Upcoming EUC Events
Event | Link and description | Speakers | Date |
Omnissa Live | Join us in the next step of our journey as we launch Omnissa, formerly VMware’s End User Computing Business. We’re excited to share our plans with you and our global community of customers, partners, and industry experts. Together we are shaping the future of digital work! | Shankar Iyer, Renu Upadhyay, Bharath Rangarajan | 23.07.2024 |
VMUG | Watch On-Demand webcasts here. Register for upcoming live webcasts here. Register for Regional VMUG events here. |
Release Updates Week 33-24:
Workspace ONE Launcher 24.08 for Android
- Enhanced Custom Device Settings During Device Check-In
- We are excited to announce the expansion of our custom device settings, which are now available during device check-in. Previously, these settings were only accessible when the device was checked out by a user. The newly available settings include:
- Notification Settings
- Date & Time Settings
- Wi-Fi Settings
- These enhancements are designed to provide greater flexibility and control, improving the overall user experience.
- Shared Device Notification and Logout Action from Lock Screen
- To enhance efficiency for end-users, we are pleased to introduce new features for shared devices. Users can now be notified about who has checked out the device, and have the ability to log out the current user directly from the lock screen. Additionally, the notification verbiage can be customized by administrators, ensuring clear and effective communication with their users.
- Device Brightness on Zebra Device
- In this release, we have enhanced the functionality for adjusting device brightness on Zebra devices. By utilizing native Zebra APIs, we have streamlined the process, eliminating any additional prompts that previously required user acceptance. This ensures a smoother and more intuitive experience when configuring device brightness.
- Admin Ability to Customize Verbiage on Device Passcode Screen
- As part of our continuous effort to provide administrators with greater flexibility in designing a tailored user experience, we are pleased to introduce the ability to customize the verbiage on the device passcode screen. This enhancement allows admins to modify the text to better align with their specific requirements and vision.
Workspace ONE Intelligent Hub 24.07 for iOS
- End-user threat response actions for Workspace ONE Mobile Threat Defense
- Bugs Fixed
- Bug Fixes to improve iOS 18 Beta Support
- HUBI-11425: Improvements to Terms of Use
- HUBI-11315: Improvements dark mode
Workspace ONE Access 24.07 On-Premises
- Workspace ONE Access 24.07 is a general maintenance release that includes security improvements, connector updates, and other product fixes.
- Workspace ONE Access 24.07 is only available as an upgrade from previous versions. A new installation of the Workspace ONE Access 24.07 virtual appliance is not supported. See the Upgrade section for the versions supported for upgrade.
- IMPORTANT: Workspace ONE Access Connector 24.07 will be available soon.
Workspace ONE Intelligence 24.08.12
- We have added Custom Roles in Workspace ONE Intelligence Account Management for when the pre-defined RBAC roles do not quite include or restrict permissions needed by your organization.
- Go to Accounts > Administrators to find the new Roles tab.
- Using the Roles tab, create a custom role with self-defined scopes and permissions and assign these custom roles to your users.
- We’ve improved Insights by upgrading the Insights Algorithm to version 2.0.
- This new approach uses a true machine learning based algorithm that will improve the Insights experience through quicker adapting baselines, less false positives, and accounting for seasonality like nights and weekends.
- We’ve made enhancements to the UI for the report creation flow.
- Adding a report navigates you to our new category selector menu for custom report creation.
- The option to explore templates is available with this new menu. You can also use pre-defined templates to create reports.
- We moved the Report Preview table to a side-by-side layout for a better user experience.
VMware EUC Security Advisories:
***No new Security Advisories this week***
Find latest advisories in the Omnissa Security Response Center
EUC UX Research Opportunities:
- Our goal is to gather insight into user behaviors, motivations, and goals, so we can use those insights to inform and strengthen product and design decisions.
- Interested in giving your opinion and making your voice heard? Check out what’s available!
Workspace One: AI Assistant
- About: Rate the tone and attitude of different AI chatbot responses. How formal is it? How funny? How serious? This is your moment to experiment and decide whether your AI buddy should be the office’s witty sidekick, a casual conversationalist, or the epitome of polished professionalism.
