Release Updates Week 50-24:
Workspace ONE Intelligent Hub 24.07.2 for macOS
- Bug Fixes:
- HUBM-8923 DeviceStateRequest Fails to Send Due to Indefinite Wait on “profiles -P -v Command” in hubd. Implemented a timeout for the profiles -P -v command for hubd to enable it to proceed with sending the response to workflowd even if the profile status retrieval fails. Has a known issue ARES-31043 listed in Known Issues section below.
- HUBM-8948 - Fixed the issue where only web links showed in Intelligent hub instead of Internal apps on several macOS devices.
Workspace ONE Web 24.11 for iOS
- What’s New
- IBRW-176099: Rebranding update for Workspace ONE Web for iOS
- Resolved Issue
- IBRW-176202: App freezes and SSO doesn’t work
Workspace ONE Web 24.11 for Android | STAGED
- ABRW-176225: Rebranding update for Workspace ONE Web for Android
- ABRW-176038: Digital Employee Experience (DEX) enablement in Omnissa Workspace ONE WebResolved Issues
- ABRW-176309: Scroll Up action on webpage triggers pull to refresh action
- ABRW-176328: Cannot move within Maps, instead Pull To Refresh action is being triggered
Workspace ONE Send 24.11 for Android
- Branding Update: App now features a new logo and splash screens as part of our transition to Omnissa.
Workspace ONE Content 24.11.1 for Android
- Branding Update: App now features a new logo and splash screens as part of our transition to Omnissa.
- Bug fixes and General Improvement.
Horizon Cloud Service - next-gen - December 05, 2024 - Service Release 2411
- Desktops and Applications
- Horizon Cloud Service emails now feature Omnissa branding for all communications sent by the service.
- Pools and Pool Groups
- Using integrated Windows 365, you can now configure SSO (Single Sign-On) end user access within the integrated Windows365 pool group. View SSO configuration in the Horizon’s Integration With Windows 365 Using SSOYouTube video.
- Administrators can take pools offline to aid with maintenance and other tasks. When a pool is offline, reconnections and new connections to VMs in the pool are prevented.
Image Management
- The Image Management Service shall stop supporting operating system Windows 11 version 21H2 with this release as Microsoft has stopped supporting the same.
Provider Capacity
- Administrators can now define Azure Resource Tags to be added to resource groups that Horizon Cloud Services resources are deployed into. Inheritance of Provider tags can be controlled from the Provider. In addition to the Provider, tags can now be configured on Horizon Edge Gateway, Unified Access Gateway and Pool resource groups. This allows admins to comply with tagging policies as well as use tags for tracking of resources in Microsoft Azure.
Horizon Gateway Appliances
- Unified Access Gateway
- The TLS certificate requirement during Unified Access Gateway outbound proxy configuration is now optional for HTTP proxies. Previously, certificates were required for both HTTP and HTTPS proxies.
- Azure Kubernetes (AKS) Edge Gateway
- Improvements have been made to the Azure Kubernetes (AKS) Edge Gateway in adhering to Microsoft Azure security policy best practices.
Monitoring
- Administrators now have the option to allow operators to directly request logs from a Horizon 8 pod, including a Horizon agent DCT log bundle from a virtual machine, unified access gateway logs, and Horizon Connection Server logs. You can opt-out of this feature at any time. The existing settings for diagnostic log collection for Azure will be applied to Horizon 8 pod log collection.
- SNMP monitoring now works with Omnissa generated MIBs, OIDs, and other event identifiers.
Current Omnissa Security Advisories
>>> No new Security Advisories this week <<<
Find latest advisories in the Omnissa Security Response Center
Omnissa UX Research Opportunities:
- Our goal is to gather insight into user behaviors, motivations, and goals, so we can use those insights to inform and strengthen product and design decisions.
- Interested in giving your opinion and making your voice heard? Check out what’s available!
No Research is running - see you in 2025!
KB Highlights & Announcements Week 50-24:
Omnissa Tech Insider 2025 Applications are LIVE!
- It’s that time of the year where we all start to think about goals, achievements, areas we want to improve in, and ways to really make an impact. It’s almost 2025! As we leverage this mindset, we encourage you to keep thinking about what your personal strengths are and how you want to help achieve career and community goals this year.
- If your application is accepted and you become an Omnissa Tech Insider, you will have a blank page to make your goals happen. You decide what your contributions look like, in areas that you are proud and passionate about. Becoming an Omnissa Tech Insider truly is a badge of honor. Why is that? Are we being a bit over the top? Well, actually and quite frankly, no. Being hand selected as an Omnissa Tech Insider sets you apart in the tech world in many ways.
