Omnissa EUC Newsletter - Week 33

 






 Upcoming EUC Events

Event

Link and description

Speakers

Date

Omnissa Live

[RECORDING LINK]

Join us in the next step of our journey as we launch Omnissa, formerly VMware’s End User Computing Business. We’re excited to share our plans with you and our global community of customers, partners, and industry experts. Together we are shaping the future of digital work!

Shankar Iyer, Renu Upadhyay, Bharath Rangarajan

23.07.2024

VMUG

Watch On-Demand webcasts here.

Register for upcoming live webcasts here.

Register for Regional VMUG events here.

Release Updates Week 33-24:

Workspace ONE Launcher 24.08 for Android

  • Enhanced Custom Device Settings During Device Check-In
    • We are excited to announce the expansion of our custom device settings, which are now available during device check-in. Previously, these settings were only accessible when the device was checked out by a user. The newly available settings include:
      • Notification Settings
      • Date & Time Settings
      • Wi-Fi Settings
    • These enhancements are designed to provide greater flexibility and control, improving the overall user experience.
  • Shared Device Notification and Logout Action from Lock Screen
    • To enhance efficiency for end-users, we are pleased to introduce new features for shared devices. Users can now be notified about who has checked out the device, and have the ability to log out the current user directly from the lock screen. Additionally, the notification verbiage can be customized by administrators, ensuring clear and effective communication with their users.
  • Device Brightness on Zebra Device
    • In this release, we have enhanced the functionality for adjusting device brightness on Zebra devices. By utilizing native Zebra APIs, we have streamlined the process, eliminating any additional prompts that previously required user acceptance. This ensures a smoother and more intuitive experience when configuring device brightness.
  • Admin Ability to Customize Verbiage on Device Passcode Screen
    • As part of our continuous effort to provide administrators with greater flexibility in designing a tailored user experience, we are pleased to introduce the ability to customize the verbiage on the device passcode screen. This enhancement allows admins to modify the text to better align with their specific requirements and vision.

Workspace ONE Intelligent Hub 24.07 for iOS

  • End-user threat response actions for Workspace ONE Mobile Threat Defense
  • Bugs Fixed
    • Bug Fixes to improve iOS 18 Beta Support
    • HUBI-11425: Improvements to Terms of Use
    • HUBI-11315: Improvements dark mode

Workspace ONE Access 24.07 On-Premises

  • Workspace ONE Access 24.07 is a general maintenance release that includes security improvements, connector updates, and other product fixes.
  • Workspace ONE Access 24.07 is only available as an upgrade from previous versions. A new installation of the Workspace ONE Access 24.07 virtual appliance is not supported. See the Upgrade section for the versions supported for upgrade.
  • IMPORTANT: Workspace ONE Access Connector 24.07 will be available soon.

Workspace ONE Intelligence 24.08.12

  • We have added Custom Roles in Workspace ONE Intelligence Account Management for when the pre-defined RBAC roles do not quite include or restrict permissions needed by your organization.
    • Go to Accounts > Administrators to find the new Roles tab.
    • Using the Roles tab, create a custom role with self-defined scopes and permissions and assign these custom roles to your users.
  • We’ve improved Insights by upgrading the Insights Algorithm to version 2.0.
    • This new approach uses a true machine learning based algorithm that will improve the Insights experience through quicker adapting baselines, less false positives, and accounting for seasonality like nights and weekends.
  • We’ve made enhancements to the UI for the report creation flow.
    • Adding a report navigates you to our new category selector menu for custom report creation.
    • The option to explore templates is available with this new menu. You can also use pre-defined templates to create reports.
    • We moved the Report Preview table to a side-by-side layout for a better user experience.

VMware EUC Security Advisories: 

***No new Security Advisories this week***

Find latest advisories in the Omnissa Security Response Center

EUC UX Research Opportunities: 

  • Our goal is to gather insight into user behaviors, motivations, and goals, so we can use those insights to inform and strengthen product and design decisions.
  • Interested in giving your opinion and making your voice heard? Check out what’s available!

