--- title: "[25.07] KI - July 16, 2025" slug: "25-07-ki-july-16-2025" updated: 2026-08-19T10:34:02Z published: 2026-08-19T10:34:02Z canonical: "support.fortanix.com/25-07-ki-july-16-2025" --- > ## Documentation Index > Fetch the complete documentation index at: https://support.fortanix.com/llms.txt > Use this file to discover all available pages before exploring further. # [25.07] KI - July 16, 2025 This article provides an overview of the new features, improvements, and on-premises scanner updates in the Fortanix Key Insight 25.07 release. ## 1.0 New Features - Added the new violation type **Cross Account Key Usage** for AWS connections, enhancing visibility into the state of keys with historical cross-account access (**JIRA: KI-2338**). *For more information, refer to* [*Fortanix Key Insight User Interface Components – AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws)*.* - The new key status type **Cross Account Key Usage** is added on the **Overview** page. ![KI_Cross Account on Overview.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186181385108) - The violation is added to the **Risk Score**, **Service Violations** and **Top Security Issues** sections of the **Assessment** page. ![KI_Cross Account Keys.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186181385748) - You can filter keys and services using this violation. ![KI_Cross Account Keys Filter.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186252905364) - Fortanix Key Insight now allows account administrators to add certificate ownership details for AWS connection, thereby improving certificate management, enhancing tracking, and streamlining remediation workflows (**JIRA: KI-2604**). As an account administrator, on the **Certificates** page, *For more information, refer to* [*Fortanix Key Insight User Interface Components – AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws#811-add-certificate-details)*.* - You can add primary and secondary owners for selected certificate(s) using the **ADD DETAILS** option by providing either the name or employee ID and email address. ![KI_RN Add Certificate Details.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186377990420) - You can update existing certificate details with primary and secondary owners using the **EDIT DETAILS** option, either on the certificate details page or from the certificate list. ![KI_AWS Certificate Properties.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186356099348) - Fortanix Key Insight now supports grouping Post-Quantum Cryptography (PQC) vulnerabilities by **Certificates** in AWS connection on **PQC Central** page (**JIRA: KI-2627**). - For AWS connections, the PQC dashboard provides a detailed breakdown of **Post-Quantum Readiness** and **PQC Vulnerabilities by Cryptographic Assets** associated with certificates. The drill-down views offer deeper insights to support informed remediation and strategic planning. ![KI_PQC by Certificates.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186417706516) - A guided tour is now available the first time you access the **PQC Central** page on Fortanix Key Insight, helping you quickly understand its key capabilities. ![KI_PQC Feature Tour.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186417707668) *For more information, refer to* [*Fortanix Key Insight User Interface Components - PQC Central*](/v1/docs/fortanix-key-insight-user-interface-components-pqc-central)*.* - AWS key aliases details are now displayed on the **Keys** page and the **Key Details** page, providing clearer identification and improved context for each key. Additionally, users can now search for keys using AWS **Key Aliases**, simplifying key discovery and improving overall workflow efficiency (**JIRA: KI-2387**). ![KI_RN Add Key Alias.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186458731412) *For more information, refer to* [*Fortanix Key Insight User Interface Components - AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws#60-keys). - Fortanix Key Insight now provides a clear distinction between **Platform Managed Key** and **Customer Managed Key** when configuring AWS and Azure connections (**JIRA: KI-2760**). For an AWS and Azure connection, *For more information, refer to the following:* - Added **Platform managed keys** and **Customer managed keys** under **Keys** by Status section on the **Overview** page. ![KI_PMK and CMK.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186584802964) - Added **Services using Platform Managed Keys** under the **Top Security Issues** on the **Assessment** page. ![KI_RN Assessment.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186584804244) - Added the **Key managed by** filter to the AWS list view, along with the corresponding label in the key and service details panels for both AWS and Azure. ![KI_RN Key Managed by.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186584804756) - [*Fortanix Key Insight User Interface Components - AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws#60-keys) - [*Fortanix Key Insight User Interface Components - Azure*](/v1/docs/fortanix-key-insight-user-interface-components-azure) - Fortanix Key Insight now displays External Key Store (XKS) details on the **Keys** details page for AWS keys. Users can also filter and search keys by **External Key Store Name** and **External Key Store ID**, improving visibility and management of XKS-integrated keys (**JIRA: KI-2751**). ![KI_RN Add XKS.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186824582164) *For more information, refer to* [*Fortanix Key Insight User Interface Components - AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws#613-view-key-details). - Fortanix Key Insight now supports Cryptography Bill of Materials (CBOM) export in CBOM JSON format, adhering to the CycloneDX standard, for cryptographic assets discovered across cloud environments (AWS, Azure), on-premises deployments, and external key sources such as Fortanix DSM (**JIRA: KI-2603**). This enables organizations to maintain a comprehensive cryptographic inventory, demonstrate regulatory compliance, and evaluate Post-Quantum Cryptography (PQC) readiness. ![KI_On-premises Overview.