- From Dec. 5th, our application form is live here and ready for you to submit your applications! We will CLOSE the forms on Jan. 5th.
Recent Apple OS Updates - Changes in the Enterprise
- Apple updates iOS, iPadOS, macOS, visionOS, tvOS and watchOS
- iOS 18.2, iPadOS 18.2, macOS 15.2, visionOS 2.2, watchOS 11.2
- What's new for enterprise in iOS 18
- What's new for enterprise in iPadOS 18
- What's new for enterprise in macOS Sequoia
- What’s new for enterprise in visionOS 2
Profiles Assigned Through Freestyle Workflows Installed on Unintended Devices (6000667)
- Profiles configured for use in a Freestyle Workflow may install on all devices assigned to the Smart Group associated with the Workflow in the following conditions,
- Profiles may install even if the Workflow is configured to perform a different action, such as uninstalling the profile.
- Profiles may install on devices even when the conditions specified in the Workflow are not met.
- Profiles configured in an on-demand Workflow may install automatically, even if the Workflow has not been executed on the device.
This behaviour results in profiles being installed on devices without assignment, disrupting expected resource deployment.
Additionally, you may notice Smart Groups configured through Workflows appear under the ‘Assigned Groups' column on the Profiles List View.
Action Required for Workspace ONE Tunnel for iOS and macOS customers (6000683)
- As part of Omnissa’s commitment to redesigning the Omnissa Platform and ensuring a smart, seamless, and secure digital work experience for our customers, we are excited to introduce an update to our iOS and macOS Tunnel apps. We are releasing new Tunnel apps that feature a new logo and updated splash screens.
- This article describes how to migrate from the legacy Tunnel apps to the newly branded apps.
Known issues of Product Provisioning in the UEM modernized stack (6000686)
- We have initiated the transition of UEM SaaS environments to the new modernized stack in phases. However, some features in UEM will temporarily continue to operate using legacy stack flows after the transition. These features will be fully integrated into the new stack in the near future. The temporary use of the legacy stack may have minor impacts on these features; this document intends to inform about these issues and their potential effects.
- After the transition, you may notice the following minor deviations in reporting for the Apps and Profiles status, delivered using Products.
- The ‘App Status’ for the Apps shows up as “Installed but not assigned” instead of “Installed” on the Apps tab of the Device Details page.
- The ‘Status’ for the Profiles shows up as “Installed but not assigned” instead of “Installed” on the Profiles tab of the Device Details page. The ‘Configuration Type’ appears as “Unknown” instead of “Work”.
- As part of Omnissa’s commitment to redesigning the Omnissa Platform and ensuring a smart, seamless, and secure digital work experience for our customers, we are excited to introduce an update to our iOS Hub and Tunnel apps. This update requires customer action in order to maintain business continuity for customers leveraging Phishing and Content Protection.
- This article describes the steps that must be completed in order to migrate from the legacy Tunnel application to the newly branded app.
macOS Profiles shows "Installed but not assigned" and contains profile duplicates (6000682)
- Omnissa Workspace ONE teams have observed that if a customer has more than 40 .mobileconfig profiles assigned to a device, WS1 Intelligent Hub for macOS is not able to handle the profile requests. This includes installing and removing profiles.
- This issue is only affecting customers with Mod-enabled environment.
- Impact: Observed behavior on WS1 Intelligent Hub for macOS 24.07.1
Users can View and Act on the Enrolment Terms of Use (TOU) ‘Updates’ through the Hub app (6000680)
- Workspace ONE Intelligent Hub app users can now view and act on updates to the Enrolment Terms of Use (TOU) created in the Workspace ONE UEM console (UEM TOU documentation) for any of their enrolled devices directly within the Intelligent Hub app. This functionality has been available through the Self-Service Portal (SSP), requiring users to log in separately, often delaying critical actions on TOU updates. By integrating this feature into the Intelligent Hub app, we streamline it into the regular employee workflow, allowing for more immediate responses to TOU updates.
- This functionality is currently available on the web version of Hub and Hub clients on iOS, Android and Windows. This capability is not yet available on Hub MacOS. Following are the minimum requirements for this feature to work.
2025 Omnissa Workspace ONE UEM Maintenance (81448)
- The table in the KB outlines the Workspace ONE UEM standard monthly maintenance schedule for all SaaS environments in 2025.