- What: 10-15 minute online survey. This won't require talking or typing, it is multiple choice only, AND you can do this in your own time.
- TAKE THE SURVEY HERE
KB Highlights & Announcements Week 33-24:
- The journey to bring the Modern Architecture to all UEM SaaS environments globally has been under way for some time now. The teams at Omnissa have been hard at work deploying the Control Plane Architecture over the last two years and are now at a point where we are starting to enable these new and improved code pathways.
- At this point in the deployment the location of all data elements is imperative to ensure a consistent and smooth experience as these environments start to light up with the Modern SaaS Architecture. This has been outlined in the following KB:
https://kb.omnissa.com/s/article/85987 which outlines the necessary OG hierarchy and device posture requirements, mainly that all devices must be under a Customer OG as that is the tenancy boundary. - Even with this KB and numerous customer reach outs there are still a set of devices which are outside of the OG hierarchy requirements.
Modernization Update: Consolidated Modernized Services for Hosted SaaS (91520)
- In June 2022, Omnissa updated its description of the Workspace ONE Unified Endpoint Management (UEM) cloud service offering, as set forth in the Omnissa Cloud Services Guide. Latest version of the Omnissa Cloud Services Guide is available here: https://www.vmware.com/
content/dam/digitalmarketing/ vmware/en/pdf/agreements/ vmware-cloud-services-guide. pdf. - Going forward, Omnissa plans to simplify and improve our newest cloud services by consolidating them into a modernized design. As part of this effort, the isolation of service communications and data storage of newly modernized services will be handled within the Workspace ONE application layer instead of the current model where isolation is the primary construct of the infrastructure layer. Additional context on this design change is provided in the Data Security section below.
- This change will also help improve both scalability and performance as we progress further into the modernization effort and work to deliver more value to our customers (https://techzone.vmware.com/
blog/wave-1-workspace-one-uem- getting-modernized ). Additionally, the Managed Hosted offering continues to enable customization of the geographic region, UEM major version upgrade schedule, and all published SaaS security requirements.
ASDK-175483 – Android devices cannot communicate with Workspace ONE UEM (6000138)
- Android devices that upgrade to Workspace ONE Intelligent Hub 24.06 may stop communicating with Workspace ONE UEM. The issue has been observed when devices upgrade from Intelligent Hub versions released in 2023 or earlier (Hub 24.01 and lower) to Intelligent Hub 24.06.
In these cases, the following is observed:
- When Intelligent Hub is launched on the affected device, Hub crashes.
- Organizations are unable to install or remove resources (profiles, apps, etc.) or take administrative actions (e.g. wiping the device, resetting device passcodes).
- In the Workspace ONE UEM Console and navigate to [Devices > List View > (select device) > More > Troubleshooting > Commands], all commands are stuck in a Queued state.
- The Last Seen time of the device is no longer updated.
AGGL-7625: New Android applications not displayed in Play Store app (79404)
- We have an identified an issue that affects customers who have enabled the application collections feature in the managed Google Play Store for Android. If the app collections are configured from the Workspace ONE UEM console, any new applications added to the UEM Console from the Google Play Store will not automatically be added to the Store Home page of the Google Play Store app in managed devices.
- Note: Managed Google Play Store app collections are not enabled by default in Workspace ONE UEM. To enable them, you would have to follow the steps documented in Organizing your Applications in the Managed Play Store.
Workspace ONE UEM : Windows 2012 + 2012 R2 (End of General Support for SaaS) (92774)
- We have identified that specific versions of Microsoft's Windows Server OS will not meet the minimum technology and security requirements for the Workspace ONE UEM SaaS platform. As such, Omnissa will deprecate Workspace ONE UEM SaaS platform support for the following versions of Microsoft software:
- Windows Server 2012 R2 (and lower)
Issue with picture/icon link present in the Default Message Templates (6000143)
- The image links present in the Default Message Templates being sent through Workspace ONE UEM are still pointing to a domain which is no longer available. As a result, the emails being sent contain a broken image error and users will be unable to download pictures in the email.
