---
title: "Infoblox Cloud Release Notes"
canonical: "https://docs.infoblox.com/space/BloxOneCloud/35461931/Infoblox%20Cloud%20Release%20Notes"
format: markdown
---
Infoblox frequently introduces new features and enhancements for its platform and services. You can find details about these updates in the release notes and What’s New. The release notes below list product and service updates in descending chronological order.

For information about service statuses as well as planned and unplanned events that might affect your services, access the Infoblox Status page at <u>*[https://status.infoblox.com](https://status.infoblox.com)*</u>. 

|  |  |  |
| --- | --- | --- |
| **Release Date** | **Product** | **Changes** |
| 09/03/2026 | Universal DDI | ##### **Universal DDI now supports Shared Networks for DHCP.**<br>You can now group multiple non-contiguous subnets that reside on the same physical network into a contiguous, shared network, allowing the DHCP server to assign IP addresses from any subnet in the group. Shared networks make it easy to expand DHCP capacity when enlarging or renumbering an existing subnet isn’t practical—for example, when a network has outgrown its address space or when only fragmented address blocks remain. The result is better IP address utilization, non-disruptive network growth, and simpler routing and relay configuration, since a single configuration serves all member subnets. For more information, see <u>*[Creating Subnets](https://docs.infoblox.com/space/BloxOneDDI/186877118/Creating+Subnets)*</u>. |
| 09/03/2026 | Infoblox Threat Defense | ##### **Dossier now provides an AI Summary that explains domain risk at a glance.**<br>Infoblox Dossier now includes an AI Summary that provides a concise overview of a queried domain’s risk. The summary combines key intelligence, including the domain’s risk classification, classification rationale, reputation changes over time, threat feeds, and associated threat actors. Security analysts can quickly understand why a domain is considered risky, prioritize investigations, and access Dossier for deeper analysis. For information, see <u>*[Related Domains](https://docs.infoblox.com/space/BloxOneThreatDefense/272172700/Related+Domains)*</u>.<br>##### **Infoblox Endpoint 2.6.1.3 Enhances Internal Domain Availability.**<br>Infoblox Endpoint 2.6.1.3 improves the resilience of internal domain access during Infoblox Endpoint client failover and its eight-hour protection mode. The release strengthens local cache handling to help preserve access to internal domains during system restarts, including situations with limited or delayed internet connectivity. This update is being rolled out to all customers to further enhance connectivity and reliability. For information, see <u>*[Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint)*</u>. |
| 09/02/2026 | Infoblox Threat Defense | ##### **Threat Actor Monitoring is now available in the Security Workspace and in the Comprehensive Security Report.**<br>The **Threat Actor Monitor** gives you visibility into all Infoblox-identified threat actors observed in your environment, highlighting key details such as summaries, indicators, occurrences, affected assets, and threat attempts to help you understand threat actor activity at a glance. The **Comprehensive Security Report** also includes a dedicated Threat Actors section that summarizes the total number of detected threat actors and provides details about the top 10, including their names, summaries, occurrences, and threat attempts. For more information, see *[Threat Actors Detailed View](https://docs.infoblox.com/space/BloxOneThreatDefense/2760278053/Threat+Actors+Detailed+View)* and *[Comprehensive Security Report](https://docs.infoblox.com/space/BloxOneThreatDefense/35406198/Comprehensive+Security+Report)*. |
| 09/02/2026 | Infoblox Exposure Management | ##### **Credit Card Exposure Email Alerts**<br>Credit Card Exposure now sends real-time email alerts for detections generated directly in the platform. These alerts notify customers and partners as soon as newly exposed cards are identified, helping security teams respond more quickly.<br>Email notifications are organized by customer to simplify incident review and response. Each notification includes the key details needed to understand the exposure and provides a direct link to the *Cards* section with the relevant filters already applied. Users can manage their notification preferences in *My preferences* and unsubscribe from alerts whenever needed.  For information, see <u>*[Credit Card Exposure](https://docs.infoblox.com/space/IEM/2713583911/Credit+Card+Exposure)*</u>. |
| 09/01/2026 | Universal DDI | ##### **Universal Asset Insights now features a new Discovery configuration page.**<br>Universal Asset Insights now includes a new Discovery configuration page for managing your provider integrations. You can view configured and available providers as tiles or in a list, review job counts by sync, disabled, and error status, and open filtered job data for a specific provider. For more information, see <u>*[Configuring Integration-Based Discovery](https://docs.infoblox.com/space/UniversalAssetInsights/1501299163/Configuring+Integration-Based+Discovery)*</u>.<br>##### **Universal Asset Insights now supports integration with Microsoft Entra ID, extending visibility across cloud identity and managed device infrastructure.**<br>Universal Asset Insights now supports integration with Microsoft Entra ID, expanding visibility into the identities and devices that make up your cloud directory. This integration continuously discovers and ingests directory data from Microsoft Entra ID, including users and registered and joined devices, along with attributes such as device names, operating systems, join and compliance state, ownership, and last sign-in activity. The data is correlated with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified and authoritative view of assets across campus, branch, and cloud environments. This enhanced visibility helps surface personally-owned and unmanaged devices that fall outside traditional IT oversight, attribute them to the individuals who own or use them, and identify stale, non-compliant, or unenrolled endpoints before they become blind spots. Configuration and ongoing management of the Microsoft Entra ID integration are available through the Integrations tab. For more information, see <u>*[Microsoft Entra ID Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2754117656/Microsoft+Entra)*</u>.<br>##### **Universal Asset Insights now supports integration with Okta, extending visibility across identity, access, and endpoint infrastructure.**<br>Universal Asset Insights now supports integration with Okta, expanding visibility into the identities and devices managed through your Okta organization. This integration continuously discovers and ingests identity data from Okta, including users, enrolled devices, and associated attributes such as device names, platforms, status, and last activity. The data is correlated with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified and authoritative view of assets across campus, branch, and cloud environments. This enhanced visibility helps personally-owned and unmanaged devices operating outside traditional management controls, link them to the individuals who own or use them, and identify deactivated accounts and unenrolled or unrecognized endpoints before they create gaps in coverage. Configuration and ongoing management of the Okta integration are available through the Integrations tab. For more information, see <u>*[Okta Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2753691680/Okta)*</u>.<br>##### **Universal Asset Insights now supports integration with Fortinet FortiManager, extending visibility across centrally managed network security infrastructure.**<br>Universal Asset Insights now supports integration with Fortinet FortiManager, expanding visibility into the Fortinet devices and network configuration managed from your FortiManager deployment. This integration continuously discovers and ingests device and network data from FortiManager, including managed FortiGate devices, host names, serial numbers, model and firmware details, management IP addresses, and interface-level addressing. The data is correlated with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified and authoritative view of assets across campus, branch, and cloud environments. This enhanced visibility helps improve asset accuracy, reduce blind spots at the network edge, and identify unmanaged or misconfigured devices. The integration supports both on-premises FortiManager deployments and FortiCloud-hosted instances, with a configurable sync interval. Configuration and ongoing management of the Fortinet FortiManager integration are available through the Integrations tab. For more information, see <u>*[Fortinet FortiManager Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2753462328/Fortinet+FortiManager)*</u>.<br>##### **Universal Asset Insights now supports integration with Red Hat OpenStack, extending visibility across private cloud workloads and address space.**<br>Universal Asset Insights now supports integration with Red Hat OpenStack, expanding visibility into the workloads and IP address space running in your private cloud. This integration continuously discovers and ingests infrastructure data from Red Hat OpenStack, including projects, compute instances, networks, subnets, ports, fixed and floating IP addresses, and associated metadata such as instance names, states, and MAC addresses. The data is correlated with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified and authoritative view of assets across campus, branch, and cloud environments. This enhanced visibility helps improve asset accuracy, keep private cloud address space aligned with IPAM, and identify unmanaged or misconfigured workloads. Configuration and ongoing management of the Red Hat OpenStack integration are available through the Integrations tab. For more information, see <u>*[Red Hat OpenStack Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2754412579/Red+Hat+OpenStack)*</u>. |
| 08/31/2026 | Universal DDI<br>Infoblox Threat Defense | ##### **Infoblox now supports deploying NIOS-X servers on the Proxmox hypervisor.**<br>Users can now deploy NIOS-X servers on the Proxmox hypervisor using an Infoblox-provided image, which can be downloaded from the Infoblox Portal. For more information, see <u>*[NIOS-X on Proxmox Hypervisor](https://docs.infoblox.com/space/BloxOneInfrastructure/2760146949/NIOS-X+on+Proxmox+Hypervisor)*</u>.<br>##### **NIOS-X now supports IPv6 static route configuration.**<br>Users can now configure IPv6 static routes from the **Servers** > **IP Interface Settings** page in the Infoblox Portal. For more information, see <u>*[Setting IP Interfaces](https://docs.infoblox.com/space/BloxOneInfrastructure/119996611/Setting+IP+Interfaces)*</u>. |
| 08/28/2026 | Infoblox Threat Defense | ##### **IQ for Threat Defense introduces expanded Insight and Investigation capabilities.**<br>IQ for Threat Defense has expanded its Insight capabilities with Actor Insights for unverified assets, Retrospective Insights, and Botnet Behavioral Insights based on observed SERVFAIL and NXDOMAIN activity. Additionally, Insights for Malware C2, Malware Download, and Phishing Traffic now provide richer threat context. The investigation workflow now includes a dedicated Actor tab with more detailed threat actor information, and an optional Charts tab within Analysis. You can also download Insight data in JSON format. KPI charts and widgets dynamically reflect applied filters, providing a more focused view of the data. For information, see <u>*[IQ for Threat Defense](https://docs.infoblox.com/space/BloxOneThreatDefense/2448392230/Infoblox+IQ+for+Threat+Defense)*</u>. |
| 08/24/2026 | Universal DDI<br>NIOS-X as a Service | ##### DNS version upgraded to 3.8.9 for Universal DDI and NIOS-X as a Service addressing the following vulnerabilities: CVE-2026-5951, CVE-2026-5949, CVE-2026-12617, CVE-2026-10822, CVE-2026-11331, CVE-2026-11622, CVE-2026-11721, CVE-2026-10723, CVE-2026-13321, CVE-2026-13204.<br>The DNS version is now upgraded for Universal DDI and NIOS-X as a Service addressing the following vulnerabilities:<br>- [CVE-2026-5951](https://www.cve.org/CVERecord?id=CVE-2026-5951)
- [CVE-2026-5949](https://www.cve.org/CVERecord?id=CVE-2026-5949)
- [CVE-2026-12617](https://www.cve.org/CVERecord?id=CVE-2026-12617)
- [CVE-2026-10822](https://www.cve.org/CVERecord?id=CVE-2026-10822)
- [CVE-2026-11331](https://www.cve.org/CVERecord?id=CVE-2026-11331)
- [CVE-2026-11622](https://www.cve.org/CVERecord?id=CVE-2026-11622)
- [CVE-2026-11721](https://www.cve.org/CVERecord?id=CVE-2026-11721)
- [CVE-2026-10723](https://www.cve.org/CVERecord?id=CVE-2026-10723)
- [CVE-2026-13321](https://www.cve.org/CVERecord?id=CVE-2026-13321)
- [CVE-2026-13204](https://www.cve.org/CVERecord?id=CVE-2026-13204) |
| 08/19/2026 | Infoblox Exposure Management | ##### **Exposure Management now includes automated detection triage.**<br>Automations let you create rules that act on detections without requiring an analyst to review and triage each one manually. When a detection matches the conditions you define, an automation can change its status, apply a tag, or add a note. You control when each automation runs by reviewing and activating it after configuration. Automations allow users to automate tickets in workspaces, providing tools for creating, editing, prioritizing, pausing, and deleting automations. They  also use permissions to control who can manage automation rules. For information about how to get started and where to find additional resources, see <u>*[Infoblox Exposure Management Automations](https://docs.infoblox.com/space/IEM/2712731664/EASM+Automations)*</u>. |
| 08/18/2026 | Universal DDI<br>Infoblox Threat Defense | ##### **Infoblox Portal now requires periodic user profile validation.**<br>Infoblox Portal now requires periodic user profile validation. To help maintain accurate user information for compliance and role-based communications, the Infoblox Portal now prompts users to validate their profile before accessing the product. On their next login, users are asked to confirm or update their first name, last name, job title, country, and state or region. Once validated, users are prompted to reconfirm this information annually. The validation screen is required and cannot be skipped. New users are also required to provide this information at account creation.<br>**Profile Validation details**:<br>Infoblox Portal periodically prompts you to validate your profile information. When validation is due, a required screen appears at login and must be completed before you can access the product. You cannot skip or dismiss this screen. During validation, you are asked to confirm or update your first name, last name, job title, country, and state or region, and to confirm your marketing email preference. Once validated, the system schedules your next validation for one year later. New users are required to provide this information at account creation. For more information, see <u>*[Setting User Preferences in Universal DDI](https://docs.infoblox.com/space/BloxOneDDI/186466676)*</u> and <u>*[Setting User Preferences in Threat Defense](https://docs.infoblox.com/space/BloxOneThreatDefense/35407811)*</u>. |
| 08/17/2026 | Universal DDI | ##### Universal DDI now supports Access Views for cloud-discovered IPAM objects.<br>You can now assign and unassign an Access View for IPAM objects that are discovered from AWS, Azure, and GCP cloud providers. You set the Access View directly on the cloud discovery job, so the objects that the job synchronizes are placed in the selected Access View. Access policy that previously applied only to DNS objects now applies consistently to cloud-synced IPAM objects. For more information, see [AWS](https://docs.infoblox.com/space/UniversalAssetInsights/1501135316/AWS+-+Destination), [GCP](https://docs.infoblox.com/space/UniversalAssetInsights/1501135469/GCP+-+Destination), [Azure](https://docs.infoblox.com/space/UniversalAssetInsights/1501299586/Azure+-+Destination).<br>##### Universal DDI now supports Access Views for subnets in the Unified IPAM View.<br>You can now place a subnet into an Access View, in the same way as an address block. When you create or edit a subnet, the Access View field defaults to the parent’s Access View. A child object cannot be moved to a different Access View from its non-root parent, so access boundaries stay consistent through the hierarchy. For more information, see [Modifying Subnets](https://docs.infoblox.com/space/BloxOneDDI/186467355/Modifying+Subnets).<br>##### Universal DDI now displays Virtual Private Clouds (VPCs) in the Unified IPAM Address Space View.<br>The Address Space perspective now displays cloud Virtual Private Clouds (VPCs) for AWS, Azure, and GCP. You can expand a cloud provider to navigate into its VPCs, address blocks, and subnets from a single perspective. Discovered cloud objects are marked read-only, and you can edit them to assign tags. For more information, see [Address_Space View](https://docs.infoblox.com/space/BloxOneDDI/1835991259/Address+Space+View).<br>##### Universal DDI now displays the Asset Overview instead of a separately maintained Assets tab in the Universal IPAM View.<br>The IPAM UI now reuses the shared Asset Overview instead of a separately maintained Asset tab. The IPAM Asset view and the Assets Inventory present the same asset details, and you can open a link from IPAM to the matching record in Assets Inventory. Asset-specific discovery metadata, such as vendor and model, now appears only under the Asset view. For more information, see [Universal IPAM View](https://docs.infoblox.com/space/BloxOneDDI/1779236905/Universal+IPAM+View). |
| 08/17/2026 | Infoblox Portal | **Customize Monitoring Workspaces.** Infoblox Portal now lets you tailor monitoring dashboards to the metrics your team needs. Add or remove KPI tiles and Summary Monitors on custom dashboards, use the **Type** selector to add monitors from different workspaces, and create and manage your own custom dashboards. Workspace permissions control who can customize built-in dashboards and who can create custom dashboards. For more information, see *[Customizing Workspaces](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/2705162388)*. |
| 08/14/2026 | Universal DDI<br>Infoblox Threat Defense | ##### **NIOS-X as a Service now displays additional health details for each VPN tunnel on the Access Location view.**<br>You can now view the status of each VPN tunnel at an access location. For on-premises connections, the tunnel details now also show the primary and secondary tunnel BGP status. For more information, see <u>*[Access Location View](https://docs.infoblox.com/space/BloxOneDDI/2514190405/Access+Location+View)*</u>.<br>##### **Infoblox now supports configuring an Anycast profile for NTP in NIOS-X as a Service deployments.**<br>You can now enable Anycast for the NTP capability when creating or modifying a NIOS-X as a Service deployment. When NTP Anycast is enabled, NTP requests from your remote sites are routed to the nearest healthy NTP instance, improving time synchronization reliability and performance across distributed locations. For information on how to configure an Anycast profile for NTP <u>*[General Tab](https://docs.infoblox.com/space/BloxOneDDI/2540371983/General+Tab)*</u>.<br>##### **Unified Asset Inventory page.**<br>Universal Asset Insights now provides a single unified Asset Inventory page, which combines previously separate managed assets and unmanaged assets into one inventory view. Asset categories, such as service, network, IoT, device, and compute, now appear in a left-hand navigation panel, with managed and unmanaged assets shown as top-level sections within each category rather than on separate pages. This gives you a single place to browse and filter all discovered assets. For more information, see <u>*[Viewing Discovered Assets in Data Table](https://docs.infoblox.com/space/BloxOneCloud/847021027/Viewing+Discovered+Assets+in+Data+Table)*</u>.<br>##### **Ask IQ in Asset Inventory.**<br>Universal Asset Insights now includes an Ask IQ option in the Asset Inventory, letting you query your asset data using natural language. Ask IQ opens the AI Assistant directly from the Asset Inventory page so that you can ask questions about your assets. Responses may include clickable chips that automatically apply the corresponding filter to the inventory table. For more information, see <u>*[Viewing Discovered Assets in Data Table](https://docs.infoblox.com/space/BloxOneCloud/847021027/Viewing+Discovered+Assets+in+Data+Table)*</u>.<br>##### **Asset Inventory now supports advanced mode search support for filtering on provider data.**<br>Asset Inventory advanced search now supports dot-notation queries across the full raw data collected from each provider, including fields not displayed in the inventory table. Search suggestions identify matching tables and columns up to three levels deep, allowing you to filter by nested attributes such as account, region, or attachment state fields. For more information, see <u>*[Viewing Discovered Assets in Data Table](https://docs.infoblox.com/space/BloxOneCloud/847021027/Viewing+Discovered+Assets+in+Data+Table)*</u>. |
| 08/13/2026 | Infoblox Exposure Management | ##### **Infoblox Exposure Management Peoduct Releases for July.**<br>This release expands Infoblox Exposure Management with new threat-hunting analytics, supply chain monitoring, risk-based external attack surface management, and improved visibility into brand and financial exposure.<br>- **Mobile Apps in Threat Hunting:** Investigate potentially malicious mobile applications using AI-powered analysis of logos, images, colors, impersonated brands, and related metadata.
- **Threat Hunting Analytics:** Visualize search results through charts and key performance indicators, compare source distribution and trends, and share views linked to specific searches.
- **Supply Chain Intelligence:** Continuously monitor vendor-related threats, exposed credentials, attack surface issues, and dark web mentions from a unified workspace.
- **Risk-based EASM:** Discover internet-facing assets, prioritize exposures according to business impact and exploit feasibility, and follow built-in remediation guidance.
- **Brand Protection dashboard:** Quickly review stalled tickets, takedown performance, scan volume, and the assets generating the most detections.
- **Expanded similar-domain filtering:** Create more comprehensive similar-domain rules using the new wild-fuzzy match type.
- **Credit Card Exposure in Splunk:** Ingest credit card exposure events through the existing Axur Data Connector and select a deduplication strategy for each registered Bank Identification Number asset.<br>For more information see, <u>*[Axur Product Update](https://discover.axur.com/partner-product-updates-en-august-2026?ecid=&utm_campaign=Newsletter%20-%20Novidades%20de%20produtos&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9_CaU4gFXX8jM2YH0hhAPwmsXY0Sm9B8H2GKVN3pWNr2waUOBotHp0KWQXxOtVb9x12WCl)*</u><u>[s](https://discover.axur.com/partner-product-updates-en-august-2026?ecid=&utm_campaign=Newsletter%20-%20Novidades%20de%20produtos&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9_CaU4gFXX8jM2YH0hhAPwmsXY0Sm9B8H2GKVN3pWNr2waUOBotHp0KWQXxOtVb9x12WCl)</u><u>.</u> |
| 08/12/2026 | Universal DDI | ##### Universal DDI now validates NAPTR services consistently**.**<br>Universal DDI now applies consistent validation to NAPTR service values during record creation and updates. The validation supports printable ASCII and RFC 1035 escape formats, including escaped quotes, backslashes, and decimal escapes, while enforcing a 128-byte limit and rejecting invalid control or non-ASCII characters and leading or trailing whitespace. |
| 8/12/2026 | Infoblox Threat Defense | ##### **Infoblox introduces a revamped Endpoint UI and User Experience for Endpoint.**<br>The refreshed Endpoint workspace in Infoblox Portal introduces a more intuitive, monitor-driven experience for managing Infoblox Endpoints. New dashboards and widgets provide centralized visibility into endpoint health, protection status, compliance, software versions, operating systems, device locations, and Point of Presence (PoP) connections.<br>The update also introduces endpoint health statuses, status-change logs, trend reporting, and compliance statistics. These enhancements help administrators quickly identify unhealthy or noncompliant endpoints, investigate status changes, recognize broader trends, and prioritize remediation.<br>The refresh does not change how existing DNS or security policies are enforced and does not require endpoint agents to be reinstalled.<br>For information, see <u>*[Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint)*</u>. |
| 08/11/2026 | Universal DDI | ##### **Infoblox announces the release of Infoblox IQ for DDI.**<br>Infoblox IQ is an AI product embedded in the Infoblox platform, built on the network, security, and asset data Infoblox already holds.  
With Infoblox IQ, network and security teams can easily access information about their Infoblox environment using natural language and quickly resolve critical issues.<br>For Universal DDI, Infoblox IQ provides:<br>- **AI Assistant**: AI Assistant is the conversational layer that answers questions about your DNS, DHCP, and IPAM environment. The AI Assistant is available to all Universal DDI customers. AI Assistant will be rolled out to all customers of Infoblox’s Cloud Services Portal (CSP) by August 17, 2026.
- **AI Actions**: AI Actions automatically investigate DNS, DHCP, and IPAM issues in your environment and provide step-by-step remediation plans. AI Actions require enabling IQ for DDI.  Introductory offer: Enable IQ for DDI and evaluate AI Actions in your environment at no cost (no tokens allocated) through October 31, 2026.<br>For more information, see *[Infoblox IQ for DDI](https://docs.infoblox.com/space/BloxOneDDI/2680783149/Infoblox+IQ+for+DDI)*. |
| 08/10/2026 | Universal DDI | ##### **Universal Asset Insights now supports integration with Crestron XiO Cloud, extending visibility across workspace and audiovisual device infrastructure.**<br>Universal Asset Insights now supports integration with Crestron XiO Cloud, expanding visibility into managed workspace and audiovisual devices across your environment. This integration continuously discovers and ingests device data managed by Crestron XiO Cloud, including devices, rooms, desks, MAC addresses, serial numbers, and model information. The data is correlated with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified and authoritative view of assets across campus, branch, and cloud environments. This enhanced visibility helps improve asset accuracy, reduce blind spots, and identify unmanaged or misconfigured devices. Configuration and ongoing management of the Crestron XiO Cloud integration are available through the Integrations tab. For more information, see <u>*[Crestron XiO Cloud Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2679767068/Crestron+XiO+Cloud)*</u>. |
| 08/07/2026 | Universal DDI | ##### **Universal DNS Service addresses increased NIOS-X Server CPU usage.**<br>This release includes memory-management and DNS message-processing improvements that reduce increased CPU usage on NIOS-X Servers. The update provides additional memory headroom before garbage collection becomes aggressive and reduces memory allocation for each DNS message. This optimization lowers overall memory pressure and decreases the frequency of garbage collection cycles.<br>##### **Root Zone KSK Rollover: Action Required for DNSSEC Validation.**<br>Universal DDI introduces reliability improvements and fixes that prepare DNSSEC-enabled environments for the upcoming root zone Key Signing Key (KSK) rollover.<br>This update includes the following changes:<br>- Improved DNSSEC KSK rollover reliability for NIOS-X and XaaS.
- Added support for the new root zone KSK with key ID 38696.<br>**Required Customer Action**<br>Customers using DNSSEC validation will receive an updated DNS configuration bundle to support the upcoming root zone KSK rollover. The bundle will be pushed automatically by October 1, 2026, unless you have configured a deferral window, in which case it must be applied before your deferral expires and no later than the deadline. Customers who do not use DNSSEC validation are not affected and do not need to take any action. In September 2026, Infoblox Customer Support will follow up with customers who have not yet applied the updated bundle and have DNSSEC validation enabled. |
| 08/07/2026 | Universal DDI<br>Infoblox Threat Defense | ##### **Infoblox now supports the NIOS-X v4.1.12 image.**<br>The NIOS-X v4.1.12 image introduces self-migration support for converting NIOS to NIOS-X on X6 hardware appliances directly from the Infoblox Portal. The image also upgrades containerd to 2.2.4 and Docker to 29.4.3, and includes kernel and other package security updates. |
| 08/04/2026 | Universal DDI<br>Infoblox Threat Defense | ##### **Infoblox now supports converting X6 hardware appliances from NIOS to NIOS‑X directly through the Infoblox Portal.**<br>You can convert eligible X6 hardware appliances running NIOS version 9.0.7 to NIOS‑X directly from the **Servers** page. The conversion runs as a background process and converts the NIOS server to a NIOS‑X server. For more information, see <u>*[Converting X6 Hardware from NIOS to NIOS‑X](https://docs.infoblox.com/space/BloxOneInfrastructure/2142797855/Converting+NIOS+to+NIOS%E2%80%91X+on+X6+Hardware)*</u>. |
| 08/03/2026 | Universal DDI | ##### Universal Asset Insights now supports integration with Nozomi Networks, extending visibility across OT and IoT security infrastructure.<br>Universal Asset Insights now supports integration with Nozomi Networks, expanding visibility into operational technology (OT) and Internet of Things (IoT) infrastructure across your environment. This integration continuously discovers and ingests asset data monitored by Nozomi Networks, including devices, endpoints, IP addresses, MAC addresses, and protocol details. The data is correlated with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified and authoritative view of assets across IT, OT, and IoT environments. This enhanced visibility helps improve asset accuracy, reduce blind spots, and identify unmanaged, stale, or misconfigured devices. Configuration and ongoing management of the Nozomi Networks integration are available through the Integrations tab. For more information, see *[Nozomi Networks Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2660106269/Nozomi+Networks)*.<br>##### Universal Asset Insights now supports integration with Google Workspace Identity, extending visibility across cloud-based identity infrastructure.<br>Universal Asset Insights now supports integration with Google Workspace Identity, expanding visibility into identity and device data across your environment. This integration continuously discovers and ingests identity assets managed by Google Workspace Identity, including users, groups, organizational units, and devices. The data is correlated with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified and authoritative view of assets across the organization. This enhanced visibility helps improve asset accuracy, reduce blind spots, and identify unmanaged, stale, or misconfigured identity and device resources. Configuration and ongoing management of the Google Workspace Identity integration are available through the Integrations tab. For more information, see *[Google Workspace Identity Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2660925461/Google+Workspace+Identity)*. |
| 07/30/2026 | Infoblox Exposure Management | ##### Infoblox introduces External Attack Surface Management with Supply Chain Intelligence**.**<br>Infoblox External Attack Surface Management (EASM) and Supply Chain Intelligence help security teams identify and address externally accessible risks before attackers<br>exploit them.<br>As attackers use AI and automation to accelerate reconnaissance, organizations need continuous visibility into their external infrastructure and third-party vendors. These capabilities prioritize exposures by exploit feasibility and business impact, helping teams focus on the most significant risks.<br>##### **Ex**ternal Attack Surface Management<br>EASM continuously discovers internet-facing assets from an attacker’s perspective. It requires no agents, credentials, or existing asset inventory. Starting with a domain name, EASM discovers related assets and provides a prioritized exposure view within hours.<br>EASM identifies:<br>- Vulnerabilities: Known vulnerabilities prioritized by exploit feasibility, business impact, and active exploitation.
- DNS hygiene issues: Abandoned records, weak email authentication, broken DNS delegations, and other misconfigurations.
- Risky ports and services: Externally accessible infrastructure that may increase the attack surface.
- Certificate issues: Expiring, misconfigured, or weak TLS certificates.<br>Related findings are grouped to reduce duplicate alerts. Each finding includes remediation guidance, ownership information, and verification steps.<br>For more information, see <u>*[External Attack Surface Management (EASM)](https://docs.infoblox.com/space/IEM/2635007241/Infoblox+Exposure+Management+Home)*</u>*. *<br>##### Supply Chain Intelligence<br>Supply Chain Intelligence extends exposure monitoring to critical vendors. It identifies external vulnerabilities, leaked credentials, and active threats that could affect your organization through trusted third-party relationships.<br>The findings help analysts assess vendor risk, prioritize investigations, and coordinate remediation with affected vendors. For more information, see Supply Chain Intelligence.<br>For more information, see <u>*[Supply Chain Intelligence](https://docs.infoblox.com/space/IEM/2634911212/Supply+Chain+Intelligence)*</u>*.* |
| 07/29/2026 | Infoblox Threat Defense | **Protect Your Brand, Executives, and Data with Digital Risk Protection Services (DRPS).**  
  
**Note**: This release applies to Threat Defense EU. For information on the release for Threat Defense Commercial please refer to the May 11, 2026 release note.<br>Infoblox completed the acquisition of Axur, an external cybersecurity company based in Brazil, on May 5th, 2026. With this acquisition, Infoblox now offers Digital Risk Protection Services (DRPS), part of Infoblox Exposure Management, a solution that extends preemptive security beyond the network perimeter. You can now disrupt phishing sites, brand and executive impersonation, and fraudulent apps with automated takedowns. In addition, you can monitor data leakage across the deep and dark web. |
| 07/17/2026 | Universal DDI | ##### **Universal Asset Insights: OCI support is now GA, adding Storage Buckets, Network Security Groups, and Zombie Asset Insights.**<br>OCI discovery, previously available in Labs, is now generally available. As before, you can discover, inventory, and monitor your Oracle Cloud Infrastructure (OCI) environment across supported resource types. This release expands that coverage with broader visibility and deeper optimization. You can now discover, inventory, and monitor OCI Object Storage Buckets, giving you comprehensive coverage of your object storage resources. Network Security Group (NSG) support has also been added, providing visibility into the virtual firewall rules that control traffic to and from your OCI resources. In addition, Asset Insights now includes a set of OCI-specific recommendations to help you reduce risk and eliminate waste:<br>- OCI Orphaned Load Balancer — Identifies load balancers that are no longer serving active backends, so they can be removed to cut unnecessary costs.
- OCI Misconfigured Security Group — Flags network security groups with insecure or overly permissive rules that could expose resources.
- Public OCI Storage Bucket Access — Detects storage buckets configured with public access, helping you prevent unintended data exposure.
- Unattached OCI Block Volume — Surfaces block volumes not attached to any compute instance, allowing you to reclaim unused storage.
- Unused OCI Virtual Machine (Low and Idle) — Highlights virtual machines with low or idle utilization, enabling right-sizing or decommissioning to optimize spend.
- For more information about OCI Integration, see <u>*[OCI Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2236284934/Oracle+Cloud+Infrastructure)*</u> |
| 07/15/2026 | Infoblox Threat Defense | ##### **Infoblox has introduced the following feature enhancements that simplify indicator management, improve network documentation, and provide greater control over DNS query routing.**<br>**Custom TTL Expiration for Indicators:** Administrators can now assign a time-to-live value to individual indicators added to custom lists. The expiration can be configured as a duration, such as seven days, or as a specific date and time. When the TTL expires, Infoblox Threat Defense automatically removes the indicator from the custom list and propagates the change to the policy engine. Any blocking action associated with the expired indicator is removed without requiring manual cleanup. For information, see <u>*[Configuring TTL for Indicators in Custom Lists](https://docs.infoblox.com/space/BloxOneThreatDefense/2602565752/Configuring+TTL+for+Indicators+in+Custom+Lists)*</u>.<br>**Subnet Descriptions for External Networks:** Administrators can now add a description to each subnet included in an External Network list. Previously, subnet entries supported only a CIDR address. Each subnet can include a free-text description of up to 256 characters. Descriptions can identify the location, purpose, or devices associated with the subnet, such as Guest Wi-Fi, IoT Devices, or New York Branch Office. For information, see <u>*[Configuring External Networks](https://docs.infoblox.com/space/BloxOneThreatDefense/35473665/Configuring+External+Networks)*</u>. |
| 07/14/2026 | Infoblox Threat Defense | ##### **Infoblox Endpoint version 2.6.1 for Windows and macOS.**<br>Infoblox Endpoint 2.6.1 is now available for Windows and macOS. This release introduces new functionality and stability and reliability improvements for both operating systems, and includes the following updates:<br>- **Expanded client event data**:   
Infoblox Endpoint now reports additional client event information. This data supports new dashboard statistics and upcoming user experience and interface enhancements.
- **Infoblox-hosted update downloads**:   
Infoblox Endpoint now retrieves client updates from an Infoblox-hosted domain instead of the previous Amazon S3 location. This change supports customers whose firewalls, web proxies, or security tools restrict downloads from non-Infoblox domains. Action required: If your organization restricts outbound downloads, update your allowlist to permit the new Infoblox download host. Failure to allow the host may prevent endpoints from receiving automatic upgrades.
  - New URL format =>
    - **macOS**: https://roaming-client.csp.infoblox.com/image-downloads/mac/<package_name>
    - **Windows**: https://roaming-client.csp.infoblox.com/image downloads/windows/<package_name>
- **Block Non-Trusted DNS (Early Access)**:   
Infoblox Endpoint can now block DNS queries sent to DNS servers that are not trusted by the active endpoint policy. This feature helps prevent applications and users from bypassing approved DNS resolution paths. It is available to Early Access Program customers while EAP testing continues. Stability and reliability improvements: This release includes additional fixes and enhancements that improve endpoint stability and reliability on Windows and macOS.
- **Stability and reliability improvements**:
  - Offline Protection activates more reliably when port 53 is accessible.
  - Corrected Windows OS version reporting.
  - Reduced conflicts between antivirus software and the Endpoint updater.
  - Improved retention of protection data during network outages.
  - Obsolete registry entries are now removed on uninstall (Windows).
  - Improved log rotation and cleanup during install, upgrade, and uninstall.
  - Additional minor stability fixes on Windows and macOS.<br>For additional information, see  <u>*[Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint)*</u>. |
| 07/07/2026 | Universal DDI | **Universal DDI and Universal Asset Insights now supports Multiple Authentication Methods for Providers.**<br>You can now configure multiple credential sets for a single provider, each using a different authentication method—such as API keys, OAuth tokens, or basic authentication—depending on what the provider supports. This lets organizations securely connect to multiple instances, tenants, regions, or environments (for example, production and non-production) while managing each credential set independently. Each set has a unique name, stores its credentials securely, and can be enabled, disabled, tested, or rotated without affecting other configurations. For more information, see *[Multi-Auth Credentials](https://docs.infoblox.com/space/BloxOneCloud/2481324042/Multi-Auth+Credentials)*. |
| 06/30/2026 | Infoblox Threat Defense | ##### **Infoblox introduces URL-based indicator sources for Bring Your Own Feed.**<br>Infoblox Threat Defense now supports URL-based indicator sources for Bring Your Own Feed. Administrators can create a Custom RPZ and feed from a referenced URL, then configure scheduled updates so indicators are imported and refreshed automatically without manual list updates. This enhancement supports CSV and plain text sources, basic username and password authentication, and API-based imports. Administrators can view active data sources, related Custom RPZ or feed information, the last update time, and the number of imported indicators, and can manage, update, or deactivate the source as needed. For information, see <u>*[Submitting TIDE Data](https://docs.infoblox.com/space/BloxOneThreatDefense/35468085/Submitting+TIDE+Data)*</u>. |
| 06/27/2026 | Universal DDI | ##### **Enhancements**<br>##### **The Universal DDI DNS service addresses the following vulnerabilities: CVE-2026-3104, CVE-2026-3119, CVE-2026-3591.**<br>- <u>*[CVE-2026-3104](https://kb.isc.org/docs/cve-2026-3104)*</u>: Memory leak in code preparing DNSSEC proofs of non-existence.
- <u>*[CVE-2026-3119](https://kb.isc.org/docs/cve-2026-3119)*</u>: Authenticated query containing a TKEY record may cause named to terminate unexpectedly.
- <u>*[CVE-2026-3591](https://kb.isc.org/docs/cve-2026-3591)*</u>: A stack use-after-return flaw in SIG(0) handling code may enable ACL bypass.<br>##### **Infoblox has upgraded DNS on-prem version 3.8.7 for both US and EU realms.**<br>##### **Resolved Issues**<br>- DNS Host was not backing up zone files during pod restart.