Workspace ONE Modern SaaS Architecture KB’s:
- Workspace ONE UEM – Modern SaaS Architecture Rollout – November Update (6000206)
- Intelligent Hub for macOS must be upgraded to version 24.07.1 to prevent macOS Profile removal from being blocked with Mod Stack
- Tagging Operations Behavior Change in Mod Stack Enabled Environments
- Smart Group exclusions now managed at version level in modern SaaS architecture enabled Workspace ONE UEM Environments (6000662)
- Application and Profile management restricted to Customer Organization Group (and Partner Organization Group) or below in Modern SaaS architecture enabled UEM environments (6000196)
- ARES-28824 – Known Issue with Sorting Applications on Device Details Page with Modern SaaS Architecture Enabled UEM Environments (6000670)
- Evaluated device count higher than Assigned count in Deployment Tracking for Modern SaaS architecture enabled UEM Environments (6000191)
- Introducing WS1 UEM Next-Gen SaaS: Device List View, Resource Delivery and Deployment Tracking ModernizationImprovements in Tech Preview Environment CN135 (94042)
- Modernization Update: Consolidated Modernized Services for Hosted SaaS (91520)
- Profiles Assigned Through Freestyle Workflows Installed on Unintended Devices (6000667)
- macOS Profiles shows "Installed but not assigned" and contains profile duplicates (6000682)
- Known issues of Product Provisioning in the UEM modernized stack (6000686)
High Priority KBs:
- Omnissa new world link directory
For an overview about links to customer portals and relevant information follow the above link. - Workspace ONE UEM – Modern SaaS Architecture Rollout (6000206)
Workspace ONE UEM has undergone a complete re-architecture to modernize the platform using microservices and containers to enable increased scalability and performance and increase the rate of innovation. Now after having conducted significant and careful testing, these architecture updates, including the new Modern Stack, will be deployed to UEM SaaS environments over the next several months. Also review: Introducing Workspace ONE (WS1) UEM Next-Gen SaaS. - System Migration Changes Impacting Workspace ONE and Horizon Customers (97841)
The end-user computing (EUC) division of Broadcom will transition from VMware-hosted systems to EUC-hosted systems in April and May 2024. This transition is part of our preparation to become a standalone entity following the pending acquisition of EUC by KKR.
Recently updated or added KBs (Links)
- Profiles Assigned Through Freestyle Workflows Installed on Unintended Devices (6000667)
- How to configure the modern macOS Tunnel client (6000006)
- Action required for Workspace ONE Mobile Threat Defense customers using Phishing and Content Protection (6000684)
- Action Required for Workspace ONE Tunnel for iOS and macOS customers (6000683)
- 2025 Omnissa Workspace ONE UEM Maintenance (81448)
- macOS Profiles shows "Installed but not assigned" and contains profile duplicates (6000682)
- Users can View and Act on the Enrolment Terms of Use (TOU) ‘Updates’ through the Hub app (6000680)
- Known issues of Product Provisioning in the UEM modernized stack (6000686)
- Workspace ONE UEM – Modern SaaS Architecture Rollout – November Update (6000206)
Digital Workspace Techzone, Blog, Community and YouTube Updates
- New year, new productivity goals with Omnissa
- How genAI-driven app development will impact app management
- Passkeys in the Enterprise
- Omnissa Certification Program Rebranded
- Workspace ONE Intelligent Hub for Windows Version 24.10
3rd Party Blog Updates & Industry News
- Arkadiusz Krowczynski: Enhancing Security with Okta Identity Threat Protection and Omnissa
Beta, Lab and Tech Preview Updates
- IMPORTANT! Changed package name / bundleID from com.vmware.xr.xrhub.<platform> to com.ws1.xr.xrhub.<platform>
- You MUST uninstall the old version of XR Hub before installing XR Hub 24.11. You will need to recreate application configuration settings in UEM for this new application.