Important information regarding Zebra Android 13 Update (91896)
- On Zebra Android SDM660 platform device models, during the update to Android 13, an Enterprise Reset is performed by the device. If Workspace ONE UEM enrollment is not backed up and persisted properly on the device, then enrollment data will be wiped after the upgrade, and the devices will need to be re-enrolled.
- Additionally, StageNow enrollment barcodes generated through Workspace ONE UEM are not yet compatible with Android 13 (all Zebra models).
- SMS Settings can be configured in the Workspace ONE UEM console to enable communication between Workspace ONE UEM and mobile devices using SMS, for purposes such as user or device activation messages.
- A small percentage of Workspace ONE UEM environments in SaaS have SMS Settings pre-configured by Omnissa for use.
- After March 31st, 2024, SMS settings pre-configured by Omnissa in SaaS will be removed.
High Priority KBs:
- Omnissa new world link directory
For an overview about links to customer portals and relevant information follow the above link. - System Migration Changes Impacting Workspace ONE and Horizon Customers (97841)
The end-user computing (EUC) division of Broadcom will transition from VMware-hosted systems to EUC-hosted systems in April and May 2024. This transition is part of our preparation to become a standalone entity following the pending acquisition of EUC by KKR. - End of Life Announcement for the Legacy App Catalog in Workspace ONE UEM for SaaS UEM Customers (95774)
We are announcing the End of Life (EOL) for the UEM Legacy Catalog for UEM SaaS customers only at this time. If you are a On-Premises UEM Customer, this notice does not impact you at this time, further communications will follow for timelines on migrating On-Premises UEM Customers to the Intelligent Hub App Catalog. - Workspace ONE UEM - Updated requirements for on-premise cumulative patches (94706)
The base GA version for current Workspace ONE UEM releases is being revised through updated installers. On-premise customers will need to consume a revised installer for a given major version before any future cumulative patches can be deployed for that major version. These revised installers are required to address compatibility issues with regular cumulative patches. - Introducing Workspace ONE (WS1) UEM Next-Gen SaaS
VMware is excited to announce that the resource management & tracking improvements, the first major feature-based milestone in the Workspace ONE UEM Modernization Journey, is now available for customer testing. These improvements will be enabled in limited testing environments (CN135) starting on Thursday August 24, 2023.
Recently updated or added KBs (Links)
- Support Matrix for Workspace ONE Intelligent Hub and Application Deployment Agent (SFD) for Windows (92938)
- Workspace ONE UEM : Windows 2012 + 2012 R2 (End of General Support for SaaS) (92774)
- Issue with picture/icon link present in the Default Message Templates (6000143)
- Omnissa Best Practices Update – Workspace ONE UEM SaaS Delegated SSL Certificate Management (for Customer Owned Domains) (92081)
- Workspace ONE UEM Modernization- Final warning to meet Customer-type organization group requirements (6000142)
- Important information regarding Zebra Android 13 Update (91896)
- End of Life Announcement: Pre-configured SMS Integration by Omnissa Workspace ONE UEM (91660)
- Modernization Update: Consolidated Modernized Services for Hosted SaaS (91520)
- Compare application data between Workspace ONE UEM and Workspace ONE Intelligence (84102)
- Are Amazon Fire OS tablets supported on Workspace ONE Enrollment? (50122117)
- Omnissa Workspace ONE UEM New Control Plane SaaS Deployment Schedule (86243)
- AGGL-7625: New Android applications not displayed in Play Store app (79404)
- Occasional Black Screen Display Issues when reconnecting to a session from a client with a Higher Monitor Count (92748)