- When the zone is first assigned to the host, the keys are generated from the metadata. When the timestamp of the key was in the future, the keys were skipped. |
| 06/26/2026 | IQ for Threat Defense | ##### **Infoblox announces the release of Infoblox IQ for Threat Defense.**<br>Infoblox IQ for Threat Defense is the first product experience available in Infoblox IQ. It is built to help security teams focus on the threats that matter most by automatically investigating DNS security signals, surfacing prioritized threats with user and device context, and adding agentic AI capabilities for conversational investigations and one-click remediation workflows. For SOC analysts and managers, this means faster investigation, less manual triage, and a clearer path from detection to action, while keeping analysts in control and maintaining a full audit trail throughout. For information, see *[Infoblox IQ for Threat Defense](https://docs.infoblox.com/space/BloxOneThreatDefense/2448392230/Infoblox+IQ+for+Threat+Defense)*. |
| 06/17/2026 | Universal DDI | ##### **Infoblox now provides enhanced server usage visibility for NIOS‑X servers.**<br>A new **Server Size Info** section is available in **Card**, **Table**, and **Map** views, displaying the defined server size along with peak object, QPS, and LPS metrics. You can also view historical usage trend graphs for these metrics using the available filter options to better analyze utilization patterns and anticipate future capacity needs. For more information, see <u>*[Configuring NIOS-X Servers](https://docs.infoblox.com/space/BloxOneInfrastructure/119308577/Configuring+NIOS-X+Servers)*</u>. |
| 06/16/2026 | Universal DDI<br>Infoblox Threat Defense | ##### **Universal Asset Insights now supports integration with HPE Aruba New Central.**<br>This feature introduces a native discovery integration with HPE Aruba Networking Central, enabling network operations engineers and platform administrators to automatically discover, ingest, and correlate all managed network infrastructure from the Aruba ecosystem into the Infoblox unified asset inventory. Using secure OAuth 2.0 Client Credentials authentication against the HPE GreenLake identity platform, the integration pulls real-time data on access points, gateways, switches, switch interfaces, and both wired and wireless endpoint clients from a single, API surface. Discovered assets are normalized into the Infoblox composite device schema and made available across all standard asset inventory workflows. Configuration and management of the Aruba New Central integration are streamlined through the Integration tab. For more information, see <u>*[Aruba New Central](https://docs.infoblox.com/space/UniversalAssetInsights/2500001824/Aruba+New+Central)*</u>.<br>##### **NIOS‑X as a Service supports automatic server right‑sizing.**<br>NIOS‑X as a Service now supports automatic server right‑sizing. This feature scales service deployments to the appropriate Infoblox‑recommended size when capacity thresholds are exceeded, ensuring the service deployments remain within supported performance limits. The NIOS-X as a Service UI also displays real-time capacity metrics (Objects, QPS, and LPS) showing current and peak values against capacity guardrails, giving administrators clear visibility into which metrics are triggering or approaching a resize event. For more information, see <u>*[Automatic Server Right-Sizing](https://docs.infoblox.com/space/BloxOneInfrastructure/2045018115/Automatic+Server+Right-Sizing)*</u>.<br>##### **DFP service logs for NIOS-X as a Service deployments are now displayed on the Service Logs page.**<br>This enhancement improves observability and operational efficiency, enabling faster diagnostics and better service monitoring. For more information, see <u>*[Viewing Service Logs](https://docs.infoblox.com/space/BloxOneDDI/186466397/Viewing+Service+Logs)*</u>. |
| 06/12/2026 | Universal DDI | ##### **Universal DDI now supports DHCP Ping Check.**<br>Universal DDI now supports DHCP server-side conflict detection, allowing the DHCP server to verify whether an IP address is already in use before allocating a lease to a client. When enabled, the server sends one or more ICMP ping requests to a candidate IP address and waits for a response before making an offer helping prevent duplicate IP address assignments in the network. For more information, see <u>*[Ping Check](https://docs.infoblox.com/space/BloxOneDDI/2361983654/Ping+Check)*</u>. |
| 06/11/2026 | Universal DDI | ##### **Universal Asset Insights now supports VMware vCenter Discovery Integration.**<br>Universal Asset Insights connects to vCenter via the vSphere SOAP API with read‑only credentials to discover and inventory virtualized assets, including ESXi hosts, virtual machines, storage resources, distributed virtual switches, port groups, and vCenter tags. Configuration is done in the Infoblox Portal, with discovery running automatically once enabled. For more information, see <u>*[VMware vCenter Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2485485606/VMware+vCenter)*</u>.<br>##### **NIOS-X as a Service now supports “AWS US East (Ohio)” as a new location for deployment.** |
| 06/09/2026 | Universal DDI | ##### **Universal DDI now supports ServiceMode in HTTPS records for Authoritative DNS AID.**<br>Universal DDI now supports ServiceMode in HTTPS resource records (RFC 9460) for Authoritative DNS AID. HTTPS records let clients discover an HTTP origin’s connection parameters in a single DNS lookup, including supported application protocols (such as HTTP/2 and HTTP/3), alternate ports, IPv4 and IPv6 address hints, and Encrypted Client Hello (ECH) configuration. Administrators can create both AliasMode and ServiceMode records and define SvcParams directly from the record editor, enabling faster and more secure HTTPS connections, HTTP/3 advertisement, and ECH deployment. For more information, see <u>*[Creating HTTPS Record](https://docs.infoblox.com/space/BloxOneDDI/186369522/Creating+HTTPS+Record)*</u>.<br>##### **Universal DDI now supports ServiceMode in SVCB records for Authoritative DNS AID.**<br>Universal DDI now supports ServiceMode in Service Binding (SVCB) resource records (RFC 9460) for Authoritative DNS AID. SVCB lets clients discover service endpoints and the parameters required to connect to them in a single DNS lookup, including supported application protocols (alpn), alternate ports, and IPv4 and IPv6 address hints. Administrators can create both AliasMode and ServiceMode records and define SvcParams directly from the record editor. For more information, see <u>*[Creating SVCB Record](https://docs.infoblox.com/space/BloxOneDDI/186876515/Creating+SVCB+Record)*</u>. |
| 06/04/2026 | Universal DDI | ##### **Infoblox now supports deployment of NIOS‑X servers on Equinix Network Edge.**<br>You can now deploy NIOS‑X servers on Equinix Network Edge through the Equinix Customer Portal. This enables you to provision virtual appliances without requiring dedicated physical hardware, extending Infoblox Universal DDI services across on‑premises, hybrid, and multi‑cloud environments. For more information, see <u>*[Equinix Network Edge](https://docs.infoblox.com/space/BloxOneInfrastructure/2459467779/Equinix+Network+Edge)*</u>.<br>##### **Universal DDI now supports SSHFP resource records.**<br>The Infoblox Portal now supports SSH Fingerprint (SSHFP) resource records in authoritative DNS zones. SSHFP records publish the public-key fingerprints of SSH servers in DNS, enabling SSH clients to verify a server’s identity without relying solely on the trust-on-first-use model or manually distributed known_hosts files. When used together with DNSSEC, SSHFP provides a cryptographically verifiable way for SSH clients to authenticate hosts before establishing a connection. SSHFP records are also included in per-record-type DNS query metrics and log classifications, giving you full observability over SSHFP traffic alongside your other DNS record types. For more information, see <u>*[Creating SSHFP Record](https://docs.infoblox.com/space/BloxOneDDI/2425258641/Creating+SSHFP+Record)*</u>. |
| 06/04/2026 | Infoblox Threat Defense | ##### **Infoblox now supports deployment of NIOS‑X servers on Equinix Network Edge.**<br>You can now deploy NIOS‑X servers on Equinix Network Edge through the Equinix Customer Portal. This enables you to provision virtual appliances without requiring dedicated physical hardware, extending Infoblox Universal DDI services across on‑premises, hybrid, and multi‑cloud environments. For more information, see <u>*[Equinix Network Edge](https://docs.infoblox.com/space/BloxOneInfrastructure/2459467779/Equinix+Network+Edge)*</u>. |
| 06/03/2026 | Universal DDI<br>Infoblox Threat Defense | ##### **Infoblox now provides health notifications for service capabilities and tunnel connections for NIOS‑X as a Service deployments.**<br>Infoblox now monitors the health of service capabilities across availability zones as well as the status of associated IPsec tunnel connections for NIOS‑X as a Service deployments. When a capability or tunnel becomes partially unavailable, fully unavailable, or returns to normal, the system generates **Degraded**, **Error**, or **Healthy** notifications to indicate the current state. This enhancement helps users to identify and respond to capability or connectivity issues more quickly. For more information, see <u>*[Health Notifications](https://docs.infoblox.com/space/BloxOneDDI/2455045062/Health+Notifications)*</u>. |
| 06/01/2026 | Universal DDI | ##### **Universal DDI now allows you to enforce Minimum, Maximum, and Default Prefix Lengths on Address Blocks.**<br>You can now define a prefix length policy on any address block to govern the size of the child subnets and address blocks created beneath it. The policy supports a minimum prefix length, a maximum prefix length, and a default prefix length that pre-populates the size field whenever a user creates a new child. The policy is enforced by both the Infoblox Portal UI and the IPAM API across all IPAM providers, so attempts to create a child that violates the configured range are rejected before the object is saved. Existing children that were created before the policy was set—or that were imported from a discovery source—are not modified, but any object that falls outside the configured range is flagged with a trouble dot in the IPAM table view so that administrators can identify and remediate non-compliant subnets quickly. For more information, see <u>*[Configuring a Prefix Length Policy on an Address Block](https://docs.infoblox.com/space/BloxOneDDI/2448916588/Configuring+a+Prefix+Length+Policy+on+an+Address+Block)*</u>.<br>##### **Universal DDI now allows exporting the IPAM Table View to CSV.**<br>You can now export the contents of the IPAM table view to a CSV file directly from the Infoblox Portal. The export includes the rows currently in view—filtered, sorted, and with whichever columns you have visible—so you can produce targeted extracts of address blocks, subnets, ranges, and addresses for analysis in Microsoft Excel or Google Sheets. The export honors role-based access controls, so users see only the data they are entitled to view. This feature allows IPAM administrators who need to share inventory snapshots or build offline reports. For more information, see <u>*[Exporting IPAM Data to CSV](https://docs.infoblox.com/space/BloxOneDDI/2448883733/Exporting+IPAM+Data+to+CSV)*</u>.<br>##### **Universal DDI now allows you to apply Custom Tags to Cloud-Discovered Objects.**<br>You can now apply custom tags directly to objects that were discovered from your cloud provider, such as AWS, Azure, and Google Cloud. Previously, tagging was disabled on discovered objects to avoid conflicts with tags synchronized from the source. With this release, locally-applied tags and source-synchronized tags coexist: tags pulled from the discovery source continue to refresh on every sync, while tags you add in the Infoblox Portal are preserved and never overwritten by a subsequent discovery run. This lets you enrich discovered cloud inventory with organizational metadata—cost centers, application owners, compliance flags, or any custom classification—without losing the source-of-truth tags from the cloud provider. For more information, see <u>*[Tagging Cloud-Discovered Objects](https://docs.infoblox.com/space/BloxOneDDI/2448982115/Tagging+Cloud-Discovered+Objects)*</u>.<br>##### **Universal DDI now supports Forward-Looking Delegations in the Network View.**<br>Forward-Looking Delegations (FLDs) are now first-class objects in the Network View, alongside address blocks, subnets, and ranges. FLDs let you reserve and delegate a portion of an address block to a downstream IPAM authority before any actual subnets are carved out of it, ensuring that the delegated space is honored as your network plan grows. This release also redesigns FLDs to use Federated Pools rather than tags, aligning them with the context-based model used elsewhere in the Network View. With FLDs in the Network View, you no longer need to switch to the legacy IPAM Realms UI to plan, view, or manage delegated space—everything is unified in one place. For more information, see <u>*[Creating Forward-Looking Delegations in the Network View](https://docs.infoblox.com/space/BloxOneDDI/2449047663/Creating+Forward-Looking+Delegations+in+the+Network+View)*</u>.<br>##### **Universal DDI can now manage NIOS Host Objects to the Infoblox Portal.**<br>Universal DDI can now manage NIOS Host objects from federated NIOS grids and presents them as IPAM Host objects in the Infoblox Portal. Once a NIOS grid is connected through the NIOS Grid Connector (NGC), hosts and all their attributes — including IPv4 and IPv6 addresses, MAC bindings for fixed addresses, per-address DHCP enable/disable, host aliases, and auto-generated A, AAAA, and CNAME records — appear automatically in the Infoblox Portal. Synchronized hosts are listed under a new Hosts tab in both DHCP and DNS, and the Zones table now includes a Host column so you can see at a glance how many hosts are attached to each DNS zone. For more information, see <u>*[Synchronizing NIOS Host Objects to Universal DDI](https://docs.infoblox.com/space/BloxOneDDI/2414313596/Synchronizing+NIOS+Host+Objects+to+Universal+DDI)*</u>.<br>##### **Universal DDI now displays NIOS objects with their native NIOS identity, providing a more accurate representation of your on-premises deployments.**<br>Before this enhancement, NIOS objects were projected and presented as NIOS-X objects in the Universal DDI IPAM UI. This caused confusion due to incorrect product naming and the absence of Grid information. This enhancement improves clarity, reduces operational errors, and ensures a consistent and accurate management experience for hybrid environments that include NIOS deployments. |
| 05/29/2026 | Universal DDI<br>Infoblox Threat Defense | ##### **Splunk Data Connector Scale and Performance Updates.**<br>This release increases the scale and performance of Splunk data delivery for Data Connector deployments. Enhancements include OpenSSL 3 compatibility, refreshed base images, optimized event delivery monitoring, and fine-tuned Splunk Universal Forwarder configurations to improve overall operational efficiency and reliability. For information, see <u>*[Deploying the Data Connector Solution](https://docs.infoblox.com/space/BloxOneCloud/35429862/Deploying+the+Data+Connector+Solution)*</u> and <u>*[Setting Up Splunk](https://docs.infoblox.com/space/BloxOneCloud/35430532/Setting+Up+Splunk)*</u>. |
| 05/28/2026 | Infoblox Threat Defense | ##### **The DNS Activity report now includes Application tagging fields that provide additional application context for domain activity directly in the Infoblox Portal.**<br>Infoblox has enhanced DNS Activity in the Infoblox Portal by adding Domain Application tagging fields to the DNS Activity view. Users can now display application-related domain details directly in the UI, including application category, application name, and application vendor. This update surfaces domain application data that is already available in backend systems, making it easier to review DNS activity with additional context during investigation and analysis. For information, see <u>*[DNS Activity Report](https://docs.infoblox.com/space/BloxOneThreatDefense/35406117/DNS+Activity+Report)*</u>. |
| 05/26/2026 | Universal DDI | ##### **NIOS-X as a Service now supports “AWS Africa (Cape Town)” and “AWS Asia Pacific (Sydney)” as new locations for deployment.** |
| 05/18/2026 | Universal DDI<br>Infoblox Threat Defense | **Announcement**<br>Infoblox has upgraded DNS on-prem version 3.8.6 for both US and EU realms. |
| 05/15/2026 | Universal DDI | ##### **Universal DDI now supports enhanced DNS log forwarding with new DNSTAP support and expanded Syslog capabilities.**<br>DNSTAP delivers a binary, structured stream of DNS messages — including queries, responses, and server events — directly from the recursive or authoritative DNS server. Because DNSTAP preserves full wire data with precise timestamps and minimal parsing loss, it is well-suited for high-volume analytics, forensic investigations, deep troubleshooting, security detections, and performance analysis. Syslog forwarding has also been enhanced with Secure TCP and TCP transport support, a new semicolon separator option for Syslog messages, and the ability to select the syslog facility (such as local0) for each destination, so DNS activity can be routed into a dedicated stream on your collector. For more information, see <u>*[Local Logging (DNS)](https://docs.infoblox.com/space/BloxOneDDI/186714477/Local+Logging+(DNS))*</u>. |
| 05/13/2026 | Universal DDI | ##### **Universal DDI now allows administrators to schedule updates across UDDI Agents with policy-driven maintenance windows.**<br>Infoblox Universal Agents now support coordinated software update management through configurable maintenance windows and maintenance groups. Administrators can define when and how agents receive updates — individually or as logically grouped sets with support for simultaneous updates. For more information, see <u>*[Scheduling Software Updates for UDDI Agents](https://docs.infoblox.com/space/BloxOneDDI/2398683331/Scheduling+Software+Updates+for+UDDI+Agent)*</u>.<br>##### **Universal DDI introduces detailed notifications for issues with Universal DDI Agent.**<br>The Universal DDI Agent now delivers more detailed, actionable notifications when communication or authentication issues occur with managed servers. Instead of generic failure alerts, administrators receive specific, descriptive messages that pinpoint the exact nature of the problem and provide clear guidance on how to resolve it. For more information, see <u>*[Universal DDI Agent Notifications](https://docs.infoblox.com/space/BloxOneDDI/2398683386/Universal+DDI+Agent+Notifications)*</u>. |
| 05/12/2026 | Universal DDI | ##### **Universal DDI now allows you to configure a TCP Client Limit at the Global and Server levels.**<br>The new TCP Client Limit setting in the Global DNS Configuration or DNS Config Profile gives administrators direct control over the maximum number of concurrent TCP connections the DNS server will accept from clients, allowing them to define a safe upper limit that protects server resources while preserving capacity for legitimate queries. Once the configured threshold is reached, additional TCP connection attempts are refused until existing sessions close, ensuring the server remains responsive and stable under load. For more information, see <u>*[Advanced Settings](https://docs.infoblox.com/space/BloxOneDDI/2374665437/Advanced+Settings)*</u>. |
| 05/11/2026 | Infoblox Threat Defense | ##### Protect Your Brand, Executives, and Data with Digital Risk Protection Services (DRPS).<br>Infoblox completed the acquisition of Axur, an external cybersecurity company based in Brazil, on May 5th, 2026. With this acquisition, Infoblox now offers Digital Risk Protection Services (DRPS), part of Infoblox Exposure Management, a solution that extends preemptive security beyond the network perimeter. You can now disrupt phishing sites, brand and executive impersonation, and fraudulent apps with automated takedowns. In addition, you can monitor data leakage across the deep and dark web.<br>**How to get started**:<br>- If you have security tokens, click the new Axur icon in the left-hand menu to launch the platform and start protecting your digital assets.
- If you don't have security tokens, contact your account team to learn more.<br>Learn more about Digital Risk Protection Services on the *[Infoblox website](https://www.infoblox.com/products/exposure-management/)*.<br>***Note****: If you have trouble launching, you may need to disable your pop-up blocker.*<br>**Related Information**:<br>Infoblox License Entitlement: See *[Viewing License Entitlement](https://docs.infoblox.com/space/BloxOneThreatDefense/35438836/Viewing+License+Entitlements)*.     
Axur documentation: See the *[Axur knowledge base](https://help.axur.com/en/)*. |
| 05/06/2026 | Infoblox Threat Defense | ##### **Infoblox introduces searching by Infoblox Threat Actor name directly in Dossier.**<br>Dossier now provides security analysts with a more direct way to research threat actors by supporting searches by actor name. This enhancement improves investigation workflows by helping analysts locate relevant actor intelligence without first searching for a related domain name. With this update, Dossier users can enter a threat actor name in the search field to retrieve matching intelligence. For more information, see <u>*[Dossier Threat Actor](https://docs.infoblox.com/space/BloxOneThreatDefense/230394862/Threat+Actor)*</u>. |
| 05/05/2026 | Universal DDI  
Infoblox Threat Defense | ##### **Reporting Token Usage Allocation Update.**<br>Infoblox recently resolved an issue related to Reporting Token allocation. This update improves usage accuracy for customers with Reporting Tokens who export high-volume log data through Cloud Data Connector, S3 Log Export, or Universal DDI Reports. Customers exporting over 1 million logs per day may notice that usage data will be backfilled to accurately reflect activity that was previously under-counted. This correction affects reporting visibility only and helps ensure that Reporting Token utilization reflects actual log export volume. |
| 05/05/2026 | Universal DDI | ##### **Universal Asset Insights now supports integration with Ordr, extending visibility into connected devices, IoT, OT, and unmanaged assets across enterprise environments.**<br>Through the Ordr integration, Universal Asset Insights continuously discovers and ingests assets identified by Ordr, including connected devices, IP addresses, MAC addresses, device classifications, manufacturer details, operating systems, and risk-related security attributes. This data is correlated with DNS, DHCP, IPAM, and other discovery sources to provide a unified, authoritative view of assets and their security posture across on-premises, remote, and cloud environments. The enhanced visibility improves asset accuracy, reduces blind spots, and helps organizations identify unmanaged, rogue, stale, or misaligned devices—particularly across IoT, OT, and medical or specialized device categories. As a result, organizations can strengthen governance, support device security and compliance initiatives, and improve operational efficiency across security and IT operations. Configuration and ongoing management of the Ordr integration are handled through the Integrations tab, enabling centralized and consistent discovery management. For more information, see <u>*[Ordr Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2361786377/Ordr)*</u>.<br>##### **Universal Asset Insights now supports integration with Tenable, extending visibility across enterprise assets.**<br>Through the Tenable integration, Universal Asset Insights continuously discovers and ingests assets assessed by Tenable, including hosts, IP addresses, and operating systems. This data is correlated with DNS, DHCP, IPAM, and other discovery sources to provide a unified, authoritative view of assets and their security posture across on-premises, remote, and cloud environments. The enhanced visibility improves asset accuracy, reduces blind spots, and helps organizations identify vulnerable, unmanaged, stale, or misaligned assets. As a result, organizations can strengthen governance and compliance initiatives, and improve operational efficiency across security and IT operations. Configuration and ongoing management of the Tenable integration are handled through the Integrations tab, enabling centralized and consistent discovery management. For more information, see <u>*[Tenable Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2361363091/Tenable)*</u>.<br>##### **Universal Asset Insights now supports User-to-Asset Associations from Multiple Providers.**<br>Universal Asset Insights now aggregates user associations from nine integrated providers, including endpoint security, device management, and network controller platforms, and displays them in a unified, deduplicated list on every asset detail view. Each association is classified as either an assigned user (indicating device ownership) or an observed user (reflecting login or network activity), with assigned users visually highlighted for quick identification. User records are enriched with identity details like name and email, and include a last-observed timestamp and source provider lineage. For more information, see <u>*[User-to-Asset Associations](https://docs.infoblox.com/space/UniversalAssetInsights/2361199275/User-to-Asset+Associations)*</u>.<br>##### **Universal Asset Insight now supports Stale Asset Scavenging.**<br>Universal Asset Insights now automatically identifies and removes stale assets that are no longer being reported by discovery providers. Assets that remain inactive beyond a configurable retention period are first soft deleted, removing them from the Asset Inventory and freeing token allocations, then permanently removed after a hard deletion interval. This two-phase process keeps your inventory accurate and prevents outdated records from consuming licenses. For more information, see <u>*[Stale Asset Scavenging](https://docs.infoblox.com/space/UniversalAssetInsights/2361395414/Stale+Asset+Scavenging)*</u>. |
| 04/28/2026 | Universal DDI  
Infoblox Threat Defense | ##### **Upcoming: Infoblox Portal has a redesigned navigation structure that will be available starting May 4th, 2026.**<br>Infoblox Portal will introduce a redesigned menu structure focused on improving usability. The new layout offers more intuitive navigation, clearer organization, and streamlined workflows to help users find what they need more efficiently. For more information, see <u>*[Mapping between Legacy and New Navigation](https://docs.infoblox.com/space/BloxOneCloud/2345041926/Mapping+between+Legacy+and+New+Navigation)*</u>. |
| 04/24/2026 | Universal DDI | ##### **Universal Asset Insights now supports integration with SentinelOne, extending visibility across endpoint security infrastructure.**<br>Universal Asset Insights now supports integration with SentinelOne, expanding visibility into endpoint security across your environment. This integration continuously discovers and ingests device and agent data managed by SentinelOne, including endpoints, host attributes, IP addresses, and security posture details. The data is correlated with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified and authoritative view of assets across corporate networks and remote environments. This enhanced visibility helps improve asset accuracy, reduce blind spots, and identify unmanaged or at-risk endpoints. Configuration and ongoing management of the SentinelOne integration are available through the Integrations tab. For more information, see <u>*[SentinelOne Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2331770954/SentinelOne)*</u>.<br>##### **Universal Asset Insights now provides a Discovery Status Report for NIOS-X Discovery.**<br>The Discovery Status Report provides a centralized, real-time view of asset discovery health across all monitored IP addresses using NIOS-X Discovery. It enables administrators to troubleshoot issues with discovery at scale such as unreachable devices, failed data collections, authentication errors, and incomplete fingerprinting. With a customizable, exportable report, users can analyze key metrics including device type, discovery source, credential success, and protocol-specific collection statuses (SNMP, CLI, SDN). This visibility allows teams to quickly diagnose and resolve discovery gaps at scale, improving asset accuracy, network visibility, and operational efficiency. For information, see <u>*[Viewing Discovery Status](https://docs.infoblox.com/space/UniversalAssetInsights/2332622855/Viewing+Discovery+Status)*</u>. |
| 04/21/2026 | Universal DDI | ##### **Infoblox now supports viewing additional service logs for NIOS‑X as a Service deployments and introduces service log filtering for service deployments.**<br>Service logs for **NTP**, **Anycast**, **DTC**, and **Tunnel (IPSec)** services are now available on the **Service Logs** page for NIOS-X as a Service deployments. In addition, the **Service Logs** page includes a new **Universal Service** filter that allows you to select one or more NIOS-X as a Service deployments and display only the service events associated with those deployments. This enhancement improves operational insight by enabling deployment-based filtering of service logs, helping administrators perform faster diagnostics and more effective monitoring across supported services. For more information, see <u>*[Viewing Service Logs](https://docs.infoblox.com/space/BloxOneDDI/186466397/Viewing+Service+Logs)*</u>.<br>##### **Infoblox now supports configuring NTP in an Anycast configuration for NIOS‑X.**<br>Users can configure **NTP** as a service type in an Anycast configuration, enabling NTP requests to be routed through a single Anycast IP address. When NTP is enabled, the Anycast service continuously monitors NTP health and automatically directs requests to the nearest healthy NTP instance, improving reliability and performance. For information on how to configure NTP in an Anycast configuration, see <u>*[Creating Anycast Configuration](https://docs.infoblox.com/space/BloxOneDDI/186648729/Creating+Anycast+Configuration)*</u>. |
| 04/21/2026 | Infoblox Threat Defense | ##### **Infoblox now supports viewing additional service logs for NIOS‑X as a Service deployments and introduces service log filtering for service deployments.**<br>Service logs for **NTP**, **Anycast**, **DTC**, and **Tunnel (IPSec)** services are now available on the **Service Logs** page for NIOS-X as a Service deployments. In addition, the **Service Logs** page includes a new **Universal Service** filter that allows you to select one or more NIOS-X as a Service deployments and display only the service events associated with those deployments. This enhancement improves operational insight by enabling deployment-based filtering of service logs, helping administrators perform faster diagnostics and more effective monitoring across supported services. For more information, see <u>*[Viewing Service Logs](https://docs.infoblox.com/space/BloxOneDDI/186466397/Viewing+Service+Logs)*</u>.<br>##### **Infoblox now supports configuring NTP in an Anycast configuration for NIOS‑X.**<br>Users can configure **NTP** as a service type in an Anycast configuration, enabling NTP requests to be routed through a single Anycast IP address. When NTP is enabled, the Anycast service continuously monitors NTP health and automatically directs requests to the nearest healthy NTP instance, improving reliability and performance. For information on how to configure NTP in an Anycast configuration, see <u>*[Creating Anycast Configuration](https://docs.infoblox.com/space/BloxOneDDI/186648729/Creating+Anycast+Configuration)*</u>. |
| 04/11/2026 | Universal DDI | ##### **Universal Asset Insights now provides an enhanced Asset Details Panel with Provider Comparison and Raw Attribute Visibility.**<br>Universal Asset Insights introduces an enhanced Asset Details panel that provides a larger, more comprehensive view of asset information while improving overall usability and navigation. The expanded layout enables the addition of new capabilities, including Provider Comparison and Raw attributes, allowing administrators to analyze asset information more effectively. The Provider Comparison capability allows administrators to view and compare asset attributes reported by multiple integrated providers side by side. By displaying provider-specific values together, this feature increases transparency into how consolidated asset attributes are derived, helping organizations build trust and confidence in the correlated asset data. Administrators can also view Raw Attributes, which display the complete metadata collected from an individual provider. Raw attributes can be accessed directly from either the Overview tab or the Provider Comparison tab, enabling deeper inspection of provider-specific data and supporting troubleshooting, validation, and audit workflows. For more information, see <u>*[Viewing Asset Information](https://docs.infoblox.com/space/UniversalAssetInsights/1614217902/Viewing+Asset+Information)*</u>.<br>##### **Universal DDI can now synchronize resource records from secondary zones in Microsoft DNS.**<br>Universal Asset Insights can synchronize the resource records from secondary zones hosted in Microsoft DNS environments. For more information, see <u>*[Discovering DNS](https://docs.infoblox.com/space/UniversalAssetInsights/1710163101/Discovering+DNS)*</u>.<br>##### **Universal DDI can now synchronize Alias abstraction from NIOS.**<br>Universal DDI can synchronize Alias abstraction from NIOS to the Infoblox Portal. This synchronization is bi-directional. Any Alias abstraction records created in NIOS synced zones in Infoblox Portal is synchronized to NIOS. For more information, see <u>*[NIOS Grid Connector](https://docs.infoblox.com/space/BloxOneDDI/186843293/Configuring+NIOS+Grid+Connector)*</u>.<br>##### **Universal DDI now supports local DNS updates.**<br>The Local DNS feature enables administrators to create and manage DNS record updates directly on NIOS-X Servers during situations where connectivity to the Infoblox Portal is unavailable. This capability is particularly valuable in disaster recovery scenarios or temporary network outages where continued DNS service operation is critical. For more information, see <u>*[Configuring Local DNS Updates](https://docs.infoblox.com/space/BloxOneDDI/2282192910/Configuring+Local+DNS+Updates)*</u>.<br>##### **Universal DDI addresses CVE-2026-1519 and includes additional bug fixes for DNS and DTC.**<br>- DNS 3.8.3
  - This release provides the following fixes: *CVE-2026-1519: Excessive NSEC3 iterations cause high CPU load during insecure delegation validation. *
  - Bug fixes for DNS and DTC.
- DNS 3.8.4
  - Bug fix for Local API feature |
| 04/02/2026 | Infoblox Threat Defense | **New Feature**<br>##### **Microsoft Active Directory User Attribution is now available in Infoblox Threat Defense.**<br>Infoblox Threat Defense now supports Microsoft Active Directory User Attribution, giving security teams user-level visibility into DNS activity and security events without changing the DNS path or requiring a captive portal.<br>By passively correlating on-premises Active Directory sign-in and sign-out data with client IP addresses and devices in the Infoblox cloud, Threat Defense and SOC Insights can identify the user behind suspicious DNS activity, including activity from shared systems. This improves attribution, the speed of investigations, and reduces the need to manually review separate AD logs and endpoint tools. For information, see <u>*[Configuring Security Policies](https://docs.infoblox.com/space/BloxOneThreatDefense/35371559/Configuring+Security+Policies)*</u>. |
| 03/27/2026 | Infoblox Threat Defense | **Enhancements**<br>##### **Infoblox Threat Defense introduces advanced query language filtering and user history for Security Monitors.**<br>This release includes advanced query language filtering for Security Monitors, enabling more precise and flexible filtering using a simple, structured syntax. A new query builder makes it easier to create and apply these filters within the Security Monitor Workspace.<br>Also included in this release is the ability to view user history directly within the Security Monitor Workspace, allowing you to review user activity without leaving your investigation workflow.<br>For more information, see *[Viewing Security Workspace](https://docs.infoblox.com/space/BloxOneCloud/1588592724/Viewing+Security+Workspace)*. |
| 03/25/2026 | Universal DDI | **New Feature**<br>##### **Universal Asset Insights now supports Integration with Oracle Cloud Infrastructure (OCI). This is an Early Access release through Infoblox Labs.**<br>Universal Asset Insights integrates with Oracle Cloud Infrastructure to extend cloud infrastructure visibility by continuously discovering and ingesting OCI resources into a unified asset inventory. By collecting data on cloud networks, virtual machines, IP addresses, subnets, gateways, and related connectivity attributes, Universal Asset Insights correlates OCI information with DNS, DHCP, IPAM, and other discovery sources to deliver a single, authoritative view of assets across on-premises and cloud environments. This integration improves asset accuracy, reduces blind spots, and helps organizations identify missing, stale, or misaligned resources across systems. The unified perspective strengthens governance, supports compliance initiatives, and enhances operational efficiency across hybrid and multi-cloud architectures. OCI can be activated or de-activated through Infoblox Labs. Configuration and management of the OCI integration are streamlined through the Integration tab. For more information, see <u>*[Oracle Cloud Infrastructure Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2236284934/Oracle+Cloud+Infrastructure)*</u>. |
| 03/20/2026 | Universal DDI | **New Features**<br>##### **Universal Asset Insights now supports integration with Aruba EdgeConnect, extending network visibility across SD-WAN and edge infrastructure.**<br>Universal Asset Insights now supports integration with Aruba EdgeConnect, extending network visibility into SD-WAN infrastructure and edge connectivity environments. Through the Aruba EdgeConnect integration, Universal Asset Insights continuously discovers and ingests Aruba-managed edge devices, including gateways, interfaces, IP addresses, connectivity attributes, and related network metadata. This information is correlated with data from DNS, DHCP, IPAM, and other discovery sources to deliver a unified and authoritative view of network assets across distributed branch locations, data centers, and hybrid cloud environments. The enhanced visibility improves asset accuracy, reduces operational blind spots, and enables organizations to identify unmanaged, stale, or misconfigured edge infrastructure. Configuration and ongoing management of the Aruba EdgeConnect integration are centralized through the Integrations tab. For more information, see <u>*[Aruba EdgeConnect Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2219147265/Aruba+EdgeConnect)*</u>.<br>##### **Universal Asset Insights now integrates with Microsoft Defender for Endpoint, expanding unified visibility and security intelligence across your enterprise estate.**<br>With this integration, Universal Asset Insights automatically discovers and ingests endpoint devices monitored by Microsoft Defender for Endpoint—including host details, device names, IP addresses, operating systems, exposure levels, risk scores, vulnerabilities, and active threat signals. These insights are correlated with DNS, DHCP, IPAM, and other discovery sources to deliver a single, authoritative view of every asset and its security posture across on‑premises, remote, and cloud environments. Beyond the security advantages, this integration also enriches asset inventory with deeper configuration data, helping IT operations eliminate resource‑intensive manual inventory processes. Automated discovery reduces mean time to resolution (MTTR) and enables more efficient, lower‑risk change management by ensuring teams always work from accurate, up‑to‑date asset information. Configuration and ongoing management are handled centrally through the Integrations tab. For more information, see <u>*[Microsoft Defender for Endpoint Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2218917892/Microsoft+Defender+for+Endpoint)*</u>. |
| 03/06/2026 | Universal DDI | **Enhancements**<br>##### **Universal DDI now supports Split Ranges for DHCP High Availability deployments.**<br>Universal DDI now supports Split Ranges, enabling active DHCP servicing, improved availability, and operational continuity across diverse environments. With Split Ranges, a single DHCP address pool is divided between two servers, each allocating addresses from its assigned portion to provide basic load distribution and limited continuity during a server failure until the available range is exhausted. For more information, see <u>*[High Availability for DHCP](https://docs.infoblox.com/space/BloxOneDDI/186843608/High+Availability+for+DHCP)*</u>.<br>##### **Deprecation of DHCP Anycast High Availability.**<br>DHCP Anycast High Availability is now deprecated. Existing customers who currently use DHCP Anycast HA configurations can continue to operate their deployments until a final end-of-support date is announced in a future release. However, this feature is no longer available for new deployments or for customers who have not previously configured DHCP Anycast HA. |
| 03/06/2026 | Infoblox Threat Defense | **Enhancement**<br>##### Infoblox Threat Defense updates the default global security policy and precedence for new deployments. ￼<br>Infoblox Threat Defense updates the default global security policy and precedence for **new deployments** by changing the default action for the following three Threat Insight detections from Log to Block: **Threat Insight – DGA**, **Threat Insight – Data Exfiltration**, and **Threat Insight – DNS Messenger**. The rule order in the default global security policy is also updated to position these Threat Insight block rules after Infoblox Medium Risk and before Infoblox Low Risk and Infoblox Information. For more information, see <u>*[Default Global Policy Feed Configuration Recommendation](https://docs.infoblox.com/space/BloxOneThreatDefense/624918912/Default+Global+Policy+Feed+Configuration+Recommendation)*</u>. |
| 03/04/2026 | Universal DDI | **New Features**<br>##### **NIOS-X as a Service now supports “AWS US West (Oregon)” as a new location for deployment.**<br>##### **Infoblox X6 hardware now supports running NIOS-X on TE‑906 and TE‑1506 appliances.**<br>For more information, see <u>*[Converting NIOS to NIOS‑X on X6 Hardware](https://docs.infoblox.com/space/BloxOneInfrastructure/2142797855/Converting+NIOS+to+NIOS%E2%80%91X+on+X6+Hardware)*</u>. |
| 03/04/2026 | Infoblox Threat Defense | **New Feature**<br>##### **Infoblox X6 hardware now supports running NIOS-X on TE‑906 and TE‑1506 appliances.**<br>For more information, see <u>*[Converting NIOS to NIOS‑X on X6 Hardware](https://docs.infoblox.com/space/BloxOneInfrastructure/2142797855/Converting+NIOS+to+NIOS%E2%80%91X+on+X6+Hardware)*</u>. |
| 02/24/2026 | Universal DDI | **New Feature**<br>##### **Infoblox supports the deployment of NIOS-X servers on Oracle Cloud Infrastructure (OCI).**<br>Users can now deploy NIOS-X servers on Oracle Cloud Infrastructure (OCI) using the Infoblox-provided OCI package, which can be downloaded from the Infoblox Portal. For more information, see <u>*[Oracle Cloud Infrastructure (OCI) Deployment](https://docs.infoblox.com/space/BloxOneInfrastructure/2129920010/Oracle+Cloud+Infrastructure+(OCI)+Deployment)*</u>. |
| 02/24/2026 | Infoblox Threat Defense | **New Feature**<br>##### **Infoblox supports the deployment of NIOS-X servers on Oracle Cloud Infrastructure (OCI).**<br>Users can now deploy NIOS-X servers on Oracle Cloud Infrastructure (OCI) using the Infoblox-provided OCI package, which can be downloaded from the Infoblox Portal. For more information, see <u>*[Oracle Cloud Infrastructure (OCI) Deployment](https://docs.infoblox.com/space/BloxOneInfrastructure/2129920010/Oracle+Cloud+Infrastructure+(OCI)+Deployment)*</u>. |
| 02/23/2026 | Universal DDI | **Enhancement**<br>##### **NIOS‑X v4.0.0 now supports Ubuntu 24.04.**<br>This release is built on Ubuntu 24.04, providing compatibility with the latest OS features and security enhancements. It supports both fresh deployments on new appliances and upgrades from existing v3.x appliances, including restoration of host configuration. For more information, see <u>*[Dell Physical Servers Deployment](https://docs.infoblox.com/space/BloxOneInfrastructure/204538971/Dell+Physical+Servers+Deployment)*</u>. |
| 02/23/2026 | Infoblox Threat Defense | **Enhancement**<br>##### **NIOS‑X v4.0.0 now supports Ubuntu 24.04.**<br>This release is built on Ubuntu 24.04, providing compatibility with the latest OS features and security enhancements. It supports both fresh deployments on new appliances and upgrades from existing v3.x appliances, including restoration of host configuration. For more information, see <u>*[Dell Physical Servers Deployment](https://docs.infoblox.com/space/BloxOneInfrastructure/204538971/Dell+Physical+Servers+Deployment)*</u>. |
| 02/20/2026 | Infoblox Threat Defense | **Enhancement**<br>##### **Infoblox has released new Threat Breakdown content in Security Reports.**<br>The **Comprehensive Security Report **and **Executive Summary Report **now include a new Threat Breakdown section. This section provides key summary metrics, such as protection before impact, unique threat domains, suspicious and malicious domains, offering an overview of key findings on threat domains within your environment. To download the unified report, go to **Monitor **> **Reports** > **Security** > **Summary Report** and click **Download**. For more information, see *[Security Reports](https://docs.infoblox.com/space/BloxOneCloud/1787265026/Security+Reports)* and *[Summary Reports](https://docs.infoblox.com/space/BloxOneThreatDefense/35375414/Summary+Reports)*. |
| 02/18/2026 | Infoblox Threat Defense | **Enhancement**<br>##### **Infoblox has released Endpoint version 1.0.14 for Android and Endpoint version 2.0.13 for iOS.**<br>This release enhances Endpoint protection status reporting and includes minor feature improvements. For information, see <u>*[Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint)*</u>. |
| 02/13/2026 | Universal DDI | **New Features**<br>##### **Universal Asset Insights introduces ServiceNow CMDB Reconciliation Insights.**<br>The Assets sub‑workspace now includes an Asset Reconciliation monitor for customers who have configured the ServiceNow integration. This monitor presents three reconciliation tiles that highlight how assets discovered by Universal Asset Insights compare to configuration items in the ServiceNow CMDB, with quick drill‑downs into filtered Asset Inventory views. Customers without the ServiceNow integration continue to see the existing set of asset monitors with no change to their experience. For more information, see <u>*[Viewing Network Assets Sub-Workspace](https://docs.infoblox.com/space/BloxOneDDI/1088291107/Viewing+Network+Assets+Sub-Workspace)*</u>.<br>##### **Universal Asset Insights now supports the discovery of Cisco Meraki MV IP cameras.**<br>Universal Asset Insights now supports the discovery of Cisco Meraki MV IP cameras through integration with Cisco Meraki. This capability enables continuous ingestion of data from Meraki MV smart cameras and associated device attributes into a unified asset inventory. Discovered information includes camera models, serial numbers, MAC addresses, assigned IP addresses, firmware versions, network associations, and operational status. The integration correlates Meraki MV IP camera data with DNS, DHCP, IPAM, and other discovery sources to provide a single, authoritative view of surveillance and network-connected assets across campus, branch, and distributed environments. This enhanced visibility improves asset accuracy, reduces blind spots in physical security infrastructure, and helps organizations identify unmanaged, stale, or misaligned surveillance devices. For more information, see <u>*[Meraki Integration](https://docs.infoblox.com/space/UniversalAssetInsights/1521451130/Meraki)*</u>.<br>##### **Universal Asset Insights now supports integration with Verkada.**<br>Universal Asset Insights now integrates with Verkada, automatically discovering security cameras and other Verkada-managed enterprise IoT devices and adding them to the unified asset inventory. Verkada assets and attributes are correlated with DNS, DHCP, IPAM, and other discovery sources, giving customers a single, authoritative view across physical security and network domains. This integration improves asset accuracy, simplifies cross‑system correlation, and strengthens end‑to‑end visibility for distributed sites. For more information, see <u>*[Verkada Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2082701361/Verkada)*</u>. |
| 02/12/2026 | Universal DDI | **New Features**<br>##### **Universal DDI now supports advanced DNSSEC zone signing and management.**<br>DNSSEC (Domain Name System Security Extensions) enhances DNS security by using cryptographic signatures to verify the integrity and authenticity of DNS data. This feature enables you to sign primary zones using Zone Signing Keys (ZSKs) and Key Signing Keys (KSKs), configure NSEC or NSEC3 records for authenticated denial of existence, and customize security parameters such as salt length and hashing iterations to improve privacy and resilience against attacks. It also supports streamlined workflows for signing, resigning, and unsigning DNS zones, ensuring a consistent and reliable DNSSEC chain of trust. Additional capabilities include generating DS records, exporting trust anchors, and importing keysets for establishing secure delegations. For more information, see <u>*[DNSSEC Signing](https://docs.infoblox.com/space/BloxOneDDI/1540620608/DNSSEC+Signing)*</u>.<br>##### **Universal DDI now synchronizes secondary DNS zone content for improved visibility.**<br>Universal DDI now supports synchronizing resource records from secondary DNS zones into the Infoblox portal. By default, secondary DNS zones receive their records from external primary servers through standard zone transfers (AXFR/IXFR) and use this data only for query resolution, without displaying the zone content in the Infoblox Portal. Universal DDI can optionally show the records from the supported secondary server and display them in the Infoblox portal in read-only mode. This enhancement provides administrators with full visibility into secondary zone data, enabling easier troubleshooting, auditing, and validation across primary and secondary DNS servers while maintaining authoritative control on the primary server. For more information, see <u>*[Creating a Secondary Zone](https://docs.infoblox.com/space/BloxOneDDI/186681610/Creating+a+Secondary+Zone)*</u>.<br>##### **Universal DDI now supports DNS Record Protection.**<br>DNS Record Protection is a security and governance mechanism that safeguards critical DNS records from accidental or malicious modification, deletion, or overwriting while allowing them to continue resolving normally. This capability is particularly valuable in environments where automated processes can delete valuable records. By protecting selected DNS records, administrators ensure that their resolution behavior and configuration remain consistent. For more information, see <u>*[DNS Record Protection](https://docs.infoblox.com/space/BloxOneDDI/2056815453/DNS+Record+Protection)*</u>. |
| 02/09/2026 | Universal DDI | **New Features**<br>##### **Universal Asset Insights now supports integration with Aruba Central, extending centralized network visibility across wired, wireless, and WAN environments.**<br>Through the Aruba Central integration, Universal Asset Insights continuously discovers and ingests Aruba‑managed assets, including access points, switches, gateways, connected devices, IP addresses, and connectivity attributes. The integration correlates this data with information from DNS, DHCP, IPAM, and other discovery sources to provide a unified, authoritative view of network and infrastructure assets across campus, branch, and cloud‑connected environments. The enhanced visibility improves asset accuracy, reduces blind spots, and helps organizations identify missing, stale, or misaligned resources. As a result, organizations can strengthen governance, support compliance initiatives, and improve operational efficiency across distributed and hybrid network architectures. Configuration and ongoing management of the Aruba Central integration are streamlined through the Integrations tab, providing a simple and centralized experience for enabling and maintaining discovery. For more information, see <u>*[Aruba Integration](https://docs.infoblox.com/space/UniversalAssetInsights/2082832483/Aruba+Central)*</u>.<br>##### **Universal Asset Insights now supports integration with Cisco Catalyst SD-WAN.**<br>Universal Asset Insights integrates with Cisco Catalyst SD-WAN to discover WAN edge devices, controllers, and related network assets directly from the SD-WAN fabric. This integration enriches asset inventory with real-time network context, enabling better visibility into distributed and branch network infrastructure. By consolidating assets discovered through SD-WAN with other discovery sources, Universal Asset Insights helps reduce asset blind spots and maintain an accurate, unified view of the network assets. . For more information, see *[Cisco Catalyst SD-WAN Integration](https://docs.infoblox.com/space/UniversalAssetInsights/1919221776/Cisco+Catalyst+SD-WAN)*. |
| 02/09/2026 | Universal DDI | **Announcement**<br>Infoblox has upgraded DNS to version 3.8.2 for both US and EU realms. |
| 02/06/2026 | Universal DDI | **New Features**<br>##### **Infoblox now provides the ability to apply software updates immediately from the Servers page.**<br>The **Servers** page includes a new **Apply software updates now** option. This option allows you to install the latest software updates for applications running on a selected NIOS-X server immediately. It provides faster and more flexible update management. For more information, see <u>*[Scheduling Software Updates for Servers](https://docs.infoblox.com/space/BloxOneInfrastructure/184583758/Scheduling+Software+Updates+for+Servers)*</u>.<br>##### **NIOS-X supports chained software update scheduling across server groups.**<br>NIOS-X now supports chaining multiple software update schedules (for example, lab, stage, and production) to run in a defined sequence with configurable delays. This capability enables controlled and efficient updates. For more information, see <u>*[Scheduling Software Updates for Servers](https://docs.infoblox.com/space/BloxOneInfrastructure/184583758/Scheduling+Software+Updates+for+Servers)*</u>. |
| 02/06/2026 | Infoblox Threat Defense | **New Features**<br>##### **Infoblox now provides the ability to apply software updates immediately from the Servers page.**<br>The **Servers** page includes a new **Apply software updates now** option. This option allows you to install the latest software updates for applications running on a selected NIOS-X server immediately. It provides faster and more flexible update management. For more information, see <u>*[Scheduling Software Updates for Servers](https://docs.infoblox.com/space/BloxOneInfrastructure/184583758/Scheduling+Software+Updates+for+Servers)*</u>.<br>##### **NIOS-X supports chained software update scheduling across server groups.**<br>NIOS-X now supports chaining multiple software update schedules (for example, lab, stage, and production) to run in a defined sequence with configurable delays. This capability enables controlled and efficient updates. For more information, see <u>*[Scheduling Software Updates for Servers](https://docs.infoblox.com/space/BloxOneInfrastructure/184583758/Scheduling+Software+Updates+for+Servers)*</u>. |
| 02/02/2026 | Universal DDI | **New Features**<br>##### **Universal DDI now supports bi-directional synchronization with Microsoft DHCP using the Infoblox Universal DDI Agent.**<br>Universal DDI now supports enhanced integration with Microsoft DHCP through a modern Universal Agent–based architecture, enabling both read and write management of Microsoft DHCP environments directly from the Infoblox Portal. This integration replaces legacy read-only synchronization with secure, bidirectional communication, allowing administrators to discover, synchronize, and manage Microsoft DHCP objects—including scopes, ranges, reservations, options, and exclusions—within a unified IPAM framework. For more information, see *[Installing the Infoblox Universal DDI Agent](https://docs.infoblox.com/space/UniversalAssetInsights/1710195646/Installing+the+Infoblox+Universal+DDI+Agent)* and *[Discovering DHCP](https://docs.infoblox.com/space/UniversalAssetInsights/1710228652/Discovering+DHCP)*.<br>##### **Universal DDI now supports Access Views for IP spaces and DNS views that are synchronized from NIOS Grids through the NIOS Grid Connector (NGC).**<br>This enhancement allows administrators to apply access controls and visibility boundaries to IPAM and DNS objects originating from non-federated grids, ensuring consistent governance and role-based access across both cloud-managed and on-premises environments. For more information, see *[Supported Objects for Access Views](https://docs.infoblox.com/space/BloxOneDDI/685146683/Supported+Objects+for+Access+Views)*. |
| 01/30/2026 | Universal DDI | **New Features**<br>##### **Universal Asset Insights now supports integration with Juniper Mist.**<br>Universal Asset Insights integrates with Juniper Mist to discover and inventory cloud-managed wireless and wired network assets. By ingesting data from the Mist cloud, Universal Asset Insights provides visibility into access points, switches, and associated network components. This integration enhances asset enrichment and correlation across multiple discovery sources, helping  users understand asset presence and relationships within modern, AI-driven network environments. Configuration and management of the Juniper Mist integration are streamlined through the Integration tab. For more information, see *[Juniper Mist](https://docs.infoblox.com/space/UniversalAssetInsights/1919025202/Juniper+Mist)*.<br>##### **Universal Asset Insights now supports integration with Versa Networks.**<br>Universal Asset Insights now supports integration with Versa Networks, enabling automated discovery of SD-WAN and secure access service edge (SASE) infrastructure managed through the Versa platform. This integration continuously ingests Versa-managed edge devices, controllers, interfaces, IP addresses, and related connectivity and security attributes into a unified asset inventory. Discovered assets are correlated with data from DNS, DHCP, IPAM, and other discovery sources to deliver a single, authoritative view of network and security assets across distributed and hybrid environments. By consolidating Versa Networks data with existing asset intelligence, organizations gain improved visibility, enhanced asset accuracy, reduced blind spots, and stronger governance across SD-WAN and SASE deployments. Configuration and management of the Versa Networks integration are streamlined through the Integration tab. For more information, see *[Versa Networks](https://docs.infoblox.com/space/UniversalAssetInsights/2057994380/Versa+Networks)*. |
| 01/27/2026 | Universal DDI | **New Features**<br>##### **NIOS-X supports automatic server right-sizing.**<br>NIOS-X now supports automatic server right-sizing. This feature scales servers to the appropriate Infoblox-recommended size when capacity thresholds are exceeded multiple times within a monthly cycle. It helps ensure servers remain within supported performance limits. For more information, see <u>*[Automatic Server Right-Sizing](https://docs.infoblox.com/space/BloxOneInfrastructure/2045018115/Automatic+Server+Right-Sizing)*</u>. |
| 01/21/2026 | Universal DDI | **New Features**<br>##### **NIOS-X now supports IPv4 static route configuration.**<br>Users can now configure IPv4 static routes from the **Servers** > **IP Interface Settings** page in the Infoblox Portal. For more information, see <u>*[Setting IP Interfaces](https://docs.infoblox.com/space/BloxOneInfrastructure/119996611/Setting+IP+Interfaces)*</u>. |
| 01/21/2026 | Infoblox Threat Defense | **New Features**<br>##### **NIOS-X now supports IPv4 static route configuration.**<br>Users can now configure IPv4 static routes from the **Servers** > **IP Interface Settings** page in the Infoblox Portal. For more information, see <u>*[Setting IP Interfaces](https://docs.infoblox.com/space/BloxOneInfrastructure/119996611/Setting+IP+Interfaces)*</u>. |
| 01/20/2026 | Universal DDI | **New Features**<br>##### **VMware Aria Automation Provider for Universal DDI now supports VMware Aria Automation Orchestrator.**<br>The VMware Aria Automation Provider for Universal DDI now integrates with VMware Aria Automation Orchestrator, enabling seamless automation of IP address management (IPAM), DNS, and DHCP operations in Infoblox Universal DDI. This integration exposes a comprehensive set of predefined workflows in the VMware Aria Orchestrator Library, allowing users to create, update, and delete Universal DDI objects directly within orchestration workflows without requiring external scripts. For more information, see *[VMware Aria Orchestrator Provider for Universal DDI](https://docs.infoblox.com/space/BloxOneDDI/2015428660/VMware+Aria+Orchestrator+Provider+for+Universal+DDI)*. |
| 01/15/2026 | Universal DDI | **New Features**<br>##### **Universal Asset Insights now provides an option to save basic and advanced query filters created using Query Builder.**<br>Universal Asset Insights allows users to save both basic and advanced query filters for reuse. Saved filters retain the complete query context, including the associated entity, filter conditions, and time range, ensuring queries are always executed within the correct scope. Users can categorize, sort, search, clone, and run saved filters. For more information, see *[Query Builder](https://docs.infoblox.com/space/BloxOneDDI/1872101439/Query+Builder)*. |
| 01/14/2026 | Universal DDI | **New Features and Enhancements**<br>##### **NIOS-X supports sequential software updates.**<br>By default, NIOS-X applies software updates to one server at a time during a software update, ensuring each update completes successfully before proceeding to the next server. This applies to all update types, including scheduled updates. If preferred, users can disable sequential updates for an update window or restore sequential behavior for future software updates. For information, see *[Scheduling Software Updates for Servers](https://docs.infoblox.com/space/BloxOneInfrastructure/184583758/Scheduling+Software+Updates+for+Servers)*.<br>##### **Data Connector introduces Splunk CIM alignment for DHCP events and performance enhancements.**<br>Data Connector now aligns DHCP lease events with Splunk CIM Network Session standards, mapping operations to CIM-compliant actions while preserving Infoblox-specific details for advanced analytics. This release also delivers major scalability and efficiency improvements for high-volume collections from Infoblox Cloud sources through optimized CPU and memory usage, as well as batch processing. For information, see *[Data Connector](https://docs.infoblox.com/space/BloxOneCloud/35428954/Data+Connector)* and *[Setting Up Splunk](https://docs.infoblox.com/space/BloxOneCloud/35398013/Setting+Up+Splunk+Cloud)*.<br>##### **Universal Asset Insights introduces enhanced ServiceNow discovery features.**<br>Universal Asset Insights can now discover a broader range of CMDB classes and IP assets from ServiceNow, with include and exclude filters that give users precise control over which CMDB classes are ingested. Centralized configuration through the Integration tab simplifies setup and ongoing management of the ServiceNow discovery connection. For more information, see *[ServiceNow Integration](https://docs.infoblox.com/space/UniversalAssetInsights/1918763041/ServiceNow)*.<br>##### **Universal DDI can now associate NIOS IPAM objects with realms.**<br>Universal DDI now supports associating IPAM objects synchronized from NIOS with realms in the Infoblox Portal. When IPAM objects are synced through the NIOS Grid Connector (NGC), they are automatically mapped to a user-defined realm if the NIOS Grid is configured with a realm. If no realm is configured on the NIOS Grid, the synced IPAM objects are associated with the default realm. This capability ensures consistent realm alignment and centralized management of federated IPAM data. For more information, see *[Configuring IPAM Federation](https://docs.infoblox.com/space/BloxOneDDI/684884521/Configuring+IPAM+Federation)* and *[NIOS Grid Connector](https://docs.infoblox.com/space/BloxOneDDI/186843293/Configuring+NIOS+Grid+Connector)**.* |
| 01/14/2026 | Infoblox Threat Defense | **New Features and Enhancements**<br>##### **NIOS-X supports sequential software updates.**<br>By default, NIOS-X applies software updates to one server at a time during a software update, ensuring each update completes successfully before proceeding to the next server. This applies to all update types, including scheduled updates. If preferred, users can disable sequential updates for an update window or restore sequential behavior for future software updates. For information, see *[Scheduling Software Updates for Servers](https://docs.infoblox.com/space/BloxOneInfrastructure/184583758/Scheduling+Software+Updates+for+Servers)**.*<br>##### **Data Connector introduces Splunk CIM alignment for DHCP events and performance enhancements.**<br>Data Connector now aligns DHCP lease events with Splunk CIM Network Session standards, mapping operations to CIM-compliant actions while preserving Infoblox-specific details for advanced analytics. This release also delivers major scalability and efficiency improvements for high-volume collections from Infoblox Cloud sources through optimized CPU and memory usage, as well as batch processing. For information, see *[Data Connector](https://docs.infoblox.com/space/BloxOneCloud/35428954/Data+Connector)* and *[Setting Up Splunk](https://docs.infoblox.com/space/BloxOneCloud/35398013/Setting+Up+Splunk+Cloud)**.* |
| 01/13/2026 | Infoblox Threat Defense | **Enhancement**<br>**Infoblox Threat Defense has added 16 new applications, expanding application filtering coverage within the VPNs & Proxies category.**<br>This update enhances policy enforcement for proxy and VPN services commonly used to obscure user identity or bypass network controls. For more information, see *[Creating Application Filters](https://docs.infoblox.com/space/BloxOneThreatDefense/56656233/Creating+Application+Filters)*[.](https://docs.infoblox.com/space/BloxOneThreatDefense/56656233/Creating+Application+Filters) See below for a list of the newly added applications.<br>**Newly added applications**:<br>- Bright Data
- DataImpulse
- Decodo Proxy
- FlashProxy
- Geonode Proxy
- Grass
- Infatica
- IPIDEA Proxy
- IPRoyal Proxy and Related Services
- Massive
- NetNut
- Nimble Proxy
- Oxylabs Proxy
- PlainProxies
- Rayobyte
- SOAX |
| 01/09/2026 | Infoblox Threat Defense | **Enhancement**<br>##### **Infoblox Threat Defense certificate update for the Redirect Block page.**<br>The Infoblox SSL Root Certificate for the Infoblox Default Redirect Block page will be updated on January 9, 2026. Please install the latest certificate in your browsers by January 24, 2026, to prevent redirect errors when the Block Policy is enforced. For information on how to install the certificate, see *[Installing Infoblox Root Certificate for Bypass Code](https://docs.infoblox.com/space/BloxOneThreatDefense/35404482/Installing+Infoblox+Root+Certificate+for+Bypass+Code)*. |
| 12/16/2025 | Universal DDI<br>Infoblox Threat Defense | **New Feature**<br>##### **Infoblox Labs lets customers discover, enable, and try early-access product capabilities before they are generally available.**<br>For more information, see *[Infoblox Labs](https://docs.infoblox.com/space/BloxOneCloud/1904607249/Infoblox+Labs)*. |
| 12/15/2025 | Universal DDI | **New Feature**<br>##### **Universal Asset Insights now displays logos for all discovery sources associated with a specific asset.**<br>Hovering over a logo reveals the name of the corresponding discovery source. This enables administrators to quickly identify discovery sources at a glance. For more information, see *[Viewing Managed Assets](https://docs.infoblox.com/space/BloxOneCloud/1161494602/Viewing+Managed+Assets)*. |
| 12/10/2025 | Universal DDI | **New Feature**<br>##### **Universal DDI provides detailed notifications for DHCP configuration failures.**<br>Universal DDI now displays notifications when DHCP configurations fail to generate or cannot be pushed to NIOS-X servers due to invalid values or other identifiable issues. When a failure occurs, the system provides a clear error message that explains the root cause, enabling administrators to quickly diagnose and correct configuration problems. This enhancement improves operational visibility by notifying you directly when the DHCP configuration push to the NIOS-X server is unsuccessful. For information about configuring notification settings, see *[Configuring Notification Settings](https://docs.infoblox.com/space/BloxOneDDI/186811517/Configuring+Notification+Settings)*. |
| 12/09/2025 | Universal DDI | **New Feature**<br>##### **Universal Asset Insights introduces a unified and context-aware Query Builder with advanced filtering capabilities.**<br>The Query Builder provides a unified, intuitive interface for constructing structured queries of the asset inventory. Designed with a human-readable syntax, the Query Builder allows users to build simple or advanced queries without requiring prior knowledge of complex filtering languages. The grammar supports natural, operator-driven expressions. It also includes context-aware namespaces. This enables precise filtering based on attributes such as providers, IP ranges, hostnames, threat categories, timestamps, and classification states. For more information, see *[Query Builder](https://docs.infoblox.com/space/BloxOneDDI/1872101439/Query+Builder)*. |
| 12/01/2025 | Infoblox Threat Defense | **New Features and Enhancements**<br>**Infoblox Endpoint version 2.6.0 for Linux introduces enhancements that improve overall manageability, reliability, and deployment flexibility across endpoint environments.**<br><span style="color: #111111">This release includes updates such as customer-defined fallback and customer-defined internal resolvers. These updates improve operational efficiency, strengthen security resilience, and streamline endpoint management workflows. </span>For information, see *[Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint)*.<br>**Enhancements:**<br>- Customer-defined fallback resolvers
- Customer-defined internal resolvers |
| 11/21/2025 | Infoblox Threat Defense | **New Features and Enhancements**<br>**Infoblox Endpoint version 2.6.0 for Windows Clients introduces enhancements that improve overall manageability, reliability, and deployment flexibility across endpoint environments.**<br>This release includes updates such as customer-defined fallback and customer-defined internal resolvers, IP management, and offline protection improvements. These updates improve operational efficiency, strengthen security resilience, and streamline endpoint management workflows. For information, see *[Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint)*.<br>**Enhancements:**<br>- Customer-defined fallback resolvers
- Customer-defined internal resolvers
- IP Management
- Offline Protection<br>**Resolved issues:**<br>- Endpoints may become unprotected due to unexpected service termination.
