This article provides an overview of the new features, improvements, on-premises scanner updates, and API updates in the Fortanix Key Insight 25.12 release.
1.0 New Features
Fortanix Key Insight now supports scanning on-premises containers images to discover cryptographic assets stored within the container image repositories (JIRA: KI-2774).
A new CONTAINERS tab has been added to the Overview, Assessment, Cryptographic Assets, and Resources pages for on-premises connections, providing details about the scanned container assets and associated resources.
For more information on container concepts, scanning architecture, required scanning permissions, scanner configuration, and related user interface (UI) features, refer to the following guides:
Added support for scanning keys in the Google Kubernetes Engine (GKE) service within a Google Cloud Platform (GCP) connection (JIRA: KI-3961).
For more information, refer to the following guides:
Fortanix Key Insight can now be deployed in region-specific environments within Fortanix Armor (JIRA: KI-3880).
Users can now,
Select the required Region (European Union or North America) when onboarding Fortanix Key Insight connections (Cloud, On-premises, and External Key Source).
Use the region switcher in the Fortanix Key Insight user interface (UI) to switch between regions and view or access the data stored in the selected region.
For more information, refer to the following guides:
2.0 Improvements
Users can now select all available compliance standards (previously limited to two) from the Select Compliance Standard drop down when creating a policy in the Policy Center. This enhancement enables broader and more accurate policy alignment without restrictions (JIRA: KI-4341).
3.0 On-premises Scanner Updates
Added support for scanning container images with the Fortanix On-premises Scanner to discover cryptographic assets and resources within container image repositories (JIRA: KI-2774).
For more information on the scanner installation, configuration, and execution, refer to On-premises Scanner Configuration.
The Fortanix On-premises Scanner configuration file now allows configurable region settings (European Union or North America), enabling in-region on-premises data processing and storage to comply with data sovereignty requirements (JIRA: KI-3880).
For more information, refer to On-premises Scanner Configuration File.
4.0 API Updates
The Fortanix Key Insight APIs path has been updated to include the target region. The new format is
/api/v1/discovery/<region>/<...path>(JIRA: KI-4204).For more information, refer to Fortanix Armor API Documentation.