Workspace One: AI Assistant

  • About: Rate the tone and attitude of different AI chatbot responses. How formal is it? How funny? How serious? This is your moment to experiment and decide whether your AI buddy should be the office’s witty sidekick, a casual conversationalist, or the epitome of polished professionalism.
  • What: 10-15 minute online survey. This won't require talking or typing, it is multiple choice only, AND you can do this in your own time.
  • TAKE THE SURVEY HERE

KB Highlights & Announcements Week 33-24:

Workspace ONE UEM Modernization- Final warning to meet Customer-type organization group requirements (6000142)

  • The journey to bring the Modern Architecture to all UEM SaaS environments globally has been under way for some time now. The teams at Omnissa have been hard at work deploying the Control Plane Architecture over the last two years and are now at a point where we are starting to enable these new and improved code pathways.
  • At this point in the deployment the location of all data elements is imperative to ensure a consistent and smooth experience as these environments start to light up with the Modern SaaS Architecture. This has been outlined in the following KB:
    https://kb.omnissa.com/s/article/85987 which outlines the necessary OG hierarchy and device posture requirements, mainly that all devices must be under a Customer OG as that is the tenancy boundary.
  • Even with this KB and numerous customer reach outs there are still a set of devices which are outside of the OG hierarchy requirements.

Modernization Update: Consolidated Modernized Services for Hosted SaaS (91520)

  • In June 2022, Omnissa updated its description of the Workspace ONE Unified Endpoint Management (UEM) cloud service offering, as set forth in the Omnissa Cloud Services Guide. Latest version of the Omnissa Cloud Services Guide is available here: https://www.vmware.com/content/dam/digitalmarketing/vmware/en/pdf/agreements/vmware-cloud-services-guide.pdf. 
  • Going forward, Omnissa plans to simplify and improve our newest cloud services by consolidating them into a modernized design. As part of this effort, the isolation of service communications and data storage of newly modernized services will be handled within the Workspace ONE application layer instead of the current model where isolation is the primary construct of the infrastructure layer. Additional context on this design change is provided in the Data Security section below. 
  • This change will also help improve both scalability and performance as we progress further into the modernization effort and work to deliver more value to our customers (https://techzone.vmware.com/blog/wave-1-workspace-one-uem-getting-modernized ). Additionally, the Managed Hosted offering continues to enable customization of the geographic region, UEM major version upgrade schedule, and all published SaaS security requirements. 

ASDK-175483 – Android devices cannot communicate with Workspace ONE UEM (6000138)

  • Android devices that upgrade to Workspace ONE Intelligent Hub 24.06 may stop communicating with Workspace ONE UEM. The issue has been observed when devices upgrade from Intelligent Hub versions released in 2023 or earlier (Hub 24.01 and lower) to Intelligent Hub 24.06.

In these cases, the following is observed:

    1. When Intelligent Hub is launched on the affected device, Hub crashes.
    2. Organizations are unable to install or remove resources (profiles, apps, etc.) or take administrative actions (e.g. wiping the device, resetting device passcodes).
    3. In the Workspace ONE UEM Console and navigate to [Devices > List View > (select device) > More > Troubleshooting > Commands], all commands are stuck in a Queued state.
    4. The Last Seen time of the device is no longer updated.

AGGL-7625: New Android applications not displayed in Play Store app (79404)

  • We have an identified an issue that affects customers who have enabled the application collections feature in the managed Google Play Store for Android. If the app collections are configured from the Workspace ONE UEM console, any new applications added to the UEM Console from the Google Play Store will not automatically be added to the Store Home page of the Google Play Store app in managed devices.
  • Note: Managed Google Play Store app collections are not enabled by default in Workspace ONE UEM. To enable them, you would have to follow the steps documented in Organizing your Applications in the Managed Play Store

Workspace ONE UEM : Windows 2012 + 2012 R2 (End of General Support for SaaS) (92774)

  • We have identified that specific versions of Microsoft's Windows Server OS will not meet the minimum technology and security requirements for the Workspace ONE UEM SaaS platform. As such, Omnissa will deprecate Workspace ONE UEM SaaS platform support for the following versions of Microsoft software: 
    • Windows Server 2012 R2 (and lower) 

Issue with picture/icon link present in the Default Message Templates (6000143)

  • The image links present in the Default Message Templates being sent through Workspace ONE UEM are still pointing to a domain which is no longer available. As a result, the emails being sent contain a broken image error and users will be unable to download pictures in the email. 