- Multiple Endpoints missing serial number information.
- Fatal error occurs when installing Infoblox Endpoint v2.5.0 using MSI editors such as Orca.
- Compatibility issue with Akamai EAATAP Secure Windows Adapter v9.
- Access denied” errors related to Archive.dll appearing in service logs for Endpoint v2.5.
- Control App logs are not deleted during uninstall, and existing logs are incorrectly appended during reinstall.
- Endpoint automatically triggers the activation process when a Windows client is cloned.
- Control App logs are not deleted during upgrade from version 2.5.0.0 to 2.5.0.4.
- Control application Log rotation is not working (MacOS)
- Endpoint v2.5 -- Archive.dll access denied messages in Service logs |
| 11/20/2025 | Universal DDI<br>Infoblox Threat Defense | **New Feature**<br>##### **Infoblox introduces scheduled reporting for workspaces.**<br>With the appropriate reporting entitlements, users can now create on-demand or scheduled reports across Network, Security, and Asset workspaces in the Infoblox Portal. Select one or more workspaces and customize content with detailed drilldowns and data insights. Recipients receive automatic notifications when reports are ready. Manage and update schedules anytime through the centralized Scheduled Reports console. For more information, see *[Scheduling Reports](https://docs.infoblox.com/space/BloxOneDDI/1821048843/Scheduling+Reports)*. |
| 11/192025 | Infoblox Threat Defense | **New Feature**<br>##### **Infoblox is releasing an Early Access version of Insights, referred to as “Insights – Early Access.”**<br>This Early Access release offers a new, streamlined workflow, making it easier to analyze and prioritize incidents in your environment. It provides richer context, clearer threat attribution, and recommended actions so that SOC teams can understand each insight and respond with confidence. Your existing Insights, including any SIEM/API integrations and notifications, will remain unchanged and functioning as they are. Insights – Early Access runs alongside the current SOC Insights and is intended to gather feedback on the new workflow and granular insights. General Availability of the updated Insights is planned for early 2026, at which point your existing Insights and configuration will be seamlessly migrated to the new experience. For information, see *[Insights - Early Access](https://docs.infoblox.com/space/BloxOneThreatDefense/1793392673/Insights+-+Early+Access)**.* |
| 11/18/2025 | Universal DDI<br>Infoblox Threat Defense | **New Features**<br>##### **NIOS-X as a Service supports Transit Gateway (TGW) integration on Amazon Web Services (AWS).**<br>NIOS-X as a Service now integrates with AWS Transit Gateway (TGW), enabling scalable and centralized connectivity across multiple VPCs within the same AWS account. This enhancement simplifies network architecture by allowing NIOS-X as a Service deployments to route traffic through a single TGW, streamlining configuration via automated workflows and potentially improving performance by optimizing routing paths. For setup details, see [Configuring Transit Gateway](https://docs.infoblox.com/space/BloxOneDDI/1792671886/Configuring+Transit+Gateway).<br>##### **DNS and DHCP service logs for NIOS-X as a Service deployments are now displayed on the Service Logs page.**<br>This enhancement improves observability and operational efficiency for cloud-delivered DNS and DHCP services, enabling faster diagnostics and better service monitoring. |
| 11/15/2025 | Universal DDI | **New Features**<br>##### **Universal Asset Insights now includes a new toggle in Passive Discovery, giving users the flexibility to route assets to either Managed or Unmanaged Inventory views.**<br>This update offers greater control over management token usage, helping users optimize workflows and maintain a cleaner, more organized inventory experience.<br>##### **Universal DDI supports automatic classification and handling of Unverified Assets.**<br>This feature enables Universal DDI to automatically identify and classify assets as Unverified when they are discovered from cloud or on-premises sources without a hostname or a persistent, manufacturer-assigned MAC address. For more information, see *[Viewing Unverified Assets](https://docs.infoblox.com/space/BloxOneCloud/1794965526/Viewing+Unverified+Assets)*.<br>##### **The Universal DDI DNS service addresses the following vulnerabilities: CVE-2025-8677 and CVE-2025-40780.**<br>*[CVE-2025-8677](https://kb.isc.org/docs/cve-2025-8677)*: Querying for records within a specially crafted zone containing certain malformed DNSKEY records can lead to CPU exhaustion. *[CVE-2025-40780](https://kb.isc.org/docs/cve-2025-40780)*: In specific circumstances, due to a weakness in the Pseudo Random Number Generator (PRNG) that is used, it is possible for an attacker to predict the source port and query ID that BIND will use. |
| 11/06/2025 | Universal DDI | **New Feature**<br>##### **NIOS-X as a Service now supports “AWS Asia Pacific (Hong Kong)” and “AWS Asia Pacific (Singapore)” as new locations for deployment.** |
| 11/04/2025 | Infoblox Threat Defense | **New Features and Updates**<br>##### **Infoblox Endpoint version 2.6.0 for macOS introduces enhancements that improve overall manageability, reliability, and deployment flexibility across endpoint environments.**<br>This release includes updates such as customer-defined fallback and customer-defined internal resolvers, IP management, and offline protection improvements. These updates improve operational efficiency, strengthen security resilience, and streamline endpoint management workflows. For information, see <u>*[Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint)*</u><u>*.*</u>  
  
**Enhancements**:<br>- Customer-defined fallback resolvers
- Customer-defined internal resolvers
- IP Management
- Offline Protection<br>**Resolved issues**:<br>- Endpoints may become unprotected due to unexpected service termination.
- Multiple Endpoints missing serial number information.
- Fatal error occurs when installing Infoblox Endpoint v2.5.0 using MSI editors such as Orca.
- Compatibility issue with Akamai EAATAP Secure Windows Adapter v9.
- Access denied” errors related to `Archive.dll` appearing in service logs for Endpoint v2.5.
- Control App logs are not deleted during uninstall, and existing logs are incorrectly appended during reinstall.
- Control Application log rotation not functioning as expected.
- Endpoint should automatically trigger the activation process when a Windows client is cloned.
- Control App logs are not deleted during upgrade from version 2.5.0.0 to 2.5.0.4. |
| 11/03/2025 | Universal DDI | **New Features**<br>##### **Universal DDI now supports Cloudflare DNS management.**<br>Universal DDI now supports discovery and correlation of DNS and security-related network assets managed through Cloudflare. Cloudflare discovery collects information on DNS records, zones, and associated IP addresses in cloud-delivered infrastructure. This helps ensure centralized visibility and improved asset correlation across cloud-native and hybrid environments. For information, see *[Cloudflare](https://docs.infoblox.com/space/UniversalAssetInsights/1552613857/Cloudflare)*.<br>##### **Universal DDI now supports Akamai DNS management.**<br>Universal DDI can now discover network resources managed within Akamai-powered DNS and security services. Akamai discovery captures DNS zone configurations and edge IP associations to support accurate mapping between cloud-served DNS and on-premises environments. This enables unified operational oversight and improved forensic traceability. For information, see *[Akamai](https://docs.infoblox.com/space/UniversalAssetInsights/1552712360/Akamai)*.<br>##### **Universal DDI now supports Microsoft DNS management.**<br>Universal DDI can now automatically discover authoritative DNS data from Microsoft DNS servers. Discovery operations collect zone details, record configurations, DNS views/scopes, and IP associations to provide complete visibility into hybrid DNS environments. This helps prevent mismatch, duplication, and configuration drift across enterprise networks. For information, see *[Microsoft DNS](https://docs.infoblox.com/space/UniversalAssetInsights/1710163101/Discovering+DNS)*.<br>##### **Universal DDI now supports Microsoft DHCP management.**<br>Universal DDI now supports automated discovery of DHCP scopes, leases, reservations, and associated device identities from Microsoft DHCP servers. By correlating this data with DNS and IPAM, administrators gain improved visibility of dynamically managed endpoints, enhancing security investigations and operational accuracy. For information, see *[Microsoft DHCP](https://docs.infoblox.com/space/UniversalAssetInsights/1710228652/Discovering+DHCP)*.<br>##### **Universal DDI now provides a Universal IPAM view for network and address space visualization.**<br>The Universal IPAM view provides two perspectives that help administrators better understand and manage hybrid IP address environments.<br>- The Network Perspective organizes IP resources based on associated network constructs—such as VPCs, VNets, and on-premises networks—to visualize how address space is allocated across physical and cloud topologies. This supports operational use cases including segmentation planning, network expansion, and firewall rule design. For information, see *[Network View](https://docs.infoblox.com/space/BloxOneDDI/1737163176/Network+View)*.
- The Address Space Perspective focuses on hierarchical address structures such as blocks, sub-blocks, and allocations, enabling deeper insight into utilization trends, fragmentation, and overlap risks. By correlating resources across both views, Universal IPAM View enhances visibility, simplifies capacity planning, and ensures more efficient and resilient IP address management across hybrid and multi-cloud deployments. For information, see [Address Space View](https://docs.infoblox.com/space/BloxOneDDI/1737393331/Address+Space+View).<br>##### **Universal DDI now supports local Response Policy Zones (RPZ) for real-time recursive DNS threat mitigation.**<br>Response Policy Zones (RPZs) enhance recursive DNS security by enabling administrators to enforce custom policies on DNS resolution in real time. Acting as a DNS firewall, RPZs allow the resolver to override or modify DNS responses based on predefined policy rules. When a recursive server receives a query, it checks the requested domain, IP address, or name server against its configured policy zones to identify indicators of malicious or non-compliant activity—such as phishing sites, botnets, command-and-control (C2) domains, or restricted content categories. By automatically applying protective actions during name resolution, RPZs help prevent access to harmful destinations, strengthen organizational security posture, and ensure compliance with internal usage policies. For information, see *[Configuring Response Policy Zones](https://docs.infoblox.com/space/BloxOneDDI/1747681310/Configuring+Response+Policy+Zones)*.<br>##### **Universal DDI licensing now offers enhanced visibility into object counts.**<br>Universal DDI now displays the total number of objects allowed for your deployment, along with the actual number of objects currently in use. If the actual object count exceeds the permitted limit, a message appears on the Licensing page stating “x Servers Exceeding Capacity.” Hovering over this message highlights the number of exceeding objects in red. This enhancement helps administrators easily identify capacity issues and manage license usage more effectively. For information, see *[Enhanced Object Count Visibility](https://docs.infoblox.com/space/BloxOneDDI/846954761/Universal+DDI+Licensing#Enhanced-Object-Count-Visibility-in-Universal-DDI-Licensing)*.<br>##### **The Universal DDI DNS service addresses the following vulnerability: CVE-2025-40776.**<br>*[CVE-2025-40776](https://kb.isc.org/docs/cve-2025-40776)*: A named caching resolver that is configured to send ECS (EDNS Client Subnet) options may be vulnerable to a cache-poisoning attack. |
| 10/23/2025 | Universal DDI | **New Feature**<br>##### **Universal DDI now offers enhanced integration with VMware Aria Automation.**<br>The VMware Aria IPAM Provider for Universal DDI (UDDI) delivers seamless integration between VMware Aria Automation Assembler and Infoblox Universal DDI, enabling automated IP address management (IPAM) and DNS operations throughout the provisioning and deprovisioning lifecycle of virtual machines (VMs). With this integration, VMware Aria can dynamically allocate IP addresses, create DNS records, provision fixed addresses and reservations via DHCP, and synchronize network configurations with Universal DDI. This automation minimizes manual errors, enhances operational efficiency, and maintains network consistency across multi-cloud and hybrid environments. For more information, see *[VMware Aria IPAM Provider for Universal DDI](https://docs.infoblox.com/space/BloxOneDDI/1736671992/VMware+Aria+IPAM+Provider+for+Universal+DDI)*. |
| 10/17/2025 | Infoblox Threat Defense | **New Features and Enhancements**<br>##### **Infoblox introduces enhancements to the Bandwidth Savings Monitor and Threat Defense Security Reports.**<br>This update replaces the Bandwidth Savings pie chart with a donut chart for improved readability and data clarity. It also expands the Comprehensive Security and Executive Summary reports to include additional metrics and enhanced visualization for First to Detect, Predictive Intelligence, and Lookalike Domain Monitoring. For information see *[Viewing Security Workspace](https://docs.infoblox.com/space/BloxOneCloud/1588592724/Viewing+Security+Workspace)* and *[Summary Reports](https://docs.infoblox.com/space/BloxOneThreatDefense/35375414/Summary+Reports)*. |
| 10/14/2024 | Universal DDI | **New Features**<br>##### **Universal DDI now provides the ability to include or exclude the domain in DHCP Option 12 configuration.**<br>The Include Domain in Option 12 feature allows administrators to control whether the DHCP server includes the domain name along with the host name in the DHCP Option 12 (Host Name) field when responding to client lease requests. Previously, the behavior of this functionality was to return both the host name and the fully qualified domain name (FQDN) in the response, which in some environments led to unexpected client issues. This configuration enables administrators to customize DHCP behavior based on client requirements and ensures consistent interoperability across DDNS-enabled environments. For more information, see *[Advanced Configuration](https://docs.infoblox.com/space/BloxOneDDI/220104221/Advanced+Configuration)*.<br>##### **Universal DDI now Supports DHCP Hold Reclaim Time Configuration to Optimize IP Reuse.**<br>The Hold Reclaim Time feature now includes a configurable delay period that determines how long the DHCP server attempts to wait before reassigning an IP address that has been released. During this hold period, the IP address remains unavailable for new leases thereby, preventing potential IP conflicts and ensuring network stability. For more information, see *[Advanced Configuration](https://docs.infoblox.com/space/BloxOneDDI/220104221/Advanced+Configuration)*.<br>##### **Universal DDI now supports discovery of Azure Virtual WAN (vWAN) hub address spaces.**<br>Universal DDI can now detect and sync the CIDR blocks assigned to Azure vWAN hubs into IPAM within the Infoblox Portal. Although these hub CIDRs are used internally by Azure to allocate subnets for vWAN services and do not directly overlap or conflict with customer VNets or on-premises address spaces, having them recorded in IPAM ensures administrators maintain a complete and accurate inventory of all address allocations across their environment. By bringing vWAN hub CIDRs into the centralized IPAM view, organizations gain better visibility into cloud-provisioned resources, streamline address management, and strengthen governance across hybrid and multi-cloud deployments. This completeness reduces blind spots in network planning and simplifies audits, reporting, and long-term capacity management. |
| 10/08/2025 | Universal DDI<br>Infoblox Threat Defense | **New Feature**<br>##### **Infoblox Introduces Data Connector HA/DR for Enhanced Cloud Ecosystem Continuity.**<br>Cloud Data Connector now supports high availability (HA) through pairing. If the primary fails, the secondary automatically takes over, and cloud sources seamlessly redirect data flows to maintain continuity.<br>This ensures a reliable data path, allowing Security Operations to receive timely alerts and enabling the SOC to respond quickly—thus improving Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR). With automated failover, customers no longer need to manually resolve cloud data flow issues and can focus on deriving value from dependable security use cases. <span style="color: #111111">For information, see </span>[Setting Up a High Flow (HA) Fallback Configuration](https://docs.infoblox.com/space/BloxOneCloud/1638891602/Setting+Up+a+High+Flow+(HA)+Fallback+Configuration)<span style="color: #111111">.</span> |
| 10/08/2025 | Infoblox Threat Defense | **New Feature**<br>##### **Ecosystem Integration Test Event is now available to validate connectivity and response on the receiving side.**<br>Ecosystem Integrations that use automation scripts can be difficult to validate, often needing to wait until the correct event is produced. Now customers can send a test event for these ecosystem automation integrations to not only validate connectivity but validate the response on the receiving side. This greatly simplifies troubleshooting and validation. |
| 9/27/2025 | Infoblox Threat Defense | **New Features**<br>##### **Infoblox Threat Defense introduces Detect Mode, enabling organizations to assess the value of Protective DNS without making disruptive infrastructure changes.**<br>Threat Defense Detect Mode lets organizations validate Protective DNS value without disruptive infrastructure changes. Instead of redirecting queries to the cloud, Detect Mode forwards DNS query and response logs to the Threat Defense service for full threat detection. Security teams gain visibility into threats and can forward findings to SOC tools such as SIEM or SOAR for investigation and response. Available on all supported Infoblox NIOS versions, Detect Mode enables IT and Network Architects to evaluate Threat Defense benefits in a transparent, non-intrusive way. For more information, see [Infoblox Threat Defense Detection Mode](https://docs.infoblox.com/space/BloxOneThreatDefense/1638924360/Infoblox+Threat+Defense+Detection+Mode).<br>##### **Infoblox has deployed version 3.0.9 of the DNS Forwarding Proxy (DFP) service for CNIOS hosts, delivering enhanced connectivity and resiliency.**<br>The DFP service upgrade (v3.0.9) for all CNIOS hosts delivers critical enhancements aimed at strengthening system connectivity and overall resiliency. |
| 9/18/2025 | Universal DDI | **New Feature**<br>**NIOS-X now supports custom ranges for viewing server metrics.**<br>The NIOS-X metrics dashboard now supports setting custom ranges for viewing server metrics. The new Custom option enables defining a specific time window by selecting a start date/time and an end date/time. This enhancement provides greater flexibility to view and compare data across custom ranges. For more information, see [Viewing Server Metrics](https://docs.infoblox.com/space/BloxOneInfrastructure/119931141/Viewing+Server+Metrics). |
| 9/17/2025 | Universal DDI | **New Feature**<br>##### **The Infoblox platform now supports managing service API keys within access views**.<br>Access views allow users to define custom, fine-grained access rules for specific users or groups and their associated service API keys. For more information, see *[Configuring Service API Keys](https://docs.infoblox.com/space/BloxOneDDI/186909325/Configuring+Service+API+Keys)*. |
| 9/15/2025 | Universal DDI<br>Infoblox Threat Defense | **New Feature**<br>##### **Training and education materials are now available to all Infoblox users through Launchpad.**<br>This platform offers unlimited access to learning resources, hands-on labs, and product updates across the entire Infoblox suite. To get started, navigate to **Guidance > Launchpad** in the Infoblox Portal. |
| 9/12/2025 | Universal DDI<br>Infoblox Threat Defense | **New Feature:**<br>##### **Infoblox introduces the configuration of Anycast DNS on NIOS-X servers in Microsoft Azure deployments.**<br>Configuring Anycast DNS on NIOS-X servers in Azure could improve performance by routing users to the nearest DNS server, reducing latency and speeding up resolution times. Anycast provides built-in load distribution, simplifies client configuration with a single IP address, and supports scalability and global performance, making your DNS infrastructure more resilient, efficient, and user-friendly. |
| 9/12/2025 | Infoblox Threat Defense | **New Feature:**<br>##### **Infoblox Threat Defense introduces enhancements to the redirect page.**<br>Organizations can customize redirect messages explaining why access to a website is blocked. The redirect page can include the following information when applicable: Blocked Domain/IP Address, Threat Information, Policy Name, Security Feed, Custom List Name, Filter Name, Domain Category, and Application Name. For more information, see *[Redirect Page](https://docs.infoblox.com/space/BloxOneThreatDefense/1673297931/Redirect+Page)*. |
| 9/02/2025 | Infoblox Threat Defense | **New Feature:**<br>##### **Infoblox Threat Defense introduces Detect Mode, enabling organizations to assess the value of Protective DNS without making disruptive infrastructure changes.**<br>Detect Mode allows organizations to validate the value of Protective DNS without requiring disruptive infrastructure changes. Instead of redirecting DNS queries to the cloud, Detect Mode forwards DNS query and response logs to the Threat Defense service for comprehensive threat detection. Security teams gain visibility into threats and can forward findings to SOC tools such as SIEM or SOAR for investigation and response. Available on all supported Infoblox NIOS versions, Detect Mode enables IT and network architects to evaluate Threat Defense benefits in a transparent and non-intrusive way. Detect Mode is available only for currently supported NIOS versions. For information, see *[Infoblox Threat Defense Detection Mode](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/1638924360)*. |
| 8/21/2025 | Universal DDI<br>Infoblox Threat Defense | **New Feature:**<br>##### **NIOS-X supports sequential configuration updates.**<br>NIOS-X now allows DNS/DHCP/DFP configuration updates to be applied sequentially, even when using scheduled updates. Configuration updates are performed one NIOS-X server at a time, progressing to the next server only after the configuration on the current server has been updated successfully. |
| 8/08/2025 | Infoblox Threat Defense | **New Feature:**<br>##### **Infoblox Threat Defense introduces Retrospective Detection in SOC Insights.**<br>Retrospective Detection in SOC Insights identifies whether any newly classified malicious domains were retrospectively accessed within a customer’s environment during the 30 days prior to their classification as threats. This insight helps SOC teams assess historical exposure and monitor affected assets to determine appropriate follow-up actions. For information, see [SOC Insights](https://docs.infoblox.com/space/BloxOneThreatDefense/501514252/SOC+Insights). |
| 8/04/2025 | Infoblox Threat Defense | **New Features:**<br>##### **Infoblox Threat Defense introduces a new Security Workspace emphasizing Enhanced Threat and Asset Intelligence monitoring.**<br>Infoblox Threat Defense has launched a new Security Workspace, designed to give security teams a more comprehensive, real-time view into DNS-based threats and asset intelligence. With an emphasis on visibility, interactivity, and actionable data, this enhanced dashboard streamlines threat detection and response while helping organizations better understand the security posture of their network assets.<br>Threats: The Threats view within the Security Workspace empowers analysts to monitor and respond to DNS-based threats in real time. Summary monitors and drill-down capabilities provide a clear breakdown of blocked and allowed threats, threat class, severity level, and geographic distribution. Users can quickly filter and group threat data to reveal patterns, uncover predictive intelligence, and access key performance indicators such as bandwidth savings and first-to-detect metrics. The interactive visualizations and contextual detail allow for fast identification of emerging attack vectors, enabling security teams to act decisively, and with confidence.<br>Assets: The Assets view enhances visibility into devices and systems impacted by, or exposed to, DNS threats. With categorized views of verified and unverified assets, risk levels, and associated security events, users can assess asset vulnerability and prioritize response based on criticality. Mini monitors and detailed tables help identify at-risk endpoints, track policy violations, and surface high-value targets. Filters and grouping functions add further clarity, supporting more informed risk management decisions.<br>For information, see [The Security Workspace](https://docs.infoblox.com/space/BloxOneCloud/1588592724/The+Security+Workspace).<br>##### **Infoblox introduces the new Risk Posture monitor, designed to offer actionable tips for enhancing your organization’s security posture. This monitor replaces the deprecated SOC Insights Configuration information page.**<br>The Risk Posture feature evaluates your organization’s configuration across a three-tier scale: Average, Good, and Optimal. Clicking on the posture gauge or the associated risk count directs users to the Risk Posture information page, where detailed insights into configuration checks are available.<br>Additionally, the page provides recommended steps for remediation, helping organizations progress toward an optimal configuration status. For information, see [Managing the Configuration Lifecycle](https://docs.infoblox.com/space/BloxOneThreatDefense/1088455433/Managing+the+Configuration+Lifecycle). |
| 7/29/2025 | Infoblox Threat Defense | **New Feature:**<br>##### **Infoblox Endpoint version 2.5.0 introduces tamper protection for Windows.**<br>This release includes enhanced hardening measures designed to prevent common tampering attempts, such as disabling services, terminating processes, or deleting configuration files. For information, see [Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint) and [Endpoint Tamper Protection](https://docs.infoblox.com/space/BloxOneThreatDefense/1613135922/Endpoint+Tamper+Protection). |
| 7/19/2025 | Infoblox Portal | ##### **Universal DDI introduces enhanced Monitor workspaces.      **<br>On the Infoblox Portal, the Monitor > Network workspace now features dedicated sub-workspaces to streamline network monitoring and deliver critical insights for assets on your network. The enhanced Network DDI sub-workspace continues to provide essential visibility into DNS and DHCP metrics and overall health, while the new Network Assets sub-workspace offers comprehensive visibility and deeper insights into the assets on your network.<br>##### **NIOS-X as a Service now supports “AWS Canada (Central)” as a new location for deployment. **<br>##### **NIOS-X as a Service now supports Cloud VPN configuration on Microsoft Azure.      **<br>NIOS-X as a Service offers a Cloud VPN feature that enables secure communication between cloud networks without the need for physical routers or locations. Establishing secure, reliable connectivity across cloud environments is essential for delivering core network services like DNS, DHCP, and security. For more information, see [Configuring Cloud VPN](https://docs.infoblox.com/space/BloxOneDDI/1400570403/Configuring+Cloud+VPN).<br>##### **NIOS-X as a Service now supports Fault Tolerant Caching.      **<br>Fault Tolerant Caching (FTC) allows the NIOS-X as a Service DNS server to respond to DNS queries when the primary server is not reachable. Whenever a recursive query times out or returns a SERVFAIL response, the DNS server returns the cached response to the client instead of the SERVFAIL response. For more information, see [Creating DNS Config Profiles](https://docs.infoblox.com/space/BloxOneDDI/186681371/Creating+DNS+Config+Profiles).<br>##### **NIOS-X as a Service now supports DNS Traffic Control.      **<br>DNS Traffic Control (DTC) provides a load balancing solution by creating DNS responses based on DNS query source IP, server availability, and network topology. DTC enables the setup of multiple sites in different subnets and the configuration of supported objects and load balancing methods to direct DNS clients to the best available servers. For more information, see [Configuring DNS Traffic Control](https://docs.infoblox.com/space/BloxOneDDI/567967799/Configuring+DNS+Traffic+Control).<br>##### **NIOS-X as a Service now displays traffic capture data. **<br>The traffic capture feature supports detailed inspection of network traffic at a granular level for monitoring, troubleshooting, and security analysis. This feature supports capturing encrypted and decrypted DNS, DHCP, and other traffic flowing in and out of services, enabling faster diagnosis of configuration and network issues. For more information, see [Traffic Capture](https://docs.infoblox.com/space/BloxOneDDI/1557037586/Traffic+Capture).<br>##### **NIOS-X as a Service now displays IPSec status. **<br>NIOS-X as a Service now displays the tunnel activity status (active, negotiating, idle, or down) along with Security Association (SA), encryption, and authentication details that help troubleshoot connectivity issues from both ends of the tunnel. For more information, see [IPSec Status](https://docs.infoblox.com/space/BloxOneDDI/1557037619/IPSec+Status).<br>##### **NIOS-X as a Service now displays routing status.**<br>NIOS-X as a Service now displays the routing status of a universal service and helps troubleshoot routing issues. For more information, see [Routing Status](https://docs.infoblox.com/space/BloxOneDDI/1557102726/Routing+Status).<br>##### **NIOS-X as a Service now displays BGP peering status.**<br>NIOS-X as a Service now displays the BGP peering status of a universal service and helps troubleshoot routing and connectivity issues related to BGP sessions. For more information, see [BGP Status](https://docs.infoblox.com/space/BloxOneDDI/1557102757/BGP+Status).<br>##### **NIOS-X as a Service now supports endpoint configured through the security policies, DNS, and DHCP configuration pages.**<br>NIOS-X as a Service now supports its endpoints to be configured through security policies, DNS, and DHCP configuration pages. |
| 7/18/2025 | Infoblox Threat Defense | **Enhancements:**<br>##### **Infoblox Endpoint enhances protection visibility by updating the endpoint “status” column.**<br>The Infoblox Endpoint status column has been revised to better reflect the current protection state of endpoints. The former values of “Active,” “Inactive,” and “Disabled” have been replaced with the following, more descriptive labels:<br>- **Unprotected**: The device is not secured by Infoblox
- **Protected - OnPrem**: The on-premises device is secured using corporate network DNS.
- **Unprotected - OnPrem**: The on-premises device is not secured using corporate network DNS.
- **Unknown**: The device status is currently unknown. The protection state cannot currently be verified.
