Skip to main content

Cloud

Previous Illumio Cloud what's new and release notes for 2025

These prior release notes describe the new features, enhancements, resolved limitations, and known limitations for Illumio Segmentation for the Cloud in previous 2025 releases.

What's new in this release - August 8, 2025

Feature

Description

OCI Policy

Illumio Segmentation for the Cloud supports OCI policy:

See Onboarding OCI.

You must be a BETA participant to see these OCI features. Please reach out to your account team if you want to participate in the OCI BETA program.

By participating in the BETA program for OCI features you agree that your company’s use of the BETA version of OCI features will be governed by Illumio’s Beta Terms and Conditions.

Please refer to the feature documentation to understand the supported functionality and limitations related to OCI BETA.

What's new in this release - July 31, 2025

Feature

Description

GCP Visibility

Illumio Segmentation for the Cloud for GCP is generally available and supports visibility, including the following:

Please refer to the feature documentation to understand the supported functionality and limitations.

What's new in this release - July 30, 2025

Feature

Description

Agentless Containers

Agentless Containers now supports:

  • OpenShift OVN (Open Virtual Networking)-Kubernetes

  • Azure AKS

  • Google GKE

See Agentless Containers overview.

What's new in this release - July 14, 2025

Feature

Description

AI Labeling

Update: AI label-based recommendations draw from a pool of over 300 labels, including role and application labels.

See Use AI Labeling.

What's new in this release - July 10, 2025

Feature

Description

GCP Visibility (BETA)

Illumio Segmentation for Cloud now supports GCP visibility under the Beta program. Visibility includes the following:

Please refer to the feature documentation to understand the supported functionality and limitations related to GCP Beta.

You must be a Beta participant to see these GCP features. Please reach out to your account team if you want to participate in GCP Beta program.

By participating in the BETA program for GCP features you agree that your company’s use of the BETA version of GCP features will be governed by Illumio’s Beta Terms and Conditions.

Onboarding

The flow log destination review process is streamlined with an improved interface. It provides more information and lets you sort destinations by different traffic directions with one click. You can assess your flow logs more efficiently before granting access.

See Review destinations before granting flow log access.

What's new in this release - June 6, 2025

Feature

Description

AI Labeling

Update: AI label-based recommendations now draw from a pool of over 300 labels instead of 60.

See Use AI Labeling.

What's new in this release - May 30, 2025

Feature

Description

Onboarding

The flow log destination review process is streamlined with an improved interface. It provides more information and lets you sort destinations by different traffic directions with one click. You can assess your flow logs more efficiently before granting access.

Contact your Customer Success and Account teams to request access to this feature.

What's new in this release - May 13, 2025

Feature

Description

Azure Firewalls

This feature is no longer in beta and is now generally available.

You can now get a clear view of your Azure Firewall inventory, with details about your firewalls and their current policies. Gain insights into your firewall network flows using the Traffic page, and see a visual representation of your firewall hub and spoke topology in the Map. Click on traffic paths in the Map to see traffic between firewalls and connections between VNets and clouds. In addition, you can now use Azure Firewalls to enforce policy on VNets.

See Azure Firewalls Overview.

What's new in this release - May 8, 2025

Feature

Description

Resources

Illumio Segmentation for the Cloud now supports visibility for the following resources:

  • App Service (Web App, Function App)

  • SQL Managed Instance

  • Key Vault

See Illumio visibility for resource types.

What's new in this release - May 7, 2025

Feature

Description

Policy

Illumio Segmentation for the Cloud now supports the following resources for enforcing policy on Azure Private Endpoints:

  • App Service (Web App, Function App)

  • SQL Managed Instance

  • Key Vault

See Policy enforcement and resource types.

What's new in this release - April 24, 2025

No.

Feature Category

Feature List

1.

Agentless Containers

Illumio Segmentation for the Cloud now extends security to Kubernetes containers, delivering visibility and control for both cloud-managed and self-managed Kubernetes clusters. Use advanced filtering and dynamic mapping capabilities to navigate large-scale Kubernetes environments and pinpoint clusters, nodes, namespaces, and workloads. The onboarding process is streamlined to allow rapid integration of new Kubernetes clusters with Illumio Segmentation for the Cloud. Once you onboard your clusters, Illumio Segmentation for the Cloud provides insights into your containerized inventory, application dependencies, and network traffic patterns. These insights help you enforce security postures and microsegmentation policies across dynamic workloads.

See Agentless Containers overview.

See Onboard and Offboard Kubernetes Clusters.

See Navigating the Map Kubernetes View.