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186889706644) *For more information, refer to the following:* - [*Fortanix Key Insight User Interface Components - AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws#32-cryptography-bill-of-materials-cbom) - [*Fortanix Key Insight User Interface Components - Azure*](/v1/docs/fortanix-key-insight-user-interface-components-azure#32-cryptography-bill-of-materials-cbom) - [*Fortanix Key Insight - On-premises User Interface Components for Databases*](/v1/docs/fortanix-key-insight-on-premises-user-interface-components-for-databases#32-cryptography-bill-of-materials-cbom) - [*Fortanix Key Insight User Interface Components - External Key Source*](/v1/docs/fortanix-key-insight-user-interface-components-external-key-source#32-cryptography-bill-of-materials-cbom) ## 2.0 Improvements - The Azure connection keys filter list is now updated to include **Key Id** as a filter criterion. Users can now easily search and filter Azure keys using the **Key Id**, allowing for more precise key management and improved usability (**JIRA: KI-2756**). ![KI_RN Azure Key ID.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39186947601556) *For more information, refer to* [*Fortanix Key Insight User Interface Components - Azure*](/v1/docs/fortanix-key-insight-user-interface-components-azure#621-filter-keys-list-view). - The **Overview** pages for Azure and AWS connections have been streamlined for improved clarity and usability (**JIRA: KI-2858**). *For more information, refer to the following:* - The **Top Subscriptions That Need Attention** section has been removed from the Azure **Overview** page. - The **Accounts Requiring Attention** section has been removed from the AWS **Overview** page. - The remaining sections have been reorganized to provide a cleaner layout. - [*Fortanix Key Insight User Interface Components - AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws) - [*Fortanix Key Insight User Interface Components - Azure*](/v1/docs/fortanix-key-insight-user-interface-components-azure) - Added the **PQC Readiness** section and removed the existing **Quantum-Vulnerable Keys** section from the AWS, Azure, and On-Premises **Assessment** pages (**JIRA: KI-3114**). ![KI_RN PQC Readiness.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39187074278164) *For more information, refer to the following:* - [*Fortanix Key Insight User Interface Components - AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws#43-top-security-issues) - [*Fortanix Key Insight User Interface Components - Azure*](/v1/docs/fortanix-key-insight-user-interface-components-azure#43-top-security-issues) - [*Fortanix Key Insight - On-premises User Interface Components for Databases*](/v1/docs/fortanix-key-insight-on-premises-user-interface-components-for-databases#43-top-security-issues) - The **LIST** view is now the default view instead of **GRAPH** for the **Keys** and **Services** pages in Fortanix Key Insight for AWS and Azure cloud connections (**JIRA: KI-3242**). ![KI_List View Default.png](https://cdn.us.document360.io/c3bd85d2-4ad8-4d85-9f60-f1c168a3aad9/Images/Documentation/39187166385172) *For more information, refer to the following:* - [*Fortanix Key Insight User Interface Components - AWS*](/v1/docs/fortanix-key-insight-user-interface-components-aws#60-keys) - [*Fortanix Key Insight User Interface Components - Azure*](/v1/docs/fortanix-key-insight-user-interface-components-azure#60-keys) - Improved user interface (UI) consistency, enhanced metadata visibility, and refined data presentation across Azure, On-Premises, and External Key Source (Fortanix DSM) connections (**JIRA: KI-3273**). *For more information, refer to the following:* - **Azure** - Renamed the **Type** column to **Key Spec** for consistent labeling across **Keys** list views. - Added **Resource Group** information to both the CSV export and the **Keys** details page. - **On-Premises** - On the **Keys** list, renamed the **Key Algorithm** column to **Key Spec** for alignment with Azure. - Enhanced the **Keys** details page to include **Key Spec**, **Key Name**, **Key Category**, **Source**, and **Host** fields. - Updated the **Key Version** field on the **Keys** details page to show a template message when empty, replacing the placeholder "**--**". - Renamed **Key Usage** to **DB Type** on the **Keys** details page for improved clarity. - Removed zero-value entries from the **Scanned Resources** section on the **Overview** page to reduce visual clutter. - **External Key Source (Fortanix DSM)** - Enhanced the **Keys** details page to include **Key Curve** and **Key Description**. - Renamed **Key Type** to **Object Type** on the **Keys** details page to match the corresponding table column header. - [*Fortanix Key Insight User Interface Components - Azure*](/v1/docs/fortanix-key-insight-user-interface-components-azure#62-keys-list-view) - [*Fortanix Key Insight - On-premises User Interface Components for Databases*](/v1/docs/fortanix-key-insight-on-premises-user-interface-components-for-databases#60-keys) - [*Fortanix Key Insight User Interface Components - External Key Source*](/v1/docs/fortanix-key-insight-user-interface-components-external-key-source#40-keys) - Enhanced the **Keys** page filters for Microsoft SQL (MS SQL) Server databases in Fortanix Key Insight On-Premises connections to support additional filter values (**JIRA: KI-3299**). *For more information, refer to* [*Fortanix Key Insight - On-premises User Interface Components for Databases*](/v1/docs/fortanix-key-insight-on-premises-user-interface-components-for-databases). - Key Source: **Azure Key Vault**, **Native Encryption** - Key Category: **Asymmetric Key** ## 3.0 On-Premises Scanner Updates - Improved error handling in the Fortanix Key Insight On-Premises scanner to log detailed diagnostics for failed database connections, while continuing to scan other valid databases in the same configuration file (**JIRA: KI-3092**). ## 4.0 Installation To install the latest Fortanix Key Insight On-Premises connection scanner package, click [here](/v1/docs/fortanix-on-premises-scanner).