- **Disabled**: The device has been disabled. Protection has been intentionally turned off.<br>For information, see [Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint) and [Viewing Endpoint Devices](https://docs.infoblox.com/space/BloxOneThreatDefense/35470720/Viewing+Endpoint+Devices). |
| 7/18/2025 | Universal DDI | **Enhancements**:<br>##### **Universal DDI is introducing DNS Error Responses monitor in the Network Workspace.**<br>This feature allows you to monitor and analyze DNS error responses such as NXDOMAIN, SERVFAIL, FORMERR, and REFUSED. This insight provides greater visibility into DNS issues, enabling faster troubleshooting and resolution. For more information, see [Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneDDI/1196556816/Viewing+the+Network+Workspace).<br>##### **Universal DDI now provides the ability to monitor and analyze DHCP classifications.**<br>The DHCP Classifications monitor tracks and displays outdated or mismanaged DHCP entries, helping you maintain an efficient and conflict-free IP address space. It monitors the following: Stale Fixed Addresses (fixed addresses that are no longer in active use but remain in the configuration), Stale Reservations (reservations assigned to devices that no longer connect to the network), and Rogue Assignments (DHCP servers that are not managed by the network administrator but are active on the same network). These insights help prevent IP conflicts and support the reclamation of unused addresses. For more information, see [Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneDDI/1196556816/Viewing+the+Network+Workspace). |
| 7/17/2025 | Universal DDI<br>Infoblox Threat Defense | **Enhancements**:<br>##### **For accounts with the SANDBOX entitlement, the Infoblox Portal now includes a hierarchical tree menu that enables users to easily locate and access subtenants.**<br>Subtenants are now organized under their corresponding primary tenants, allowing for clearer identification and streamlined navigation. For more information, see [Viewing Subtenants](https://docs.infoblox.com/space/BloxOneInfrastructure/327778336/Viewing+Subtenants). |
| 7/14/2025 | Infoblox Threat Defense | **Enhancements**:<br>##### **CrowdStrike EDR is now available for Infoblox Ecosystem**.<br><span style="color: #111111">Infoblox has added Ecosystem support with a new integration between Infoblox Threat Defense, SOC Insights and CrowdStrike. This capability enables detected threats—such as DNS-based data exfiltration, command-and-control attempts and domain-generated algorithm (DGA) activity—to be automatically sent from Infoblox to CrowdStrike. Once received, CrowdStrike can instantly quarantine the affected endpoint, stopping threats at both the network and device level.</span><br>##### **Infoblox has added Ecosystem support with a new integration between Infoblox Threat Defense, SOC Insights, and CrowdStrike.**<br>This capability enables detected threats—such as DNS-based data exfiltration, command-and-control attempts and domain-generated algorithm (DGA) activity—to be automatically sent from Infoblox to CrowdStrike. Once received, CrowdStrike can instantly quarantine the affected endpoint, stopping threats at both the network and device level. |
| 7/03/2025 | Infoblox Portal | **Enhancement**:<br>Infoblox has released an updated version of the NIOS-X install script on the Infoblox Portal. Users can continue to use this script to deploy the NIOS-X server in their baremetal environments. |
| 6/27/2025 | Infoblox Threat Defense | **New Feature:**<br>##### **Infoblox adds a new Point of Presence (PoP) in Hong Kong.**<br>Infoblox is expanding its global infrastructure with the addition of a new Point of Presence (PoP) in the AWS ap-east-1 region (Hong Kong). This enhancement improves performance and resiliency for regional DNS security services. This PoP is available only via regional IP addresses or manual DFP and Endpoint Group settings.<br>The Anycast IP addresses for the new PoP are 52.119.41.65 and 103.80.6.65. For more information, see see *[Forwarding DNS Traffic to Infoblox Platform](https://docs.infoblox.com/space/BloxOneThreatDefense/35408116/Forwarding+DNS+Traffic+to+Infoblox+Platform)*. |
| 6/26/2025 | Universal DDI<br>Infoblox Threat Defense | **New Feature:**<br>##### **Enhanced Platform Notifications: Type and Subtype**<br>Stay informed with our updated platform notifications. With streamlined categorization and filtering by type and subtype, users can easily find actionable notifications specific to their products and interests, making it easier to distinguish critical updates from general notifications.<br>##### **Terminology Update: “Sandboxes” are renamed to “Subtenants”**<br>In the Infoblox Portal, “Sandboxes” have been renamed to “Subtenants” to better align with industry-standard terminology. This change does not impact existing functionality, and no action is required from users. The use of Subtenants remains subject to the existing *[Sandbox terms and conditions](https://www.infoblox.com/company/legal/bloxone-sandbox-supplemental-terms-and-conditions/)*. |
| 6/11/2025 | Universal DDI<br>Infoblox Threat Defense | **New Feature:**<br>##### **The Infoblox Portal now supports infinite scrolling for table views on the Servers and Protocol Services pages.**<br>This enhancement replaces the previous paginated table view with an infinite scrolling interface, allowing users to continuously load more data as they scroll. Infinite scrolling is now the default behavior for these pages. Additionally, the total number of objects is displayed at the bottom of the page for reference. |
| 6/6/2025 | Universal DDI | **New Feature:**<br>##### **NIOS-X as a Service now supports multiple VPN tunnels using a shared WAN IP address.**<br>This feature enables multiple IPsec access locations to establish tunnels from the same WAN IP address within a single service. Each tunnel must be uniquely identified (for example, via remote ID) to avoid conflicts, but it allows efficient reuse of limited public IPs. This functionality is not supported for Cloud VPN. For more information, see *[Configuring a Shared WAN IP](https://docs.infoblox.com/space/BloxOneDDI/1474920685/Configuring+a+Shared+WAN+IP)*.<br>##### **NIOS-X as a Service now supports creating VPN tunnels with an optional WAN IP configuration. **<br>WAN IP is now an optional field when configuring IPsec tunnels, allowing tunnels to be initiated from any router IP when left unspecified. If a WAN IP address is defined, the tunnel is restricted to that specific IP address, enabling both dynamic and fixed deployment models. This functionality is not supported for Cloud VPN. For more information, see *[Configuring an Optional WAN IP](https://docs.infoblox.com/space/BloxOneDDI/1475117378/Configuring+an+Optional+WAN+IP)*. |
| 6/5/2025 | Universal DDI | **New Feature:**<br>##### **Infoblox Universal Asset Insights introduces the Stale DNS Records classification.**<br>The summary monitor DNS Record Classifications shows Stale DNS Records that have not been queried for 180 days. For more information, see *[Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneDDI/1196556816/Viewing+the+Network+Workspace)*. |
| 6/3/2025 | Infoblox Threat Defense | **New Feature: **<br>##### **Infoblox Endpoint announces the support for Chrome Manifest V3.**<br>Infoblox Endpoint for Chrome receives a major upgrade to support Chrome Manifest V3. The existing Chrome Manifest V2 application and extension will be deprecated by the end of May 2025. To maintain protection for Chrome devices, install the new extension before the end of May. For information, see *[ChromeBook DOH Enrollment (MV3 ChromeOS)](https://docs.infoblox.com/space/BloxOneThreatDefense/1227128856/ChromeBook+DOH+Enrollment+(MV3+ChromeOS))*. |
| 6/3/2025 | Universal DDI | **New Feature:**<br>##### **Universal DDI now supports fault tolerant caching.**<br>Fault tolerant caching allows the NIOS-X DNS server to respond to DNS queries when the upstream connectivity is offline or not available. The DNS server retains the expired records in the recursive cache. Whenever recursive query times out or returns a SERVFAIL response, the DNS server returns the cached response to the client instead of the SERVFAIL response. This feature requires DNS service version 3.7.5 or higher. For more information, see *[Editing DNS Servers](https://docs.infoblox.com/space/BloxOneDDI/186336201/Editing+DNS+Servers)*. |
| 5/31/2025 | Universal DDI | **Announcement**:<br>Infoblox has upgraded DNS to version 3.7.5 and DHCP to version 4.3.19 for both US and EU realms. |
| 5/29/2025 | Universal DDI | **New Features and Enhancements:**<br>##### **Universal Asset Insights now provides an Asset Explorer to navigate and visualize discovered assets.**<br>The asset explorer helps users visualize and navigate discovered assets based on their physical or cloud-based locations. For more information, see *[Exploring Discovered Assets](https://docs.infoblox.com/space/BloxOneCloud/1461813562/Exploring+Discovered+Assets)*.<br>##### **Universal Asset Insights now supports specifying tags for assets.**<br>When creating or editing asset information, users can now specify tags for each asset. This helps categorizing, searching, and organizing assets discovered across networks. For more information, see *[Managing Tags for Assets](https://docs.infoblox.com/space/BloxOneCloud/1459355939/Managing+Tags+for+Assets)*.<br>##### **Universal Asset Insights now supports deleting a network discovery configuration for cloud and on-prem sources.**<br>Users can now delete a network discovery configuration for cloud sources with an option to delete or retain asset or IPAM data. Users can also delete a network discovery configuration for on-prem sources with an option to delete or retain asset data. For more information, see *[Deleting a Network Discovery Configuration](https://docs.infoblox.com/space/BloxOneDDI/512229416/Deleting+a+network+discovery+configuration)*.<br>##### **Universal Asset Insights now shows advanced network information for managed assets.**<br>Users can select a single asset and view detailed information that also includes an Advanced tab showing detailed network information. For more information, see *[Viewing Asset Information](https://docs.infoblox.com/space/BloxOneCloud/1459519760/Viewing+Asset+Information)*.<br>##### **Universal Asset Insights now supports exporting asset inventory data.**<br>Asset inventory data can now be exported to a CSV file. Users can export a single, multiple, or the entire asset inventory data all at once. The export process also provides an option to customize the attributes before exporting. For more information, see *[Exporting Asset Inventory](https://docs.infoblox.com/space/BloxOneDDI/1381565981/Exporting+Assets)*.<br>##### **Universal Asset Insights now supports permanently deleting IPAM data and assets for cloud providers.**<br>When deleting a network discovery configuration for cloud providers, users can choose to permanently delete IPAM data, asset inventory data, or both. Once the IPAM data and assets are deleted, they cannot be recovered from the Recycle Bin. For more information, see *[Deleting a Network Discovery Configuration](https://docs.infoblox.com/space/BloxOneDDI/512229416/Deleting+a+network+discovery+configuration)*. |
| 4/25/2025 | Infoblox Threat Defense | **New Feature:**<br>##### **Insights now supports exclusion of network for Insight generation.**<br>A new Exclusions section in SOC Insights Settings configuration allows users to exclude traffic for Insight generation (e.g., guest network). The excluded traffic is configured using DFPs and/or Network subnets using CIDR notation. This reduces noise and helps highlight the most relevant insights. For more information, see *[SOC Open Insights - Threats View](https://docs.infoblox.com/space/BloxOneThreatDefense/497811915/Open+Insights+-+Threats+View)*. |
| 4/15/2025 to 4/17/2025 | NIOS-X | **Announcement**:<br>Infoblox has released a new NOA service version to support the upgrade to Kubernetes 1.30. |
| 4/03/2025 | Infoblox Portal<br>NIOS | **Announcement**:<br><span style="color: #000000">Infoblox has released a new platform management version designed to support DNS resolver changes in both NIOS physical and virtual servers, ensuring seamless connectivity with the Infoblox Portal.</span> |
| 4/02/2025 | Universal DDI<br>Infoblox Threat Defense | **New Features and Enhancements:**<br>New deployment images (version 3.8.10) are now available on the **Downloads** page of the Infoblox Portal for NIOS-X (BloxOne) servers. These images introduce a key feature that allows users to change passwords via the Device UI or Debug CLI. This release also includes updates to platform components to address certain issues. |
| 4/02/2025 | Universal DDI<br>Infoblox Threat Defense | **New Features and Enhancements:**<br>##### **The Infoblox Portal navigation now displays features accessible through product upgrades.**<br>Customers can easily see the features available to their account with a product upgrade via the **Configure** and **Monitor** lifecycle navigation.<br>##### **Infoblox Portal has enhanced the handling of expired subscriptions.**<br>Infoblox has updated the license entitlement dashboards to remove subscriptions that are over 60 days past expiration.<br>##### **Infoblox Portal introduces the Education Launchpad.**<br>Infoblox introduces a **Product Learning** link for the new Infoblox Education Launchpad, located under the **Guidance** navigation of the Infoblox Portal. The Launchpad provides self-led training, hands-on labs, and a list of upcoming training events. |
| 3/24/2025 | Universal DDI<br>Infoblox Threat Defense | **New Features and Enhancements:**<br>##### **Infoblox Data Connector now supports multiple traffic flows of the same destination type (syslog and HTTP) to a single destination host.**<br><span style="color: #111111">Infoblox Cloud Data Connector can now create multiple traffic flows of the same destination type (syslog and HTTP) to the same destination host. In the past customers who needed to send two syslog or HTTP streams to the same destination host had to combine the streams which could create issues if different filters needed to be applied. This became an issue with NIOS and Universal DDI each wanting to send their own syslog stream to a SIEM.</span><span style="color: #172b4d"> For more information, see </span>*[Configuring Traffic Flows](https://docs.infoblox.com/space/BloxOneCloud/35397475/Configuring+Traffic+Flows)*<span style="color: #172b4d">.</span> |
| 3/21/2025 | Universal DDI | **New Features and Enhancements:**<br>##### **Infoblox Ecosystem integration update notifications will now be provided to configured users in the Infoblox Portal.**<br><span style="color: #111111">Infoblox Ecosystem customers who are using a supported ecosystem integration will now receive integration version update notifications through the Infoblox Portal. This targeted approach ensures that customers who benefit the most from these updates are informed. Users of supported integrations will automatically receive the notifications when new versions are posted on from the Ecosystem Portal.</span> For more information, see *[Infoblox Platform Notifications](https://docs.infoblox.com/space/BloxOneCloud/35397120/Infoblox+Platform+Notifications)*.<br>##### **Universal DDI introduces two new Network Workspace monitors, providing real-time visualization and insight.**<br>DHCP Range Utilization: The DHCP Range Utilization summary monitor provides a quick view of DHCP range usage, helping users assess resources and project future needs. This summary monitor helps admins avoid running out of IP addresses, thereby enabling proactive management. For more information, see *[Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneDDI/1196556816/Viewing+the+Network+Workspace)*.<br>Subnet Utilization: The Subnet Utilization summary monitor helps users optimize IP address usage by highlighting heavily utilized subnets and enabling efficient resource reallocation for better network management. It enhances network efficiency, scalability, and security while enabling proactive capacity planning and compliance. For more information, see *[Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneDDI/1196556816/Viewing+the+Network+Workspace)*.<br>##### **Universal DDI now supports assigning a NIOS-managed host to a NIOS-managed subnet or range via the Infoblox Portal.**<br>Universal DDI now supports assigning a Grid Master, Grid Master Candidate, or Standalone appliance to a NIOS-managed subnet or range via the Infoblox Portal. This assignment can be performed without logging into the NIOS interface. For more information, see *[Assigning a NIOS Host from the Infoblox Portal](https://docs.infoblox.com/space/BloxOneDDI/1293516805/Assigning+a+NIOS+Host+from+the+Infoblox+Portal)*.<br>##### **Infoblox now supports NIOS-X server deployments in the following environments:**<br>- Nutanix AHV Hypervisor
- VMware ESXi version 8.0.3
- Red Hat OpenShift |
| 3/21/2025 | Infoblox Threat Defense | **New Features and Enhancements:**<br>##### **Infoblox Ecosystem integration update notifications will now be provided to configured users in the Infoblox Portal.**<br><span style="color: #111111">Infoblox Ecosystem customers who are using a supported ecosystem integration will now receive integration version update notifications through the Infoblox Portal. This targeted approach ensures that customers who benefit the most from these updates are informed. Users of supported integrations will automatically receive the notifications when new versions are posted on from the Ecosystem Portal. </span>For information, see see *[Infoblox Platform Notifications](https://docs.infoblox.com/space/BloxOneCloud/1196590637/Viewing+the+Network+Workspace)*.<br>##### **Infoblox Threat Defense introduces two new Network Workspace monitors, providing real-time visualization and insight.**<br>DHCP Range Utilization: The DHCP Range Utilization summary monitor provides a quick view of DHCP range usage, helping users assess resources and project future needs. This summary monitor helps admins avoid running out of IP addresses, thereby enabling proactive management. For more information, see *[Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneCloud/1196590637/Viewing+the+Network+Workspace)*.<br>Subnet Utilization: The Subnet Utilization summary monitor helps users optimize IP address usage by highlighting heavily utilized subnets and enabling efficient resource reallocation for better network management. It enhances network efficiency, scalability, and security while enabling proactive capacity planning and compliance. For more information, see *[Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneCloud/1196590637/Viewing+the+Network+Workspace)*.<br>##### **Infoblox Threat Defense now supports assigning a NIOS-managed host to a NIOS-managed subnet or range via the Infoblox Portal.**<br>Infoblox Threat Defense now supports assigning a Grid Master, Grid Master Candidate, or Standalone appliance to a NIOS-managed subnet or range via the Infoblox Portal. This assignment can be performed without logging into the NIOS interface. For more information, see *[Assigning a NIOS Host from the Infoblox Portal](https://docs.infoblox.com/space/BloxOneDDI/1293516805/Assigning+a+NIOS+Host+from+the+Infoblox+Portal)*.<br>##### **Infoblox now supports NIOS-X server deployments in the following environments:**<br>- Nutanix AHV Hypervisor
- VMware ESXi version 8.0.3
- Red Hat OpenShift |
| 3/18/2025 | Infoblox Platform | <span style="color: #000000">Starting 3/18, the Infoblox Platform will undergo enhancement updates in phases, continuing through the end of the month. During this period, the status of your platform management and/or application management for on-prem servers may appear unhealthy for up to a minute. However, these status changes will not affect the services running on the on-prem servers.</span> |
| 3/07/2025 | Infoblox Threat Defense | **Enhancement:**<br>**Infoblox has released Infoblox Endpoint for Ubuntu 24.04.**<br><span style="color: #292a2e">The Endpoint for Ubuntu 24.04 release includes enhancements and bug fixes for Ubuntu 22.04. Please note that Infoblox Endpoint for Ubuntu 20.04 is being discontinued. For information, see </span>*[Managing Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35374260/Managing+Endpoint)*<span style="color: #292a2e">.</span> |
| 2/28/2025 | Universal DDI  
Infoblox Threat Defense | **Enhancement:**<br>**Universal DDI and Infoblox Threat Defense introduce an enhanced license dashboard with utilization trending.**<br>The new Universal DDI Licensing Dashboard offers an in-depth overview of Universal DDI and Threat Defense entitlements and utilization. It is designed to provide insights into trends associated with key licensing metric for Management, Server, and Reporting token utilization. For more information, see [Viewing License Entitlements](https://docs.infoblox.com/space/BloxOneCloud/35397411/Viewing+License+Entitlements). |
| 2/25/2025 | Universal DDI | **Features and Enhancements:**<br>##### **Universal DDI now supports Local Logging from NIOS-X Servers.**<br>This enhancement allows you to configure and send DNS query and response logs, as well as DHCP lease logs, to a SIEM for further analysis. By eliminating the need to send these logs through the Universal DDI cloud service, you can save on Reporting tokens. It can be configured at the Global DHCP and DNS levels and fully supports new and existing deployments. For more information, see *[Local Logging](https://docs.infoblox.com/space/BloxOneDDI/1215168564/Local+Logging)*. |
| 2/24/2025 | Universal DDI | **Features and Enhancements:**<br>##### **Universal DDI now provides a new KPI called DNS Resolution Time to track DNS resolution across the network.**<br>Universal DDI introduces a new metric that represents the average time required to resolve DNS queries across your network. This KPI helps track performance by indicating whether resolution times are increasing or decreasing. For more information, see *[Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneDDI/1196556816/Viewing+the+Network+Workspace)*. |
| 2/20/2025 | Universal DDI | **Features and Enhancements:**<br>##### **NIOS-X as a Service now supports Anycast with the Border Gateway Protocol.**<br>Users can now configure various settings related to Anycast in the NIOS-X as a Service UI. For more information, see *[Creating as a Service](https://docs.infoblox.com/space/BloxOneDDI/682590236/Creating+As-a-Service)*.<br>##### **NIOS-X as a Service now supports configuring a Network Time Protocol (NTP) server through a Global Policy.**<br>For more information, see *[Creating as a Service](https://docs.infoblox.com/space/BloxOneDDI/682590236/Creating+As-a-Service)*.<br>##### **NIOS-X as a Service now provides a read-only view of DNS and DHCP objects that are available in your deployment.**<br>For more information, see *[Service Capabilities](https://docs.infoblox.com/space/BloxOneDDI/1207796170/Service+Capabilities)*.<br>##### **NIOS-X as a Service objects are now searchable via Global Search.**<br>For more information, see *[Global Search for NIOS-X as a Service](https://docs.infoblox.com/space/BloxOneDDI/1215660294/Global+Search+for+NIOS-X+as+a+Service)*.<br>##### **NIOS-X as a Service now supports simplified editing of service details.**<br>NIOS-X as a Service now supports simplified editing of services where users can edit the service details without having to modify the location or configuration. |
| 2/20/2025 | Infoblox Threat Defense | **Enhancement:**<br>##### Infoblox Threat Defense introduces enhancements to the Executive Summary Report and Comprehensive Security Report.<br>These enhancements provide more comprehensive, actionable information and improved usability to support security teams in making informed decisions. Key enhancements include the following: A streamlined layout with a redesigned single-view summary presenting overall security statistics at a glance; improved highlighting of key traffic items that emphasizes critical customer traffic across all modules of Threat Defense; and dynamic DNS traffic anomaly detection of traffic patterns utilizing mean deviation analysis to highlight irregularities over the report period.<br>The enhanced Executive Summary and Comprehensive Security Reports are available to Threat Defense Business Cloud and Advanced licensed users. For information, see *[Summary Reports](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375414)*. |
| 2/13/2025 | Infoblox Threat Defense | **Feature:**<br>##### **Infoblox Threat Defense introduces the Industry Vertical Analysis feature, allowing organizations to benchmark their security posture against peers within the same industry. **<br>Infoblox Threat Defense introduces the Industry Vertical Analysis feature, allowing organizations to benchmark their security posture against peers within the same industry. This new feature analyzes DNS traffic and security events across key categories, including:<br>- **Malicious Threats**
- **Risky Threats**
- **Threat Insights**
- **Threat Actors**
- <span style="color: #172b4d">**Zero Day Detection**</span><br>By comparing your security stance with industry peers and all Infoblox customers, this feature provides actionable insights to fine tune security policies and enhance your overall threat defense strategy. The analysis is based on the industry registered to your Infoblox account and presents data from three perspectives:<br>- **Customer-Specific** – Your organization’s unique security metrics
- **Peers from the Same Industry Vertical** – Comparative insights within your sector
- **All Customers** – Broader trends across all Infoblox users<br>This feature is available to Business Cloud and Advanced licensed users. To access the report, navigate to **Monitor** > **Reports** > **Security** > **Industry Vertical Analysis**.<br>For more information, see *[Industry Vertical Analysis](https://docs.infoblox.com/space/BloxOneThreatDefense/1184923677/Industry+Vertical+Analysis)*. |
| 2/11/2025 | Universal DDI | ##### **Infoblox Universal DDI Management introduces the following enhancements:**<br>- A new summary monitor called ‘DNS Record Classification,’ with subclassifications ‘Dangling’, ‘Abandoned’, and ‘Untrusted’. For more information, see *[Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneDDI/1196556816/Viewing+the+Network+Workspace)*.
- Two new insights are displayed on the Network Workspace KPI ribbon: Deployment Availability - This metric represents the cumulative availability of the Infoblox network services deployed within your network over a defined time period. IP Utilization -This metric provides an overview of the IP utilization levels across all allocated subnets within your network infrastructure. For more information, see *[Viewing the Network Workspace](https://docs.infoblox.com/space/BloxOneDDI/1196556816/Viewing+the+Network+Workspace)*. |
| 1/31/2025 | Infoblox Threat Defense | **Enhancement:**<br>**Infoblox Threat Defense application filtering now includes two new generative AI chatbots: DeepSeek and Qwen.**<br>You can track the usage of these newly added chatbots by navigating to (**Monitor** > **Reports** > **Security** > **Application Discovery**) under the **Applications** - **Generative AI** category.<br>Using application filters, you can assign an application a status of Approved or Unapproved based on whether Application Discovery indicates it is safe or unsafe. An application’s status can be revised and updated at any time.<br>For information, see *[Creating Application Filters](https://docs.infoblox.com/space/BloxOneThreatDefense/56656233/Creating+Application+Filters)*. |
| 1/30/2025 | Universal DDI | ##### **Infoblox Universal Asset Insights introduces the following enhancements:**<br>- A new summary monitor called ‘Assets by Classification,’ with subclassifications ‘Zombie’, ‘Ghost’, and ‘Non Compliance’. Zombie is further classified into ‘Idle’, ‘Orphan’, and ‘Resource Utilization’. For more information, see *[Viewing the Assets Workspace](https://docs.infoblox.com/space/BloxOneDDI/1088291107/Viewing+the+Assets+Workspace)*.
- Universal Asset Insights automatically adds all discovered assets to the Managed category. If you do not want to manage certain assets, you can choose to unmanage them to efficiently utilize your available tokens (licenses). There is also a new option to select the first 500 assets to manage or unmanage, saving time by avoiding manual selection of multiple assets across pages. For more information, see *[Manage or Unmanage Assets](https://docs.infoblox.com/space/BloxOneDDI/1161560545/Manage+or+Unmanage+Assets)*.
- Universal Asset Insights now includes an option to filter assets by Managed, Unmanaged, Devices, Network, or Services. This feature allows sorting of both managed and unmanaged assets when filtering by Devices, Network, or Services. For more information, see *[Viewing Managed Assets](https://docs.infoblox.com/space/BloxOneDDI/1161560511/Viewing+Managed+Assets)* and *[Viewing Unmanaged Assets](https://docs.infoblox.com/space/BloxOneDDI/1161462300/Viewing+Unmanaged+Assets)*. |
| 1/27/2025 | Universal DDI<br>Infoblox Threat Defense | <span style="color: #1d1c1d">**Infoblox will update NIOS-X servers components (formerly on-prem hosts) starting January 27, 2025.**</span><br><span style="color: #1d1c1d">Infoblox will update NIOS-X servers components (formerly on-prem hosts) starting January 27, 2025 to safeguard the servers. </span> |
| 1/24/2025 | Infoblox Threat Defense | **Enhancement:**<br>##### **Infoblox Endpoint has released an updated version of its endpoint app for Android devices, now available on the Google Play Store.**<br><span style="color: #111111">The latest update addresses minor issues when used with Android 14 devices. For information, see </span>*[Managing Mobile Endpoint](https://docs.infoblox.com/space/BloxOneThreatDefense/35470955/Managing+Mobile+Endpoints)*<span style="color: #111111">.</span> |
| 1/17/2025 | Universal DDI | ##### **Universal DDI now supports managing Grid primaries and Grid secondaries of authoritative zones in a NIOS Grid via the Infoblox Portal.**<br>Universal DDI allows you to manage NIOS Grid primaries and Grid secondaries of authoritative zones through the Infoblox Portal. Any changes made to NIOS authoritative zones in the Infoblox Portal are synced to NIOS, and updates to authoritative zones in NIOS are immediately reflected in the Infoblox Portal. For more information, see *[Creating a Primary Zone under a NIOS View](https://docs.infoblox.com/space/BloxOneDDI/1127482422/Creating+a+Primary+Zone+under+a+NIOS+View)*.<br>##### **Universal DDI now supports updating certain fields in a NIOS-managed DHCP Config Profiles via the Infoblox Portal.**<br>Universal DDI allows you to update specific fields in a NIOS-managed DHCP config profile through the Infoblox Portal. Changes to these fields are immediately reflected in NIOS. For a list of modifiable fields, see *[Modifying a NIOS-managed DHCP Config Profile](https://docs.infoblox.com/space/BloxOneDDI/1128529947/Modifying+a+NIOS-managed+DHCP+Config+Profile)*. |
| 1/15/2025 | Universal DDI | ##### **NIOS-X as a Service now populates the location automatically when specifying the postal code for access location.**<br>When configuring an access location in NIOS-X as a Service, you can specify the postal code, and the location will be automatically displayed. For more information, see *[Creating As-a-Service](https://docs.infoblox.com/space/BloxOneDDI/682590236/Creating+As-a-Service)*.<br>##### **NIOS-X as a Service now allows applying tags for access locations.**<br>You can now apply tags when creating an access location in NIOS-X as a Service. There is a limit of 50 tags per access location. For more information, see *[Creating As-a-Service](https://docs.infoblox.com/space/BloxOneDDI/682590236/Creating+As-a-Service)*. |
| 1/13/2025 | Infoblox Threat Defense | **Enhancement:**<br>##### **Infoblox introduces an event selection field option for SOC Insights logs exported to Data Connector.**<br>This update features a new traffic flow widget in Data Connector, enabling users to select SOC Insights fields for HTTP destinations in non-DNS logs. For information, see Creating Traffic Flows and Log Source Configuration Export Options.<br>For more information, see *[Creating Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35438194)* and *[Log Source Configuration Export Options](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/1113718811)*. |
| 1/9/2025 | Universal DDI | **Enhancement:**<br>##### **Infoblox now supports granular selection for AWS and GCP when configuring Universal Asset Insights.**<br>Universal DDI supports granular selection for AWS (Organizational Units/Accounts) and GCP (Folders/Projects) when creating a network discovery configuration. You can select Organizational Units or Accounts for AWS and Folders or Projects for GCP. For more information, see *[AWS - Organizational Units/Accounts](https://docs.infoblox.com/space/BloxOneDDI/1107722260/AWS+-+Organizational+Units%2FAccounts)* and *[GCP - Folders/Projects](https://docs.infoblox.com/space/BloxOneDDI/1107853359/GCP+-+Folders%2FProjects)*. |
| 1/08/2025 | Universal DDI  
Infoblox Threat Defense | **Announcement: **<br>##### Infoblox has planned a deployment for additional security mechanisms on Thursday, January 23 at 6 PM PST to protect the Infoblox Portal.<br>Infoblox is deploying additional security mechanisms to protect the Infoblox Portal. During the deployment update on Thursday, January 23rd at 6 PM PST, the Infoblox Portal will remain available, and core services are unlikely to be impacted. |
| 12/11/2024 | Universal DDI  
Infoblox Threat Defense | **Enhancement:**<br>##### Infoblox now provides a new configuration landing page showing data for key services based on entitlement.<br>When users log on to the Infoblox Portal, the configuration landing page displays data for key services based on license entitlements.<br>##### The Infoblox Portal now displays the “What’s New” content in a new modal dialog.<br>This new dialog can be hidden by selecting the “Do not show me again” checkbox. |
| 12/10/2024 | Universal DDI  
Infoblox Threat Defense | **Enhancement:**<br>##### Infoblox bare-metal deployment now supports Red Hat version 9.5.<br>For more information, see *[Bare-Metal Deployment](https://docs.infoblox.com/space/BloxOneInfrastructure/204538556)*. |
| 11/28/2024 | Universal DDI | **Enhancement:**<br>##### Infoblox has launched the Network Discovery Blackout feature for Network Insight, allowing users to temporarily pause discovery operations according to a specified schedule.<br>When setting up the discovery service, you can now specify a duration to pause the discovery process. During this blackout period, no new discovery actions will occur on your network. For more information, see *[Creating Discovery - Blackout](https://docs.infoblox.com/space/BloxOneInfrastructure/996966442/Creating+Discovery+-+Blackout)*. |
| 11/25/2024 | Infoblox Threat Defense | **Enhancement:**<br>**Infoblox Threat Defense adds Unicode support for custom lists and internal domain lists.**<br>This enhancement allows users to input domains using Unicode characters in both custom lists and internal domain lists. For information, see *[Creating Custom Lists](https://docs.infoblox.com/space/BloxOneThreatDefense/35469424/Creating+Custom+Lists)* and *[Creating an Internal Domain](https://docs.infoblox.com/space/BloxOneThreatDefense/35375088/Creating+an+Internal+Domain)*.<br>**Infoblox Threat Defense introduces a feedback loop for Threat Intelligence (TI) Detectors.**<br>This feature enables users to activate, deactivate, and remove TI domains from their custom lists. For information, see *[Custom Lists](https://docs.infoblox.com/space/BloxOneThreatDefense/35473695/Custom+Lists)*. |
| 11/22/2024 | Infoblox Threat Defense | **Enhancement:**<br><span style="color: #262626">**Infoblox Threat Defense enhances the Application Discovery feature to improve the detection and blocking of generative AI applications.**</span><br>Infoblox is excited to announce significant enhancements to our Application Discovery feature within Threat Defense Advanced, now with improved capabilities to detect and block applications used for generative AI. Recognizing the high risk of data loss associated with unmanaged generative AI, these updates are designed to provide organizations with additional protection. The new functionality distinguishes between consumer and enterprise versions of select generative AI applications, allowing for approved use while blocking unmanaged consumer versions. This update helps you leverage the benefits of generative AI securely and efficiently.<br>These enhancements underscore Infoblox’s commitment to continuous innovation and delivering increased value to our customers. By integrating these advanced detection and blocking capabilities, organizations can mitigate the risks associated with shadow IT and data exfiltration, ensuring compliance and enhancing overall security posture. Customers will benefit from improved visibility and control over application usage, empowering them to make informed decisions and maintain a secure, compliant environment. You can find these detections in the Infoblox Platform (**Monitor** > **Reports** > **Security** > **Application Discovery**), under the Applications - Generative AI category. This category was previously named AI Chatbots. For information, see [Creating Application Filters](https://docs.infoblox.com/space/BloxOneThreatDefense/56656233/Creating+Application+Filters). |
| 11/22/2024 | Universal DDI | **Enhancement:**<br>##### NIOS-X as a Service provides the following enhancements: sorting and filtering data, auto-focusing on a particular service, and troubleshooting DNS issues through APIs.<br>- Users can now sort data by priority, A-Z or Z-A and filter by Service or Location with single or multiple values. For more information, see *[Sorting Services in the Navigation Pane](https://docs.infoblox.com/space/BloxOneDDI/1033961518/Sorting+Services+in+the+Navigation+Pane)* and *[Filtering Service and Location in the Navigation Pane](https://docs.infoblox.com/space/BloxOneDDI/1034682390/Filtering+Service+and+Location+in+the+Navigation+Pane)*.
- The Auto Focus icon allows users to focus on a selected service by hiding the rest of the data. For more information, see *[Focusing on a Specific Service](https://docs.infoblox.com/space/BloxOneDDI/1034223667/Focusing+on+a+Specific+Service)*.
- NIOS-X as a Service provides APIs to troubleshoot DNS issues using traceroute and dns_query. For more information, see the *[API documentation](https://csp.infoblox.com/apidoc)*. |
| 11/19/2024 | Universal DDI | **Enhancement:**<br>##### Universal DDI now supports updating DHCP objects imported from NIOS.<br>Universal DDI enables updates to DHCP objects imported from NIOS. Any changes made to NIOS objects in the Infoblox Portal are instantly reflected in NIOS. For more information, see [NIOS Objects Supported for Sync](https://docs.infoblox.com/space/BloxOneDDI/846856379/NIOS+Objects+Supported+for+sync).<br>##### Universal DDI now supports the wildcard character for MAC addresses in hardware filters.<br>Universal DDI supports using the wildcard character (*) to add or update MAC addresses in hardware filters. For more information, see [Creating IPv4 Hardware Filters](https://docs.infoblox.com/space/BloxOneDDI/186466697/Creating+IPv4+Hardware+Filters) and [Creating an IPv4 MAC Address in Large Selection Filter](https://docs.infoblox.com/space/BloxOneDDI/501547157/Creating+an+IPv4+MAC+Address+Large+Selection+Filter).<br>##### Universal DDI now supports DHCP objects in access views.<br>Universal DDI now supports managing DHCP objects within access views, alongside DNS and IPAM objects. For more information, see [Supported Objects for Access Views](https://docs.infoblox.com/space/BloxOneDDI/685146683/Supported+Objects+for+Access+Views). |
| 11/14/2024 | Infoblox Endpoint | **Enhancement:**<br>**Infoblox Endpoint version 2.4.20 is now available for Windows and macOS.**<br>This update introduces support for macOS Sequoia 15.0.1 and above, along with stability improvements and fixes for minor issues on both<br>- Test the upgrade on a small number of Mac computers first, rather than upgrading all machines at once.:Test the upgrade on a small number of Mac computers first, rather than upgrading all machines at once.
- For Macs with Infoblox Endpoints, upgrade a few computers initially, monitor for any issues, and only proceed with upgrading the remaining devices if no problems are detected.<br>Windows and macOS. For more information about Infoblox Endpoint, <span style="color: #172b4d">see </span><span style="color: #000000">*[Managing BloxOne Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*</span><span style="color: #172b4d">.</span> |
|  |  |  |
| 11/12/2024 | NIOS-X as a Service<br>Universal DDI | **Feature and Enhancements:**<br>**NIOS-X as a Service now provides an option for users to select a Recommended Point of Presence (PoP).**<br>NIOS-X as a Service introduces a new check box, “**Use Recommended Location**”, which, when selected, automatically chooses the most optimal Point of Presence (PoP). This feature is useful for configuring geographically distributed locations, as it calculates the optimal PoP for a quick response. By selecting this option, users can avoid manual calculations and let NIOS-X as a Service choose the PoP automatically. For more information see *[Creating NIOS-X As-a-Service](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/572228399)*.<br>**NIOS-X as a Service now allows users to modify custom network attributes for an existing service configuration.**<br>NIOS-X as a Service now allows users to modify Custom Network Attributes such as **KeyID, FQDN, or Email**. Users can update these attributes without the need to reconfigure the entire service. For more information, see *[Modifying As-a-Service](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/846660260)*.<br>**NIOS-X as a Service allows users to clear the DNS cache to resolve DNS issues. **<br>The **Clear DNS Cache **option has been added to the user interface, enabling users to clear the cache for each service deployment to resolve any DNS issues. For more information, see *[Clear DNS Cache](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/1005223966)*.<br>**NIOS-X as a Service allows users to clear leases to make them available for reuse. **<br>Users can now clear active and abandoned leases through the Infoblox Portal. When users clear an active or abandoned lease, its IP address becomes available for reuse. For more information, see *[Clear Lease](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/1005223979)*.<br>**NIOS-X as a Service now helps route site response traffic to the IPSec tunnel.**<br>The **Neighbor IP** feature ensures that organization site response traffic is routed unambiguously to the IPSec tunnel. For more information, see *[Creating As-a-Service](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/572228399)*.<br>**Universal DDI supports forwarding DNS queries between AWS and Azure cloud providers.**<br>In addition to the existing Outbound Cloud Forwarder, users can configure an inbound cloud forwarder to forward DNS queries from one cloud provider to another. For example, users can forward DNS queries from AWS to Azure and vice versa. For more information, see *[Configuring Cloud Forwarders](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/611943858)*. |
| 11/08/2024 | Infoblox Threat Defense | **Infoblox Dossier now treats DNS lame delegation as a vulnerability. **<br>Lame delegation occurs when one or more delegated nameservers fail to provide authoritative DNS information. When a lame delegation is detected on the queried domain, Dossier highlights this vulnerability along with the level at which this was detected, allowing customers to take appropriate action on the affected domain and nameserver.<br>For information, see *[Dossier Summary Report](https://docs.infoblox.com/space/BloxOneThreatDefense/271975496/Summary)*. |
| 11/07/2024 | Infoblox Universal DDI | **Feature:**<br>**Universal DDI now provides the option to configure an SNMP health check monitor for DNS Traffic Control.**<br>In addition to the existing ICMP, TCP, and HTTP monitors, Universal DDI now allows users to configure an SNMP health check monitor for DNS traffic control. For more information, see *[Creating SNMP Health Checks](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/996900867)**.  *<br>**Infoblox supports the discovery of endpoints connected to a DNS cloud forwarder configured in the Infoblox Portal.**<br>Users can now enable or disable the discovery of cloud forwarder endpoints when configuring Network Discovery for AWS or Azure. For more information, see *[Discovering Cloud Forwarder Endpoints](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/976093261)**. * |
| 10/23/2024 | Infoblox Universal DDI | **Enhancement:**<br>##### **The Infoblox Portal now displays status messages for the NIOS Grid Manager.**<br>New status messages related to the NIOS Grid Manager are now available in the **Monitor > Logs > Service Logs** tab on the Infoblox Portal. For more information on the status messages, see *[Viewing Service Logs for NIOS](https://docs.infoblox.com/space/BloxOneDDI/947683450/Viewing+Service+Logs+for+NIOS)*. |
| 10/21/2024 | <span style="color: #172b4d">Infoblox Universal DDI</span><br>Infoblox Threat Defense | ##### **Enhancement:**<br>##### **Infoblox now allows users to change the default password for the Device UI when configuring NIOS-X physical servers. This can be done through the Infoblox Portal, Device UI, or Debug CLI.**<br><span style="color: #172b4d">When deploying NIOS-X servers, Infoblox initially uses a default username and password for accessing the Device UI. Users can now change this default password via the Infoblox Portal, Device UI, or Debug CLI. Once changed, the new password will be synchronized across the console and Device UI, allowing for SSH and HTTPS access.</span> |
| 10/18/2024 | Infoblox Dossier | **Enhancement:**<br>##### **Infoblox Dossier now features streamlined false-positive reporting.**<br>The Infoblox Dossier feedback functionality has been updated to direct critical and blocking issues to the Support Portal for ticket creation and to the Infoblox support team for assistance with Service-Level Agreement (SLA) compliance. This functionality allows users to submit feedback on the following indicators: False Positive, False Negative, and Content Categorization.<br>For information, see *[Dossier Threat Research Feedback](https://docs.infoblox.com/space/BloxOneThreatDefense/230493737/Dossier+Threat+Research+Feedback)*. |
| 10/15/2024 | Universal DDI | **Feature:**<br>##### **Universal DDI introduces Passive Discovery, leveraging data from DHCP logs and Infoblox-managed endpoints to enhance visibility into your network devices.**<br>Using the ingested data, Passive Discovery, in conjunction with SOC Insights, generates reports that you can view on the SOC Insights Assets tab or the Monitor > Assets page of the Infoblox Portal, depending on your subscription. |
| 10/14/2024 | Infoblox Data Connector (EU only) | **Enhancement:**<br>##### **Data Connector updates have been deployed, aimed at enhancing capabilities and improving integration.**<br>The following Data Connector enhancements have been deployed:<br>1. Data Connector HTTP(s) destination for MS Sentinel and Splunk
2. CDC Events fields selection - Infoblox
3. Infoblox Portal/SOAR Light integration with “3rd party integration portal”
4. Infoblox Ecosystem entitlements - Data Flow Separation
5. Traffic can now flow directly from the Infoblox Cloud to a Cloud SEIM<br>For additional information, see *[Data Connector](https://docs.infoblox.com/space/BloxOneCloud/35428954/Data+Connector)*. |
| 10/11/2024 | Universal DDI | **Feature:**<br>##### **Universal DDI introduces the ability to view separate DHCP status for IPv4 and IPv6 networks**<br>You can now view the DHCP status separately for IPv4 and IPv6 networks. This feature will be functional once you update to the latest NIOS-X DHCP Server, version 4.3.1.6. |
| 10/02/2024 | Universal DDI | **Enhancement:**<br>##### **Universal Asset Insights introduces the ability to enable or disable IPAM Discovery when configuring Cloud Service Providers.**<br>When configuring Network Discovery for cloud service providers like AWS, Azure, and GCP, you can enable or disable sync for IPAM assets. When enabled, the IP address information of discovered assets will be synchronized with Universal IPAM. For more information, see *[AWS - Destination](https://docs.infoblox.com/space/BloxOneDDI/511575411/AWS+-+Destination)**, **[Azure - Destination](https://docs.infoblox.com/space/BloxOneDDI/511575448/Azure+-+Destination)**, **[GCP - Destination](https://docs.infoblox.com/space/BloxOneDDI/684557561/GCP+-+Destination)**. * |
| 9/24/2024 | Infoblox Data Connector | **Enhancement:**<br>##### **Data Connector introduces HTTP Destination support for Microsoft Sentinel.**<br>This enhancement facilitates the setup of Microsoft Sentinel as a destination in the Infoblox Platform. For more information, see *[Data Connector](https://docs.infoblox.com/space/BloxOneCloud/35428954/Data+Connector)*. |
| 9/18/2024 | Universal DDI | **Enhancement:**<br>##### **Universal DDI introduces service logs for Cloud Forwarders configured on the Infoblox Portal.**<br>Universal DDI now shows service logs for Cloud Forwarders, which support AWS, Azure, and GCP. For information, see *[Viewing Service Logs](https://infoblox-docs.refined.site/space/BloxOneInfrastructure/117834629/Viewing+Service+Logs)*. |
| 9/6/2024 | Infoblox Endpoint | **Enhancement**:<br>##### **Infoblox Endpoint releases version 2.4.16 for Windows and macOS**<br>This release addresses an issue with statically assigned DNS servers on network interfaces. For more information about BloxOne Endpoint, see *[Managing Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*. |
| 9/5/2024 | Infoblox Universal DDI<br>Infoblox Threat Defense | **Features and Enhancements:**<br>##### **Infoblox is pleased to announce a significant update to the Infoblox Portal (portal.infoblox.com), featuring a modern UX refresh designed to enhance your experience and productivity. (UI updates will be available for the EU Region users in October)**<br>This update introduces:<br>**Optimized Navigation Experience**: Our redesigned interface offers more intuitive and seamless navigation, allowing you to find what you need faster and more efficiently through the following enhancements:<br>- **Bespoke Lifecycles**:
  - **Monitoring lifecycle: **This lifecycle focuses on providing business visibility through custom asset, security, and networking monitor Workspaces. These workspaces are tailored to deliver real-time insights and visualizations, helping you keep a close eye on critical metrics and system health**.**
  - **Configuration lifecycle: **Optimized to configure and deliver network services efficiently, this lifecycle follows best practices to ensure smooth and effective network management. It simplifies complex configurations, making deploying and managing network services easier.
- **Improved Navigation Flows**: Core task focus areas such as Security, Network, and Administration are now more logically grouped. This logical grouping streamlines your workflow, making accessing the tools and information you need easier without unnecessary clicks or searches.
- **Industry-Standard Layouts**: User Profile options, Account selection, and Notifications have been redesigned to align with industry standards. This redesign enhances usability and consistency across the portal, providing a familiar and user-friendly experience.<br>**Enhanced Server and Service Deployment Management Workflows:**<br>- **Universal DDI Offering**: Introducing NIOS-X As-a-Service, a fully managed deployment solution that enables network protocol service delivery without the need for infrastructure investments. This new deployment type simplifies the process of delivering network services, allowing you to focus on your core business activities.
- **Dedicated Servers Section: **Users of traditional services will now find virtual and physical hosts under a dedicated Servers section. This section includes our next-generation NIOS-X servers (formerly BloxOne) and our industry-leading NIOS solution, providing a comprehensive view of your deployment infrastructure.
- **Manage NIOS with Universal DDI**: Single pane of glass management of NIOS Grids and Members directly within the Infoblox Portal<br>** Increased Visibility to Critical Metrics**:<br>Stay informed on key performance indicators with our new dashboards and KPIs, designed to provide clear and actionable insights:<br>- **Custom Workspaces**: Workspaces for Assets, Security, and Networking feature custom-designed monitors crafted by our industry experts. These monitors deliver out-of-the-box real-time visualizations of critical metric summaries, allowing users to quickly assess the health of their networking and security environment. With these insights, you can take immediate action without waiting for reports or updates.
- **Business KPI Ribbon**: A new Business KPI ribbon provides line-of-sight visibility into critical success metrics. This feature allows users to quickly understand the positive impact of the Infoblox market-leading DDI solution in securing critical business assets, providing 24x7 highly scalable network services, and offering centralized management across both cloud and on-premises deployments. |
| 9/5/2024 | Infoblox Universal DDI | **Enhancement:**<br>##### **Provide Tailored User Access with Access Views**<br>Access Views enables users to set custom fine-grained access rules for specified users or groups and associated DDI resources.<br>##### **Support for Read and Write Google Cloud DNS data**<br><span style="color: #000000">Infoblox Portal now supports the ability to read and write Google Cloud DNS zones and resource records. For more information, see </span><span style="color: #000000">*[Google Cloud Platform Integration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/684623293)*</span><span style="color: #000000">. </span> |
| 8/29/2024 | BloxOne Data Connector | **Enhancement:**<br>##### **Data Connector introduces BloxOne Cloud-to-Cloud SIEMs, emphasizing fully managed services with seamless integrations with third-party SaaS services.**<br>Key enhancements in this release:<br>- Facilitates the setup of a Syslog destination in BloxOne Cloud.
- Facilitates the setup of SOAR Light in BloxOne Cloud.