See Kubernetes Resources Inventory.

See Illumio IP addresses accessed by the Kubernetes Cloud Operator.

What's new in this release - March 31, 2025

No.

Feature Category

Feature List

1.

Policy

The Policy Preference page now lets you set your preferences for enforcement points to include Azure Firewalls, along with subnet and NIC NSGs. See Policy preferences.

Contact your Customer Success and Account teams to request access to this feature.

Note

Illumio Segmentation for the Cloud does not support Classic Azure Firewall.

2.

Resources

NOTICE: Illumio Segmentation for the Cloud no longer supports Azure network IP configurations as a visibility-supported resource type. However, the Inventory resource details tab for Microsoft network interfaces will still display network IP configurations as applicable.

See Illumio visibility for resource types.

See Inventory Details.

What's new in this release - March 6, 2025

No.

Feature Category

Feature List

1.

Terraform for Applications

You can create a Terraform onboarding application and use it to onboard Azure subscriptions. Use Terraform to save time and effort instead of manually onboarding.

See Create a Terraform Illumio Onboarding Application for Azure.

See Onboard an Azure Subscription using a Terraform Illumio Onboarding Application.

2.

Policy

You can write policy using Azure Firewalls. This allows you to define and apply network and application level security rules across multiple virtual networks and subscriptions. This also allows you to effectively manage all traffic filtering from a single point of control through its centralized policy management capabilities.

See Writing Azure Firewall policy.

This is a beta feature. Review the beta terms and conditions on the Illumio website.

What's new in this release - February 20, 2025

No.

Feature Category

Feature List

1.

Terraform for Applications

You can now use Terraform to create, edit, and delete tag to label mappings, deployments, and applications. For applications, you can also use Terraform to auto-approve, allow cloud service source metadata, and populate a field with a list of deployments for the application definitions. Using Terraform saves you the time and effort of manually performing the work.

See the Illumio Terraform website.

2.

Visibility

You can now get a clear view of your Azure Firewall inventory, with details about your firewalls and their current policies. Gain insights into your firewall network flows using the Traffic page, and see a visual representation of your firewall hub and spoke topology in the Map. Click on traffic paths in the Map to see traffic between firewalls and connections between VNets and clouds. In addition, you can now use Azure Firewalls to enforce policy on VNets.

See Azure Firewalls Overview.

See Navigating Azure Firewalls.

See Inventory.

This is a beta feature. Review the beta terms and conditions on the Illumio website.

3.

Policy

You can now enforce policy using Azure Firewalls.

See Illumio visibility for resource types.

See Policy enforcement and resource types.

This is a beta feature. Review the beta terms and conditions on the Illumio website.

What's new in this release - February 4, 2025

No.

Feature Category

Feature List

1.

Visualization

The Traffic page now has a time slider visualization that shows the total number of active flows for any time period you specify. You can zoom into a given time period and view detailed information about the flows such as flow status, the source and destination, and the times when the flows were detected.

See Search traffic.

Resolved limitations in Illumio Segmentation for the Cloud
  • Update the Downloadable file "Download Permissions" file on CS UI Onboarding (C-8304)

    Illumio Segmentation for the Cloud now provides both a read-only and a read and write permissions file that you can download during onboarding and from the documentation. Previously, customers who wanted to update their read-only permissions might have used the read and write permissions update script. You can now take the necessary steps to correct the permissions given by using the relevant scripts. See the Updating Permissions on the Assume Role section of Prerequisites for Onboarding AWS.

What's new in this release - January 23, 2025

No.

Feature Category

Feature List

1.

Visualization

Cloud now lets you drill down into EKS Clusters using the Resource Map tab. Use it to view your EKS Clusters' Node Groups and individual EC2 instances along with their traffic.

See Navigating AKS, EKS, and GKE clusters.

Updated: You can now also enforce policy on EKS Clusters.

See Policy enforcement and resource types.

2.

Documentation Updates

Download the combined User Guide and Release Notes PDF from the top navigation pane.

Cloud_PDF_New_Location.png
Resolved limitations in Illumio Segmentation for the Cloud
  • Viewing Azure flow logs in storage accounts (C-8005)

    Illumio Cloud now supports custom resource groups that generate VNET and NSG flow logs for Azure Network Watcher. This resolves a previous limitation where there was a mismatch in the folder structure generated by the flow service and the storage account.

What's new in this release - January 9, 2025

No.

Feature Category

Feature List

1.

Connector

Illumio Segmentation for the Cloud's Connector feature now lets you choose between CSV and JSON formats when exporting data to an onboarded S3 bucket.

See Connector.