Skip to main content

What's New and Release Notes for 26.x

What's New in Release 26.2.20-PCE

This release contains the following update for the PCE.

Enhanced firewall tampering detection and reporting

Firewall tampering detection now reports potential tampering events to the PCE immediately upon initial detection, allowing administrators to investigate suspected tampering sooner. Event reporting now includes richer metadata, distinguish between possible and confirmed tampering, track repeated detections, and use aggregation logic to reduce noise from recurring events.

For more information, see VEN Firewall Tampering Detection.

Tampering Event Details

Tampering Details provides additional context for agent.tampering events by showing information specific to the type of tampering detected. For process policy tampering, it displays when the tampering occurred, the action taken, and an optional mark. For firewall tampering, it displays when it occurred, the affected process and kernel functions, and an optional process name. Navigate to Troubleshoot > Events to view these details.

Shared Resources

Note

This feature is available only to on-premise deployments of 26.2.20-PCE. You need to enable this feature.

Illumio now supports Shared Resources, enabling network administrators to manage workloads that serve multiple applications or environments. Administrators can associate a single server workload with multiple label sets, allowing different application or service owners to define policies independently for the same shared system. Assign multiple labels of the same type (sub-labels) to these workloads without disrupting existing policies.

See Shared Resources.

Support for FIPS 140-3

This version of the PCE can operate in FIPS mode on systems that adhere to the FIPS 140-3 standard.