- Facilitates the setup of an HTTP Destination in BloxOne Cloud.<br>For more information, see *[Data Connector](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35428954)* and *[Infoblox Ecosystem](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/774931383)*. |
| 8/29/2024 | Infoblox Ecosystem | **Enhancement**:<br>##### **Infoblox Ecosystem now offers support for SOAR Light integrations running in BloxOne Cloud, enabling the automation of Cloud-to-Cloud workflows.**<br>Users have the ability to configure automated workflows, with service instance options specifically for setting up cloud-to-cloud flows. For more information, see *[Data Connector](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35428954)* and *[Infoblox Ecosystem](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/774931383)*. |
| 8/21/2024 | BloxOne DNS<br>BloxOne DHCP | **Enhancement**:<br>##### **BloxOne DDI introduces DHCP subnet profiles, enabling users to configure multiple subnets simultaneously.**<br>BloxOne DDI now supports the creation of DHCP subnet profiles, which can be configured with any required settings. These profiles can then be applied to multiple subnets simultaneously, streamlining the configuration process. For more information, see *[Configuring DHCP Subnet Profiles](https://docs.infoblox.com/space/BloxOneDDI/767918317)*. |
| 8/19/2024 | BloxOne Threat Defense | **Enhancement:**<br>##### <span style="color: #000000">**To enhance Threat Defense services, Infoblox has launched a new second-level infobloxtd.com domain along with additional IP addresses, 103.80.6.120 and 52.119.41.120.**</span><br><span style="color: #111111">Infoblox strongly recommends that all customers update their network configuration to enable access to the new IP addresses, the second-level domain, and all its subdomains. Infoblox plans to launch services utilizing these IP addresses and hostnames under </span><span style="color: #111111">**infobloxtd.com**</span><span style="color: #111111"> by mid-September 2024.</span> |
| 8/19/2024 | BloxOne Data Connector | **Enhancement:**<br>##### <span style="color: #000000">**Data Connector introduces additional event field options for Atlas Notification settings.**</span><br><span style="color: #111111">This update introduces a refined traffic flow widget in the Cloud Services Portal that allows users to choose subtypes and event fields seamlessly. For information, see </span><span style="color: #172b4d">*[Creating Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35367017)*</span><span style="color: #172b4d">*.*</span> |
| 8/14/2024 | BloxOne Data Connector | **Enhancement:**<br>##### <span style="color: #000000">**Data Connector introduces additional event field options for Audit Log settings.**</span><br>This update introduces a refined traffic flow widget in the Cloud Services Portal that allows users to choose subtypes and event fields seamlessly. For information, see <span style="color: #0052cc">*[Creating Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35438194)*</span>*.* |
| 8/9/2024 | BloxOne DDI | **Enhancement:**<br>##### **BloxOne DDI allows setting per-zone limits for rdatasets and rrtypes to prevent database query processing from slowing down.**<br><span style="color: #172b4d">An </span>`rdatatype`<span style="color: #172b4d"> (short for resource record type) refers to the specific type of resource record (RR) in the DNS. Each resource record in DNS has an associated type that indicates the kind of data it holds </span>for example type A , the IPv4 address of a host, or type MX , how to route mail. An `rdataset` refers to a set of resource records (RRs) of the same type for a specific domain name in the Domain Name System (DNS). <span style="color: #172b4d">Excessively large </span>`rdatasets`<span style="color: #172b4d"> or large numbers of </span>`rrtypes`<span style="color: #172b4d"> can slow down database query processing, so limits can be set on a per-zone basis. For more information on how to place limits, see </span><span style="color: #172b4d">*[Creating a Primary Zone](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681644)*</span><span style="color: #172b4d"> and </span><span style="color: #172b4d">*[Creating a Secondary Zone](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681610)*</span><span style="color: #172b4d">. </span> |
| 8/5/2024 | Infoblox Ecosystem | **Enhancement:**<br>##### **Infoblox launches the Infoblox Ecosystem Program.**<br>This program includes a self-service portal, offering certified, out-of-the-box integrations with leading technology providers. The program is powered by Automations, an event-driven automation framework designed to streamline integration development. These integrations have undergone rigorous testing and validation to ensure compatibility and support by Infoblox. The program aims to help NetOps and SecOps teams automate workflows, enhance security, and improve collaboration across on-premises, hybrid, and multi-cloud environments. For information, see *[Ecosystem Portal](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/774931383)*. |
| 8/2/2024 | BloxOne Data Connector | **Enhancement:**<br>##### **Data Connector now supports sending logs to an HTTP destination in Splunk CIM data format.**<br>When configuring a Data Connector traffic flow, you now have the option to choose Splunk CIM as the log message format when you configure HTTP as the destination. For information, see <span style="color: #0052cc">*[Setting Up HTTP](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/774504586)*</span>. |
| 8/2/2024 | BloxOne Mobile Endpoint | **Enhancement:**<br>##### **BloxOne Threat Defense releases BloxOne Mobile Endpoint for iOS without VPN dependency.**<br>To improve compatibility with VPN solutions, including on-demand VPN, BloxOne Mobile Endpoint for iOS will be able to use the iOS native DNS proxy framework to intercept all DNS traffic. Requirements: iOS/iPadOS 14.x and later, deployment by an MDM.For more information about BloxOne Mobile Endpoint, see *[Managing BloxOne Mobile Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470955)*[.](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470955) |
| 8/1/2024 | BloxOne Data Connector | **Enhancement:**<br>##### **Infoblox introduces event selection field options for BloxOne Threat Defense DNS Query/Response log, BloxOne Threat Defense Policy Hits log, BloxOne DDI DNS Query/Response log, and Service Logs exported by Data Connector**<br>This update introduces a refined traffic flow widget in the Cloud Services Portal that allows users to choose subtypes and event fields seamlessly. For information, see <span style="color: #000000">see </span>[Creating Traffic Flows](https://docs.infoblox.com/space/BloxOneThreatDefense/35438194)<span style="color: #0052cc"> </span>and [Event Field Logs](https://docs.infoblox.com/space/BloxOneThreatDefense/770048012). |
| 7/29/2024 | BloxOne DDI<br>BloxOne ThreatDefense | **Enhancement:**<br>##### **BloxOne DDI introduces service logs for Cloud Discovery.**<br>BloxOne DDI now shows service logs for Cloud Discovery, which includes AWS and Azure. For information, see *[Viewing Service Logs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397318)*. |
| 7/27/2024 | BloxOne DDI | **Enhancement:**<br>**The BloxOne DDI DNS service addresses the following vulnerabilities: **CVE-2024-4076, CVE-2024-1737, CVE-2024-0760, CVE-2024-1975<br>- [CVE-2024-4076](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-4076): Assertion failure when serving both stale cache data and authoritative zone content.
- [CVE-2024-1737](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-1737): BIND’s database will be slow if a very large number of resource records exist at the same name. <span style="color: #333300">***There is a limit of 500 resource records of the same type and name within a single zone. Exceeding this limit is not rejected on the Cloud Services Portal, but the on-premise DNS servers will refuse to load zones containing such records.***</span>
- [CVE-2024-0760](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-0760): A flood of DNS messages over TCP may make the server unstable.
- [CVE-2024-1975](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-1975): SIG(0) can be used to exhaust CPU resources. |
| 7/26/2024 | BloxOne Endpoint | <span style="color: #172b4d">**Enhancement:**</span><br>##### **BloxOne Endpoint releases version 1.0.9 for Linux Ubuntu 22.**<br>This release includes stability improvements. For more information about BloxOne Endpoint, see <span style="color: #0052cc">*[Managing Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*</span>. |
| 7/24/2024 | Cloud Services Portal | <span style="color: #172b4d">**Enhancement:**</span><br>##### **To enhance security, the host API keys have been deprecated. However, users can still access the BloxOne APIs using the service API keys.**<br>For information about service API keys, see [Configuring Service API Keys](https://docs.infoblox.com/space/BloxOneThreatDefense/35407860). |
| 7/23/2024 | BloxOne Endpoint | <span style="color: #172b4d">**Enhancement:**</span><br>##### <span style="color: #172b4d">**BloxOne Endpoint releases version 2.4.10 for Windows and macOS.**</span><br><span style="color: #000000">This release includes stability improvements and resolves minor issues. For more information about BloxOne Endpoint, see </span><span style="color: #000000">*[Managing Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*</span><span style="color: #000000">.</span> |
| 7/19/2024 | BloxOne DNS | Features and Enhancements:<br>##### <span style="color: #172b4d">**NIOS Grid Connector now syncs Forward Name Server Group, and Name Server Group Association to the Cloud Services Portal.**</span><br><span style="color: #172b4d">NIOS Grid Connector has been enhanced to sync additional objects from NIOS to the Cloud Services Portal such as Forward Name Server Group and Name Server Group Association. For more information, see </span><span style="color: #172b4d">*[Objects Imported from NIOS](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/735609160)*</span><span style="color: #172b4d">.</span><br>##### <span style="color: #172b4d">**BloxOne DDI supports configuring exceptions during DNSSEC validation.**</span><br><span style="color: #172b4d">For more information, see </span><span style="color: #172b4d">*[Enabling Signature Validation](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/450461734)*</span><span style="color: #172b4d">*.*</span><span style="color: #172b4d"> </span><br>##### <span style="color: #172b4d">**DNS Traffic Control supports additional record types for load balancing.**</span><br><span style="color: #172b4d">DNS Traffic Control now supports SRV, SVCB (Type64), and HTTPS (Type65) for load balancing. For more information, see </span><span style="color: #172b4d">*[Configuring DNS Traffic Control](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/567967799)*</span><span style="color: #172b4d">.</span> |
| 7/12/2024 | Cloud Services Portal | **Enhancement:**<br><span style="color: #000000">BloxOne introduces tagging enhancements that </span><span style="color: #242424">restrict </span><span style="color: #000000">tag values displayed during tag addition, application, and filtering to those currently assigned to objects. Additionally, predefined tag values can now be defined through restricted tags, instead of freeform tags. T</span><span style="color: #242424">o explicitly add values to a freeform tag, convert the tag to a restricted tag first. </span><span style="color: #000000">For more information, see </span><span style="color: #000000">*[Managing Tags](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186745865)*</span><span style="color: #000000">.</span> |
| 6/21/2024 | Cloud Services Portal | <span style="color: #172b4d">**Enhancement:**</span><br><span style="color: #172b4d">**BloxOne enhances the performance and usability of Global Search on the Cloud Services Portal, making it easier and faster for users to find what they need.**</span><br><span style="color: #172b4d">Global search includes the following enhancements:</span><br>- <span style="color: #172b4d">Users can now start a search by pressing the </span><span style="color: #172b4d">**Enter**</span><span style="color: #172b4d"> key after entering key words.</span>
- <span style="color: #172b4d">Quick results will display the top three relevant results.</span>
- <span style="color: #172b4d">Users will see two groups of results: one for </span><span style="color: #172b4d">**Exact Matches**</span><span style="color: #172b4d"> and the other for </span><span style="color: #172b4d">**Related Results**</span><span style="color: #172b4d">.</span>
- <span style="color: #172b4d">Exact match results will appear within a second.</span>
- <span style="color: #000000">Related results will be visible within a few seconds.</span> |
| 6/20/2024 | BloxOne DNS | **Enhancement:**<br>**The BloxOne DDI DNS service addresses the following vulnerabilities: **CVE-2023-48795 and CVE-2023-44487.<br>- [CVE-2023-48795](https://nvd.nist.gov/vuln/detail/CVE-2023-48795): The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks.
- [CVE-2023-44487](https://nvd.nist.gov/vuln/detail/CVE-2023-44487): The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly. |
| 5/27/2024 | BloxOne Endpoint | <span style="color: #172b4d">**Enhancement:**</span><br><span style="color: #172b4d">**BloxOne Endpoint releases version 2.4.9 for Windows and MacOS.**</span><br><span style="color: #172b4d">This release includes stability improvements and </span><span style="color: #000000">resolves minor issues</span><span style="color: #172b4d">. For information, see </span><span style="color: #000000">*[Managing BloxOne Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*</span><span style="color: #172b4d">.</span> |
| 5/9/2024 | BloxOne Threat Defense | **Feature and Enhancement:**<br>**BloxOne Threat Defense introduces a new RPZ feed structure that provides simplicity and user-friendly feed names.**<br><span style="color: #323338">B</span><span style="color: #000000">loxOne Threat Defense for NIOS now includes a new RPZ feed structure that provides simplicity, along with user friendly names, allowing users to set the correct policies and address the growing number of available RPZs over time</span><span style="color: #323338">. With the new structure, customers </span><span style="color: #000000">can</span><span style="color: #323338"> configure their polic</span><span style="color: #000000">y action correctly per their </span><span style="color: #323338">risk posture and have an “at a glance” understanding of how their network is protected. </span><span style="color: #000000">This requires removing the prior configured RPZ feeds and updating them to the consolidated new RPZs. The old RPZs will be supported until December 2024, giving time for transition to the new RPZ. The old RPZs will be deprecated after December 2024. Beyond the current RPZ updates for OnPrem, the feeds on the cloud will also be updated to reflect the same feed structure around July 2024.</span><br><span style="color: #000000">Configuration Guide: </span><span style="color: #000000">*[https://docs.infoblox.com/space/BloxOneThreatDefense/622493764/Feed+Revamp+for+NIOS](https://docs.infoblox.com/space/BloxOneThreatDefense/622493764/Feed+Revamp+for+NIOS)*</span><span style="color: #000000">.</span> |
| 5/3/2024 | BloxOne DDI | **Enhancement:**<br>**High Availability now supports an IPv6 Service Instance for Active/Active and Active/Passive configurations.**<br>High availability now supports an IPv6 subnet Service Instance in addition to the existing IPv4. The IPv6 support is applicable to Active/Active and Active/Passive configurations. For more information, see *[Configuring HA Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186466781)**.*<br>##### DNS Traffic Control now allows HTTP/HTTPs Response control health checks to search strings in the header, body, and create regular expressions.<br>BloxOne DDI now allows you to configure HTTP/HTTPs response control health checks by searching for a string in header, body, header/body. You can also create regular expressions for the header. For more information, see *[Creating HTTP Health Checks](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/567869562)*.<br>##### Additional objects can now be synced from NIOS to BloxOne DDI through the NIOS Grid Connector.<br>Additional IPAM and DNS objects are now sent from NIOS to BloxOne DDI, when you enable the NIOS Grid Connector. For more information, see *[Enabling the NIOS Grid Connector Service](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186876116)**.* |
| 5/1/2024 | BloxOne Threat Defense | <span style="color: #0d0d0d">**Enhancement: **</span><br><span style="color: #0d0d0d">**The default time filter in BloxOne Threat Defense reports has been updated from one hour to 24 hours.**</span><br><span style="color: #172b4d">The default time filter change applies to the following reports: DNS Activity, Security Activity, Summary Reports, Application Discovery, and Web Content Discovery. A one hour reporting option is still available, but it is no longer the default. The default time filter setting benefits our customers by </span><span style="color: #000000">improving the performance of the rendering reports.</span> |
| 4/30/2024 | BloxOne Threat Defense | <span style="color: #000000">**Feature: **</span><br>**BloxOne Threat Defense introduces Infoblox Threat Intel research with supporting documentation on threat actor naming conventions.**<br><span style="color: #172b4d">Threat intelligence research encompasses current analyses, alerts, advisories, and various reports compiled by the Infoblox Threat Intel team. This page highlights the threat actors discovered in your network. For each threat actor, the page also displays how early Infoblox discovered it in your network. Accompanying this information is detailed documentation that outlines the team's specific naming conventions serving as a valuable reference source for users.</span><span style="color: #111111"> </span>For information, see *[Threat Intel](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/611745916)* and *[Infoblox Threat Actor Naming Conventions](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/610861663)*. |
| 4/29/2024 | BloxOne Threat Defense | <span style="color: #000000">**Feature and Enhancement: **</span><br><span style="color: #000000">**Infoblox is introducing a new, real-time streaming detection called "Zero Day DNS."**</span><br><span style="color: #000000">Threat Insight – Zero Day DNS (Zero Day DNS) detects new domains observed in customer traffic to protect them from any possible targeted or spear phishing attacks. It follows a low-regret model and blocks the domain for a short TTL of 48 hours. The domain will be released after 48 hours, by which time other security systems in place should have enough information about this new domain to protect per policy. The default recommended action for this TI-List is Block - No Redirect. The intent of this detection is to provide very near real-time protection on new domains (can detect and block within 1-2 minutes of usage). Often when new domains are not mission-critical and following a low-regret model, it's best to have this protection in place. If for any reason the detected domains are known, verified, and needed for use, they can be added to the Default Allow list to bypass the detection. For information, see </span>*[Zero Day DNS Configuration](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Zero%20Day%20DNS%20Configuration)**.* |
| 4/29/2024 | BloxOne Threat Defense | <span style="color: #000000">**Enhancement:**</span><br><span style="color: #000000">**BloxOne Threat Defense introduces external networks verification.**</span><br><span style="color: #000000">This feature allows BloxOne Threat Defense Business Cloud and Advanced customers to conveniently claim all their existing external networks, ensuring exclusive registration rights for subnets, and assuring no one else can register them in the database. This enhanced external network management capability permits the addition of large subnets (up to /8 for IPv4 and /32 for IPv6) with Infoblox's verification. Smaller subnets (ranging from /30 to /32 for IPv4 and from /56 to /128 for IPv6) can be added without verification. For information, see Configuring External Networks. For information, see </span><span style="color: #000000">*[Configuring External Networks](https://docs.infoblox.com/space/BloxOneThreatDefense/35473665/Configuring+External+Networks)*</span><span style="color: #000000">.</span> |
| 4/29/2024 | BloxOne Threat Defense | <span style="color: #000000">**Enhancement:**</span><br><span style="color: #000000">**Infoblox announces the phase-out of the "Allow with Log" action support for content category filtering.**</span><br><span style="color: #000000">This change will affect only newly created policies and policy rules, ensuring that existing security policies remain unaffected. Customers can continue to modify and apply their current policies as usual without any adjustments to already provisioned rules. However, it will not be possible to establish new rules or policies incorporating the allow-log action for content categories moving forward. For information, see </span><span style="color: #000000">*[Creating Category Filters](https://docs.infoblox.com/space/BloxOneThreatDefense/56656287/Creating+Category+Filters)*</span><span style="color: #000000">.</span> |
| 4/29/2024 | BloxOne Threat Defense | <span style="color: #000000">**Enhancement:**</span><br><span style="color: #000000">**BloxOne Threat Defense introduces agentless implementation over DoH.**</span><br><span style="color: #000000">With this update, BloxOne Threat Defense can now terminate DoH connections and associate custom DoH FQDNs with specific customer policies. This allows customers to securely redirect their DNS traffic to the BloxOne Threat Defense cloud without a client and integrate our solution with third-party solutions. For information, see </span>*[Configuring Security Policies](https://docs.infoblox.com/space/BloxOneThreatDefense/35371559/Configuring+Security+Policies)*<span style="color: #000000">.</span> |
| 4/29/2024 | BloxOne Threat Defense | <span style="color: #000000">**Feature and Enhancement: **</span><br><span style="color: #000000">**BloxOne Threat Defense has updated its policy framework to address potential DNS rebinding attacks.**</span><br><span style="color: #000000">This update addresses attacks like DNS rebinding attacks where attackers use a malicious DNS server for reconnaissance when attempting to connect to internal services. By setting a low TTL, attackers cause the DNS record to expire quickly, leading to frequent queries that switch to internal network IP addresses. This allows them to bypass security measures, enabling harmful actions or data extraction. For information, see Configuring Security Policies. For information, see </span><span style="color: #000000">*[Configuring Security Policies](https://docs.infoblox.com/space/BloxOneThreatDefense/35371559/Configuring+Security+Policies)*</span><span style="color: #000000">.</span> |
| 4/29/2024 | BloxOne Endpoint | <span style="color: #000000">**Enhancement: **</span><br><span style="color: #000000">**BloxOne Endpoint has released several bug fixes for Linux Ubuntu 22. **</span><br><span style="color: #172b4d">These updates include correcting the MAC address during the login process and avoid any vulnerability of Stack canary protection, among other updates. For information, see </span><span style="color: #172b4d">*[Linux Client Application Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/297666539)*</span><span style="color: #172b4d">.</span> |
| 4/12/2024 | Cloud Services Portal | **Enhancement**:<br>**BloxOne consolidates notifications for host-related events, optimizing efficiency and improving system performance.**<br><span style="color: #172b4d">When configuring BloxOne notifications, you can now choose </span><span style="color: #172b4d">**Host Status Infra**</span><span style="color: #172b4d"> to receive important events related to the supported host metrics. The former </span><span style="color: #172b4d">**Host State**</span><span style="color: #172b4d"> option will no longer be available. This enhancement helps improve system performance and reduce the number of notifications you will receive. For information, see </span><span style="color: #172b4d">*[Configuring Notification Delivery](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35398691)*</span><span style="color: #172b4d">.</span> |
| 4/11/2024 | BloxOne Threat Defense  
BloxOne DDI | **Enhancement: **<br><span style="color: #000000">**This release of the BloxOne Data Connector includes a few enhancements: relocation of the Data Connector tab from the Manage tab to the Integrations tab on the Cloud Services Portal, a new traffic flow configuration wizard, and the ability to add tags.**</span><br><span style="color: #000000">In addition to the relocation of the </span><span style="color: #000000">**Data Connector**</span><span style="color: #000000"> tab from the </span><span style="color: #000000">**Manage**</span><span style="color: #000000"> tab to the </span><span style="color: #000000">**Integrations**</span><span style="color: #000000"> tab, other enhancements include the release of a new traffic flow configuration wizard to improve workflow efficiency and the capability to add tags to traffic flows, sources, destinations, and ETL configurations. For information, see </span><span style="color: #000000">*[Data Connector](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35428954)*</span><span style="color: #000000">.</span> |
| 4/5/2024 | BloxOne Threat Defense  
BloxOne DDI | **Enhancement**:<br>**BloxOne introduces enhancements that streamline account management across multiple organizations.**<br><span style="color: #172b4d">The enhancements are particularly beneficial </span><span style="color: #1d1c1d">for administrators managing multiple organizations or sandboxes, simplifying t</span><span style="color: #172b4d">he process of accessing and controlling subsidiary organizational accounts. The enhancements also overhaul the Cloud Services Portal's current account-switching feature by introducing an improved account selection menu that can handle hundreds of organizational accounts and includes a search and filter function for better organizational account management.</span><br><span style="color: #172b4d">Additional enhancements include the following:</span><br>- <span style="color: #172b4d">Administrators managing multiple </span><span style="color: #1d1c1d">organizations</span><span style="color: #172b4d"> can set a default account, which is automatically accessed upon the initial connection to the Cloud Services Portal after authentication.</span>
- Administrators are able to specify favorite organizations, which are prominently displayed at the top of the account selection window/menu for quick and easy access.<br>For additional information, see <span style="color: #172b4d">*[Managing BloxOne Accounts](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/573146613)*</span><span style="color: #172b4d">.  </span> |
| 4/4/2023 | BloxOne Data Connector | **Enhancement**:<br><span style="color: #172b4d">**Infoblox Data Connector supports forwarding of **</span><span style="color: #1d1c1d">**BloxOne **</span><span style="color: #172b4d">**DHCP lease logs to a NIOS reporting destination.**</span><br><span style="color: #0d0d0d">Infoblox Data Connector now allows you to forward BloxOne DHCP lease logs to NIOS reporting, streamlining network administration workflows and enhancing efficiency.</span><span style="color: #1d1c1d"> </span><span style="color: #111111">For more information, see </span><span style="color: #1d1c1d">*[Configuring Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375761)*</span><span style="color: #1d1c1d">*.*</span> |
| 3/22/2024 | BloxOne DDI | **Feature and Enhancement**<br>**The IPAM/DHCP pages on the Cloud Services Portal have the following improvements: Local search is now above the list of objects; a new filter icon is next to the local search; and the save filter icon features a drop-down menu.**<br>- Local search has been relocated above the list of objects, accompanied by the text “Find in list.” When selected, local search expands to provide additional space to enter keywords.
- A redesigned filter icon has been relocated above the list of objects next to the local search.
- The save filter icon has been updated from a floppy disk icon, featuring a drop-down menu that contains a list of saved filters.<br>**BloxOne DDI now offers the capability to disable Echo Client ID in the global DHCP configuration for backward compatibility with older devices. **<br>BloxOne DDI allows you to deactivate Echo Client ID in the global DHCP configuration, ensuring seamless DHCP response for clients that cannot accept a response with a Client ID. For additional details, see the *[Advanced Configuration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/220104221)* section. |
| 3/14/2024 | BloxOne Endpoint | **Enhancement**:<br><span style="color: #172b4d">**BloxOne Endpoint supports deferred deployment scheduling options. **</span><span style="color: #172b4d"> </span><br><span style="color: #172b4d">A new deferred deployment schedule option for BloxOne Endpoint for Windows, MacOS, and Linux is available, allowing endpoint upgrades to be postponed by the endpoint group. Deployment can be deferred for up to four weeks, with the option to select deployment </span><span style="color: #172b4d">*day of week and time, *</span><span style="color: #172b4d">independent of the release date. BloxOne Endpoint for iOS and Android will request and validate a user’s email during manual installation when an MDM service is not used for the deployment. This simplifies and improves user notification, compromised device tracking, access restrictions (by listing trusted domains), and general consumption. For information, see </span><span style="color: #172b4d">*[Scheduling Endpoint Group Updates](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374562)*</span><span style="color: #172b4d">.</span> |
| 3/14/2024 | BloxOne Mobile Endpoint | <span style="color: #172b4d">**Enhancement:**</span><br><span style="color: #172b4d">**BloxOne Mobile Endpoint validation of user email ID during manual installation (no MDM feature). **</span><br><span style="color: #172b4d">BloxOne Moblie Endpoint adds validation of the user’s email during manual installation when an MDM service  is not used for the deployment. This simplifies and improves user notification, compromised device tracking, access restrictions (by listing trusted domains), and general consumption. For information, see </span><span style="color: #172b4d">*[Deployment of MDM-less Mobile Endpoint (no MDM feature)](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/429293681)*</span><span style="color: #172b4d">. </span> |
| 3/8/2024 | Cloud Services Portal | **Enhancement**:<br>**DNS Point of Presence - U.S./Ohio **<br>Infoblox adds PoP for DNS resolution in the U.S./Ohio to speed resolution, improve resiliency, and provide local resolution for organizations in that region. |
| 2/23/2024 | BloxOne Threat Defense | **Enhancement:**<br>**AWS S3 RPZ log export now includes three additional fields: "key," "sld," and "extra." **<br>RPZ logs exported to AWS S3 and <span style="color: #000000">the object storage servic</span>e will be updated to include additional fields: "key," "sld," and an "extra" field to provide additional metadata such as username, client region and country, endpoint group, response, etc. <span style="color: #172b4d">This RPZ log export enhancement uses a different output path on the customers' S3 bucket ( </span><span style="color: #1d1c1d">/ rpz_enriched / year=xxxx / month=xx / day=xx /hour=xx </span><span style="color: #172b4d">). For information, see </span>*[Log File Format](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35376649)*<span style="color: #172b4d">.</span> |
| 2/17/2024 | BloxOne DNS<br>BloxOne DHCP | **Feature and Enhancement**:<br>**DHCP Fingerprints are optimized with new fingerprint rules.**<br>BloxOne DDI now supports an optimized fingerprint database with updated fingerprint rules that provide better identification. For more information, see *[Configuring DHCPv4 Fingerprints](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713970)*.<br>**The BloxOne DDI DNS service addresses the following vulnerabilities: CVE-2023-4408, CVE-2023-5517, CVE-2023-5679, CVE-2023-5680, CVE-2023-6516, CVE-2023-50387, and CVE-2023-50868**<br>**DNS Version: 3.5.7**  
**BIND Version:  **<span style="color: #000000">**9.18 with custom feature changes and security patches**</span><br>- <u>[CVE-2023-4408](https://kb.isc.org/v1/docs/cve-2023-4408)</u><u>:</u> Parsing large DNS messages may cause excessive CPU load.
- [CVE-2023-5517](https://kb.isc.org/v1/docs/cve-2023-5517): Querying RFC 1918 reverse zones may cause an assertion failure when nxdomain-redirect is enabled.
- [CVE-2023-5679](https://kb.isc.org/v1/docs/cve-2023-5679): Enabling both DNS64 and serve-stale may cause an assertion failure during recursive resolution.
- [CVE-2023-5680](https://kb.isc.org/v1/docs/cve-2023-5680): Cleaning an ECS-enabled cache may cause excessive CPU load.
- [CVE-2023-6516](https://kb.isc.org/v1/docs/cve-2023-6516): Specific recursive query patterns may lead to an out-of-memory condition.
- [CVE-2023-50387](https://kb.isc.org/v1/docs/cve-2023-50387): KeyTrap - Extreme CPU consumption in DNSSEC validator.
- [CVE-2023-50868](https://kb.isc.org/v1/docs/cve-2023-50868): Preparing an NSEC3 closest encloser proof can exhaust CPU resources. |
| 2/16/2024 | BloxOne DHCP | **Enhancement**:<br>**BloxOne DDI can now filter lease based on Global MAC Pool.**<br>BloxOne DDI supports filtering DHCP leases based on the Global MAC Pool imported from a CSV file. For more information, see *[Creating an IPv4 MAC Address Large Selection Filter](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/501547157)*. |
| 2/16/2024 | BloxOne Threat Defense | **Feature:**<br>**SOC Insights for BloxOne® Threat Defense enhances SOC efficiency by utilizing AI-driven analytics to effectively reduce alert fatigue and security gaps while also decreasing Mean Time to Respond (MTTR).**<br><span style="color: #000000">By distilling vast numbers of alerts into crucial insights, analysts can prioritize and address critical issues more efficiently and effectively. SOC Insights further empowers analysts with instant access to relevant network, event, and DNS intelligence, allowing for speedy, informed decision-making and accelerated incident response and threat mitigation. </span><span style="color: #1d1c1d">SOC Insights is offered as an optional feature for both BloxOne Threat Defense Advanced and BloxOne Threat Defense for BloxOne Business Cloud customers. </span><span style="color: #000000">Additionally, Configuration Insights is automatically integrated into all existing BloxOne Threat Defense Business Cloud and Advanced user accounts, offering guidance on optimal detection settings and adherence to best practices. </span><br><span style="color: #1d1c1d">Customers interested in exploring this feature can reach out to the sales team to request a trial. For information, see </span><span style="color: #1d1c1d">*[SOC Insights](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=SOC%20Insights)*</span><span style="color: #1d1c1d">.</span> |
| 2/5/2024 | BloxOne DNS<br>BloxOne DHCP | **Enhancement**:<br><span style="color: #000000">**BloxOne users can now create and manage host configuration templates in the Cloud Services Portal. **</span><br><span style="color: #000000">Templating enables users to quickly deploy additional hosts/deployments with a consistent configuration as well as centralize future changes to a group of hosts from a single change within the template. For information, see </span>*[Configuring Templates](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/149160274)*<span style="color: #000000">.</span> |
| 2/1/2024 | BloxOne Endpoint | <span style="color: #172b4d">**Enhancement:**</span><br><span style="color: #172b4d">**BloxOne Endpoint for Windows support for Join Tokens**</span><br><span style="color: #172b4d">The latest update to the BloxOne Endpoint for Windows, version 2.4.6, introduces a new authentication method using join tokens. This enhancement significantly boosts security by enabling users to control endpoint access to the Cloud Service Portal through the use of rotating tokens. Rotating join tokens help prevent unauthorized access if an install package is leaked, for example. The server side of the authentication process is designed to be backward compatible, ensuring a smooth migration. Additionally, the same join token can be utilized across endpoint deployments for Mac, Linux, iOS, and Android. For information, see </span><span style="color: #0052cc">*[Configuring Join Tokens for Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/401933130)*</span><br><span style="color: #172b4d">**BloxOne Endpoint for Mac support for Join Tokens**</span><br><span style="color: #172b4d">The latest update to the BloxOne Endpoint for Mac, version 2.4.6, introduces a new authentication method using join tokens. This enhancement significantly boosts security by enabling users to control endpoint access to the Cloud Service Portal through the use of rotating tokens. Rotating join tokens help prevent unauthorized access if an install package is leaked, for example. The server side of the authentication process is designed to be backward compatible, ensuring a smooth migration. Additionally, the same join token can be utilized across endpoint deployments for Windows, Linux, iOS, and Android. For information, see </span><span style="color: #0052cc">*[Configuring Join Tokens for Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/401933130)*</span><span style="color: #172b4d">*.*</span> |
| 1/31/2024 | BloxOne DNS<br>BloxOne DHCP | **Enhancement**:<br><span style="color: #000000">BloxOne users can now create and manage host configuration templates in the Cloud Services Portal.  Templating enables users to quickly deploy additional hosts/deployments with a consistent configuration as well as centralize future changes to a group of hosts from a single change in within the template. For information, see </span><span style="color: #000000">*[Configuring Templates](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/149160274)*</span><span style="color: #000000">.</span> |
| 1/29/2024 | BloxOne Data Connector | **Enhancement:**<br>**The Cloud Services Portal now provides enhanced viewing and export options for service logs from the Data Connector.**<br>- Logs from the Data Connector are now accessible for both viewing and downloading through the Cloud Services Portal.
- The Data Connector has the capability to export service logs to all supported destinations, including integration with SIEM (Security Information and Event Management) systems.<br>For information, <span style="color: #1d1c1d">see </span>*[BloxOne Notifications](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397120)* and *[Configuring Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397475)*. |
| 1/27/2024 | BloxOne DHCP | **Maintenance:**<br>**DHCP Software Update**<br>The DHCP software update is part of our routine maintenance schedule  to provide important, security-focused updates and additional enhancements to improve the stability of these critical services.<br>During this update, the DHCP service running on the hosts may experience temporary unavailability for up to **30 seconds**. All other services will remain unaffected.<br>**Reminder:** Customers can [schedule and/or defer](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/184583758) software updates for a time that’s most convenient to help minimize the potential business impact an interruption may cause. Customers can also reach out to <u>[Infoblox Support](https://www.infoblox.com/support/faq/)</u> for additional details. |
| 1/26/2024 | BloxOne DNS<br>BloxOne DHCP | **Enhancement**:<br><span style="color: #172b4d">**To prevent a mismatch between the host of a subnet and range, BloxOne DDI now validates that a subnet and its range use the same BloxOne host.**</span><br><span style="color: #172b4d">BloxOne DDI ensures that a subnet and its range use the same BloxOne host. This helps prevent a scenario where a mismatch occurs between the host of a subnet and its range. </span>For more information, see *[Creating Address Ranges](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186747108)*. |
| 1/17/2024 | BloxOne Dossier | **Enhancement:**<br>**BloxOne introduces the redesign of the Dossier summary and timeline page.**<br>The updated design now presents timeline events in a clear chronological order, using a vertical format for easier reference. Additionally, the redesign includes detailed event information linked to each timeline occurrence, streamlining the process of tracking and managing events within your organization. This enhancement aims to improve the user experience and facilitate more efficient detection, monitoring, and managing of reported threat indicators.<br>For information about Dossier, see *[The Dossier Threat Indicator Report](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/230493467)*. |
| 1/16/2024 | Cloud Services Portal | **Feature and Enhancement**:<br>**BloxOne supports host deployment using generation 2 virtual machines on Hyper-V/Azure.**<br>BloxOne now supports generation 2 VMs when you deploy BloxOne hosts in Microsoft Azure. For more information, see <span style="color: #0c64c0">*[Microsoft Azure Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/204800676)*</span>.<br>**BloxOne supports adding host tags associated with the Cloud Services Portal during BloxOne host deployments.**<br>When you deploy a BloxOne host, you can add a host tag to the "userdata" file to associate the host with the Cloud Services Portal. For more information, see *[YML and JSON Templates](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35408412)*.<br>**BloxOne supports firmware updates on **<span style="color: #000000">**Dell VEP-1425, Dell VEP-1485, and Infoblox B1-212 hardware appliances**</span>**.**<br>To upgrade the firmware on Dell VEP-1425, Dell VEP-1485, and Infoblox B1-212 appliances, you can now download firmware upgrades and apply a firmware upgrade script via the debug CLI or a USB flash drive. For more information, see <span style="color: #0c64c0">*[Updating Firmware on Hardware Appliances](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/453017617)*</span>.<br><span style="color: #000000">**BloxOne host deployment on Google Cloud Portal (GCP) now supports IPv6.**</span><br><span style="color: #000000">      For information, see </span>*[Google Cloud Portal (GCP) Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/350027851)*<span style="color: #000000">.</span> |
| 1/10/2024 | BloxOne DNS<br>BloxOne DHCP | **Enhancement:**<br>**BloxOne DDI now supports importing private zones from Azure DNS as forward zones.**  
When you configure Azure DNS private zones to be served from a BloxOne host in Cloud Services Portal, you can get the queries forwarded to Azure DNS to get most recent results, without waiting for the sync. For more information, see *[Importing AWS Private NIOS-X Servered Zones as Read/Write Forward Zones](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/391545530)*.<br>**The Cloud Services Portal supports a split view feature for viewing private zones and public zones from AWS Route 53.**<br>With the Split View feature, you can get AWS Route 53 public hosted zones and private hosted zones to be served from two separate DNS views, allowing the capability for Split-horizon DNS. For more information, see *[Enabling Split View](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/444039264)*. |
| 1/5/2024 | BloxOne Endpoint | **Enhancement:**<br>**BloxOne Endpoint for Linux support for Join Tokens**<br>The latest update to the BloxOne Endpoint for Linux, version 1.0.7, introduces a new authentication method using join tokens. This enhancement significantly boosts security by enabling users to control endpoint access to the Cloud Service Portal through the use of rotating tokens. <span style="color: #000000">Rotating join tokens help prevent unauthorized access if an install package is leaked, for example. </span>The server side of the authentication process is designed to be backward compatible, ensuring a smooth migration. Additionally, the same join token can be utilized across endpoint deployments for Linux, iOS, and Android. For information, see *[Configuring Join Tokens for Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/401933130)**.* |
| 12/14/2023 | BloxOne DNS | **Feature:**<br>**BloxOne DDI now supports creating DNAME resource records through the Cloud Services Portal.**<br>BloxOne DDI supports creating DNAME records that can be used to create an alias for an existing domain. Previously, the DNAME record could only be created as a generic record of type DNAME.  With this release, DNAME can be selected as one of the record types under the **Record** menu. For more information, see *[Creating a DNAME Record](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneDDI&title=Creating%20a%20DNAME%20Record)*. |
| 12/04/2023 | BloxOne Mobile Endpoint | **Enhancement:**<br>**BloxOne Mobile Endpoint for Android will receive a MDM-less deployment option.**<br>BloxOne Mobile Endpoint for Android will receive a MDM-less deployment option. MDM-less deployment will allow better support for BYOD and other non-managed corporate devices. Users can now install BloxOne Endpoint from the [Google Play store](https://play.google.com/store/apps/details?id=com.infoblox.bloxone.mobile.endpoint&hl=en_US) and enable it by scanning a provided QR code to protect their devices. QR codes are generated based on unique join tokens, which are easy to retire and rotate. Due to significant changes in the authentication process it is recommended to deploy the application in a lab environment first to ensure it is properly understood and implemented,  and then schedule upgrades in stages. For information, see *[Managing Endpoint Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470955)* and *[Managing BloxOne Mobile Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470955)*. |
| 12/01/2023 | Cloud Services Portal | **Enhancement**:<br>**BloxOne now displays all host types for hardware platforms on the Cloud Services Portal.**<br>The **Infrastructure** > **Host** page of the Cloud Services Portal now displays **B1-212** as the host type for Dell VEP appliances that are purchased from Infoblox. In addition, t<span style="color: #172b4d">he "</span><span style="color: #172b4d">**B105**</span><span style="color: #172b4d">" hardware type is replaced by "</span><span style="color: #172b4d">**B1-105**</span><span style="color: #172b4d">."</span><br>**BloxOne allows you to add new services directly on the Infrastructure > Host page.**<br>You can now add services to a specific host on the **Infrastructure** > **Host** page without navigating to the **Services** page. |
| 11/20/2023 | BloxOne Endpoint | **Enhancement:**<br>**BloxOne Endpoint for Windows version 2.4.3 is updated to provide a better experience with user group-based policies that do not require re-authentication on the agent. This release of BloxOne Endpoint for Windows and for MacOS version 2.4.3 also contains bug fixes.**<br>For information, see *[Managing Endpoint Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369661)*. |
| 11/20/2023 | Cloud Services Portal | **Enhancement:**<br>**BloxOne now includes an updated Global Search feature with improved usability and functionality.**<br>BloxOne has an improved Global Search feature that provides deep links from search results to the objects and breadcrumbs for easier navigation. For more information, see *[Using Global Search](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/230395854)**.* |
| 11/17/2023 | BloxOne DNS<br>BloxOne DHCP | <span style="color: #000000">**Feature and Enhancement:**</span><br><span style="color: #000000">**BloxOne DDI now allows the recursive client query limit to be set to a maximum 15000 queries.**</span><br><span style="color: #000000">BloxOne DDI allows configuring the recursive client query limit up to 15,000 queries, ensuring an optimal level of recursive queries to be processed concurrently by the recursive name server. For more information, see </span><span style="color: #000000">*[Enabling Recursive Queries](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186779374)*</span><span style="color: #000000">.</span><br>**An Enhanced Terraform package is now available in *****[GitHub](https://github.com/infobloxopen/terraform-provider-b1ddi)***** to support new features and functionality for BloxOne DDI.**  
<span style="color: #000000">**This release of BloxOne DDI provides the following enhancements to the Terraform integration packages:**</span><br>- <span style="color: #000000">Support for listing and creating the Next Available Subnet in an address block.</span>
- <span style="color: #000000">Support for listing and creating the Next Available IP address in an address block, subnet, and range.</span>
- <span style="color: #000000">Support for DNS forward zones. </span>
- <span style="color: #000000">Support for tag filtering in IPAM and DNS objects.</span><br><span style="color: #000000">For more information, see </span><span style="color: #000000">[https://registry.terraform.io/providers/infobloxopen/b1ddi/latest](https://registry.terraform.io/providers/infobloxopen/b1ddi/latest)</span> |
| 11/15/2023 | BloxOne Mobile Endpoint | **Feature:**<br>**BloxOne Mobile Endpoint for iOS will receive a MDM-less deployment option.**<br>MDM-less deployment will allow better support for BYOD and other non-managed corporate devices. Users can now install BloxOne Endpoint from the Apple App store and enable it by scanning a provided QR code to protect their devices. QR codes are generated based on unique join tokens, which are easy to retire and rotate. Due to significant changes in the authentication process it is recommended to deploy the application in a lab environment first to ensure it is properly understood and implemented, and then schedule upgrades in stages. <span style="color: #172b4d">For information, see </span>*[Managing Endpoint Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470955)*<span style="color: #172b4d"> and </span>*[Managing BloxOne Mobile Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470955)*<span style="color: #172b4d">.</span> |
| 11/10/2023 | BloxOne DDI | **Feature**:<br><span style="color: #172b4d">**BloxOne DDI now allows Zone Federation on AWS and Azure.**</span><br><span style="color: #172b4d">Zone Federation is now supported on AWS and Azure, which allows you to distribute and manage DNS zone data across multiple authoritative servers. For more information, see </span><span style="color: #0563c1">*[Zone Federation](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/391643576)*</span><span style="color: #172b4d">.</span><br><span style="color: #172b4d">**BloxOne DDI supports importing AWS private hosted zones as read-only or read-write forward zones. **</span><br><span style="color: #172b4d">Private hosted zones synced from the cloud provider are set up as forward zones on BloxOne host. Queries for domains added as forward zones will be forwarded by the BloxOne host to AWS for resolution, ensuring the most up-to-date data is referenced. For more information, see </span><span style="color: #172b4d">*[Importing AWS Private Hosted Zones as Read/Write Forward Zones](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/391545530)*</span><span style="color: #172b4d">.</span><br><span style="color: #172b4d">**BloxOne DDI allows the configuration of read-only or read-write sync process for third-party cloud providers. **</span><br><span style="color: #172b4d">You can now configure the sync process for third-party cloud providers in read-only or read-write modes via the Cloud Services Portal. For more information, see </span><span style="color: #172b4d">*[Configuring Read Only or Read Write Sync](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneDDI&title=Configuring%20Read%20Only%20or%20Read%20Write%20Sync)*</span><span style="color: #172b4d">.</span> |
| 11/04/2023 | BloxOne Threat Defense | **Enhancement**:<br>**BloxOne Endpoint version 1.0.6  supports Ubuntu 20.x and RedHat 8.x distributions, in addition to Ubuntu 22.x. **<br>For information, see <span style="color: #172b4d">*[Linux Client Application Deploymen](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/297666539)*</span><span style="color: #172b4d">[t](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/297666539)</span><span style="color: #172b4d">. </span> |
| 11/03/2023 | Cloud Services Portal | **Maintenance**:<br>From 11/3/2023 through 11/5/2023, BloxOne will perform an update to increase the security, availability, and scalability of all BloxOne services. The update begins on 11/3/23 at 7:30 PM PT and end on 11/5/23 at 6:30 AM PT. DNS and DHCP protocol services for BloxOne DDI and BloxOne Threat Defense continue to run uninterrupted. |
| 11/02/2023 | Cloud Services Portal | **Enhancement**:<br>**BloxOne introduces usability enhancements to global search and local search on the Cloud Services Portal.**<br>The global search and local search enhancements include the following:<br>- Global search input functionality updates
- Local search bar and filter updates
- New page header design and icon size and placement updates<br>For information, see *[Using Global Search](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/230395854)* and *[Using Local Search](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/372375709)*. |
| 10/25/2023 | BloxOne DNS<br>BloxOne DHCP | **Enhancement**:<br>**BloxOne DDI allows downloading Service Logs for MS AD Sync Service. **<br>BloxOne DDI now allows downloading service logs from the Cloud Services Portal for the MS AD Sync Service. For more information, see *[Service Logs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35430270)*.<br>**BloxOne DDI allows syncing DHCP options from Microsoft Active Directory Server Options.**<br>BloxOne DDI now allows syncing DHCP options from the Microsoft Active Directory Server Options to the Cloud Services Portal. For more information, see *[Microsoft Active Directory Integration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186616756)*.<br>**BloxOne DDI allows syncing DHCP options from Microsoft Active Directory Fixed Address. **<br>BloxOne DDI now allows syncing DHCP options from the Microsoft Active Directory Server fixed address to the Cloud Services Portal. For more information, see *[Microsoft Active Directory Integration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186616756)*. |
| 10/20/2023 | Cloud Services Portal | **Enhancement**:<br><span style="color: #000000">**BloxOne**</span>** introduces a new table view to the Hosts, Services, Monitoring, Locations, and Templates tabs on the Manage > Infrastructure page of the Cloud Services Portal.**<br>In addition to the card and map views, you now have the flexibility to view and manage the data of hosts, services, monitoring, locations, and templates in a table format on the BloxOne **Infrastructure** page.<br>**BloxOne introduces a new table view to the Audit Logs, Service Logs, and Security Logs tabs on the Administration > Logs page of the Cloud Services Portal.**<br>In addition to the card view, you now have the flexibility to view and manage the data of audit logs, service logs, and security logs in a table format on the BloxOne **Logs** page. |
| 10/16/2023 | BloxOne DNS | **Enhancement**:<br>**BloxOne DDI allows synchronization of Azure DNS public zones, private zones, and resource records. **<br>BloxOne DDI now supports the ability to view DNS Public Zones, Private Zones and Resource Records that are served from Azure DNS service. This allows BloxOne DDI to be used as a “hidden primary” for Public DNS zones hosted in the Azure DNS service. For more information, see *[Microsoft Azure Integration](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/363987086)**.* |
| 10/13/2023 | BloxOne DHCP | Enhancement:<br><span style="color: #1d1c1d">**Maintenance Release - DHCP bug fixes and **</span><span style="color: #1d1c1d">**[CVE-2023-3341](https://kb.isc.org/docs/cve-2023-3341)**</span><span style="color: #1d1c1d">**.**</span><br>- <span style="color: #1d1c1d">**Bug Fix:**</span>
  - **Issue:** DHCP server not assigning leases. This issue was noticed in customers operating in an Advanced Active Passive HA mode.
