This article provides an overview of the new features, improvements, API updates, and on-premises scanner updates in the Fortanix Key Insight 25.10 release.
1.0 New Features
Fortanix Key Insight now supports deployment of the On-premises Scanner on Windows Server with integrated Active Directory (AD) and Microsoft Entra ID (formerly Azure AD) authentication (JIRA: KI-3207).
Users can now install, configure, and run the on-premises scanner on Windows Server to authenticate and scan keys, certificates, resources, and cryptographic assets across on-premises databases, source code, and file system environments.
For more information on the Windows concepts, installation, configuration, and execution, refer to the following guides:
Fortanix Key Insight now supports configurable logging for on-premises scanners on both Windows and Linux, allowing administrators to generate detailed audit logs through the configuration file (JIRA: KI-3243).
For more information, refer to On-premises Scanner Configuration File.
2.0 Improvements
Added LINE number and OFFSET details for cryptographic assets in on-premises Source Code infrastructure, providing precise location information for faster review, tracking, and remediation (JIRA: KI-3809).
For more information, refer to Fortanix Key Insight User Interface Components - External Key Source.
3.0 API Updates
Fortanix Key Insight now supports API access using Client apps in Fortanix Armor (JIRA: KI-3253).
With this API support, the following Fortanix Key Insight operations can now be performed programmatically across cloud, on-premises, and external key source connections:
Retrieve all configured connection details.
Retrieve all created policies and their details.
Retrieve all configured authentication details.
Retrieve information for each scan of a specific connection.
Retrieve detailed information for each connection, including:
Discovery information for all assets, including keys, resources, cryptographic assets, and certificates.
Overview and assessment reports.
Post Quantum Cryptography (PQC) readiness details.
For more information on the supported REST APIs and examples, refer to Programmatic Access to Fortanix Key Insight APIs.
4.0 On-premises Scanner Updates
The scanner configuration file now supports configurable logging and Windows Server deployment settings with integrated authentication methods (JIRA: KI-3207 and KI-3243).
For information on configuring logging and Windows authentication in the configuration file, refer to On-premises Scanner Configuration File.
5.0 Installation
To install the latest Fortanix Key Insight on-premises scanner package, which supports scanning of databases, source code, and file systems on both Linux and Windows, click here.
To install the latest Fortanix Key Insight on-premises File System Agent scanner for Linux, click here.
To install the latest Fortanix Key Insight on-premises File System Agent scanner for Windows, click here.