- Updated to Omnissa branded logos and text
- Add Legal Center window to the legal sub options under the user menu
- Fixed getting stuck on Loading Environment... when using custom logo environment
- Ensure background apps are killed when returning to XR Hub when using Quest kiosk mode so that their audio does not continue to play
- Fix Quest kiosk mode not working when its a newly uploaded application on UEM
- Fix Remember Me option on Login Window not always repopulating the remembered username in certain cases
- Show download progress bar on Tutorial Window when the video is still being downloaded and fix the window getting stuck in a loading state
- Minor legal-related text changes relating to transition to Omnissa
WS1 Intelligent Hub 24.10 for Linux
- New Features:
- [LAGNT-1088]: New Restrictions Profile for Linux
- [LAGNT-1095]: New Passcode Profile for Linux
- [LAGNT-1094]: Omnissa Rebrand (including install folder change)
- [LAGNT-1173]: Ability to use Native App Management to upgrade the Intelligent Hub
Bug Fixes:
- [LAGNT-302]: Add support to report all the sensors once a day minimum
- [LAGNT-1068]: Add SSID and RSSI info in network adapter sample
- [LAGNT-1225]: Ensure failed multi-step profile payload successfully removes installed payloads
- [LAGNT-1229]: Update puppet version when Hub upgraded
- [LAGNT-1230]: Ensure global proxy config properly sets port value
- [LAGNT-1232] Ensure network proxy config properly sets port value
WS1 Intelligent Hub 24.10 for Windows
- Introducing the New Omnissa-Branded Intelligent Hub: Experience the refreshed look and feel of the Intelligent Hub with the new Omnissa Logo and Branding
- Enhanced Push Notification Reliability: With this release, the Intelligent Hub application will now silently auto-launch in the background following a fresh install or upgrade. This ensures the reliable delivery of push notifications—even on devices where the app hasn’t been manually opened—keeping your employees informed and connected without additional effort. Minimum UEM version necessary to support this is 2410
- The Applications tab has been reengineered as a native experience, delivering a faster, smoother, and more intuitive interaction. Key enhancements include:
- Faster Delivery and Installation of On-demand applications.
- In-line Progress Indicators that help track application installations in real-time.
- Responsive User Interface: The redesigned tab ensures a seamless and fluid experience
- Enhanced Reporting for Application Deployments: Gain better visibility into application deployment outcomes with improved reporting capabilities. When app deployments are triggered from Freestyle workflows, you’ll now receive detailed status updates, conditions evaluated and clear failure reasons. Minimum UEM version necessary to support this is 2410
- Ability to Rollback to a previous Application versions: Quickly address issues with new application versions without disrupting user productivity. With this release, retiring an application version (e.g., v2) will now trigger its removal from devices and automatically reinstall the previous version (e.g., v1). This process includes handling necessary device reboots seamlessly and providing accurate application version reporting in the UEM console. Minimum UEM version necessary to support this is v2410
- Support for Hub on Standard User Devices: Organizations with strict security policies in place that prevent non-admin users from installing packaged windows apps can now deliver the full capabilities of Intelligent Hub to their standard users. With this enhancement, the Hub UI component is installed with administrator privileges on managed devices, allowing standard users to seamlessly access and launch the Hub UI
- Automatic merging of large Device logs for enhanced troubleshooting: Admins can now collect and access large device logs more efficiently. Previously, the process involved uploading multiple small files from Workspace ONE Hub to UEM, requiring admins to download and merge numerous separate files, which was time consuming for troubleshooting large log files. With the latest update, logs are uploaded and automatically merged into a single file (up to 200MB), reducing the effort and time needed to troubleshoot devices. Minimum UEM version necessary to support this is v2410
- Optimized SFD Download Behavior: Applications using scripts for detection or uninstallation no longer require a full application download when the cache is cleared. This optimization significantly reduces bandwidth consumption and speeds up application deployment.
- Hub Provisioning Mode and command line device enrollment: These enhancements to Hub provide additional enrollment flows for Windows physical and virtual machines. The processes of installing the Intelligent Hub agent and performing device enrollment have been separated. By using the new Hub Provisioning Mode, Hub can now be installed on a template PC or virtual machine such as a Horizon Gold Image. When the template completes Sysprep and is cloned, Hub remains installed and ready for enrollment on the clone. Command line, automated device enrollment can be invoked at user logon.
- Resolved Issues:
- HUBW-17026 PEO text dissappears post Bitlocker Pin Prompt
HUBW-16269 Unable to set bitlocker pin on 50% of enrolments
HUBW-14364 Intelligent Hub 23.10.05 still not prompting for certificates after new WebUI infrastructure
HUBW-14121 Bitlocker encryption profile failing to install due to invalid dateTime format
HUBW-14061 Product Provisioning Scripts Fail to Run Properly with Windows Hub 23.10.5
HUBW-14048 Filename with Japanese characters getting garbled when deploying ZIP-type Win internal app
HUBW-12907 Windows - App Install status on Activity Monitor shows more than 100%
WS1 Tunnel 24.12 for Android
- Branding Update: New Logo and Splash Screens
- The app now features a new logo and updated splash screens as part of our transition to Omnissa.