  - **Fix:** A DHCP range cannot be assigned to a different server than its parent subnet.
- <span style="color: #1d1c1d">**[CVE-2023-3341](https://kb.isc.org/docs/cve-2023-3341)**</span> |
| 10/6/2023 | <span style="color: #172b4d">Cloud Services Portal</span> | **Enhancement:**<br><span style="color: #000000">**BloxOne Threat Defense enhances full audit logging by adding details of Create, Update, and Delete (CUD) operations.     **</span><br><span style="color: #000000">Enhanced audit logging track changes in security policies, custom lists, application/category filters, BloxOne Endpoint/BloxOne Endpoint group settings, and more. For more information, see </span><span style="color: #000000">*[Viewing Audit logs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35430270)*</span><span style="color: #000000">.</span> |
| 10/6/2023 | BloxOne Threat Defense | **Feature:**<br><span style="color: #000000">**BloxOne lookalike domain management includes suggested domains for monitoring. **</span><br><span style="color: #1d1c1d">A maximum of 25 suggested lookalike domains can be added to a custom lookalike watch list for monitoring. </span><span style="color: #000000"> For more information, see </span><span style="color: #000000">*[Viewing Custom Watched Domains](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/139756688)*</span><span style="color: #000000">* *</span><span style="color: #000000">and </span><span style="color: #000000">*[Adding Suggested Lookalike Domains](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/360284570)*</span><span style="color: #000000">*.*</span> |
| 10/05/2023 | BloxOne Infrastructure | ##### <span style="color: #000000">**Infoblox BloxOne bare-metal deployment now supports Red Hat versions 7.9, 8.7, 8.8, 9.1, and 9.2.     **</span><br><span style="color: #000000">For more information, see </span><span style="color: #000000">*[Bare-Metal Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/204538556)*</span><span style="color: #000000">.</span> |
| 09/27/2023 | BloxOne Threat Defense | <span style="color: #000000">**Enhancement: **</span><br><span style="color: #000000">**Infoblox TIDE introduces new sizing guidelines for Custom RPZ feeds.**</span><br><span style="color: #1d1c1d">Infoblox TIDE introduces new sizing guidelines for Custom RPZ feeds. Newly created custom RPZs are limited to a maximum of 6 million records. This limit includes all available feeds, such as Infoblox-curated data, Infoblox’s third-party data, and any uploaded data you provide. A new sizing indicator displays the number of records contained within a custom RPZ feed. Custom RPZ feeds created prior to the introduction of the new sizing guidelines will not be impacted by the new sizing guidelines, although no new records can be added. For information, see Sizing Guidelines for Custom RPZ Feeds. For information, see </span><span style="color: #000000">*[Sizing Guidelines for Custom RPZ Feeds](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/351830160)*</span><span style="color: #1d1c1d">.</span> |
| 09/27/2023 | Cloud Services Portal | <span style="color: #212121">**Feature:**</span><br><span style="color: #000000">**Infoblox supports the deployment of BloxOne hosts in Google Cloud Platform     **</span><br><span style="color: #000000">You can now deploy BloxOne hosts on Google Cloud Platform using Infoblox-provided GCP package you download from the Cloud Services Portal.  For more information, see </span><span style="color: #000000">*[GCP Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/350027851)*</span><span style="color: #000000">.</span><br>##### <span style="color: #000000">**Infoblox supports the deployment of BloxOne hosts on Containerd Environments**</span><br><span style="color: #000000">You can now deploy BloxOne hosts on Containerd environments  using Infoblox-provided BloxOne Install packages you download from the Cloud Services Portal. For more information, see </span><span style="color: #000000">*[Bare-Metal Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/204538556)*</span><span style="color: #000000">*.*</span> |
| 09/26/2023 | BloxOne Threat Defense | **Enhancement: **<br>**BloxOne enhances the Log Export feature to include additional metadata in the BloxOne Threat Defense DNS response logs.**  
  
DNS response logs are exported in parquet format. Exported parquet-files include the following additional columns: 'key', 'sld' and column 'extra' get additional fields: 'sld', 'pname', 'pdisplay_name', 'domain_applications', 'qname_norm', 'client_country', 'client_continent', 'event_date', 'response_continent', 'response_region', 'response_country', 'application', 'egress_ip', 'device_name', 'device_ip', 'domain_categories', 'network', 'record_type', 'query_type', 'response', 'user_name', 'endpointgroups'.   
  
For information, see *[Exporting Logs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35365902)*. |
| 09/16/2023 | BloxOne DNS<br>BloxOne DHCP | <span style="color: #212121">**Feature:**</span><br><span style="color: #212121">**BloxOne DDI now provides MS AD Sync as a service running on a BloxOne host**</span>**.**<br><span style="color: #212121">You can run the MS AD Sync service on a BloxOne DDI host to migrate DNS and IPAM/DHCP objects from Microsoft Active Directory into the Cloud Services Portal. </span>For more information, see *[Microsoft Active Directory Integration](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/100139009)*.<br>The DHCP options in the CSV import/export file can be specified as separate columns instead of nested columns.<br>Bug Fixes:<br>**Issue/Bug: DHCP HA group status was not correctly represented in the Cloud Services Portal**<br>Fix: Additional health checks were introduced to calculate the status of a  DHCP HA group.<br>**Issue/Bug: Notifications were not triggered for high utilization of DHCP ranges**<br>Fix: The cloud service responsible for calculating utilizations for DHCP ranges has been patched to address issues related to deadlocks. |
| 09/01/2023 | Cloud Services Portal | **Feature**:<br><span style="color: #1d1c1d">**You can now set up BloxOne sandboxes as test environments.**</span><br><span style="color: #1d1c1d">If your business requires a separate BloxOne test environment, you can purchase a BloxOne sandbox and set it up for testing purposes. For more information, see </span><span style="color: #1d1c1d">*[Managing Sandboxes](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneInfrastructure&title=Managing%20Sandboxes)*</span><span style="color: #1d1c1d">.</span> |
| 08/23/2023 | BloxOne DHCP | **Enhancement**:<br><span style="color: #1d1c1d">This maintenance release includes bug fixes for the DHCP service. </span> |
| 08/22/2023 | BloxOne Threat Defense | **Enhancement**:<br><span style="color: #172b4d">The following BloxOne Threat Defense RPZ feeds have been deprecated and are no longer available for BloxOne Threat Defense or for On-Prem DNS Firewall: </span>SURBL Fresh Domains, SURBL Multi Domains, and SURBL Multi Lite Domains.<br><span style="color: #091e42">It is recommended that you add the following feeds in place of the deprecated feeds:</span><br>- NOED, with the same policy rules originally selected for SURBL Fresh
- Suspicious Domains with one of the policy actions to Block, if available based on subscription level.
- Suspicious Lookalikes with one of the policy actions to Block, if available based on subscription level.
- Suspicious NOED with one of the policy actions to Block, if available based on subscription level.<br><span style="color: #091e42">For information, see </span><span style="color: #0052cc">*[Recommended Feed Configuration to Replace the SURBL Feeds](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Recommended%20Feed%20Configuration%20to%20Replace%20the%20SURBL%20Feeds)*</span><span style="color: #0052cc">[.](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Recommended%20Feed%20Configuration%20to%20Replace%20the%20SURBL%20Feeds)</span> |
| 08/17/2023 | BloxOne Threat Defense | **Enhancement**:<br>##### BloxOne Threat Defense adds direct linked access from the dashboard charts to the chart source data to better facilitate threat investigations.<br>Direct linking of the dashboard charts to their source data allows for drilling deep down into their source data. This enhancement offers improved usability of the dashboard charts for tasks involving investigation and workflows by offering the convenience of pivoting between the charts and their underlying data. For information, see *[Viewing the Dashboard](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35473524)*. |
| 08/16/2023 | Cloud Services Portal | **Enhancement**:<br><span style="color: #1d1c1d">**You can now transfer services from one BloxOne host to another.**</span><br><span style="color: #1d1c1d">The ability to reassign or transfer a service from one host to another is useful in situations where you need to update your network infrastructure or retire a BloxOne host. For information, see </span><span style="color: #1d1c1d">*[Editing General Service Information](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/117932546)*</span><span style="color: #1d1c1d">.</span> |
| 08/14/2023 | Cloud Services Portal | **Enhancement**:<br><span style="color: #1d1c1d">**BloxOne Introduces notification enhancements to improve usability.**</span><br><span style="color: #1d1c1d">BloxOne notification includes the following enhancements:</span><br>- <span style="color: #000000">When you click </span><span style="color: #000000">**Notifications**</span><span style="color: #000000"> on the left navigation panel of the Cloud Services Portal, you can view personal notifications generated for your user account.</span>
- <span style="color: #1d1c1d">You can click the notification icon at the top of the left navigation to view the 30 latest notifications in the </span><span style="color: #1d1c1d">**New Notifications**</span><span style="color: #1d1c1d"> panel. The number displayed on the icon indicates the number of notifications you have received within the last three days. </span>
- <span style="color: #000000">You can choose the types of personal notifications you would like to receive. Individual settings do not affect the global or admin settings for other users.</span><br><span style="color: #000000">For information on BloxOne notifications, see </span><span style="color: #000000">*[Infoblox Platform Notifications](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35439192)*</span><span style="color: #000000">.</span> |
| 08/11/2023 | BloxOne DNS<br>BloxOne DHCP | **Feature and Enhancement**:<br><span style="color: #000000">**You can now set the order of precedence for user-defined DHCP fingerprints**</span>.<br><span style="color: #242424">BloxOne DDI now allows you to set the precedence of user-defined DHCP fingerprints. The rule with the lowest precedence value has the highest priority. For more information, see </span><span style="color: #242424">*[Creating DHCP Fingerprints](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186336269)*</span>.<br><span style="color: #000000">**BloxOne DDI tracks the IP addresses of hosts in IPAM**</span>**.**<br><span style="color: #000000">BloxOne DDI now tracks the IP addresses that are owned and managed by the BloxOne hosts running the DDI service. These IP addresses are represented in IPAM as Reservations. For more information, see</span> *[Configuring IPv4 and IPv6 Reservations](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681480)*<span style="color: #000000">.</span><br><span style="color: #000000">**You can now allow or deny leases based on DHCP filters.**</span><br><span style="color: #000000">BloxOne DDI now has the capability to allow or deny leases based on DHCP filters. For more information, see </span><span style="color: #000000">*[Creating Address Ranges](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186747108)*</span><span style="color: #000000">.</span><br><span style="color: #000000">**You can now configure AWS as a Third Party DNS provider with additional configuration options**</span>.<br><span style="color: #242424">BloxOne DDI now allows you to configure Third Party DNS provider through AWS delegated access using Principal and External ID. For more information, see </span><span style="color: #242424">*[Amazon AWS Route 53](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneDDI&title=Amazon%20AWS%20Route%2053)*</span>. |
| 07/28/2023 | BloxOne DNS | **Enhancement**:<br><span style="color: #000000">**You can now configure Third Party DNS Providers that support AWS sub-accounts for Route 53 Sync**</span>.<br><span style="color: #000000">Third-party DNS providers can now accept credentials and AWS role ARNs, with proper permissions, to discover AWS accounts that contain Route 53 zones and resource records under each sub-account</span><span style="color: #242424">. For more information, see </span><span style="color: #242424">*[Amazon AWS Route 53](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneDDI&title=Amazon%20AWS%20Route%2053)*</span>.<br><span style="color: #000000">**Infoblox SSO Portal now supports Google Authenticator for multi-factor authentication, in addition to Okta Verify**</span>**.**<br><span style="color: #000000">You can now choose Google Authenticator, in addition to Okta Verify, as the authentication method when you configure multi-factor authentication for your Cloud Services Portal users who have an email domain that matches the selected domain name. For more information, see </span><span style="color: #000000">*[Activating Multi-Factor Authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35367398)*</span><span style="color: #000000">.</span> |
| 07/28/2023 | BloxOne Threat Defense | **Feature and Enhancement**:<br><span style="color: #1d1c1d">**The BloxOne Application Discovery Report receives a makeover, enhancing user experience and providing more valuable insights into application usage within your network.**</span><br><span style="color: #1d1c1d">Updates to the </span><span style="color: #1d1c1d">**Application Discovery Report**</span><span style="color: #1d1c1d"> introduce a refreshed look-and-feel, including new page headers and the ability to view historical data on the </span><span style="color: #1d1c1d">**All Applications**</span><span style="color: #1d1c1d"> page for Approved and Unapproved application states. Application Discovery is available to BloxOne Threat Defense Advanced subscribers. For information, see </span><span style="color: #1d1c1d">*[Application Discovery](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/90440952)*</span><span style="color: #1d1c1d">. </span><br>**The Infoblox Summary Reports page receives a revamped look and feel.**<br>The revamped **Summary Reports** page better facilitates user requests for summary report information. The new look and feel falls in line with the overall refresh of the Cloud Services Portal. <span style="color: #000000">The </span>*Executive Summary *<span style="color: #000000">and </span>*Comprehensive Security*<span style="color: #000000"> reports are available to subscribers of BloxOne Threat Defense Business Cloud and BloxOne Threat Defense Advanced. </span>For information, see *[Summary Reports](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375414)*.<br><span style="color: #1d1c1d">**The Notional Threat Insight List (TI-DNST) provides users with information about DNS Tunnels in their early stages, not yet fully classified as malicious.**</span>** **<br><span style="color: #1d1c1d">The Notional Threat Insight List detects DNS Tunnels in their preliminary phases before they reach a fully malicious status. This list operates with a default action of </span><span style="color: #1d1c1d">**Allow-With Log**</span><span style="color: #1d1c1d">. Since the tunnels are not yet conclusively identified as fully malicious, blocking them outright could lead to false positives. Organizations can modify the  default action to "Block" if their risk tolerance or organizational needs dictate.</span><br><span style="color: #1d1c1d">**BloxOne supports CISA Protective DNS encrypted DNS service.**</span>** **<br><span style="color: #1d1c1d">For Federal accounts, BloxOne  supports CISA Protective DNS, a secure and compliant server configuration utilizing encrypted DNS protocols (DNS-over-HTTPS or DNS-over-TLS).  Encrypted resolvers must be used when communicating with upstream DNS resolvers in adherence to to OMB memorandum M-22-09. For information, see </span>*[Configuring DNS Forwarding Proxy to Use Encrypted DNS Protocols](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneInfrastructure&title=Configuring%20DNS%20Forwarding%20Proxy%20to%20Use%20Encrypted%20DNS%20Protocols)*.<br><span style="color: #1d1c1d">**BloxOne provides new service KPI metrics for DNS Forwarding Proxy. **</span><br><span style="color: #1d1c1d">Two new service KPI metrics have been introduced for DNS Forwarding Proxy: </span><span style="color: #1d1c1d">*DFP Service Status*</span><span style="color: #1d1c1d"> and </span><span style="color: #1d1c1d">*DFP Service Queries per Second*</span><span style="color: #1d1c1d">.  </span><br><span style="color: #000000">**Infoblox SSO Portal now supports Google Authenticator for multi-factor authentication, in addition to Okta Verify**</span>**.**<br><span style="color: #000000">You can now choose Google Authenticator, in addition to Okta Verify, as the authentication method when you configure multi-factor authentication for your Cloud Services Portal users who have an email domain that matches the selected domain name. For more information, see </span><span style="color: #000000">*[Activating Multi-Factor Authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35367398)*</span><span style="color: #000000">.</span> |
| 07/28/2023 | BloxOne Endpoint | **BloxOne Endpoint Management page has been revamped to provide endpoint properties. **<br>A dedicated management page containing information on hostname, username, OS, location, and more on a dedicated page can be easily shared by a unique URL. A new endpoint property (public IP address) has also been included as part of this enhancement. <span style="color: #091e42"> For information, see </span>*[Viewing Endpoint Devices](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470720)*<span style="color: #091e42"> and </span>*[Viewing Mobile Endpoint Devices](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35440142)*<span style="color: #091e42">.</span><br>**BloxOne Endpoint version 2.4.0 release**.<br>BloxOne Endpoint 2.4.0 release contains minor bug fixes and collects additional metadata (serial numbers) on Windows and Mac OS devices. For information, see *[Managing BloxOne Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*. |
| 07/20/2023 | BloxOne Endpoint | <span style="color: #000000">**Feature:**</span><br><span style="color: #000000">**BloxOne Endpoint is available for deployment on Linux (Ubuntu 22).**</span><br>BloxOne Endpoint can now be downloaded for Linux Ubuntu 22 from the downloads page in the Cloud Services Platform (**administration** > **downloads**). For information, see *[Deploying Endpoint for Linux](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/297666539)*. |
| 07/14/2023 | BloxOne DNS<br>BloxOne DHCP | **Feature and Enhancement**:<br>**You can now create DNS sort lists to prioritize records on certain networks.**<br>DNS sort lists allow the prioritizing of A and AAAA records on certain networks when they are returned in DNS responses, thereby sorting them to the beginning of the list in the response. For more information, see *[DNS Sort Lists](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/291865120)*.<br>**The BloxOne DDI API documentation has been enhanced.**<br>The BloxOne DDI API documentation has been enhanced to match the features available in the Cloud Services Portal. The API documentation has been improved for technical accuracy and clarity. For more information see *[Universal DDI API Guide](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186745633)*.<br>**DHCP Fingerprint database has been updated to the latest version.**<br>he DHCP Fingerprint database has been updated in BloxOne DDI. For more information, see *[Configuring DHCPv4 Fingerprints](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713970)*.<br>**BloxOne DDI hosts can now serve private zones from Amazon AWS R53.**<br>BloxOne DDI host can now serve private zones from Amazon AWS R53. For more information, see *[Amazon Route 53 Integration](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneDDI&title=Amazon%20Route%2053%20Integration)**.*<br>**BloxOne DDI provides contextual help in Add/Edit dialogs when you perform a task.**<br>You can now click **Help** in Add/Edit dialogs and wizards to view contextual help while performing a task.<br>**Dashboard widgets now include various design enhancements.**<br>The dashboard widgets include various design enhancements. The widgets for DHCP leases per second, DNS queries per second, and Total DNS queries show data as a line chart with the option to show as a bar chart. |
| 07/11/2023 | Cloud Services Portal | **Feature**:<br>**You can now put a host in maintenance mode to perform necessary maintenance. **<br><span style="color: #000000">In situations where you need to initiate maintenance on a host such as upgrading the OS, rewiring the host, or changing the location of the host, you can put the host in maintenance mode. When a host is in maintenance mode, you will not receive any notifications of host activities. However, you can continue to deploy services and perform configurations on the host. All host and service configurations are not affected during the maintenance mode. To resume notifications, you must manually stop maintenance mode on the host. For information, see </span><span style="color: #000000">*[Using Maintenance Mode for Servers](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/289473359)*</span><span style="color: #000000">.</span> |
| 07/10/2023 | BloxOne Threat Defense | **Enhancement**:<br>**New Threat Insight deduction method ensures domains reported in RPZs are added for monitoring. **<br><span style="color: #1d1c1d">The issue regarding the detection of DNS Tunneling events not being detected when using a filter with all categories and the action set to Allow-Log has been resolved. To remedy this issue, the check for a domain being part of an RPZ has been removed from the filtering process. This change allows the reported domains to correctly go through the Threat Insight deduction process. In the Cloud Services Portal, you can view the domains that have undergone Threat Insight deduction in the Threat Insight report section of the Security Activity report (Reports > Security Activity > Threat Insight). To make it easier to see the applied action filtering, a new column called </span><span style="color: #1d1c1d">*Action*</span><span style="color: #1d1c1d"> has been added to the Threat Insight report. This column allows you to monitor the actions applied to reported domains based on precedence, ensuring protection. For more information, refer to the Threat Insight Report. For information see, </span><span style="color: #1d1c1d">*[Threat Insight Report](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375296)*</span><span style="color: #1d1c1d">[.](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375296)</span> |
| 07/03/2023 | BloxOne DNS<br>BloxOne DHCP | **Feature and Enhancement**:<br>**You can now synchronize DHCP Options from Microsoft Active Directory to the Cloud Services Portal**.<br>The synchronized DHCP options are read-only. For more information, see *[Microsoft Active Directory Integration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186616756)*.<br>**You can configure the third-party DNS provider to consolidate public and private zones from AWS R53 into the selected DNS view.**<br>You can also create a new DNS view while creating a third-party DNS provider. For more information, see *[Creating Third Party DNS Providers](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186811485)*. |
| 07/03/2023 | Cloud Services Portal | **Feature:**<br>**You can now query host statuses using the BloxOne API.**<br>BloxOne provides the "statuses" API call, so you can query host status, platform service status, and protocol service status. For more information, see *[Querying Server Statuses Using the API](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/282853467)*. |
| 07/03/2023 | BloxOne Data Connector | **Enhancement:**<br><span style="color: #000000">**BloxOne Notifications has a new data type for Data Connector**</span><br><span style="color: #1d1c1d">You can provision Data Connector to deliver Cloud Services Portal event notifications such as CPU utilization, new feature announcements, and more, to a SIEM destination. For information, see </span>*[BloxOne Notifications](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397120)*<span style="color: #091e42">.</span> |
| 06/26/2023 | Cloud Services Portal | **Feature and Enhancement**:<br><span style="color: #000000">**BloxOne supports the deployment of hosts on Hyper-V enabled Windows Server**</span>.<br><span style="color: #000000">You can now deploy hosts on Hyper-V enabled Windows Server using Infoblox-provided VHD packages you download from the Cloud Services Portal</span>. For more information, see *[VHD on Hyper-V Enabled Microsoft Server Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/275481608)*.<br><span style="color: #000000">**The BloxOne DDI DNS container addressed the following vulnerabilities: CVE-2023-2911, CVE-2023-2829 and CVE-2023-2828**</span><br>- <span style="color: #000000">CVE-2023-2911: </span>Exceeding the recursive-clients quota may cause named to terminate unexpectedly when stale-answer-client-timeout is set to 0.
- CVE-2023-2829: Malformed NSEC records can cause named to terminate unexpectedly when synth-from-dnssec is enabled.
- CVE-2023-2828: named's configured cache size limit can be significantly exceeded. |
| 06/17/2023 | Cloud Services Portal | **Feature**:<br>**BloxOne introduces Historical Data Reporting for the DNS Security and the Security Activity reports**.<br>The historical data reporting feature affords the ability to search up to 60 days of cloud reporting data. The new historical data viewer will retrieve older data and allow you to view it within your activity reports. For information, see *[DNS Activity Historical Data Report](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/268043873)*[ ](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/268043873)and *[Security Activity Historical Data Report](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/267912835)*. |
| 06/16/2023 | BloxOne DNS<br>BloxOne DHC:P | **Enhancement**:<br><span style="color: #000000">**You can swap DHCP HA peers between Active and Passive modes.**</span><br><span style="color: #000000">BloxOne now allows you to swap DHCP HA peers between </span><span style="color: #000000">**Active**</span><span style="color: #000000"> and </span><span style="color: #000000">**Passive**</span><span style="color: #000000"> modes with a single click for manual failover or troubleshooting purposes. For information, see </span><span style="color: #000000">*[C](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11011951)*</span><span style="color: #000000">*[reating HA Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186467301)*</span><span style="color: #000000">.</span><br><span style="color: #000000">**The DDNS Update TTL value is now user-configurable.**</span><br><span style="color: #000000">You can configure the</span><span style="color: #000000">** DDNS Update TTL**</span><span style="color: #000000"> value via the Cloud Services Portal and the API. With this feature, you do not need to shorten the lease time, which in turn reduces network load. For more information, see </span><span style="color: #000000">*[Enabling DDNS for IPv4 Clients](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186714183)*</span><span style="color: #000000">*. *</span> |
| 06/14/2023 | Cloud Services Portal | **Enhancement**:<br><span style="color: #000000">On May 18, 2023, Infoblox removed the ability to view legacy API keys as part of the process of deprecating these keys (which were replaced by the new API keys in February 2021). Since then, Infoblox identified a set of customers that are still using the legacy API keys. </span><span style="color: #0e101a">To provide all customers with the best possible experience and support while we complete the transition to the new API keys, the legacy API keys will remain visible and active until the end of July 2023.</span> |
| 06/09/2023 | Cloud Services Portal | **Enhancement**:<br>- <span style="color: #1d1c1d">When you perform a local search in the </span><span style="color: #1d1c1d">**Manage**</span><span style="color: #1d1c1d"> > </span><span style="color: #1d1c1d">**Infrastructure**</span><span style="color: #1d1c1d"> section, you can view all the objects on the specific tab (such as the </span><span style="color: #1d1c1d">**Hosts**</span><span style="color: #1d1c1d"> or </span><span style="color: #1d1c1d">**Templates**</span><span style="color: #1d1c1d"> tab) based on your filtering criteria; and you can page through the results. This applies to the </span><span style="color: #1d1c1d">**Hosts**</span><span style="color: #1d1c1d">, </span><span style="color: #1d1c1d">**Services**</span><span style="color: #1d1c1d">, </span><span style="color: #1d1c1d">**Monitoring**</span><span style="color: #1d1c1d">, </span><span style="color: #1d1c1d">**Templates**</span><span style="color: #1d1c1d">, and </span><span style="color: #1d1c1d">**Location**</span><span style="color: #1d1c1d"> tabs.</span>
- <span style="color: #1d1c1d">You can now use Global Search to find template objects by </span><span style="color: #1d1c1d">**Name**</span><span style="color: #1d1c1d">, </span><span style="color: #1d1c1d">**Description**</span><span style="color: #1d1c1d"> and </span><span style="color: #1d1c1d">**Tags**</span><span style="color: #1d1c1d">.</span> |
| 05/30/2023 | BloxOne Threat Defense | **Enhancement**:<br><span style="color: #000000">**BloxOne adds new naming conventions for Threat Classes and Threat Families algorithm detections.**</span><br>The following Threat Classes and Threat Family names are being updated. The renaming primarily impacts the Security Activity Report and Insightful Reporting.<br>- **Security Activity Report**: Both the new and old tclasses will appear in the Security Activity Report for the next month. Historical data will not be updated.
- **Insightful Reporting**. |
| 05/18/2023 | Cloud Services Portal | **Enhancement**:<br><span style="color: #242424">You will no longer be able to view legacy API keys on the Cloud Services Portal. The legacy API keys are also not supported in API calls.</span> |
| 05/12/2023 | BloxOne DHCP | **Enhancement**:<br>DHCP Fingerprints are now split into system-defined and user-defined rules. <span style="color: #000000">For better management and usability of DHCP fingerprints, you can view and manage system and user-defined rules separately in the Cloud Services Portal.</span> For information, see *[Creating DHCP Fingerprints](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186336269)* and *[Viewing System Fingerprints](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneDDI&title=Viewing%20System%20Fingerprints)*. |
| 05/09/2023 | BloxOne Endpoint<br>BloxOne Data Connector | **Enhancement**:<br><span style="color: #0e101a">**BloxOne Endpoint version 2.3.11 contains a few fixes and enhancements**</span><span style="color: #0e101a">.</span><br>- This release fixes a rare occurrence when Endpoint for MacOS doesn't switch to the protected state after coming back from the "sleep" state.
- A configuration issue has been fixed if the DNS bypass probe domain is included in an internal domain list.
- Cleaning up temporary files and folders after an upgrade.
- Updated Infoblox branding.<br>**Data Connector supports audit logs transfer to SIEMs for improved reporting to existing reporting systems**.<br>Data Connector supports the transfer of BloxOne audit logs to SIEMs (Splunk, Splunk Cloud, Syslog in CEF/LEEF formats), as well as Infoblox Reporting. This enables the integration of audit logs with existing monitoring and reporting systems, enhancing visibility and enabling better security and compliance management. For information, see *[Configuring Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397475)**.* |
| 05/08/2023 | BloxOne DNS | **Enhancement**:<br>##### **The DNS QPS widget is calibrated to provide more accurate results.**<br><span style="color: #003300">The DNS QPS widget was enhanced for better accuracy. This enhancement includes bug fixes may result in higher QPS results.</span> |
| 05/02/2023 | Cloud Services Portal | **Enhancement**:<br>**BloxOne delivers the following Dashboard enhancements: interactive legends, enhanced tooltips, chart selection options, and top threat classes filter and zoom flexibility.**<br>- **Interactive Legends**: You can easily filter data elements in the legend and dynamically update charts to display the data most critical to you.
- **Enhanced Tooltips**: Smooth scrolling and intuitive display of the data points across the X & Y axis as you hover through dashboard charts and data series.
- **Chart Selection Options**: - Toggle between bar and area chart options to select the ideal display for your selected data set.
- **Top Threat Classes Filter and Zoom Flexibility**:  You can easily zoom in to explore and focus on smaller segments of the treemap for the Communication Threat Class and Remote Targets widget–updated with the ability to select and highlight individual segments.<br>For information, see *[Viewing the Dashboard](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35365936)*. |
| 04/22/2023 | BloxOne Threat Defense | **Feature and Enhancement**:<br><span style="color: #000000">**BloxOne supports DNS over TLS (DoT) in BloxOne Cloud to ensure the highest level of security provided to our customers using third-party DNS resolvers to directly communicate with BloxOne Threat Defense Business and Advanced subscription accounts.**</span><br><span style="color: #000000">Infoblox has enabled an encrypted DNS over TLS resolver (DoT) globally on threatdefense.infoblox.com, Anycast IP addresses, and in every point of presence. For information, see </span><span style="color: #000000">*[Forwarding DNS Traffic to Infoblox Platform](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35408116)*</span><span style="color: #000000">*.*</span><span style="color: #000000">  </span><br><span style="color: #000000">**The Web Content Discovery report has a new look with additional pivot capabilities and key trending data built into the interface.**</span><br><span style="color: #000000">Web Content Discovery is available to subscribers of BloxOne Threat Defense Advanced. For information, see </span><span style="color: #000000">*[Web Content Discovery](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/172687769)*</span><span style="color: #000000">.</span><br><span style="color: #000000">**Summary reports introduce the set up and automatic delivery of the Executive Summary and Comprehensive security reports at a set time, delivered directly to your email inbox. **</span>**For information, see **<span style="color: #000000">***[Summary Reports.](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375414)***</span><br><span style="color: #000000">**BloxOne Endpoint supports updated automatic inactive endpoint removal settings to support faster cleanup of unused endpoints.**</span><br><span style="color: #000000">The minimum interval is set to 15 days and the default value was updated to 100 days. The default value is also applied for endpoint groups with an undefined value (shown as 0 days on the Cloud Services Portal). For information, see </span><span style="color: #000000">*[Automatic Removal of an Endpoint After a Period of Inactivity](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35437021)*</span><br><span style="color: #000000">**BloxOne security policy management can now be enabled for endpoint devices using the following metadata types: device operating system name and/or version, device hostname, and device country based on the geolocation of its IP address.**</span><br>For information, see *[Configuring Network Scopes](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35373166)* and *[Managing Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*. |
| 04/21/2023 | BloxOne DNS<br>BloxOne DHCP | **Feature and Enhancement:**<br>**Three new dashboard widgets, DHCP Messages, DHCP Leases, and Total DNS Queries, are now available on the Cloud Service Portal.**<br>BloxOne offers three new dashboard widgets in BloxOne DDI to show DHCP messages (ACKs sent and INFORMs received), DHCP leases (Total Reclaimed, Total Declined, and Total Assigned), and Total DNS Queries on a single host or a subset of deployed hosts**. **In addition to the existing widgets, these new widgets help with capacity planning and snapshotting the environments. For information, see *[Viewing the Dashboard](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35365936)*.<br>**Inline DNS Query/Response Tester is now available on the Cloud Services Portal.**<br>BloxOne DDI allows you to run DNS queries (using the dig command) on a host running DNS service from within the Cloud Services Portal. This will help you troubleshoot DNS-related issues. You must upgrade to the latest version of the host software to use this feature. For more information on upgrading the host, see *[Scheduling Software Updates for Hosts](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/184583758)*. For more information about this feature, see *[Running a DNS Query](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/218794910)*.<br>**You can disable DHCP protocol in subnets, ranges, and fixed addresses for the DHCP protocol.**<br>This is particularly helpful during pre-deployment provisioning and troubleshooting activities. For information, see *[Configuring Subnets](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186401207)**, **[Configuring Address Ranges](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186648770)*, and *[Configuring Fixed Addresses](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186336390)*.<br>**You can view the status of DHCP HA Groups on the Cloud Services Portal.**<br>BloxOne DDI now displays the health and status of the DHCP HA groups on the Cloud Services Portal. You can then monitor the HA groups' status periodically to ensure that the service is functioning properly. For information, see *[Configuring HA Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186466781)*.<br>**The Cloud Services Portal now displays DHCP service metrics.**<br>You can now view metrics associated with your DHCP service in the Cloud Services Portal. This gives you better visibility of the DHCP service. For information, see *[Configuring HA Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186466781)*.<br>**BloxOne DDI provides the ability to migrate and display IPAM/DHCP objects imported from Microsoft Active Directory.**<br>BloxOne DDI is now able to directly import DHCP and IPAM data from Microsoft Active Directory, allowing for the offloading of DDI functions from AD servers. For information, See *[Microsoft Active Directory Integration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186616756)*.<br>**You can configure the abandoned-reclaim timer for abandoned leases in the Cloud Services Portal.**<br>After configuring the ‘abandoned-reclaim time’ for abandoned leases, the DHCP server will recover the abandoned IP address (i.e. put it back into the available state) and the address will be available for assignment again. For information, see *[Advanced Configuration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/220104221)*.<br>**The Cloud Services Portal now displays all search results in a single view.**<br>BloxOne DDI supports the ability to search across all pages using local search, aggregating the search results into a unified repaginated list. You no longer need to use global search if you are already in a zone or subnet. This allows for quick retrieval of information. For information, ssee *[Configuring Subnets](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186401207)**, **[Configuring Address Ranges](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186648770)*, and *[Configuring Fixed Addresses](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186336390)*. |
| 04/20/2023 | Cloud Services Portal | **Enhancement**:<br><span style="color: #242424">**Infoblox BloxOne continuously synchronizes account names with corporate names. If your account name changed over the last few years, the name displayed on the Cloud Services Portal might change. This does not have any other implications on your account: Your configuration and data stay the same.**</span> |
| 04/19/2023 | Cloud Services Portal | **Feature**:<br>**BloxOne introduces a location feature you can use to associate hosts with a specific location.**<br>The<span style="color: #000000"> location feature is useful when you want to group multiple hosts by geocoded address and be able to later identify the hosts by their location. For information, see </span><span style="color: #000000">*[Managing Locations](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/218008947)*</span><span style="color: #000000">.</span> |
| 04/18/2023 | BloxOne Threat Defense | **Feature and Enhancement**:<br>**BloxOne Threat Defense adds a new standalone threat and RPZ feed: NOED feed.**<br>The NOED feed consists of newly created domains, some of which may not be inherently suspicious. However, monitoring traffic to these domains may be advisable since there is a low likelihood of their being visited under normal circumstances which raises the possibility of their being used for potentially nefarious purposes. For information, see *[Viewing Active Threat Feeds and Threat Insight](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Viewing%20Active%20Threat%20Feeds%20and%20Threat%20Insight)*. |
| 04/17/2023 | BloxOne Threat Defense<br>Cloud Services Portal | **Feature and Enhancement**:<br>**The BloxOne Lookalike Domains Activity report has undergone a comprehensive overhaul and redesign to optimize the organization and accessibility of data. **<span style="color: #1d1c1d">**Lookalike events are now grouped in a structured and logical manner based on specific criteria associated with the target domain, including the total count of lookalike domains, the total number of custom watched domains, and the total number of threat lookalikes. This enhancement ensures that the report provides a more practical, informational, and user-friendly experience for users.**</span><br><span style="color: #000000">For information on lookalike domain monitoring, see </span>*[Custom Lookalike Domain Monitoring](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Custom%20Lookalike%20Domain%20Monitoring)*.<br>**BloxOne introduces a monitoring feature you can use to integrate with your monitoring tools to obtain host metrics.**<br>When you set up a monitoring configuration, BloxOne uses APIs on the associated hosts, so your monitoring tools can query host metrics and health status based on the configured authentication method. For information, see *[Monitoring NIOS-X Server Metrics](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/215941248)*.<br>**BloxOne increases serviceability by introducing host service logs.**<br>On the Cloud Services Portal, you can now view host service logs on the **Manage** > **Infrastructure** > **Hosts** tab by accessing **General Information > Logs** of a chosen host. For information, see *[Viewing Server Logs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/119309287)**.*<br>**BloxOne now supports VLAN Interfaces when you configure the IP settings for a host.**<br>You can now set up VLAN interfaces when deploying a host if you want to virtualize your network infrastructure. For information, see *[Setting IP Interfaces](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/119996611)*. |
| 04/03/2023 | BloxOne Threat Defense | **Enhancement**:<br><span style="color: #000000">**The following BloxOne Threat Defense RPZ feeds have been deprecated and are no longer available for BloxOne Threat Defense or for On-Prem DNS Firewall.**</span><br>- <span style="color: #000000">Spambot_IP </span>
- <span style="color: #000000">Bot_IP</span><br><span style="color: #000000">For information on available feeds, see </span><span style="color: #000000">*[Supported Threat Intelligence Feeds](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Viewing%20Active%20Threat%20Feeds%20and%20Threat%20Insight)*</span> and *[Licensing and Subscriptions](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35403512)*. |
| 03/30/2023 | Cloud Services Portal | **Feature and Enhancement**:<br><span style="color: #333333">**Infoblox introduces the new **</span><span style="color: #0e101a">**Routing**</span><span style="color: #333333">** page on the Cloud Service Portal. **</span><br><span style="color: #333333">BloxOne routing improves the flexibility, scalability and performance of routing by separating it from the Anycast service into new BGP, OSPF, and RIP services. If you are not currently using Anycast, you will see the new </span><span style="color: #0e101a">Routing</span><span style="color: #333333"> page immediately, and no action is required on your part. If you are currently using Anycast, Infoblox Support will be contacting you to arrange the migration of your Anycast configuration to these new services</span><span style="color: #0e101a">. For information, see </span><span style="color: #0e101a">*[Configuring Routing](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneInfrastructure&title=Configuring%20Routing)*</span><span style="color: #0e101a">.</span><br><span style="color: #333333">**Infoblox BloxOne bare-metal deployment now supports Ubuntu 22.04.**</span><span style="color: #333333"> </span><br><span style="color: #333333">With this release, Infoblox BloxOne supports Ubuntu 22.04 and will continue to support Ubuntu 20.04 and 18.04. BloxOne</span><span style="color: #0e101a"> will however stop the official support of Utunbu 16.04.</span> |
| 03/06/2023 | Cloud Services Portal | **Feature and Enhancement**:<br><span style="color: #0e101a">Infoblox introduces the new </span><span style="color: #0e101a">**Infrastructure **</span><span style="color: #0e101a">page on the Cloud Service Portal. BloxOne Infrastructure provides the separation of infrastructure and services. It integrates status, metrics, and logs into a common viewer, so you can peruse consolidated information about your host infrastructure and services. Your current deployment will automatically migrate to the new Infrastructure page. No action is required on your part.</span><br><span style="color: #0e101a">The following is a list of changes:</span><br>- Introduction of the new **Manage** > **Infrastructure** page within BloxOne that replaces the **Manage** > **On-Prem Host** page. The new page includes tabs for **Hosts** (new), **Join Tokens** (existing page - same functionality), **Services** (new - this is a complete set of deployed services on hosts), and **Templates** (new).
- The **Manage** > **On-Prem Host** page will be removed.
- New viewer for hosts and services accessible through the **General Information** link on **Hosts** or **Services**. The viewer presents detailed information about a specific host or service, including network configuration, status, notices (if any), metrics (for a period up to 30 days), and logs (for a period up to 30 days).
- The separation of networking using interface labels makes separating duties between host management and service management much easier.
- While service configurations reside where individual pages are in the **Manage** menu, you can refer to the configurations in **Manage** > **Infrastructure** > **Services** instead of associating the configurations with hosts. This allows for easier redeployment of the service when infrastructure has to be replaced.
- Simplification of status with dedicated status for host and service instead of mixing the two together (this means no more “Review Details” status).
- Advanced filtering is available separately on **Hosts** and **Services** (for example, you can use filters to find all services that are not online or all DHCP services across all hosts).
- Adjusted the service deployment dialogs.
- Host deployment works the same way as the** On-Prem Host **page by using a join token for virtual and customer-provided physical appliance or a serial number for Infoblox-provided physical appliance. Detailed configuration is adjusted to work with advanced interface labels.
- Use the new **Template** functionality to capture a snapshot of the service deployment of a host and apply the same service deployment to multiple hosts (for example, you can use one template and apply it to seven offices or use the same deployment for 263 stores).
- Support of multiple interfaces on hosts will enable several dedicated network interfaces on each host. Services (DHCP, DNS, DNS Forwarding Proxy, Data Connector, NTP) can be deployed using a specific interface, which can differ between services. This allows individual services to work within separate networks.
- Support for alternative network connections between a host and the Cloud Services Portal. Two or more interfaces can be configured as WAN connections to the Cloud Services Portal. Priority of connections is supported for cost and performance reasons.
