What's New in 26.4
Review the new and updated features in this release.
Tampering Event Details
Tampering Details provides additional context for agent.tampering events by showing information specific to the type of tampering detected. For process policy tampering, it displays when the tampering occurred, the action taken, and an optional mark. For firewall tampering, it displays when it occurred, the affected process and kernel functions, and an optional process name. Navigate to Troubleshoot > Events to view these details.
Support for hybrid MSP tenant migration
As part of the upgrade from legacy SaaS clusters to the Illumio Console, the MSP Portal now allows administrators to access both legacy SaaS tenants and tenants who upgrade to the Illumio Console.
This feature provides support during the transition period to make sure that MSP administrators have an uninterrupted experience in the MSP Portal.
Accessing the Illumio Console child tenants: When an MSP administrator selects a new browser tab that has been upgraded to the Illumio Console, the tenant will open in a new browser, launching a full Illumio Console session. Legacy child tenants continue to open in the same tab as before.
New tenant provisioning: The Add Tenant action in the MSP Portal is automatically disabled if the default target cluster for new tenant creation has been upgraded to the Illumio Console. This prevents MSP administrators from accidentally provisioning new tenants on an upgraded cluster through the legacy MSP Portal flow.
MSP and MSSP customers can submit an Illumio support ticket to request provisioning and deprovisioning of new tenants on the Illumio Console.
Note
This feature is relevant during the transition period only.
Pod policy convergence visibility
With this release, Illumio expands Kubernetes Policy Convergence status. The synchronization state for Kubernetes pods displays in the Servers & Endpoints > Workloads > Kubernetes Workloads Summary within the PCE UI. This information represents a distinct C-VEN convergence state, separate from "Policy Sync," which indicates Kubelink’s acknowledgment of the policy. The increased transparency and visibility helps you understand synchronization progress across the pods in a workload. The same information displays in Infrastructure > Container Clusters for a selected Kubernetes Workload.
Display Kubernetes pod errors in host workloads
Host workloads now report CLAS Kubernetes workload synchronization status through their existing sync status and error fields. A workload indicates Synced only after Kubelink reports a CLAS sync status with zero errors. When errors are reported, the status and error message transition to the agent error state.