Fortanix Data Security Manager (DSM) 4.31.2533 release provides an overview of improvements and resolved issues.
This release is superseded by the March 18, 2025, release.
WARNING
You are REQUIRED to upgrade Fortanix DSM to version 4.23 or 4.27 before upgrading to version 4.31.2533. If you want to upgrade Fortanix DSM to version 4.31.2533 from a version earlier than 4.23, please contact the Fortanix Support team at your earliest to validate the upgrade path.
Downgrade from 4.31.2533 to any prior version is not supported due to the DCAP migration.
For 1-node cluster, the upgrade path must be 4.23 to 4.27 and 4.27 to 4.31.2533.
For 3-node cluster, the upgrade path must be 4.23 to 4.31.2533.
NOTE
The Fortanix DSM cluster upgrade must be done with Fortanix Support on call. Please reach out to Fortanix support if you are planning an upgrade.
The customer's BIOS version must be checked by Fortanix Support before the Fortanix DSM software upgrade. If required, the BIOS version should be upgraded to the latest version and verified by Fortanix Support for a smooth upgrade.
If your Fortanix DSM version is 4.31 or later, then the HSM Gateway version must also be 4.31 or later. Similarly, if the HSM Gateway version is 4.31 or later, then your Fortanix DSM version must be 4.31 or later.
1. Improvements and Bug Fixes
Fortanix FX2200 appliances now uses Intel Software Guard Extensions (SGX) Data Center Attestation Primitives (DCAP) attestation instead of Intel Attestation Service (IAS) since IAS will be reaching the end of life by April 02, 2025 (JIRA: PROD-9335).
For more information, refer to Fortanix DSM Installation Guide.Fixed the
AlreadyExistsExceptionerror when creating AWS BYOK key using Terraform where the key was not listed in the AWS KMS backed group in DSM (JIRA: ES-367).Fixed the
ThrottlingExceptionerror when copying a key from normal DSM group to AWS KMS backed group (JIRA: ES-435).
For a complete list of new features, enhancements to existing features, other improvements, bug fixes, and known issues, refer to the full description of the DSM 4.31 release notes.
2. Installation
To install the DSM Runtime Encryption® SGX (on-prem/Azure) and Software (AWS/Azure/VMWare) packages, Download Here.