Important information regarding Zebra Android 13 Update (91896)

  • On Zebra Android SDM660 platform device models, during the update to Android 13, an Enterprise Reset is performed by the device.  If Workspace ONE UEM enrollment is not backed up and persisted properly on the device, then enrollment data will be wiped after the upgrade, and the devices will need to be re-enrolled.
  • Additionally, StageNow enrollment barcodes generated through Workspace ONE UEM are not yet compatible with Android 13 (all Zebra models).  

SMS Settings will be self-configurable for all customers in Workspace ONE UEM SaaS environments (91660)

  • SMS Settings can be configured in the Workspace ONE UEM console to enable communication between Workspace ONE UEM and mobile devices using SMS, for purposes such as user or device activation messages.
  • A small percentage of Workspace ONE UEM environments in SaaS have SMS Settings pre-configured by Omnissa for use. 
  • After March 31st, 2024, SMS settings pre-configured by Omnissa in SaaS will be removed.

High Priority KBs: 

Recently updated or added KBs (Links) 

Digital Workspace Techzone, Blog and YouTube Updates 

3rd Party Blog Updates & Industry News 

Beta, Lab and Tech Preview Updates 

WS1 Intelligent Hub for macOS

  • HUBM-8035 Quick Actions feature Support Tab - macOS
  • HUBM-8404 [macOS 11] Drop Support for macOS 11

Bug Fixes:

  • HUBM-8107 Unable to request macOS Hub logs
  • HUBM-8247 macOS Hub not prompting user to logout to encrypt disk
  • HUBM-8306 Non-optional profiles show remove button
  • HUBM-8310 [ZOOM] macOS Hub Hung State
  • HUBM-8414 There are several devices showing 3-4 scripts in the scripts tab when there should be 15 or more displayed
  • HUBM-8546 Transmit/sample intervals are not updated for the sensors whenever its changed in the UEM
  • HUBM-8569 Parallel Download never retried on network reconnection
  • HUBM-8017 App status changing from installed to Not installed, awaiting install on device

HCS next-gen on Amazon WorkSpaces Core

  • Horizon Cloud Service next-gen with Amazon WorkSpaces Core Beta will have these features:
    All the operations from Horizon Cloud GUI:
    • Win 10/11 Desktop Pools
    • Persistent desktops
    • Single Sign On(SSO) Support
    • Automated Edge and UAG deployment
    • Automated Desktop Pool Provisioning
    • Protocol
    • Blast Extreme
    • Identity Provider Registration
    • Azure Entra ID
    • Workspace One Access
    • User Entitlements
    • Power Management
    • Power Optimized(Manual)

WS1 Tunnel for Android

  • In this release, we’ve made a few updates containing general quality and performance improvements.

Sign up or LogIn [HERE] to get access to the latest Beta versions.

August Software Releases  

System

Component

Release

Announcement

Release Date

Horizon

Horizon Cloud Service Next Gen

August 1

Release Notes

02.08.24

Backend

WS1 Intelligence

24.08.05

Release Notes

05.08.24

Android

Content SDK 

24.07

06.08.24

Android

Boxer

24.07

Release Notes

06.08.24

Windows

Hub

23.10.10

Release Notes

07.08.24

Backend

WS1 Access OnPrem

24.07

Release Notes

12.08.24

Backend

WS1 Intelligence

24.08.12

Release Notes

12.08.24

iOS

Hub

24.07

Release Notes

15.08.24

Android

Launcher

24.08

Release Notes

15.08.24

Patch & Seed Script Updates Week 33-24

OS Updates Seed Script

  • iOS 17.6.1 (21G93), macOS 14.6.1 (23G93)
  • Last Update: CW32

Seed Script for latest Device Model Information

  • Seed Script to support new iPad Air M2 and iPad Pro M4 models
  • Last update: CW30

 

Workspace ONE UEM 22.12

  • Patch Level 22.12.0.48
  • ARES-29546 - App details view page crashes when clicked on filters.
  • UM-8986 - With Read-only admin we are able to add admin account through batch import.
  • Last Update: CW28

 

