filters out the loopback IP addresses (both IPv4 127.0.0.0/8 and IPv6 ::1) before sending the session data to Firewall Management Center.

CSCwv22338

This fix limits passive identity agent connections to Firewall Management Center to prevent connection exhaustion.