Teleport 6.1.0
Teleport 6.1 contains multiple new features, improvements, and bug fixes.
New Features
U2F for Kubernetes and SSH sessions
Added support for U2F authentication on every SSH and Kubernetes "connection" (a single tsh ssh
or kubectl
call). This is an advanced security feature that protects users against compromises of their on-disk Teleport certificates. Per-session MFA can be enforced cluster-wide or only for some specific roles.
For more details see Per-Session MFA documentation or RFD 14 and RFD 15 for technical details.
Dual Authorization Workflows
Added ability to request multiple users to review and approve access requests.
See #5071 for technical details.
Improvements
- Added the ability to propagate SSO claims to PAM modules. #6158
- Added support for cluster routing to reduce latency to leaf clusters. RFD 21
- Added support for Google Cloud SQL to Database Access. #6090
- Added support CLI credential issuance for Application Access. #5918
- Added support for Encrypted SAML Assertions. #5598
- Added support for user impersonation. #6073
Fixes
- Fixed interoperability issues with
gpg-agent
. RFD 18 - Fixed websocket support in Application Access. #6028
- Fixed file argument issues with
tsh play
. #1580 - Fixed
utmp
regressions that caused issues in LXC containers. #6256
Download
Download the current and previous releases of Teleport at https://gravitational.com/teleport/download.