Workspace ONE UEM 23.02

  • Patch Level 23.02.0.50
  • AMST-41536 - Redirect blob download request from DS to CDN when a branch is disabled.
  • Last Update: CW32

 

Workspace ONE UEM 23.06

  • Patch Level 23.06.0.37
  • AGGL-17104 - CICO with Launcher apps are not always removed when combined with app assignments.
  • AGGL-16846 - Application configuration shows disabled after publishing an app.
  • AAPP-17717 - Create a migration script to clear old duplicate credential profile setting value data.
  • UM-9107 - Rocket or spaceman error when trying to cancel pending records in Batch Status page.
  • Last Update: CW32

 

Workspace ONE UEM 23.10

  • Patch Level: 23.10.0.27
  • Patch .26
    • UM-9042 - Editing an admin account deactivates the account.
    • PPAT-17309 - Multi-factor authentication in allowlist table for Tunnel payload.
    • MACOS-3910 - Smart group assignment for the macOS internal app fails to be assigned for a couple of users’ devices.
    • AMST-41808 - Seed Windows Hub 23.10.10 x86 to UEM console 2310.
    • ARES-27488 - Unable to delete certain internal apps.
    • AGGL-17115 - Application configuration inconsistent behavior for check-in check-out users on Android devices.
    • AAPP-17305 - forceAirDropUnmanaged is enabled by default on ABM shared iPad.
    • AAPP-17277 - Create a migration script to clear old duplicate credential profile setting value data.
    • AAPP-17687 - Add request uuid and correlation key headers to logs.
  • Patch .27
    • MACOS-4269 - Unlock pin not escrowed on the Workspace ONE UEM Console.
    • FCA-206523 - Device location log retrieves many records for a sample time. So, it looks like duplicated records.
    • CRSVC-50027 - Add OG check to CA flow which sends unenrollment and non-compliant for existing lingering devices for Microsoft tenant.
    • AGGL-17234 - Fix lookup field resolution for app configurations when using new devices.
    • AGGL-17149 - Android restrictions JSON exceeds memcached limit.
    • AAPP-17458 - Improve ExternallyRedeemedLicense job.
    • AAPP-16916 - Refreshing AppleCare warranty information is throwing the error “PleaseCheckGSXSettings” for all Apple devices.
  • Last Update: CW33

Workspace ONE UEM 24.02

  • Patch Level: 24.2.0.11
    • PPAT-17123 - VPN applayer payload type is not part of the XML when EnablePerAppVPN is set.
    • MACOS-4351 - MAC install fonts.
    • FCA-207853 - SmartGroup filter in the DLV must show devices as per eligibility criteria regardless of the device check-in.
    • CRSVC-50243 - Fix write enablement issues at shared SaaS.
    • CRSVC-50073 - Mod stack Orchestrator is proceeding when the snapshot stage fails
    • CRSVC-48506 - Tweak DST PUT API to not emit events based on a flag.
    • CRSVC-46606 - Improve canonical auth troubleshooting - add middleware to catch and log details for OAuth errors.
    • ARES-29406 - Peer distribution chart is disappearing on-device search.
    • ARES-29262 - Units in cache or server bytes charts were not displayed in Peer distribution.
    • ARES-29238 - Seeing an error when moving the cursor over the Peer Distribution column of the device table on a Windows app’s Deployment Tracker screen.
    • ARES-29140 - Backend - Move offline evaluated devices out of Pending stats in Deployment Tracking.
    • ARES-29110 - Add a new section for “Installed but not assigned” devices and move them out from the Evaluated tab.
    • ARES-29100 - Default assignments are disappearing from the database when we edit the assignment.
    • ARES-28586 - Move offline evaluated devices out of Pending stats in deployment tracking.
    • AMST-41653 - Seed Windows Hub 24.4.4.0 x86 Patch2.
    • AMST-41560 - Seeding latest SFD 23.10.2 build.
    • AAPP-17678 - Fix the looping issue while making association calls for VPP v2.
    • AAPP-17088 - Get devices assigned to DEP profile API, which is failing.
    • AAPP-17014 - Apple education profile not queuing a removal.
    • AGGL-17049 - FCM not clearing passcode in direct boot mode.
    • Last Update: CW31

Comments