- Display of hosts in a map view based on the NatIP address of the host will provide a better understanding of the infrastructure deployment around the world and could help identify region-based issues. |
| 02/23/2023 | Cloud Services Portal | **Feature and Enhancement**:<br>**BloxOne introduces a new debugging CLI, so you can troubleshoot issues related to cloud connectivity and on-prem host deployment. **<br>Through the Device UI, you can enable or disable a secure terminal connection on port 2022 between your BloxOne host and the newly implemented debugging CLI. When you experience issues related to cloud connectivity or BloxOne platform image deployment, you can troubleshoot those issues through the debugging CLI.<br><span style="color: #111111">**The Cloud Services Portal introduces the “Upcoming Releases” section that displays feature announcements for upcoming BloxOne releases.**</span><span style="color: #111111">  </span><br><span style="color: #111111">In addition to “What’s New,” the landing page of the Cloud Services Portal now includes an “Upcoming Releases” section that displays upcoming feature announcements for future BloxOne releases.</span> |
| 02/18/2023 | BloxOne Threat Defense<br>BloxOne Ecosystem | **Feature and Enhancement**:<br><span style="color: #172b4d">**BloxOne Threat Defense supports a preferred PoP selection**</span><span style="color: #172b4d">.</span><br><span style="color: #000000">Infoblox uses dynamic routing and global server load balancing to provide connectivity to points of presence (PoP). In most cases, automatic PoP selection works perfectly for all customers; however, sometimes third-party service providers make updates that affect PoP selection, which changes DNS resolution and affects the performance of other SaaS services. With this release, you will be able to define preferred PoP per DNS Forwarding Proxy (DFP) and Endpoint Group. DFP and BloxOne Endpoint must be able to communicate with PoPs directly by listed IP addresses and hostnames. Please adjust your firewalls configuration accordingly. For information, see </span><span style="color: #0052cc">*[BloxOne Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35473957)*</span><span style="color: #000000">.</span><br><span style="color: #172b4d">**BloxOne Threat Defense supports Web Content Discovery**</span><span style="color: #172b4d">.</span><br><span style="color: #091e42">Web Content Discovery is a new feature of the BloxOne Threat Defense Advanced package. It assists organizations in identifying high-risk activities in use across their networks, by whom and by which device. The new report identifies all known web traffic by category and identifies specific categories associated with a higher risk to organizations. For information, see </span><span style="color: #091e42">*[Web Content Discovery](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/172687769)*</span><span style="color: #091e42">. </span><br><span style="color: #172b4d">**BloxOne Threat Defense adds new and updated detection algorithms.**</span><br><span style="color: #1d1c1d">The BloxOne Threat Defense "Security-Activity" report now includes “Threat Family” in the "Threat Insight" detection report. It incorporates improved detection algorithms and protection from DGA (Domain Generation Algorithm), DDGA (Dictionary Domain Generation Algorithm), DNST (DNS Tunneling), and DDOS (Distributed Denial of Service) attacks. Additional algorithm enhancements include the ability to capture misconfiguration issues in customer environments and capturing Suspicious and Phishing Lookalike domains in customer traffic. For information, see </span><span style="color: #0052cc">*[Security-Activity Threat Insight Report.](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375296)*</span><span style="color: #1d1c1d">* *</span><br><span style="color: #172b4d">**BloxOne adjusts the date range for DNS Activity and Security reports to a maximum of 31 days.**</span><br><span style="color: #0e101a">Infoblox adjusts the date range for DNS Activity and Security reports to a maximum of 31 days. Subscription customers for BloxOne Threat Defense Business On-Premises, Business Cloud, and Advanced will continue to have access to these reports for up to 31 days to provide visibility into recent DNS or security activities. For longer-term reporting needs, the Data Connector (DC) service is available for exporting data into third-party tools that offer storage beyond 31 days (e.g. SIEMs that are better suited for historical data storage and searching). For more information on Infoblox integrations with ecosystem partners, visit the </span><span style="color: #1155cc">*[Ecosystem Integration with SIEM page](https://www.infoblox.com/resources/demos/ecosystem-integration-with-siem/)*</span><span style="color: #0e101a"> on </span><span style="color: #1155cc">*[Infoblox.com](https://www.infoblox.com/)*</span><span style="color: #1d1c1d">.</span><br><span style="color: #172b4d">**Infoblox will conclude the support of Data Connector-based Threat Insight on May 5, 2023.**</span><br><span style="color: #0e101a">On May 5, 2023, Infoblox will conclude support of the configuration that delivers Threat Insight using the Data Connector (DC). This only impacts customers who use both BloxOne Threat Defense (Advanced or Business licenses) along with NIOS appliances that are connected to the Infoblox Cloud via the DC. This does not affect self-contained versions of on-prem Threat Insight on NIOS platforms or cloud-only versions of Threat Insight. A very small number of Infoblox customers utilize configurations that use the Data Connector Threat Insight, therefore; continued support is no longer practical. In preparation for this change, Infoblox will no longer store internal authoritative DNS queries in the Infoblox cloud for customers sending such data via the Data Connector. Internal queries are not required for Data Connector, Threat Insight or any other supported uses. As a result, this end of support is unlikely to impact Threat Insight. After</span><span style="color: #0e101a">** **</span><span style="color: #0e101a">February 18, 2023, there will be no change to the network or configurations. After May 5, 2023, calls for support will no longer be accepted for this configuration</span><span style="color: #0e101a">**.**</span><span style="color: #0e101a"> As such, we recommend discontinuing this configuration as soon as possible to preserve resources for your on-prem appliance and network. If your deployment uses this configuration, please reach out to your Customer Success Advocate (CSA) to discuss options for transitioning to a supported, more dynamic, and reliable configuration.</span> |
| 02/17/2023 | BloxOne Threat Defense | **Enhancement**:<br>**BloxOne Threat Defense c**<span style="color: #0e101a">**hanges to combination feeds.**</span><br><span style="color: #0e101a">The combination RPZ feeds (high_block, high_log, med_block, med_log, low_block and low_log) will be changed for maintenance purposes. There may be minor but noticeable changes to the number of indicators available in each feed.</span> |
| 02/16/2023 | BloxOne Ecosystem | **Enhancement**:<br>**Data Connector supports filtering expressions and additional filter types for DNS security logs.**<br>- By using filtering expressions, you are able to specify which traffic should be passed on and which should be dropped.
- DNS security logs can be filtered by new fields/properties: threat level, threat confidence, threat class, threat property, policy action, and feed name (custom list name).<br><span style="color: #1d1c1d">   For information, see </span><span style="color: #1d1c1d">*[Data Connector](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35428954)*</span><span style="color: #1d1c1d">. </span> |
| 02/10/2023 | Cloud Services Portal | **Feaure and Enhancement**:<br>**BloxOne introduces a new debugging CLI, so you can troubleshoot issues related to cloud connectivity and on-prem host deployment. **<br>Through the Device UI, you can enable or disable a secure terminal connection on port 2022 between your BloxOne host and the newly implemented debugging CLI. When you experience issues related to cloud connectivity or BloxOne platform image deployment, you can troubleshoot those issues through the debugging CLI. |
| 01/27/2023 | BloxOne DNS<br>BloxOne DHCP | **Feature and Enhancement**:<br>**BloxOne DDI now supports external forwarders when DNS Forwarding Proxy (DFP) and BloxOne DDI DNS cohabitate on the host. **<br>BloxOne DDI now has the ability to use DNS Forwarders when co-deployed with the BloxOne Threat Defense DNS Forwarding Proxy (DFP). These DNS Forwarders will be used in lieu of recursing to the Internet root name servers. This is helpful in situations where access to the root servers is restricted. For more information, see *[Using Forwarders](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11010134)*.<br>**Clear leases and resend DDNS updates for multiple leases. **<br>DHCP leases can now be cleared at the subnet or range level or by selecting multiple leases. You can also resend DDNS updates simultaneously for a number of active leases. You must update the on-prem host to the latest version for the clear lease functionality to work. For more information, see *[Clearing Lease](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11013063)* and *[Resending DDNS Update](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/98730238)*.<br>**Configure lease time as a filter in the hardware filter or option filter. **<br>You can configure lease time within a DHCP filter. This way, you can assign different lease times to different types of devices within the same subnet. For more information, see *[Creating IPv4 Hardware Filters](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11012562)* and *[Creating Option Filters](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11012530)**.*<br>**Configure DHCP Option 58/59 T1/T2 timer values for IPv4 and IPv6 DHCP leases.**<br>You can configure 'Renewal Time (T1)' and 'Rebinding Time (T2)' values for IPv4 and IPv6 DHCP leases at the subnet level. This will enable devices that need to retain an IP address for an extended period get regular updates of network infrastructure changes via new DHCP options from renewals. For more information, see *[Defining Lease Times](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11013685)*.<br>**Synchronize and display DNS records imported from Microsoft Active Directory. **<br>BloxOne DDI is now able to directly import DNS data from Microsoft Active Directory, allowing for the offloading of DNS functions from AD servers. For more information, see *[Microsoft Active Directory Integration](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/100139009)*.<br>**View AWS Route 53 private zones and records. **<br>BloxOne DDI now supports the ability to read DNS private zones and resource records that are served from Amazon AWS Route 53 service. For more information, see *[Amazon Route 53 Integration](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/41032262)*.<br>**Import or Export DHCP Host object. **<br>You can now manage IPAM/DHCP Host objects in bulk using the standard import/export process in the Cloud Services Portal; both JSON and CSV data formats are supported. For more information, see *[Importing and Exporting Data](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/52265011)* and *[Supported Attributes](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35463323)*.<br>**  Refinement of CSV import process resulting in requiring fewer fields. **<br>BloxOne DDI has enhanced the CSV import process to require fewer fields when creating DNS objects.<br>**  Assign or remove tags for multiple fixed address objects. **<br>This enhancement provides the ability to add or remove tags for multiple DHCP fixed address objects simultaneously. The tags assigned to IP addresses and their fixed addresses are now synced with each other. For more information, see *[Creating Fixed Addresses](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11013589)**.* |
| 01/13/2023 | BloxOne Threat Defense<br>BloxOne DDI | **Enhancement:**<br>**Displaying a list of announcements, instead of only the most recent announcement, for new BloxOne releases on the Cloud Services Portal.**<br>In previous releases, the landing page of the Cloud Services Portal displayed new feature announcements only for the most recent BloxOne release. It now displays a list of feature announcements for the past 30 days. This helps you keep track of all BloxOne product releases within the Cloud Services Portal without having to visit a separate website. |
| 01/09/2023 | BloxOne Dossier | **Enhancement:**<br>**Dossier Summary Report now includes a screenshot image of queried domains. **<br>With the implementation of the Dossier domain image feature, it is now possible to view a potentially dangerous domain without visiting it. <span style="color: #000000">Visual examination of a target domain can dramatically cut down on research time.</span> For information, see *[Dossier Summary Report](https://docs.infoblox.com/space/BloxOneThreatDefense/35402683)*. |
| 01/06/2023 | BloxOne Threat Defense | **Enhancement:**<br><span style="color: #172b4d">Category filters adopt a "tree-like" design structure similar to application filters.</span><br><span style="color: #000000">With the implementation of an updated design, category filters and their associated subcategories are easier to navigate and to use from within the Cloud Services Portal. For information see </span>*[Creating Category Filters](https://docs.infoblox.com/space/BloxOneThreatDefense/56656287)*. |
| 12/02/2022 | Cloud Services Portal | **Enhancement**:<br><span style="color: #000000">**On the Cloud Services Portal, the configuration of global NTP settings is now under Manage > NTP. This function was previously under Manage > Hosts. **</span><span style="color: #000000">For information, see </span><span style="color: #000000">*[Configuring Global NTP Settings](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/35356744/Configuring+Global+NTP+Settings)*</span><span style="color: #000000">.</span> |
| 11/23/2022 | Cloud Services Portal | **Enhancement:**<br><span style="color: #000000">**BloxOne supports streamlined record filtering for viewing, analyzing, and downloading of service logs.**</span><br><span style="color: #000000">A revamped service logs page provides the ability to filter log records based on timestamp, log type, and host. Filtered results can be viewed on the page or downloaded in CSV format. Filtering criteria can be saved for re-use. For information, see </span><span style="color: #000000">*[Viewing Service Logs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397318)*</span><span style="color: #000000">.</span> |
| 11/12/2022 | BloxOne Threat Defense | **Feature and Enhancement:**<br>**BloxOne supports policy scopes based on external and internal networks allowing overlapping/inclusion of the scopes defined in other policies.**<br>Policy precedence defines which policy will be chosen. For example, you can define a strict policy with higher precedence for infrastructure devices (e.g., routers) which are located in the same subnet with employees. For information see *[Configuring Network Scopes](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35373166)** *and* **[Configuring External Networks](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35473665)**. *<br><span style="color: #000000">**BloxOne security policy actions support the following DNS response TTL**</span><span style="color: #ff0000">** **</span><span style="color: #000000">**enhancements.**</span><br>- <span style="color: #000000">Policy actions</span> “Block - Redirect” and “Block – Custom Redire<span style="color: #000000">ct” now set the DNS response TTL</span><span style="color: #ff0000"> </span>to 10 seconds. Previously, the TTL was set to 0.
- <span style="color: #000000">Policy action “Allow with Log” will not modify the DNS Response TTL. Previously, the TTL was set to 0.</span><br><span style="color: #000000">**BloxOne application discovery supports two new, default application filters: All Approved Applications and All Unapproved Applications.**</span><br><span style="color: #000000">Using the new filters, an application can be assigned an approved or unapproved status. Application status can be viewed on the Application Discovery summary page. This feature is available to BloxOne Threat Defense Advanced subscribers. For information on application discovery, see </span><span style="color: #000000">*[Viewing Applications](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/90898830)*</span><span style="color: #000000">*. *</span><br><span style="color: #000000">**BloxOne lookalike domain management adds a suspicious flag to domains reported as being malicious or suspicious.**</span><br><span style="color: #000000"> A suspicious flag has been automatically added to the DNS Activity and Security Activity reports to indicate malicious and suspicious domains. Flagged domains are added to a custom list automatically, providing an organization the option of automatically adding them to a custom configured block/log list. For information see </span><span style="color: #000000">*[Custom Lookalike Domain Monitoring](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Custom%20Lookalike%20Domain%20Monitoring)*</span><span style="color: #000000">.</span><br><span style="color: #1d1c1d">**BloxOne access authentication **</span><span style="color: #000000">**supports a configurable sign-out session page**</span><span style="color: #1d1c1d">** for authenticated users.**</span><br><span style="color: #1d1c1d">Authenticated users can sign out of a session from the same captive portal page. For information see </span><span style="color: #1d1c1d">*[Managing Access Authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/1135673593)*</span><span style="color: #1d1c1d">. </span> |
| 11/04/2022 | BloxOne API | **Enhancement:**<br>**BloxOne enhances your monitoring solution by providing an API in the cloud that you can use to query current metrics.**<br>You can now integrate the BloxOne on-prem solution with your monitoring tools by using the newly implemented API to query current metrics of the infrastructure and services deployed on your hosts. Supported metrics include host CPU, memory, storage, port metrics, and protocol metrics. For more information, see *[https://csp.infoblox.com/apidoc](https://csp.infoblox.com/apidoc)*. |
| 11/01/2022 | BloxOne Dossier | <span style="color: #000000">**Enhancement:**</span><br><span style="color: #000000">**Dossier integration for the Emerging Threats threat feed by Proofpoint (ETPro).**</span><br><span style="color: #000000">Integration with ETPro data when using a customer-provided Proofpoint API key provides a unified threat view of their threat ratings alongside the other rich threat Intelligence available within Dossier. For information, see </span><span style="color: #000000">*[Dossier Summary Report](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/271975496)*</span><span style="color: #000000">.</span> |
| 10/27/2022 | BloxOne DNS<br>BloxOne DHCP | **Feature and Enhancement:**<br>**BloxOne DDI now displays DNS Name in the IPAM view.**<br>The IPAM view in BloxOne DDI has been enhanced to automatically populate the **DNS Name** column if a DNS View is associated with an IP Space.<br>**The maximum DHCP lease time is now set to five years.**<br>BloxOne DDI will automatically convert imported DHCP lease times that are unlimited to the maximum supported by the system, which is five years. For more information see, *[Defining Lease Times](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186778823)*.<br>**BloxOne DDI supports IPv4 /32- and IPv6 /128-prefixed networks.**<br>BloxOne DDI now supports /32-prefixed networks for IPv4 and /128-prefixed networks for IPv6. For more information, see *[Creating Subnets.](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186877118)*.<br>**DHCP and DNS Host Service Updates.**<br>During host updates, the BloxOne DDI host DNS and DHCP services will receive a periodic update for general maintenance purposes. |
| 10/21/2022 | BloxOne Threat Defense | **Feature:**<br>**BloxOne Threat Defense supports Application Discovery.**<br>Application Discovery allows you to see many of the applications used within your environment. Using DNS-based traffic patterns and detection signatures created by the Infoblox Threat Intelligence Group, many applications can be observed and associated with your protected assets. Because this is DNS-based, it automatically works for all the assets protected by BloxOne Threat Defense. The new interface (found under Reports) allows you to choose what applications are part of your supported standards and which applications are not. While the complete list of applications is extensive, many categories of applications are supported, including the following categories; business, personal storage, search engines, email, remote connectivity, video conferencing, data storage, and marketing services. By tracking applications, you gain better visibility into Shadow IT and applications with increased risk, such as unmanaged cloud storage providers. Increased visibility and compliance are just another part of BloxOne Threat Defense. Note: Check the interface regularly, as we will add new application detections over time. Not all applications that can be detected can be blocked in a security policy. Feedback on a specific application detection can be given within the Dossier screen.<br>Application Discovery is available to BloxOne Threat Defense Advanced subscribers. For information, see *[Application Discovery](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/90440952)*. |
| 10/20/2022 | Cloud Services Portal | **Feature and Enhancement**:<br>**The BloxOne platform supports basic HTTP authentication for REST API.**<br>Basic authentication provides the ability to use authentication credentials in the form of a CSP API key in the authorization header of the HTTP API. The API key replaces the username and password for a more secure means of basic authentication. For information, see *[Using Basic Authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/89751932)*.<br>**You can restart BloxOne services from the Cloud Services Portal.**<br>In addition to starting and stopping BloxOne services, you can now restart services through the Cloud Services Portal. For information, see *[Enabling and Disabling Services on Hosts](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35373929/Enabling+and+Disabling+Services+on+On-Prem+Hosts)*.<br>**BloxOne supports importing and exporting NTP service configuration data.**<br>You can now import and export NTP service configuration data through the Cloud Services Portal. For information, see *[NTP Service Configuration (ntpserviceconfig)](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/75072566)**.* |
| 10/18/2022 | Cloud Services Portal | **Feature**:<br>**BloxOne now provides security logs generated from supported sources, so you can monitor the security and safety of your network infrastructure.**<br>On the Cloud Services Portal, you can now view security events generated by supported application sources and download the security logs in CSV format. For more information, see *[Viewing Security Logs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/88146974)*. |
| 10/15/2022 | BloxOne Threat Defense<br>BloxOne Endpoint | **Enhancement**:<br>**Intelligent Pop Selection enabled on DNS Forwardng Proxy (DFP) and BloxOne Endpoint for AMS customers.**<br>BloxOne Threat Defense customers (mostly AMS) have been migrated to new infrastructure supporting intelligent PoP selection. For information, see *[DNS Forwarding Proxy](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35436408)* and *[Endpoint Management](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*. |
| 9/30/2022 | BloxOne Dossier | **Enhancement**:<br><span style="color: #000000">**Infoblox TLD Score is now included in the Dossier Threat Indicator Report summary.**</span><br><span style="color: #000000">The TLD score indicates the level of risk associated with a top level domain (TLD). </span><span style="color: #1d1c1d">This score along with other data presented by Dossier can help when making a decision to block or allow a remote domain.</span><span style="color: #000000"> </span>For more information, see *[Dossier Threat Indicator Summary Report](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35402683)**.* |
| 9/24/2022 | BloxOne DDI<br>BloxOne DHCP | **Feature**:<br>**BloxOne DDI can now be deployed in distributed IPv6 environments.**<br>BloxOne DDI can be deployed in distributed IPv6 environments where the DHCP server is not on the same subnet as the clients it is serving. |
| 9/8/2022 | Cloud Services Portal | **Feature and Enhancement:**<br>**BloxOne extends troubleshooting support via the Device UI to bare-metal host deployments.**<br>For bare-metal host deployments, you can now review configuration status and download the support bundle via the Device UI for troubleshooting purposes. For more information, see *[Troubleshooting Hosts](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/35134106/Troubleshooting+On-Prem+Hosts)*.<br>**BloxOne implements metric-based traffic routing, so you can prioritize network interfaces for communication with the Cloud Services Portal.**<br>You can now modify the metrics of network interfaces for each gateway on the respective host, so you can influence the routing path used for cloud communication. For more information, see *[Viewing and Modifying Host Configuration](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/8661959/Viewing+and+Modifying+On-Prem+Host+Configuration)*. |
| 8/30/2022 | BloxOne Endpoint | **Feature:**<br>**BloxOne Endpoint log level settings from the management portal.**<br>With this upgrade, BloxOne Endpoint troubleshooting becomes much easier. You will be able to change log level for BloxOne Endpoint directly from the Cloud Services Portal ([https://csp.infoblox.com](https://csp.infoblox.com/)). BloxOne Endpoint will be upgraded to support the feature on 8/30/2022. You can postpone the upgrade if needed. For information, see *[Endpoint System Level Logging](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/70354570)*. |
| 8/22/2022 | BloxOne Threat Defense | **Enhancement:**<br><span style="color: #000000">**BloxOne Threat Defense support for filter categories.**</span><br><span style="color: #091e42">New content categories and sub-categories are now supported for custom filter creation.</span><br><span style="color: #091e42">For information, see </span><span style="color: #0052cc">*[Creating Category Filters](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/56590698)*</span><span style="color: #091e42">.</span> |
| 8/19/2022 | BloxOne DNS<br>BloxOne DHCP | <span style="color: #000000">**Feature and Enhancement:**</span><br><span style="color: #000000">**BloxOne DDI now supports the ability to create and manage SVCB and HTTPS resource records.**</span><br><span style="color: #000000">You can now create HTTPS and SVCB resource records. In addition, you can enable synthesizing A and AAAA records from an HTTPS record, which can be used to define an alias even at the apex of a zone. For more information, see </span><span style="color: #000000">*[Controlling DNS Queries](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11010164)*</span><span style="color: #000000">.</span><br><span style="color: #000000">**You can configure access control lists (ACLs) for IPv6 addresses.**</span><br><span style="color: #000000">BloxOne DDI now supports the ability to add IPv6 addresses and networks to ACLs used to control access to the DNS server in DNSv6 environments. For more information, see </span><span style="color: #000000">*[Creating Access Control Lists](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11011147)*</span><span style="color: #000000">*. *</span><br><span style="color: #000000">**You can now use simplified CSV import parameters to create a file for import. **</span><br><span style="color: #000000">The parameters in the CSV export have been simplified with the objective of making it easier to edit a CSV file. The parameters are now self-explanatory and easily editable. For more information, see </span><span style="color: #000000">*[Import Parameters](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/52265164)*</span><span style="color: #000000">. </span><br><span style="color: #000000">**BloxOne DDI provides the ability to show or hide graph elements in reports.**</span><span style="color: #000000"> </span><br><span style="color: #000000">You can now select the check box for a parameter to appear in the graph. Clear the check box for the parameter to be hidden from the graph. The graph is updated automatically based on your selection. For more information, see </span><span style="color: #000000">*[Viewing Reports](http://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11012920)*</span><span style="color: #000000">.</span> |
| 8/16/2022 | BloxOne DNS<br>BloxOne DHCP | **Feature:**<br>**You can view license utilization of your BloxOne licenses by quarter, month, or day for the past two years.**<br>BloxOne DDI now allows you to view how BloxOne licenses are utilized in your organization. You can view license utilization for DNS queries, active IP addresses, and instances deployed across your BloxOne environment for the past two years or eight quarters. You can filter license utilization by quarter, month, or day. If a license is expired or about to expire, the report will show an error. For more information, see [Viewing License Entitlements](http://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11014144). |
| 8/15/2022 | BloxOne Threat Defense<br>BloxOne Endpoint | **Feature and Enhancement:**<br>**BloxOne Threat Defense supports "block no log" and "redirect no log" security policy actions.**<br>In some cases, you may need to block traffic without logging information about the action due to the large volume of events. Infoblox is releasing these new policy actions so you can suppress such noise events and be able to focus on important security issues. The new policy actions, "block no log" and "redirect no log," block DNS requests without logging events in the Security Activity report. The blocked DNS requests will be available in the DNS Activity report. For information, see *[Adding Policy Rules and Setting Precedence](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9080814)*.<br>**BloxOne Threat Defense support three new indicator feeds. **<br>This release introduces three new feeds for security policies. The first two provide additional options for blocking sanctioned nations. The existing sanctioned feed, “US OFAC Sanctions IPs,” will now only block nations that are embargoed (Cuba, Iran, Myanmar, North Korea, Syria and Venezuela). The two new feeds are “US OFAC Sanctions (High) IPs” and “US OFAC Sanctions (Med) IPs.” The “Sanctions (High)” blocks all nations in the embargoed list, plus the following: Belarus, Cambodia, Central African Republic, China, <span style="color: #000000">Democratic Republic of Congo</span>, Iraq, Libya, Macao, Russia, and Yemen. The “Sanctions (Med)” includes all of the nations included in the embargoed and high lists, plus the following: Lebanon, Somalia, South Sudan, Sudan, and Zimbabwe.<br>Additionally, Infoblox has decided to create a new feed for suspicious indicators. Suspicious indicators are indicators that identify sites that should be blocked based on clear evidence, even though an attack using the indicator has not been triggered at that time. For information, see* **[Viewing Threat Feeds and Threat Insight](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9080804)*.<br>**Tag support for BloxOne Threat Defense objects.**<br>Tags provide you with an ability to add additional context to the configuration settings. With this release, administrators will be able to define tags for the following Threat Defense objects: BloxOne Endpoint, BloxOne Endpoint groups, custom lists, security policies, DNS forwarding proxies, category and applications filters, custom redirects, internal domains, and external networks. In subsequent releases Infoblox will be able to provide enhanced services based on tags. For information, see *[Applying Tags](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35367538)*.<br>**BloxOne Endpoint Chromebook support for Google API.**<br>BloxOne Endpoint for Chromebooks will be upgraded to support new Google APIs. The service may become unavailable for outdated endpoints, so all customers are encouraged to upgrade endpoints as soon as possible. For information, see *[Deployment of BloxOne Chromebook Client](https://infoblox-docs.atlassian.net/wiki/spaces/~5f0f5ad9502ce1001d1bd220/pages/9083923)*.<br>**BloxOne Policy for non-authenticated users.**<br>Access authentication service allows you to define security policies per user group and authenticate users with third-party IdP providers such as Microsoft Active Directory, Azure Active Directory, Okta, and OpenAM. This release enables the creation of security policies for non-authenticated users (users before authentication), IoT, and/or infrastructure devices if they cannot be authenticated at all. Policies for non-authenticated users and devices can be very restrictive to allow communications with a very limited number of domains and/or applications. This upgrade will require DNS forwarding proxy to restart with the planned service interruption for up to two minutes. For information, see *[Authentication Policy for Non-authenticated Users and Non-authenticated Devices](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/47121499)*. |
| 8/12/2022 | Cloud Services Portal | **Feature:**<br>You can now control user access to the Cloud Services Portal and associated functionality by enabling restricted IP addresses for selected user groups. For more information, see *[Restricting Access for User Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/62850780/Restricting+Access+for+User+Groups)*. |
| 8/9/2022 | Data Exchange (TIDE)<br>BloxOne Dossier | **Enhancement:**<br>**Feed filtering for BloxOne Dossier/TIDE.**<br>In this release, you can precisely control the type and volume of indicators sent to your appliances by specifying individual indicator class and defining the threat and confidence levels that are being put into a customized RPZ feed. This allows users to precisely control type and volume of indicators sent to their appliances. For information, see *[TIDE Data](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35468085)*.<br>**Dossier Integration (Bring Your Own License) for Mandiant**<br>Dossier supports Bring Your Own License (BYOL) integration with Mandiant data when using a customer-provided API key. For information, see *[Dossier Summary](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35402683)*. |
| 7/29/2022 | BloxOne DNS | **Feature:**<br>**Filter absolute_zone_name , dns_absolute_zone_name, and dns_absolute_name_spec, via the BloxOne API.**<br><span style="color: #000000">BloxOne DDI now supports filtering on the fields absolute_zone_name , dns_absolute_zone_name, and dns_absolute_name_spec, via the BloxOne API. These fields contain the fully qualified domain names as opposed to the relative domain names.</span> |
| 7/14/2022 | Cloud Services Portal<br>BloxOne Ecosystem | <span style="color: #000000">**Feature and Enhancement:**</span><br>**Data Connector supports multiple data connectors to pull data/logs from BloxOne Cloud.**<br>Multiple data connectors can now be deployed to pull data/logs from BloxOne Cloud and send the data to multiple destinations. For more information, see *[Configuring Destinations](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35430092)**.   *<br>**Data Connector supports multiple indexers for Splunk Destination.**<br>Multiple indexers can now be provisioned to a Splunk destination allowing for optimum load distribution. For more information, see . For more information, see *[Setting Up Splunk](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35430532)**.*<br><span style="color: #201f1e">**The BloxOne customer service portal now displays the serial number for all virtual appliance, deployments such as VMware, Azure, AWS, KVM.**</span><br><span style="color: #201f1e"> Serial numbers of all virtual, deployments for VMware, Azure, AWS, and KVM  can be viewed in the BloxOne customer service portal.  For more information, see </span><span style="color: #201f1e">*[https://support.infoblox.com](https://support.infoblox.com/)*</span><span style="color: #201f1e">[.](https://support.infoblox.com/)</span> |
| 7/13/2022 | BloxOne Endpoint | **Enhancement:**<br>**Monitoring BloxOne Endpoint connectivity to Point of Presence (PoP). **<br>As a DNS administrator, you can now monitor to which PoPs your endpoints are connected. When BloxOne Endpoint connects to a new PoP, the endpoint connection status will automatically be updated allowing for better tracking of potential DNS connectivity issues and for determining what geographic region your endpoint resides. For more information, see *[Endpoint Management](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)**.* |
| 7/12/2022 | BloxOne Threat Defense | **Enhancement:**<br>**Three new threat/RPZ feeds are available for DNS firewall.**<br>The following new threat/RPZ feeds are available for DNS Firewall:<br>- Suspicious Indicators: A dedicated feed that includes all suspicious indicators categorized as being suspicious. This feed is available to all BloxOne Threat Defense Advanced subscribers.
- Sanctions - High Risk: This feed includes all high risk indicators from sanctioned countries. Indicators from the following countries are included in the feed: Belarus, Cambodia, Central African Republic, China, Cuba, DR Congo, Iran, Iraq, Libya, Macao, Myanmar, North Korea, Russia, Syria, Venezuela, and Yemen. This feed is available to all Advanced and Business licensed BloxOne Threat Defense subscribers.
- Sanctions - Medium Risk: This feed includes all medium risk indicators from sanctioned countries. Indicators from the following countries are included in the feed: Belarus, Cambodia, Central African Republic, China, Cuba, DR Congo, Iran, Iraq, Libya, Macao, Myanmar, North Korea, Russia, Somalia, South Sudan, Sudan, Syria, Venezuela, Yemen, and Zimbabwe.   This feed is available to all Advanced and Business licensed BloxOne Threat Defense Cloud subscribers.<br>For more information, see *[Viewing Active Threat Feeds and Threat Insight](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35403598)**.* |
| 7/7/2022 | Cloud Services Portal<br>BloxOne DNS<br>BloxOne DHCP | <span style="color: #000000">**Feature and Enhancement:**</span><br>**A new Trusted Partner user group, “ib-trusted-partner,” is now available in BloxOne.**<br><span style="color: #000000">The user group, “ib-trusted-partner,” is now available in BloxOne, giving assigned users read-only access to information in BloxOne, without the ability to make changes</span>.<br>**Saved filters for BloxOne DDI objects can be reloaded for future use without re-configuration.**<br>You can now configure and save filters for various BloxOne DDI objects and reload the saved filters for future use without re-configuring them again. Filters are available for DNS, DHCP, and IPAM objects as well as reports. <span style="color: #000000">For more information, see </span><span style="color: #000000">*[Configuring DNS Zones](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186811177)*</span><span style="color: #000000">.</span><br>**Network discovery information is displayed for IPAM objects imported from NIOS.**<br>Network Discovery infor mation associated with IPAM objects imported from NIOS using the NIOS Grid Connector is now automatically displayed in the information pane on the Cloud Services Portal.  <span style="color: #000000">For more information, see </span><span style="color: #000000">*[Enabling the NIOS Grid Connector Service](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186876116)*</span><span style="color: #000000">.</span> |
| 6/23/2022 | BloxOne DNS  
BloxOne DHCP | <span style="color: #000000">**Feature and Enhancement**</span><span style="color: #000000">:</span><br><span style="color: #000000">**Dashboard time intervals have been expanded.**</span><br><span style="color: #000000">The time intervals for Dashboards can now be configured for 48 hours, 7 days, and 1 month, in addition to the existing 24 hours. For more information, see </span><span style="color: #000000">*[Viewing the Dashboard](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681118)*</span><span style="color: #000000">.</span><br><span style="color: #000000">**Reports time intervals have been expanded.**</span><br><span style="color: #000000">The Total DNS Queries, Total DHCP Lease Operations, and Top DHCP Client Requests can now be configured for 1 hour. For more information, see </span><span style="color: #000000">*[Viewing Reports](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186369255)*</span><span style="color: #000000">.</span><br><span style="color: #000000">**DNS Server Groups can be added to Forward Zones.**</span><br><span style="color: #000000">You can now configure DNS server groups and add them to forward zones, in addition to the existing primary and secondary zones. For more information, see </span><span style="color: #000000">*[Creating a Forward Zone](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186974236)*</span><span style="color: #000000">.</span><br><span style="color: #000000">**Fixes:**</span><br><span style="color: #000000">**Searching for subzones in Flat Zone View now shows the associated FQDNs of the subzones.**</span><br><span style="color: #000000">Infoblox resolved an issue that occurred when searching for a subzone and its associated FQDN was not displayed. When the same subzone was used in multiple domains, it could be difficult to locate it without going through the entire list. Search results now include the subzone and its associated FQDN.</span> |
| 6/21/2022 | Data Exchange (TIDE)<br>BloxOne Dossier | <span style="color: #000000">**Dossier and TIDE enhancement:**</span><br><span style="color: #000000">**ThreatFox malware detection for Dossier from Abuse.ch**</span><br><span style="color: #1d1c1d">ThreatFox reports indicators of compromise (IOCs) associated with malware giving more context to your threat investigations. </span>For information, see *[Dossier Source Descriptions](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/271975091)**.* |
| 5/21/2022 | BloxOne DNS  
BloxOne DHCP | <span style="color: #000000">**Feature and Enhancement:**</span><br><span style="color: #000000">**BloxOne DDI supports the ability to create HA groups over Anycast.**</span><br><span style="color: #000000">BloxOne DDI now supports the ability to configure HA Groups that utilize the BloxOne Anycast service.  A DHCP Anycast HA Group is an Active/Active pair of hosts that share a virtual IP address (VIP) for DHCP protocol communications, acting from the clients’ perspective, as “one” DHCP server.  The VIP is advertised using the BloxOne Anycast service, which leverages either OSPFv2, OSPFv3, or BGP to announce reachability.  For more information, see </span><span style="color: #000000">*[High Availability for DHCP](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186843608)*</span><span style="color: #000000">* *</span><span style="color: #000000">and</span><span style="color: #000000">* *</span><span style="color: #000000">*[Creating HA Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186467301)*</span><span style="color: #000000">*.*</span><br><span style="color: #000000">**You can configure BloxOne DDI to send DHCP DDNS Updates to Microsoft DNS Servers using GSS-TSIG.**</span><br><span style="color: #000000">Building on the existing ability to receive GSS-TSIG DDNS updates, BloxOne DDI can now send GSS-TSIG authenticated DDNS updates to Microsoft DNS servers.  DDNS updates are used to dynamically update DNS data, based on DHCP client information. For more information, see </span><span style="color: #000000">*[Enabling DDNS for IPv4 Clients](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186714183)*</span><span style="color: #000000">*.*</span><br><span style="color: #000000">**BloxOne DDI lifts DHCP lease limits for hosts.**</span><br><span style="color: #000000">BloxOne DDI hosts (or HA pairs) running DHCP are no longer limited to 25,000 leases each.  Now, each host (or HA pair) can support an unrestricted number of leases, based on the locally available resources.  </span><br><span style="color: #000000">**BloxOne supports deploying hosts in Amazon AWS.**</span><br><span style="color: #000000">You can now deploy BloxOne DDI on hosts in AWS using Infoblox-provided Community or Public BloxOne AMI images. For more information, see </span><span style="color: #000000">*[EC2 Instances Using AMI in AWS Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/204801210)*</span><span style="color: #000000">*.*</span><br><span style="color: #000000">**You can view the status of long-running tasks.**</span><br><span style="color: #000000">BloxOne DDI provides the ability to view tasks that run in the background. You can view the entire list of tasks, clear the task from the list, or edit the tasks. For more information, see </span><span style="color: #000000">*[Viewing Background Tasks](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186746270)*</span><span style="color: #000000">*.*</span><br><span style="color: #000000">**Ability to sync Microsoft zones and DHCP exclusion ranges from NIOS to the Cloud Services Portal.**</span><br><span style="color: #000000">NIOS Grid Connector allows you to import Microsoft-managed zones and DHCP exclusion range from NIOS to the Cloud Services Portal. For more information, see </span><span style="color: #000000">*[Configuring NIOS Grid Connector](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186843293)*</span><span style="color: #000000">*.*</span><br><span style="color: #000000">**You can include client IP address, MAC address, and DNS view the information in outgoing DNS queries.**</span><br><span style="color: #000000">Include the client IP address, MAC address, and DNS view information of the client from which the DNS query was initiated, to outgoing recursive queries. For more information, see </span><span style="color: #000000">*[Using Forwarders](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681858)*</span><span style="color: #000000">[.](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681858)</span><span style="color: #000000"> </span><br><span style="color: #000000">**BloxOne DDI now supports conflict resolution for DHCP with multiple options.**</span><br><span style="color: #000000">Conflict resolution ensures that the DNS record's information associated with one DHCP client is not updated by other DHCP clients. For more information, see </span><span style="color: #000000">*[Enabling DDNS for IPv4 Clients](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186714183)*</span><span style="color: #000000">*.*</span><br><span style="color: #000000">**Overall DDI Dashboard Performance enhancements**</span><br><span style="color: #000000">Widgets on the DDI dashboard have been enhanced to improve overall performance with significantly improved result response time. Additionally, all graph time indexes are now standardized to UTC.</span><br><span style="color: #000000">**BloxOne DDI enhances host selection for DHCP HA Groups.**</span><br><span style="color: #000000">Search results are now repaginated to simplify host selection when creating and managing DHCP/DNS config profiles, DHCP HA Groups, and Subnets.</span> |
| 5/13/2022 | Cloud Service Portal | ##### <span style="color: #000000">**BloxOne expands the ability for you to specify custom templates for webhook notifications.**</span><br>You can now integrate your notification platforms by specifying custom templates for webhook notifications. You can specify any number of webhooks and their associated templates and specify the notification types they will be used for. For information, see *[Configuring Service Integrations](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186648695)*. |
| 5/3/2022 | BloxOne Endpoint  
BloxOne Threat Defense  
Data Exchange (TIDE) | <span style="color: #000000">**BloxOne Endpoint enhancements:**</span><br>##### <span style="color: #000000">**You may now implement security policies based on user groups with supported SaaS IdP (Identity Provider) which currently includes Okta and OpenAM.**</span><br><span style="color: #000000">A policy provisioned for a BloxOne Endpoint Group will be applied before a user is authenticated. Once a user is authenticated, it will be possible for the user to browse the Internet or other restricted content as allowed by the policy. For more information, see </span><span style="color: #000000">*[Endpoint SSO Authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374598)*</span><span style="color: #000000">.</span><br>##### <span style="color: #000000">**The BloxOne Endpoint is available for deployment on Chrome OS version 90 and above.**</span><br><span style="color: #000000"> BloxOne Endpoint is available on the following platforms: Microsoft Windows, MacOS, iOS, Android, and Chrome OS. Note that Android and Chrome devices should be managed by Google Admin Console. For more information, see </span><span style="color: #000000">*[Mobile Endpoint Management](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Mobile+Endpoint+Management)*</span><span style="color: #000000">.</span><br>##### <span style="color: #000000">**Scheduling and/or deferring upgrades per endpoint group.**</span><br><span style="color: #000000">It is now possible to evaluate new features and enhancements in a test group before rolling out the upgrade to the entire company. You may also postpone the upgrade to a more convenient date/time per endpoint group. For more information, see </span><span style="color: #000000">*[Scheduling Endpoint Group Updates](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374562)*</span><span style="color: #000000">.</span><br>##### <span style="color: #000000">**Netskope client compatibility with BloxOne Endpont.**</span><br><span style="color: #000000">BloxOne Endpoint is officially certified to run with Netskope client 93.0.1, provided that you disable "Bypass Loopback DNS feature flag" on Netskope. For more information, see </span><span style="color: #000000">*[Endpoint Compatibility Guidelines](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35404661)*</span><span style="color: #000000">. </span><br><span style="color: #000000">**Policy management enhancements**</span><span style="color: #000000">:</span><br>##### <span style="color: #000000">**User authentication and group-based policies with Microsoft Active Directory for DNS Forwarding Proxy (DFP).**</span><br><span style="color: #000000">In addition to SaaS IdP providers Okta, OpenAM, Microsoft Azure Active Directory, it is now possible to authenticate users on Microsoft Active Directory. This service is supported for standalone DFP (deployed in a VM or as a container) or running with BloxOne DDI services. For more information, see </span><span style="color: #000000">*[Configuring Microsoft Windows Active Directory Sync for Hosts](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Microsoft%20Windows%20Active%20Directory%20Sync%20for%20On-Prem%20Hosts)*</span><span style="color: #000000">. </span><br>##### <span style="color: #000000">**Access authentication exceptions based on subnets or individual IP addresses.**</span><br><span style="color: #000000">To allow non-authenticated access for IoT and infrastructure devices to the same DFP infrastructure used by other users, you can now define exceptions based on subnets or individual IP addresses. For more information, see </span><span style="color: #000000">*[Associating Authentication Profiles with Servers](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35365761)*</span><span style="color: #000000">.</span><br>##### <span style="color: #000000">**Support for safe search enforcement.**</span><br><span style="color: #000000">DNS category filtration provides good protection against explicit content, but search engines themselves can provide access to restricted content. For compliance reasons, or simply to prevent juveniles or other users access to such content, search engines provide "safe" versions of their search engines, which filter out inappropriate results. To help enforce the policy for all devices, this new policy feature can automatically redirect users to a safe version of the supported search engines. This feature currently supports the following search engines: Google Search, Bing, Youtube, and Yandex. For more information, see </span><span style="color: #000000">*[Safe Search Enforcement](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Safe+Search+Enforcement)*</span><span style="color: #000000">.</span><br>##### <span style="color: #000000">**Local DNS request processing optimization.**</span><br><span style="color: #000000">To reduce the number of noise requests forwarded to the cloud and to avoid misconfiguration, DFP and BloxOne Endpoint will automatically forward all PTR requests for any private subnets (e.g. 10.0.0.0/8, 192.168.0.0/16, etc.) to local DNS servers. With this enhancement, you will not need to list such subnets in the internal domains or custom allow lists. For more information, see </span><span style="color: #000000">*[Forwarding DNS Traffic to BloxOne Threat Defense Cloud](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Forwarding+DNS+Traffic+to+BloxOne+Threat+Defense+Cloud)*</span><span style="color: #000000">*.*</span><span style="color: #000000"> </span><br>##### <span style="color: #000000">**BloxOne Threat Defense RESTful API updates.**</span><br>- <span style="color: #000000">dns_event API endpoint is refined to support the following capabilities:</span>
  - <span style="color: #000000">Filtering by: feed/custom list name, feed/custom list type, domain category, application, endpoint name, user group, host name, client's subnet/IP, threat class, threat property, threat indicator, DNS view for NIOS logs.</span>
  - <span style="color: #000000">Additional metadata in response: username, user group, application, feed/custom list name, feed/custom list type, domain category.</span>
- <span style="color: #000000">Additional REST API enhancements: </span>
  - <span style="color: #000000">Substring match support</span>
  - <span style="color: #000000">Managing individual entries in the list of internal domains</span>
  - <span style="color: #000000">Response pagination for custom lists</span><br><span style="color: #000000">For more information, see </span><span style="color: #000000">*[DNS Event](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/DNS+Event)*</span><span style="color: #000000"> and </span><span style="color: #000000">*[BloxOne Threat Defense API Guide](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Appendix+D%3A+BloxOne+Threat+Defense+API+Guide)*</span><span style="color: #000000">.</span><br>##### <span style="color: #000000">**Infoblox introduces a new NTP service for all BloxOne Threat Defense Business Cloud and Advanced customers to reduce dependency on third-party services and to ensure that a common time source is used for all devices, .**</span><br><span style="color: #000000">The NTP service can be deployed standalone, or along with DNS Forwarding Proxy or other services on hosts. You can configure the NTP service uniformly across the account with the possibility of overriding locally on the host wherever NTP service is deployed. The service supports detailed configuration, including authentication, specific attributes, and access control lists. For more information, see </span><span style="color: #000000">*[Configuring NTP Service](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Configuring+NTP+Service)*</span><span style="color: #000000">*.*</span><br><span style="color: #000000">**Dossier and TIDE enhancements**</span><span style="color: #000000">:</span><br>##### <span style="color: #000000">**Bring Your Own Feed (BYOF) – A new method to create RPZ feeds from TIDE Custom Profiles. **</span><br><span style="color: #000000">You can now define an RPZ name during the creation of a TIDE profile to have it automatically create an RPZ file from data uploaded to TIDE. Users who have access to other third-party data sources shared with TIDE can better utilize these feeds using the DNS firewall or when sharing threat intel to other solutions in the security stack. For more information, see </span><span style="color: #000000">*[TIDE Data Submission on the Cloud Services Platform](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/TIDE+Data+Submission+on+the+Cloud+Services+Platform)*</span><span style="color: #000000">.</span> |
| 4/29/2022 | Cloud Services Portal | **Enhancement:** You can now remove B1-105 physical hosts from the Cloud Services Portal. For more information , see *[Removing Hosts](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Removing%20Hosts)* and *[Deploying the B1-105 Appliance](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneDDI&title=Deploying%20the%20B1-105%20Appliance)*. |
| 4/29/2022 | Cloud Services Portal | **Enhancement:** You can now remove B1-105 physical hosts from the Cloud Services Portal. For more information , see *[Removing Hosts](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Removing%20Hosts)* and *[Deploying the B1-105 Appliance](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneDDI&title=Deploying%20the%20B1-105%20Appliance)*. |
| 4/20/2022 | Cloud Services Portal | <span style="color: #000000">**Enhancement: **</span><span style="color: #000000">The point of presence (PoP) in South Africa has been updated to enhance BloxOne services and DNS performance.</span> |
| 4/11/2022 | Cloud Services Portal | **Enhancement**: In-app and email notifications are now sent from BloxOne prior to user and service API key expiration. Notifications occur on a daily basis two weeks prior to and up through the date of expiration. For more information on user and service API keys, see <span style="color: #000000">*[Configuring User API Keys](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Configuring+User+API+Keys)*</span><span style="color: #000000"> and </span><span style="color: #000000">*[Configuring Service API Keys](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Configuring+Service+API+Key)*</span><span style="color: #000000">, respectively.</span> |
| 4/8/2022 | Cloud Services Portal | **Enhancement**: Infoblox supports the deployment of hosts via the Microsoft® Azure Marketplace. You can now deploy <span style="color: #000000">BloxOne for Azure virtual appliances directly from the Azure Marketplace</span>. For more information, see *[Deploying NIOS-X Servers from the Azure Marketplace](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/204800816)*. |
| 4/7/2022 | Cloud Services Portal | **Enhancement**:<br>- You can view upcoming release announcements on the Cloud Services Portal home page. Information on future BloxOne features and products will now be announced on the Cloud Services Portal. The new section is called “Upcoming Releases,” noting what is coming and the estimated release date. You may also opt to receive in-app or email notifications of upcoming releases by visiting the **Notification Settings** page . For more information, see *[Configuring Notification Delivery](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35407896)*.