- [Cloud Connector] How to obtaining License Information Using the Horizon Universal Console (92726)
- Action Required : Horizon Cloud on Azure Pod Manager VM (Ubuntu 18.04 ) End of General Support May 31, 2023 (92694)
- Automating Horizon 8 Agent installation for Amazon WorkSpaces Core instances (92550)
- Unable to connect to admin page and stops accepting Horizon Client connections at Horizon 2303 and later (93026)
Digital Workspace Techzone, Blog and YouTube Updates
- Security Posture of the UEM Modern Architecture
- Best Practices for Managing Microsoft BitLocker with Workspace ONE UEM
- Guided Tour: Using Intelligent Hub to Find Your BitLocker Recovery Key
- Guided Tour: Adding a Lost Device Prevention Dashboard for Frontline Workers
- Integrating Workspace ONE Intelligence and Carbon Black: Workspace ONE Operational Tutorial
- Demystifying Different Workspace ONE Intelligence Freestyle Orchestrator Triggers
- Deploying Horizon Edge Gateway - Troubleshooting Steps
- Deploying Horizon Edge Gateway - Connection Server
- Deploying Horizon Edge Gateway Appliance from OVA
- Deploying Horizon Edge Gateway - Provider and Appliance Configuration
- Horizon Cloud Service - next-gen Edge Subnet URL Checker
- Using Sensors to Enhance macOS Management in Workspace ONE UEM
- Next Generation Insights to Handle Data with Seasonality
- Antivirus Considerations in a Horizon Environment
3rd Party Blog Updates & Industry News
- Michael Niehaus: Windows device provisioning with Workspace ONE, part 2: Apps and policies
- Michael Niehaus: Windows device provisioning with Workspace ONE, part 3: Windows Autopilot
- theDXT: Omnissa Horizon Term License Expiry
- Jesper Alberts: Omnissa Horizon and the case of the mistaken identity
Beta, Lab and Tech Preview Updates
WS1 Intelligent Hub for macOS
- HUBM-8035 Quick Actions feature Support Tab - macOS
- HUBM-8404 [macOS 11] Drop Support for macOS 11
Bug Fixes:
- HUBM-8107 Unable to request macOS Hub logs
- HUBM-8247 macOS Hub not prompting user to logout to encrypt disk
- HUBM-8306 Non-optional profiles show remove button
- HUBM-8310 [ZOOM] macOS Hub Hung State
- HUBM-8414 There are several devices showing 3-4 scripts in the scripts tab when there should be 15 or more displayed
- HUBM-8546 Transmit/sample intervals are not updated for the sensors whenever its changed in the UEM
- HUBM-8569 Parallel Download never retried on network reconnection
- HUBM-8017 App status changing from installed to Not installed, awaiting install on device
HCS next-gen on Amazon WorkSpaces Core
- Horizon Cloud Service next-gen with Amazon WorkSpaces Core Beta will have these features:
All the operations from Horizon Cloud GUI:
- Win 10/11 Desktop Pools
- Persistent desktops
- Single Sign On(SSO) Support
- Automated Edge and UAG deployment
- Automated Desktop Pool Provisioning
- Protocol
- Blast Extreme
- Identity Provider Registration
- Azure Entra ID
- Workspace One Access
- User Entitlements
- Power Management
- Power Optimized(Manual)
WS1 Tunnel for Android
- In this release, we’ve made a few updates containing general quality and performance improvements.
Sign up or LogIn [HERE] to get access to the latest Beta versions.
August Software Releases
System | Component | Release | Announcement | Release Date |
Horizon | Horizon Cloud Service Next Gen | August 1 | 02.08.24 | |
Backend | WS1 Intelligence | 24.08.05 | 05.08.24 | |
Android | Content SDK | 24.07 | 06.08.24 | |
Android | Boxer | 24.07 | 06.08.24 | |
Windows | Hub | 23.10.10 | 07.08.24 | |
Backend | WS1 Access OnPrem | 24.07 | 12.08.24 | |
Backend | WS1 Intelligence | 24.08.12 | 12.08.24 | |
iOS | Hub | 24.07 | 15.08.24 | |
Android | Launcher | 24.08 | 15.08.24 |
Patch & Seed Script Updates Week 33-24
- iOS 17.6.1 (21G93), macOS 14.6.1 (23G93)
- Last Update: CW32
Seed Script for latest Device Model Information
- Seed Script to support new iPad Air M2 and iPad Pro M4 models
- Last update: CW30
- Patch Level 22.12.0.48
- ARES-29546 - App details view page crashes when clicked on filters.