Omnissa Horizon Clients 2412
- Android:
- New branding, new icon! Horizon is now Omnissa Horizon
- Latest Android APIs.Updated for compatibility and functionality
Windows:
- New branding, new icon! Horizon is now Omnissa Horizon
- Sub-folder support
- Updated libraries
macOS:
- New branding, new icon! Horizon is now Omnissa Horizon
Chrome:
- New branding, new icon! Horizon is now Omnissa Horizon
- Scanner redirection with improved performance
Linux:
- Omnissa branding
- Access to cloud-based entitlements in Omnissa Workspace ONE mode
- Ease of access to Horizon Cloud on Azure desktops
- Access to Horizon Cloud Service - next-gen from networks without internet access
Sign up or LogIn [HERE] to get access to the latest Beta versions.
December Software Releases
System | Component | Release | Announcement | Release Date |
Android | Content | 24.11 | staged | |
Android | Launcher | 24.11 | 04.12.24 | |
iOS | Content | 24.11 | 05.12.24 | |
iOS | Send | 24.11 | 05.12.24 | |
Android | Tunnel | 24.11 | 03.12.24 | |
iOS | PIV-D Manager | 24.11 | 03.12.24 | |
iOS | Web | 24.11 | 09.12.24 | |
Android | Web | 24.11 | staged | |
Android | Send | 24.11 | 09.12.24 | |
macOS | Hub | 24.07.2 | 10.12.24 | |
Android | Content | 24.11.1 | 12.12.24 | |
Horizon | Horizon Cloud Service Next Gen | December 05 | 05.12.2024 |
Patch & Seed Script Updates Week 50-24
- tvOS 18.2 (22K155), macOS 15.2 (24C100), iOS 18.2 (22C151), visionOS 2.2 (22N841)
- Last Update: CW50
Seed Script for latest Device Model Information
- Seed Script to support
- iPad mini 7th Generation and 2024 iMac, MacBook Pro and Mac mini
- Last update: CW45
- Patch Level 23.02.0.52
- PPAT-17448 - Tunnel client not reconnecting once the device regains compliance.
- MACOS-4942 - Smart group assignment for the macOS internal app fails to be assigned for a couple of users’ devices.
- CRSVC-51130 - Add code block on the UEM side to block Conditional access configured at any other customer OG if it is already configured for once customer OG within same UEM environment.
- AMST-42076 - Time zone displayed in Scripts tab is different from the Execution logs.
- Last Update: CW38
- Patch Level 23.06.0.43
- SINST-176422 - Backport .NET 8 to UEM 2306.
- AAPP-18024 - Fix data duplication in vppAssetManagementEventData.
- Last Update: CW50
- Patch level 23.10.0.40
- UM-8878 - Input data validation SCIM API.
- UM-9111 - Administrator user deletions must be logged.
- CMSVC-17777 - Internal server error reported from MDM tags API when tag is not assignable to any of the devices.
- AMST-42510 - Removed URL encoding while uploading icon from EAR.
- AMST-41549 - Remove the Version Check from Seeded Apps in the mapping table.
- Last Update: CW49
- Patch Level: 24.2.0.22
- UM-8878 - Input data validation SCIM API.
- UM-9111 - Administrator user deletions must be logged.
- CMCM-191155 - Invalid link issue for automatic user repositories created with link containing same consecutive folder names.
- ARES-29652 - Child OG remains undeleted despite the attempt to delete it.
- AMST-42510 - Removed URL encoding while uploading icon from EAR.
- AMST-41549 - Remove the Version Check from Seeded Apps in the mapping table.
- AGGL-17170 - Workspace ONE unable to automatically retrieve app configuration from custom apk file.
- AAPP-17986 - Add iOS 18 Passwords app bundle ID to seed data.
- AAPP-17816 - Sync VPP Assets or License fails due to foreign key constraint reference for VppLicenseID.
- Last Update: CW49
- Patch level 24.06.14
- FCA-208431 - Dual SIM iOS devices showing only one phone number in the “Device Info” section.
- CRSVC-56153 - Incorrect installation details are reported for Apps and Profiles.
- CRSVC-54812 - Update Seeded Mac Workflow Host.
- ARES-30984 - Profile List View page crashes when Android profile is configured with ‘Custom Messages’ payload.
- ARES-30580 - ‘Error has occurred’ when clicking the ‘View’ button for profiles from the custom layout of the Profile List View grid.
- ARES-29700 - Unable to edit ‘When To Call Install Complete’ criteria for Windows internal apps.
- AAPP-18236 - Issues creating IKEv2 VPN Payload with Credentials for iOS devices.
- AAPP-18090 - VPP Apps install delay fixes.
- Last Update: CW50
Comments
Post a Comment