- <span style="color: #000000">Infoblox BloxOne extends log exports to now include DHCP logs, DNS logs, and Security logs to your dedicated Amazon S3 bucket. </span>For more information, see *[Exporting Logs](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186778389)*. |
| 4/2/2022 | BloxOne DHCP | **Enhancement**: BloxOne DDI now supports sending DHCP options that are longer than 255 bytes (by sending the options in multiple consecutive packets). For more information, see *[Configuring DHCP Options](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186714220)*. |
| 3/29/2022 | Cloud Services Portal | **Feature**:<br>- You can deploy hosts in AWS using Infoblox-provided Community or Public BloxOne AMI images. For more information, see *[EC2 Instances Using AMI in AWS Deployment](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=EC2%20Instances%20Using%20AMI%20in%20AWS%20Deployment)*.
- You can filter hosts deployed in AWS by "**BloxOne VM - AWS**” on the **Host** page of the Cloud Services Portal. For more information, see *[Viewing Host Statu](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Viewing%20Host%20Status)*[s](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Viewing%20Host%20Status). |
| 3/28/2022 | Cloud Services Portal | **Enhancement**: You can now receive email and/or in-application notifications of new release information based on your entitled BloxOne subscriptions. You can modify this setting in the Notification Settings page for specific user groups by choosing the “New Release Notifications” in-app and/or email setting.<br>For more information, see *[Configuring Notification Delivery](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35407896)*. |
| 03/25/2022 | BloxOne Dossier | **Enhancement**: The Dossier™ Summary page now includes a link to a feedback submission form where you can report indicator information found contrary to the information being reported by Dossier. You can report the following types of incorrect threat indicator information:<br>- <span style="color: #000000">False positive and false negative threat data. </span>
- Incorrect web category information.
- <span style="color: #000000">Incorrect lookalike detection information.</span>
- <span style="color: #000000">Incorrect application detection information.</span><br>For more information, see *[Dossier Threat Research Feedback](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/230493737)*. |
| 03/24/2022 | BloxOne DNS  
BloxOne DHCP | **Enhancement: **Data Connector provides the following enhancements:<br>- <span style="color: #000000">Sends additional DHCP-enriched logs, including certain metadata and field names, to all applicable destinations in CEF/LEEF log format.</span>
- <span style="color: #000000">Provides the hostname and device name as part of the syslog messages. </span><br><span style="color: #000000">For more information, see </span><span style="color: #000000">*[Configuring Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375761)*</span><span style="color: #000000">*.*</span> |
| 03/19/2022 | BloxOne DNS | ##### <span style="color: #000000">**Enhancement: **</span><span style="color: #000000">The BloxOne DDI DNS container v3.1.6 addresses the following vulnerabilities: CVE-2022-0396 and CVE-2021-25220.</span><br>- <span style="color: #000000">CVE-2022-0396: When BIND is configured to disable processing of TCP queries in parallel (option "keep-response-order”),  it consumed TCP connection slots indefinitely via a specifically crafted TCP stream sent by a client.</span>
- <span style="color: #000000">CVE-2021-25220: An issue in BIND affects some resolvers configured with certain forms of forwarding. Out-of-bailiwick NS records in crafted responses, for example, sent by a malicious forwarder, may be cached under certain circumstances and potentially used for subsequent recursion.</span> |
| 03/03/2022 | BloxOne DNS  
BloxOne DHCP | **Enhancement**: <span style="color: #000000">You can now review active IP addresses and total BloxOne instances on the BloxOne Dashboard, which assists you in managing BloxOne licenses and capacity planning as well as investigating sources of active IP addresses to ensure the network infrastructure and design align with your business requirements. The BloxOne dashboard now includes a License Utilization tab, showing active IP addresses and total BloxOne instances. For more information, see </span><span style="color: #000000">*[Viewing the Dashboard](https://infoblox-docs.atlassian.net/wiki/display/BloxOneDDI/Viewing+the+Dashboard)*</span><span style="color: #000000">*.*</span> |
| 02/25/2022 | Cloud Services Portal | **Enhancement**: Anycast BGP configuration for hosts now supports 4-byte ASNs, including ASPLAIN and ASDOT formats. For more information, see <span style="color: #000000">*[Configuring Anycast for Hosts](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Configuring%20Anycast%20for%20Hosts)*</span><span style="color: #000000">*.*</span> |
| 02/18/2022 | BloxOne DNS  
BloxOne DHCP | **Enhancement**:<br>- <span style="color: #000000">BloxOne DDI now supports DHCPv6 (so you can assign IP addresses to IPv6 clients) and IP address management (IPAM) functionality for IPv6 networks. </span>You can assign IP addresses to IPv6 clients while managing IP addresses and DHCP options as well as viewing logs and metrics for IPv6 clients, subnets, and networks via the Cloud Services Portal. For more information, see *[Configuring DHCP Options](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11013661)**.*  You can also create IPv6 networks, subnets, and addresses via the Cloud Services Portal. For more information, see *[Creating IP Spaces](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11011329)*.
- <span style="color: #000000">You can now troubleshoot GSS-TSIG issues through the Cloud Services Portal. </span>You can generate a list of issues in the keytab, counter, or crypto components of GSS-TSIG through the **Troubleshoot** menu on the **DNS Servers** page or the **Hosts** page of the Cloud Services Portal.  For more information, see *[Troubleshooting GSS-TSIG](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11013823)*.
- <span style="color: #000000">You can now configure the DHCP server to prefer DHCP option 12 (hostname) over option 81 (FQDN) for DDNS updates. For more information, see </span><span style="color: #000000">*[Enabling DDNS for IPv4 Clients](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/11013671)*</span><span style="color: #000000">.</span> |
| 02/02/2022 | BloxOne Endpoint | **Enhancement**: <span style="color: #000000">BloxOne endpoints are no longer displayed in the Cloud Services Portal once they are moved to the recycle bin.</span><br>- Statistics reported in the details pane of the **Endpoints** page no longer include deleted endpoints.
- Endpoints restored from the recycle bin are assigned disabled status by default.
- <span style="color: #201f1e">When an endpoint group is deleted, all endpoints residing within the deleted group are moved to the default endpoint group.</span>
- When restoring a deleted endpoint from a deleted endpoint group, the restored endpoint remains a member of the default endpoint group.<br><span style="color: #000000">For more information, see </span>*[Managing Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35374260)*. |
| 01/28/2022 | BloxOne DNS | **Enhancement: **<span style="color: #000000">DNS objects, such as DNS views, authoritative zones, forward zones, access control lists, and others are now supported in Global Search. This expands the set of available objects and tags to quickly find and take actions on hosts, devices, and users throughout the enterprise. For more information, see </span><span style="color: #000000">*[Using Global Search](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186400787)*</span><span style="color: #000000">.</span> |
| 01/12/2022 | BloxOne Endpoint  
BloxOne Threat Defense  
BloxOne Ecosystem | **Feature and Enhancement:**<br>- <span style="color: #000000">BloxOne Endpoint supports the following endpoint clients: Akamai Enterprise Applications Access (EAA) VPN client and Zscaler Client Connector with VPN client. For more information, see </span><span style="color: #000000">*[Endpoint Compatibility Guidelines](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35404661)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">BloxOne Endpoint supports the following operating systems: Windows 11 and macOS Monterey. For more information, see </span><span style="color: #000000">*[Supported Browsers and Operating Systems](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35441170)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">BloxOne Mobile Endpoint Management has the following enhancements: allows sending log files directly to the Cloud, m</span>ultiple Anycast support, reestablishment of endpoint protection. <span style="color: #000000">For more information, see </span><span style="color: #000000">*[Managing Mobile Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470955)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">To simplify management of security policies, you can now create and modify many objects inline, including custom lists, category filters, and endpoint groups. For more information, see </span><span style="color: #000000">*[Configuring Security Policie](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35371559)*</span><span style="color: #000000">[s](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35371559)</span><span style="color: #000000">.</span>
- <span style="color: #000000">BloxOne Threat Defense now supports several new objects for data import and export. For more information, see </span><span style="color: #000000">*[Importing and Exporting Data](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35396990)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">Data Connector now sends DHCP enriched logs, including certain metadata and field names, to all applicable destinations in CEF/LEEF log format.  For more information, see </span><span style="color: #000000">*[Configuring Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375761)*</span><span style="color: #000000">.</span> |
| 01/11/2022 | Cloud Services Portal | **Enhancement:**<br>- <span style="color: #000000">Infoblox supports the deployment of hosts in KVM-hypervisor-based deployments. </span>You can now deploy hosts through KVM-hypervisor-based virtual appliances, using Infoblox-provided QCOW2 packages you download from the Cloud Services Portal. For information, see *[Bare-metal KVM Deployment](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=QCOW2%20on%20KVM%20Hypervisor%20Deployment)* and *[OpenStack with KVM Hypervisor Deployment](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=OpenStack%20with%20KVM%20Hypervisor%20Deployment)*.
- <span style="color: #000000">BloxOne now provides high-capacity Microsoft Azure VHD packages for deploying hosts. </span>Depending on your business requirements, BloxOne now supports high-capacity Microsoft Azure VHD installation packages you download from the Cloud Services Portal. For information, see *[Downloading Infoblox Apps](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35473256)*.
- <span style="color: #000000">Infoblox supports the deployment of hosts on DELL 1425 and 1485 VEP hardware. </span>You can now deploy hosts on DELL VEP hardware, using Infoblox-provided ISO packages you download from the Cloud Services Portal while creating hosts using the serial number option. For information, see *[Hardware Appliance Deployment](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=Hardware%20Appliance%20Deployment)*.
- <span style="color: #000000">The Device UI provides additional information to improve troubleshooting during host deployments. </span>The Device UI provides additional information about the accuracy of the "join token" that you have entered via the Device UI or via cloud-init values, and the serial number that you have entered via the Cloud Services Portal. For information, see *[Troubleshooting Hosts](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Troubleshooting%20Hosts)**.* |
| 01/05/2022 | BloxOne Ecosystem | <span style="color: #000000">**Enhancement: **</span><span style="color: #000000">Infoblox Data Connector now supports sending logs from BloxOne and NIOS sources to a Splunk Cloud destination in Splunk CIM or legacy Infoblox data format. </span>For more information, see *[Configuring Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375761)*. |
| 01/04/2022 | BloxOne Threat Defense | <span style="color: #000000">**Enhancement: **</span><span style="color: #000000">Depreciation of the ActiveTrust Platform</span><span style="color: #000000">**.**</span><br>Infoblox replaced the ActiveTrust platform three years ago with the introduction of BloxOne Threat Defense built on the Cloud Service Platform, a modern and scalable platform built for a future of dynamic cloud-native security and networking solutions. Most customers have already migrated but there may still be a few using legacy connectors. Please ensure any use of the legacy system at (*[platform.activetrust.net](http://platform.activetrust.net)*) has been moved to the new cloud services portal (*[csp.infoblox.com](http://csp.infoblox.com)*). For developer resources please visit the TIDE and DOSSIER guide for CSP, and If you have any additional questions, please contact Infoblox Support at 888-463-6259. |
| 12/17/2021 | BloxOne Threat Defense | <span style="color: #000000">**Enhancement: **</span><span style="color: #000000">The Security Activity Report permanently replaces the former Security Report.</span><br>Since the release of the new Security Activity Report to Infoblox Threat Defense about a year ago, the former Security Report has been retained to ease with the transition. As newer reporting capabilities have been added to the new Security Activity Report, dependence on the older report has declined and it is time to remove it.<br>There is no action required on your part as the former Security Report will be removed from the Cloud Services Platform menu after December 17, 2021. |
| 12/16/2021 | BloxOne DHCP | <span style="color: #000000">**Enhancement:**</span><br>- <span style="color: #000000">Support the ability to configure DHCP server to ignore UID (Unique Client Identifier) when issuing IPv4 DHCP leases and identify DHCP clients solely based on their MAC address. For more information, see </span><span style="color: #000000">*[Defining Lease Times](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186778823)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">New standard option codes 78, 79, 94, 146, 159, and 212 are now available in the DHCP4 option space. While these options have a record-based format, they are input as hex values and their format is partially validated. For more information, see </span><span style="color: #000000">*[DHCP Option Data Types](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186778995)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">New System Defined DHCPv4 fingerprints are available for additional device classes and with new option number sequences. For example, new option number sequences are available for Microsoft Windows Kernel 4.0 system and Apple iOS and Mac OS X. For more information, see </span><span style="color: #000000">*[Configuring DHCPv4 Fingerprints](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713970)*</span><span style="color: #000000">.</span> |
| 12/04/2021 | BloxOne DHCP | **Enhancement**: When using the DHCP/DDNS service, you now have an option to strip the hostname from the client-provided FQDN, as part of DHCP option 81. For more information, see<span style="color: #000000"> </span><span style="color: #000000">*[Enabling DDNS for IPv4 Clients](https://infoblox-docs.atlassian.net/wiki/display/BloxOneDDI/Enabling+DDNS+for+IPv4+Clients)*</span><span style="color: #000000">.</span> |
| 11/30/2021 | BloxOne Dossier | **Enhancement**: The Dossier Summary report page now includes additional application detection data in the returned search results. The additional detection information includes the domain's SSL certificate when available along with the application classification information for the domain. The application classification data indicates whether the searched domain possesses malicious content or whether it is benign. The Dossier API has been updated to include the two new data parameters. For more information, see the<span style="color: #000000"> </span><span style="color: #000000">*[Dossier Summary report.](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Summary)*</span> |
| 11/18/2021 | BloxOne Ecosystem | **Feature**: Data Connector now sends DHCP lease logs to all applicable destinations and supports CIM and the legacy Infoblox data format for Splunk destinations. <span style="color: #000000">For more information, see </span><span style="color: #000000">*[Configuring Traffic Flows](https://infoblox-docs.atlassian.net/wiki/display/BloxOneThreatDefense/Configuring+Traffic+Flows)*</span><span style="color: #000000">.</span> |
| 10/30/2021 | BloxOne DNS  
BloxOne DHCP | **Maintenance**: The BloxOne DDI DNS container v3.1.4 addresses the following vulnerability: CVE-2021-25219. <span style="color: #000000">For more information, see </span><span style="color: #000000">*[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*</span><span style="color: #000000">*.*</span> |
| 10/19/2021 | BloxOne Cloud Services Portal  
BloxOne Threat Defense  
BloxOne DNS  
BloxOne DHCP | **Enhancement**:<br>- <span style="color: #000000">BloxOne introduces new status and message for initial deployment of non-NIOS hosts.  When deploying a non-NIOS host, you can now view its initial deployment status and message in the Platform Management section of the Manage > Host page of the Cloud Services Portal. For more information, see </span><span style="color: #000000">*[Viewing Host Status](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Viewing%20Host%20Status)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">Data Connector sends additional enriched data fields for Threat Defense Query/Response and Threat Feeds Hits logs to all applicable destinations. For more information, see </span><span style="color: #000000">*[Configuring Traffic Flows](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375761)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">BloxOne adds support for VMware ESXi server versions 6.7 and 7.0 for host deployment. For more information, see </span><span style="color: #000000">*[Supported Platforms for Hosts](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=Supported%20Platforms%20for%20Hosts)*</span><span style="color: #000000">.</span> |
| 10/01/2021 | BloxOne Cloud Services Portal  
BloxOne DNS  
BloxOne DHCP | **Feature**:<br>- Ansible is now supported to automate DNS, DHCP and IPAM operations. Modules and sample playbooks are available on the Infoblox GitHub page at[ https://github.com/infobloxopen/bloxone-ansible](https://github.com/infobloxopen/bloxone-ansible). For more information, see *[Ansible Collections for Universal DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186648166)*.
- <span style="color: #000000">DNS IPv6 resource records are now supported in all DNS zones, providing support for dual-stack (IPv4/IPv6) applications and clients. For more information, see </span><span style="color: #000000">*[Creating a Primary Zone](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681644)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">DHCP objects, such as MAC addresses, networks, and host names, are now supported in Global Search. This expands the set of objects and tags available to quickly find and take action on hosts, devices, and users throughout the enterprise. For more information, see </span><span style="color: #000000">*[Using Global Search](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186400787)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">BloxOne DDI now explicitly updates secondary DNS servers when DNS records are changed. This enables timely synchronization of zones for global DNS deployments. For more information, see </span><span style="color: #000000">*[Creating a Primary Zone](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186681644)*</span><span style="color: #000000">.</span>
- BloxOne DDI now supports the next-server, server-hostname, and bootp-file-name fields, as well as DHCP options 124 and 125. For more information, see *[Configuring DHCP Options](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186714220)*.
- BloxOne DDI offers an easy method for you to migrate DHCP networks from NIOS to BloxOne. With this change, the DHCP options associated with IP space can optionally be preserved. For more information, see *[Copying IP Spaces](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186401544)*.<br>**Enhancement**:<br>- The Cloud Services Portal now displays the previous **Address/Name** column of a subnet in the **Address Block** tab as two columns: **Address** and** Name**. This change does not affect functionality. For more information, see *[Configuring Subnets](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186401207)*. |
| 09/21/2021 | BloxOne Cloud Services Portal  
BloxOne Threat Defense  
BloxOne Endpoint | **Feature**:<br>- <span style="color: #000000">This BloxOne release introduces mobile endpoint management for iOS and Android devices. For more information, see </span><span style="color: #000000">*[Managing Mobile Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9076770)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">BloxOne Endpoint supports the automatic removal of regular and mobile endpoints. For more information, see </span><span style="color: #000000">*[Automatic Removal of an Endpoint After a Period of Inactivity](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9078308)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">BloxOne Endpoint provides endpoint password protection against unauthorized interference. For more information, see </span><span style="color: #000000">*[Creating Endpoint Groups](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9080712)*</span><span style="color: #000000">*.*</span>
- <span style="color: #000000">This BloxOne Threat Defense release provides the ability to move objects to the Recycle Bin and restore the objects as required. For more information, see </span><span style="color: #000000">*[Recycle Bin](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneCloud/pages/35397511)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">BloxOne Endpoint now supports enabling and disabling endpoints by endpoint group. For more information, see </span><span style="color: #000000">*[Enabling and Disabling Endpoints by Grou](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9078301)*</span><span style="color: #000000">[p](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9078301)</span><span style="color: #000000">.</span>
- <span style="color: #000000">You can now easily reorder security policy precedence using drag-and-drop functionality. For more information, see </span><span style="color: #000000">*[Creating Security Policies](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9080818)*</span><span style="color: #000000">*.*</span>
- <span style="color: #000000">This BloxOne Threat Defense release now supports click-through capability for dashboard widgets. For more information, see </span><span style="color: #000000">*[Viewing the Dashboard](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOne/pages/9080483)*</span><span style="color: #000000">.</span><br><span style="color: #000000">**Enhancement**</span><span style="color: #000000">:</span><br>- <span style="color: #000000">Dossier  enhances threat investigation through threat scoring and deeper integration with Security Activity reports.</span> <span style="color: #000000">For more information, see </span><span style="color: #000000">*[/wiki/spaces/~5f0f5ad9502ce1001d1bd220/pages/35369274](https://infoblox-docs.atlassian.net/wiki/spaces/~5f0f5ad9502ce1001d1bd220/pages/35369274)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">This release includes BloxOne Threat Defense reporting enhancements for the Cloud Services Portal. For more information, see </span><span style="color: #000000">*[Viewing Reports](https://infoblox-docs.atlassian.net/wiki/pages/viewpage.action?pageId=9932331)*</span><span style="color: #000000">*.*</span> |
| 09/03/2021 | BloxOne DNS  
BloxOne DHCP | **Feature**:<br>- <span style="color: #000000">Data import/export now supports the CSV file format in addition to JSON. For more information, see </span><span style="color: #000000">*[Importing and Exporting Data](https://infoblox-docs.atlassian.net/wiki/spaces/ddiadminguidensdraft/pages/52265011)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">Infoblox now provides a software image to simplify the deployment of BloxOne hosts in Microsoft Azure Cloud. For more information, see </span><span style="color: #000000">*[Microsoft Azure Deployment](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=Microsoft%20Azure%20Deployment)*</span><span style="color: #000000">.</span>
- <span style="color: #000000">This release consists of DNS and DHCP service updates that will be applied to hosts running BloxOne DDI DNS and DHCP services.  </span> |
| 08/27/2021 | BloxOne DNS  
BloxOne DHCP | **Maintenance**: The BloxOne DDI Reporting Service will be under maintenance for 90 minutes starting Friday, August 27th 11:00 PM UTC. The DDI DNS and DHCP reports on the Cloud Services Portal (CSP) would be unavailable during the maintenance. All other reports and services would remain unaffected. |
| 08/12/2021 | BloxOne Cloud Services Portal  
BloxOne DNS  
BloxOne DHCP  
SSO Portal | <span style="color: #000000">**Feature:**</span><br>- <span style="color: #000000">The Infoblox SSO Portal now supports single IdP authentication for multiple domains. </span>For more information, see *[Configuring IdP Authentication](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35466484)*.
- <span style="color: #000000">Infoblox supports the deployment of hosts in Microsoft Azure.</span>For more information, see *[Microsoft Azure Deployment](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=Microsoft%20Azure%20Deployment)*.
- <span style="color: #000000">You can download service logs using the BloxOne API. For more information, see </span><u><span style="color: #0000ff">*[https://csp.infoblox.com/apidoc](https://csp.infoblox.com/apidoc)*</span></u><span style="color: #3e3f40">*.*</span><br><span style="color: #000000">**Enhancement:**</span><br>- <span style="color: #000000">The former host type "BloxOne OVA" is now displayed as "BloxOne VM" on the Cloud Services Portal.</span>For more information, see *[Viewing Host Status](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Viewing%20Host%20Status)*.
- <span style="color: #000000">This BloxOne release adds sub types to these host types: "BloxOne Appliance" and "BloxOne VM."</span>For more information, see <span style="color: #172b4d">*[Viewing Host Status](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=BloxOneThreatDefense&title=Viewing%20Host%20Status)*</span><span style="color: #172b4d">.</span>
- <span style="color: #000000">BloxOne now provides high-capacity OVA packages for deploying hosts. </span><span style="color: #000000">**F**</span>or information, see *[Downloading Infoblox Apps](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35473256)*.
- <span style="color: #000000">Data Connector supports sending log messages in Common Information Model (CIM) format when you configure Splunk as the destination</span><span style="color: #000000">**. **</span>For information, see *[Setting Up Splunk](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375962)*. |
| 07/08/2021 | BloxOne Cloud Services Portal | **Enhancement**: Email notifications on administrative events to Infoblox Single Sign-On (SSO) Portal administrators. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)** *and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 06/29/2021 | BloxOne Threat Defense  
BloxOne DHCP | **Feature**: Define security and DNS resolution policies on a per-application basis; Infoblox local resolution; DNS SVCB and HTTPS records <span style="color: #000000">can be used to pass DNS firewall and provide information on how to connect to malicious or undesirable destinations; improved interface for the Dossier Threat Research Portal; updated Dossier and TIDE developer guides; BloxOne Endpoint supports the Apple M1 CPU; new DNS Point of Presence (PoP) in Bahrain; support of import/export of DHCP/IPAM data for BloxOne DDI. </span>For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)** *and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 06/18/2021 | BloxOne Cloud Services Portal | **Feature**: Dual-stack support for on-prem networks; MTU configuration; JSON template for on-prem configuration; global search. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)** *and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 06/11/2021 | BloxOne DNS  
BloxOne DHCP | **Feature**: The next available subnets and address blocks; configuring the MNAME in the DNS SOA record; ability to copy DNS objects between DNS views; <span style="color: #000000">creating multiple vendor DHCP option spaces that are independent of each other; configuring BloxOne DDI to send alerts/notifications when an HA peer changes status. For more information, see </span><span style="color: #000000">*[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*</span><span style="color: #000000">*.*</span><span style="color: #000000"> </span> |
| 05/18/2021 | BloxOne Cloud Services Portal | **Enhancement**: C<span style="color: #000000">ustom webhook integration for notifications. For more information, see </span><span style="color: #000000">*[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*</span><span style="color: #000000">* *</span><span style="color: #000000">and </span><span style="color: #000000">*[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*</span><span style="color: #000000">*.*</span> |
| 05/14/2021 | BloxOne DNS  
BloxOne DHCP | **Feature**: Defer application restarts; configuration-generated versioning reduces downtime; BloxOne DDI service status integrated with the Cloud Services Portal; support of DNS zone delegation.  <span style="color: #000000">For more information, see </span><span style="color: #000000">*[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*</span><span style="color: #000000">*.*</span><span style="color: #000000"> </span> |
| 05/03/2021 | BloxOne DNS | **Enhancement**: Overriding <span style="color: #000000">DDNS settings at the IP Space, Address Block, and Subnet levels</span>. <span style="color: #000000">For more information, see </span><span style="color: #000000">*[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*</span><span style="color: #000000">*.*</span><span style="color: #000000"> </span> |
| 04/28/2021 | BloxOne DNS  
BloxOne DHCP | **Maintenance**: The BloxOne DDI DNS container version v3.0.5 addresses the following vulnerabilities: CVE-2021-25216, CVE-2021-25215, and CVE-2021-25214. <span style="color: #000000">For more information, see </span><span style="color: #000000">*[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*</span><span style="color: #000000">*.*</span><span style="color: #000000"> </span> |
| 04/24/2021 | BloxOne DNS  
BloxOne DHCP | **Enhancement**: DNS and DHCP application updates applied to hosts running BloxOne DDI DNS and DHCP services; i<span style="color: #000000">mprovements made to the handling of sub-option 125 within DHCP custom option spaces to allow most formats. For more information, see </span><span style="color: #000000">*[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*</span><span style="color: #000000">*.*</span><span style="color: #000000"> </span> |
| 04/13/2021 | BloxOne DNS  
BloxOne DHCP | **Feature**: BloxOne DDI adds the following new reports for DNS and DHCP: Total DNS Queries per Second (QPS) Report, Total DNS Responses Report, Total DNS Queries Report, Top DHCP Clients Report, and Total DHCP Leases Report. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 04/09/2021 | BloxOne Cloud Services Portal | **Enhancement**: <span style="color: #000000">Infoblox changed the "From" address for BloxOne notifications.</span> For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)** *and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)* |
| 04/07/2021 | BloxOne Cloud Services Portal | **Feature**: <span style="color: #000000">Support for customer-provided Identity Providers using the standard SAML 2.0 interface.</span> For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)** *and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)* |
| 03/23/2021 | BloxOne Threat Defense | **Feature**: Security activity report rollup summary; IPAM interface for managing internal networks; IPv6 support for anycast and external networks; BloxOne Endpoint uninstallation using a password. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 03/17/2021 | BloxOne DHCP | **Enhancement**: <span style="color: #000000">The recycle bin now supports DHCP Fingerprints. For more information, see </span><span style="color: #000000">*[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*</span><span style="color: #000000">*.*</span> |
| 03/12/2021 | BloxOne DNS | **Maintenance**: The value of the resolver query timeout for DNS can now be set between 10 - 30 seconds (instead of 1 – 30 seconds). The default value is now 10 seconds (instead of 30 seconds). |
| 03/08/2021 | BloxOne DNS  
BloxOne DHCP | **Enhancement**: Options to receive alert notifications for the following service status: DNS, DHCP, Data Connector, Anycast, and Authentication. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 02/22/2021 | BloxOne DNS  
BloxOne DHCP | **Feature**: Ability to move objects to the recycle bin and restore the objects as required. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 02/22/2021 | BloxOne Cloud Services Portal | **Feature**: Ability to view the state for anycast configuration and status for Anycase service; support for multiple scheduled and deferred software and configuration updates; **Help me sign in** process improvement. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)** *and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)* |
| 02/16/2021 | BloxOne Cloud Services Portal | **Feature**: Interactive and service API keys; filter configuration persistence on the Cloud Services Portal. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)** *and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 02/05/2021 | BloxOne DNS  
BloxOne DHCP | **Feature**: DHCP HA in hub-and-spoke; copy IPAM and DHCP objects within IP spaces; ability to create TSIG keys while creating DNS and DHCP objects; additional details for a host displayed on the Cloud Services Portal: Uptime, Last Update time, and Component Updated. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 02/05/2021 | BloxOne Threat Defense | **Enhancement**: Additional details for a host displayed on the Cloud Services Portal: Uptime, Last Update time, and Component Updated. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 01/26/2021 | BloxOne Threat Defense | **Feature**: Restart host through Troubleshoot; ability to select network interface for traceroute and traffic capture; ability to reactivate tags. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 01/26/2021 | BloxOne DNS  
BloxOne DHCP | **Feature**: Restart host and clear DNS cache through Troubleshoot; ability to select network interface for traceroute and traffic capture; ability to reactivate tags. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 01/26/2021 | BloxOne Ecosystem | **Enhancement**: Additional fields in the CEF, LEEF, and CSV reporting messages. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 01/21/2021 | BloxOne Threat Defense  
BloxOne DNS  
BloxOne DHCP | **Feature**: Infoblox SSO Portal adds support for ForgeRock<span style="color: #000000"> as the 3rd party IdP using the SAML 2.0 protocol</span>. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)** *and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 12/18/2020 | BloxOne Endpoint | **Enhancement**: Added support for Appgate VPN. |
| 12/12/2020 | BloxOne Threat Defense | **Feature**: New access authentication service through captive portal and third-party IdPs; enhanced security policy configuration wizard; discovered DHCP metadata displayed in DNS Activity and Security Events reports; serial numbers for physical appliances are displayed on the Cloud Services Portal and are searchable and filterable. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 12/12/2020 | BloxOne DNS  
BloxOne DHCP | **Feature**: Serial numbers for physical appliances are displayed on the Cloud Services Portal and are searchable and filterable. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 12/4/2020 | BloxOne DNS  
BloxOne DHCP | **Feature**: New Dashboard Widgets, DNS UDP packet size configuration, clearing DNS cache, and DHCP lease logs to syslog servers through Data Connector. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 11/30/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Lookalike domains update. |
| 11/18/2020 | BloxOne Endpoint | **Enhancement**: macOS Big Sur support, option to hide icon in systray, and download package name change to BloxOne Endpoint. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 11/18/2020 | BloxOne Threat Defense | **Enhancement**: Custom List IPv6 support. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 11/13/2020 | BloxOne Cloud Services Portal | **Feature**: Contextual help for the Cloud Services Portal. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)* and *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 10/30/2020 | BloxOne Ecosystem | **Enhancement**: CSV file to Splunk, and count fields for DNS data. |
| 10/29/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Lookalike domains update. |
| 10/28/2020 | BloxOne Threat Intelligence Data Exchange (TIDE) | **Maintenance**: Load balancer update. |
| 10/26/2020 | BloxOne DNS  
BloxOne DHCP | **Feature**: Enhancements to the support for TSIG keys and support for DDNS update with TSIG. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 10/17/2020 | BloxOne DNS  
BloxOne DHCP | **Feature**: Granular configuration of inheritance, view or download NIOS Grid Connector logs, and thresholds for DHCP utilization. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)**.* |
| 10/16/2020 | BloxOne Dossier | **Feature**: New *Impacted Devices* report, support for custom list management in Dossier, and viewing whitelisted domains in Dossier. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 10/13/2020 | BloxOne Cloud Services Portal | **Enhancement**: Updates to SSO unlock user and k8s best practices. |
| 10/13/2020 | BloxOne Cloud Services Portal | **Enhancement**: Changes to BloxOne DDI dashboard permissions. |
| 10/9/2020 | BloxOne Cloud Services Portal | **Enhancement**: Dashboards with updated metrics of TCP connection usage. |
| 10/8/2020 | BloxOne Threat Intelligence Feeds/Services | **Enhancement**: Improved search configuration and logging threshold. |
| 10/8/2020 | BloxOne Cloud Services Portal | **Enhancement**: Support for new entitlement expiry behavior and framework for recycle bin and contextual help for future releases. |
| 9/30/2020 | BloxOne Cloud Services Portal | **Enhancement**: Enhancements to authentication and authorization for join tokens. |
| 9/29/2020 | BloxOne Ecosystem | **Enhancement**: Improved Data Connector password encryption. |
| 9/25/2020 | BloxOne Threat Intelligence Feeds/Services | **Enhancement**: Enhanced threat intelligence log indexer service to reduce logs and consolidate logging infrastructure. |
| 9/25/2020 | BloxOne DNS | **Enhancement**: Enhanced tag import and host ID entries for BloxOne DDI. |
| 9/22/2020 | BloxOne Cloud Services Portal | **Enhancement**: Enhanced entitlement notifications and group-based entitlement authorization. |
| 9/18/2020 | BloxOne Endpoint | **Feature**: Released BloxOne Endpoint 2.0.1, which addressed duplicate product IDs issue in Windows registry. For more information, see *[What's New for BloxOne Threat Defense.](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)* |
| 9/18/2020 | BloxOne Cloud Services Portal | **Enhancement**: Fixed issues in the *Devices by Type* Dashboard. |
| 9/16/2020 | BloxOne Ecosystem | **Enhancement**: Enhanced the Data Connector password encryption. |
| 9/14/2020 | BloxOne Scheduled Maintenance | **Maintenance**: Health reporter for k3s hosts. |
| 9/13/2020 | BloxOne Scheduled Maintenance | **Maintenance**: Maintenance release to include configuration generator, feature flag services, and app definition service. |
| 9/11/2020 | BloxOne DNS | **Feature**: Configuration file handling and NIOS Grid Connector support for extensible attributes. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*. |
| 9/9/2020 | BloxOne Reporting Services | **Enhancement**: Enhanced the query and response redirect for the *Security* report. |
| 9/8/2020 | BloxOne Cloud Services Portal | **Enhancement**: Updated the Cloud Services Portal and SSO identity. |
| 9/3/2020 | BloxOne Threat Intelligence Feeds/Services | **Enhancement: **Updated the BloxOne Threat Defense custom lists that have expired. |
| 8/29/2020 | BloxOne Cloud Services Portal | **Feature**:Host infrastructure for OVA, multi-port support, and IPv6 support to the portfolio of BloxOne IP addresses. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 8/26/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Lookalike domains for threat feeds. |
| 8/26/2020 | BloxOne Dossier | **Feature**: Enhanced *Summary* section in the Dossier Threat Research Portal, support for a pivot off of the threat actor properties, breadcrumb navigation, and search query parameter for* Security-Activity* report and *DNS* report. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 8/14/2020 | BloxOne PoP Services | **Enhancement**: Improved notification reliability. |
| 8/14/2020 | BloxOne Cloud Services Portal | **Enhancement**: Enhanced granular permissions. |
| 8/7/2020 | BloxOne Cloud Services Portal | **Enhancement**: Improved logging. |
| 8/7/2020 | BloxOne Cloud Services Portal | **Enhancement**: Support for granular permissions. |
| 8/7/2020 | BloxOne Endpoint | **Feature**: BloxOne Endpoint assignment to a custom endpoint group, For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 8/5/2020 | BloxOne Cloud Services Portal | **Feature**: Custom user roles, and resetting hosts using the Device interface. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 7/27/2020 | BloxOne Cloud Services Portal | **Feature**: 3rd party IdP integration, and multi-factor authentication on OktaVerify. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 7/17/2020 | BloxOne Ecosystem | **Feature**: Data Connector syslog UDP protocol support, multiple Data Connector deployment, and security event updates. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 7/3/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds, |
| 6/30/2020 | BloxOne DNS | **Feature**: DNS and DHCP data for both BloxOne and NIOS Grid now visible on the Cloud Services Portal. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*. |
| 6/24/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds, |
| 6/20/2020 | BloxOne Scheduled Maintenance | **Maintenance**: Docker version upgrade and OS upgrade for hosts. |
| 6/19/2020 | BloxOne DNS  
BloxOne DHCP | **Feature**: Default IP associated with DNS view, DDNS configuration for BloxOne managed zones, add/remove tags for multiple objects, adjusting IP settings for OVA hosts, and dark scheme. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*. |
| 6/19/2020 | BloxOne Cloud Services Portal | **Feature**: Additional reporting widgets in the Dashboard. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 6/3/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 5/30/2020 | BloxOne Cloud Services Portal | **Feature**: New *DNS Activity* and *Activity Security* reports. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 5/28/2020 | BloxOne Threat Intelligence Data Exchange (TIDE) | **Feature**: Support for searching for IPv6 and search queries for emails and checksums/hashes (MD5). For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 5/23/2020 | BloxOne DNS | **Feature**: Additional role-based access control provisions. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*. |
| 5/23/2020 | BloxOne DNS Security Service | **Maintenance**: Security patch for CVE--2020-8616 and CVE-2020-8617. |
| 5/22/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Lookalike domain version 2 for threat feeds. |
| 5/12/2020 | BloxOne DHCP/IPAM | **Enhancement**: Enhanced connection string for DHCP fingerprinting and lease functionality. |
| 5/11/2020 | BloxOne Ecosystem | **Enhancement**: Enhanced the ETL (extract, transfer, load) process for the Data Connector. |
| 5/11/2020 | BloxOne Endpoint | **Feature**: Custom lists and audit log for BloxOne Endpoint, For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 5/9/2020 | BloxOne DNS  
BloxOne DHCP | **Feature**: DNS and DHCP statistics, DNS cache information, and Active-Passive role for DHCP HA pair. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*. |
| 5/5/2020 | BloxOne Threat Intelligence Feeds/Services | **Enhancement**: Threat Intelligence detection enhancements. |
| 5/5/2020 | BloxOne Threat Intelligence Feeds/Services | **Enhancement**: Threat Intelligence bug fix relating to *Threat Feed Type* attribute via API. |
| 5/4/2020 | BloxOne DNS Security Service | **Enhancement**: Tagging support for BloxOne Threat Defense features and enhancements. |
| 5/3/2020 | BloxOne Scheduled Maintenance | **Maintenance**: Kubernates upgrade, increased memory, capacity scaling automation, and IPv6 dual stack support. |
| 5/1/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 4/30/2020 | BloxOne Ecosystem | **Enhancement**: Enhanced Data Connector k3s support. |
| 4/30/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 4/24/2020 | BloxOne Scheduled Maintenance | **Maintenance**: Support NIOS customers cloud registration. |
| 4/24/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Cloud platform deployment services. |
| 4/24/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 4/23/2020 | BloxOne Cloud Services Portal | **Enhancement**: Enhanced the What's New functionality. |
| 4/23/2020 | BloxOne Scheduled Maintenance | **Maintenance**: Release of updated on-pre host image - OVA, NOA images. |
| 4/21/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Lookalike domains update. |
| 4/21/2020 | BloxOne DNS  
BloxOne DHCP  
BloxOne Ecosystem | **Feature**: Automatic and deferred upgrades, notification settings by user groups, dark color scheme for the Cloud Services Portal, and support for multiple Data Connectors. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)*. |
| 4/20/2020 | BloxOne DNS Security Service | **Enhancement**: Enhanced DNS response logs. |
| 4/16/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 4/14/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 4/14/2020 | BloxOne Cloud Services Portal | **Feature**: "What's New" section on the Cloud Services Portal, and resolved issues for the BloxOne DDI service. |
| 4/9/2020 | BloxOne Dossier | **Feature**: Infoblox InfoRanks list, and Dossier Usage report. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 4/6/2020 | BloxOne Ecosystem | **Feature**: Support for multiple Data Connectors per each NIOS Grid. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)* |
| 4/3/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 3/26/2020 | BloxOne Cloud Services Portal | **Maintenance**: Support for UI core tool expansion and prepare for SSO/MFA. |
| 3/26/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 3/18/2020 | BloxOne DNS | **Feature**: Deployed the support for dnstap. |
| 3/18/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 3/17/2020 | BloxOne DNS | **Feature**: Deployed primary DNS authentication for the BloxOne DDI service. |
| 3/17/2020 | BloxOne DNS  
BloxOne DHCP | **Enhancement**: Cloud Services Portal updates to support BloxOne DDI features, removal of the SMTP email settings, and filters in audit logs. |
| 3/14/2020 | BloxOne DNS | **Enhancement**: Deployed primary DNS authentication for hosts. |
| 3/11/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 3/5/2020 | BloxOne Threat Intelligence Data Exchange (TIDE) | **Enhancement**: Enhanced Threat Lookup for DoH (DNS over HTTPS) feeds. |
| 3/4/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 3/4/2020 | BloxOne DNS  
BloxOne DHCP | **Enhancement**: Deployed enhancements to core DNS authentication for the BloxOne DDI service. |
| 2/24/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 2/24/2020 | BloxOne Cloud Services Portal  
BloxOne Ecosystem   
<span style="color: #000000">BloxOne Threat Intelligence Data Exchange (TIDE)</span>  
BloxOne Reporting Services | **Feature**: Custom lookalike domain monitoring, DoH solution, Data Connector enhancements, new cloud services portal navigation, and comprehensive Security and Executive Summary reports. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 2/20/2020 | BloxOne Ecosystem | **Maintenance**: Data Connector updates. |
| 2/20/2020 | BloxOne Scheduled Maintenance | **Enhancement**: BloxOne DDI updates to Bootstrap service, health collectors, and new OVA released. |
| 2/20/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 2/20/2020 | BloxOne DNS | **Maintenance**: BloxOne DDI DNS & DHCP update. |
| 2/15/2020 | BloxOne DNS  
BloxOne DHCP | **Feature**: Launched BloxOne DDI NIOS Grid Connector, DNS query/response logging enabled, alerts and notifications sent when config resulted in error, and new PagerDuty service integration. For more information, see *[What’s New in BloxOne DDI](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/186713611)*. |
| 2/14/2020 | BloxOne DNS | **Enhancement**: BloxOne DDI update for DNS and IPAM services. |
| 2/14/2020 | BloxOne Cloud Services Portal | **Feature**: Support for BloxOne DDI services within Cloud Services Portal. |
| 2/12/2020 | BloxOne Ecosystem | **Maintenance**: Data Connector updates. |
| 2/12/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 2/10/2020 | BloxOne DNS Security Service | **Maintenance**: Platform and Application API expansion. |
| 2/10/2020 | BloxOne Cloud Services Portal | **Maintenance**: Cloud Services Portal UI. |
| 2/6/2020 | BloxOne Ecosystem | **Maintenance**: Data Connector updates. |
| 2/5/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 1/30/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 1/24/2020 | BloxOne Threat Intelligence Feeds/Services | **Feature**: Threat Intelligence: full support for DOH. |
| 1/22/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 1/17/2020 | BloxOne Cloud Services Portal | **Enhancement**: Support for In-App, Email and webhook notifications. |
| 1/16/2020 | BloxOne DHCP/IPAM | **Maintenance**: DHCP Lease Services. |
| 1/15/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |
| 1/14/2020 | BloxOne Cloud Services Portal | **Feature**: Replacing hosts, security enhancements, additional diagnostic tools, RPZ logs to on-prem SIMES, page settings, notification enhancements, and user permission enhancements. For more information, see *[What’s New in BloxOne Threat Defense](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35369418)**.* |
| 1/8/2020 | BloxOne Threat Intelligence Feeds/Services | **Maintenance**: Whitelist for threat feeds. |