- UM-8986 - With Read-only admin we are able to add admin account through batch import.
- Last Update: CW28
- Patch Level 23.02.0.50
- AMST-41536 - Redirect blob download request from DS to CDN when a branch is disabled.
- Last Update: CW32
- Patch Level 23.06.0.37
- AGGL-17104 - CICO with Launcher apps are not always removed when combined with app assignments.
- AGGL-16846 - Application configuration shows disabled after publishing an app.
- AAPP-17717 - Create a migration script to clear old duplicate credential profile setting value data.
- UM-9107 - Rocket or spaceman error when trying to cancel pending records in Batch Status page.
- Last Update: CW32
- Patch Level: 23.10.0.27
- Patch .26
- UM-9042 - Editing an admin account deactivates the account.
- PPAT-17309 - Multi-factor authentication in allowlist table for Tunnel payload.
- MACOS-3910 - Smart group assignment for the macOS internal app fails to be assigned for a couple of users’ devices.
- AMST-41808 - Seed Windows Hub 23.10.10 x86 to UEM console 2310.
- ARES-27488 - Unable to delete certain internal apps.
- AGGL-17115 - Application configuration inconsistent behavior for check-in check-out users on Android devices.
- AAPP-17305 - forceAirDropUnmanaged is enabled by default on ABM shared iPad.
- AAPP-17277 - Create a migration script to clear old duplicate credential profile setting value data.
- AAPP-17687 - Add request uuid and correlation key headers to logs.
- Patch .27
- MACOS-4269 - Unlock pin not escrowed on the Workspace ONE UEM Console.
- FCA-206523 - Device location log retrieves many records for a sample time. So, it looks like duplicated records.
- CRSVC-50027 - Add OG check to CA flow which sends unenrollment and non-compliant for existing lingering devices for Microsoft tenant.
- AGGL-17234 - Fix lookup field resolution for app configurations when using new devices.
- AGGL-17149 - Android restrictions JSON exceeds memcached limit.
- AAPP-17458 - Improve ExternallyRedeemedLicense job.
- AAPP-16916 - Refreshing AppleCare warranty information is throwing the error “PleaseCheckGSXSettings” for all Apple devices.
- Last Update: CW33
- Patch Level: 24.2.0.11
- PPAT-17123 - VPN applayer payload type is not part of the XML when EnablePerAppVPN is set.
- MACOS-4351 - MAC install fonts.
- FCA-207853 - SmartGroup filter in the DLV must show devices as per eligibility criteria regardless of the device check-in.
- CRSVC-50243 - Fix write enablement issues at shared SaaS.
- CRSVC-50073 - Mod stack Orchestrator is proceeding when the snapshot stage fails
- CRSVC-48506 - Tweak DST PUT API to not emit events based on a flag.
- CRSVC-46606 - Improve canonical auth troubleshooting - add middleware to catch and log details for OAuth errors.
- ARES-29406 - Peer distribution chart is disappearing on-device search.
- ARES-29262 - Units in cache or server bytes charts were not displayed in Peer distribution.
- ARES-29238 - Seeing an error when moving the cursor over the Peer Distribution column of the device table on a Windows app’s Deployment Tracker screen.
- ARES-29140 - Backend - Move offline evaluated devices out of Pending stats in Deployment Tracking.
- ARES-29110 - Add a new section for “Installed but not assigned” devices and move them out from the Evaluated tab.
- ARES-29100 - Default assignments are disappearing from the database when we edit the assignment.
- ARES-28586 - Move offline evaluated devices out of Pending stats in deployment tracking.
- AMST-41653 - Seed Windows Hub 24.4.4.0 x86 Patch2.
- AMST-41560 - Seeding latest SFD 23.10.2 build.
- AAPP-17678 - Fix the looping issue while making association calls for VPP v2.
- AAPP-17088 - Get devices assigned to DEP profile API, which is failing.
- AAPP-17014 - Apple education profile not queuing a removal.
- AGGL-17049 - FCM not clearing passcode in direct boot mode.
- Last Update: CW31
Comments
Post a Comment