Release Notes

Management Console 22.04.1

Management Requirements

  • PCoIP Management Console 21.10 or newer supports Single Sign-on (SSO) via Multi-Factor Authentication (MFA) by integrating with the customer's Identity Provider (IDP).
  • PCoIP Management Console 21.07 or newer supports self-signed certificates using SCEP for Remote Workstation Cards using firmware 21.07 or higher. 
  • PCoIP Management Console 21.01 or newer supports Zero Clients and Remote Workstation Cards using firmware 20.01 or higher.
  • Customers upgrading to release 2010.10 or newer via RPM require access to the Internet to install Python 3.6 libraries. Optionally, customers can upgrade via the OVA format (which is packaged with Python 3.6 libraries).
  • PCoIP Management Console 2.0 - 19.11 supports Zero Clients with firmware 5.x or 6.x and Remote Workstation Cards with firmware 5x.
    Note: These are unsupported versions of software and firmware and Teradici strongly recommends Zero Client and Remote Workstation Card firmware 20.01 or higher, which are managed by Management Console 20.01 or higher.
  • Management Console manages endpoints using PCoIP firmware 5.x and newer. Check release notes for any special considerations when managing firmware with Management Console.
  • PCoIP Management Console is only intended to be deployed in a secured environment. Any management exposure to unsecured endpoints should be performed through a reverse proxy.
  • PCoIP Management Console must not be accessible from unsecured networks, such as the open Internet. Making this release of PCoIP Management Console accessible from the open Internet is an unsupported use of the product and will void any warranty
  • PCoIP Management Console cannot import databases from versions of PCoIP Management Console before version 2.0. However, migration instructions are available through the administrators' guide for moving your profiles and deployments from earlier versions of PCoIP Management Console to this version.
  • PCoIP Management Console is tested against the browser version available prior to release. Internet Explorer 11 is not a supported web browser.
    Compatible browsers:
    • Firefox
    • Chrome
    • Edge

Release Downloads

PCoIP Management Console is available for download as OVA and RPM files.

It is also available in the Amazon Machine Image (AMI) format, and can be found in various regions in the Amazon ecosystem which are listed in each release.

Related Documents and Software

Release Overview

PCoIP Management Console version 22.04.1 is a release with security improvements over release 22.04.0.

These release notes provide a summary of compatibility notes, resolved issues, and known issues for this release.

What's New in 2022.04

  • PostgreSQL 14.1 support

  • Set custom certificates for Peer-to-peer Max Compatibility and Peer-to-peer Suite B via Management Console using SCEP, including support for auto-renewal of certificates.

  • Added power reset icons to identify the following settings that cause an endpoint to reboot.

    • 802.1X Security (both endpoints)
    • 802.1X Authentication Identity (both endpoints)
    • HD Audio (both endpoints)
    • Opus Audio Codec (Zero Client)
    • Local USB Audio Driver (Zero Client)
    • Audio Line in (Remote Workstation Card)

Compatibility 

PCoIP Zero Client & Remote Workstation Card

This version of the PCoIP Management Console has been tested with the matching version of firmware for PCoIP Zero Client and Remote Workstation Card and is compatible with the previous release.

VMware

The OVA package for this version of PCoIP Management Console has been qualified against VMware ESXi versions 7.0, 6.7, and 6.5. It is not compatible with releases of ESXi before 5.5.

Amazon

Amazon EC2 AMI is available.

RPM Package Manager

This version of PCoIP Management Console RPM has been tested with Centos 7.7 and RHEL 7.7

 

Resolved Issues

None.

Known Issues

Profiles having broker cache entries containing a hyphen and are over 33 characters not displayed correctly

New
160309

Profiles that have a broker cache entry containing a hyphen, and are over 33 characters long do not display the remaining characters after the hyphen. This entry is still correctly entered in the profile and is correctly applied to the endpoint.

Workaround:

To display the full broker cache entry, activate the cursor in the profile's broker cache field and depress the Shift key and down arrow to see the complete address.

"802.1x Security" displayed as "Enable 802.1x Authentication" on the endpoint details page

 
159289

The profile parameter 802.1x Security displays as Enable 802.1x Authentication on the endpoint details page under the security section.

Endpoint certificate usage type changes to No usage

 
159283

After deleting an uploaded certificate in the profile, endpoint certificates in a profile that has a set usage type changes to No usage type.

Workaround:

Select the certificate usage type after uploading all certificates in the profile.

Activating the keyboard Enter button toggles the show/hide password function for New Certificate Rules.

 
159158

When the cursor is placed in any of the fields for Request-1 of a new certificate rule, the show/hide password toggles when the keyboard Enter button is activated.

Session negotiation cipher description differs from firmware descriptions

New
158945

Profiles using firmware 22.04.0 or newer display different session negotiation descriptions than Management Console.

Firmware descriptions: Maximum Compatibility: TLS 1.2 or higher with 112-bit or higher elliptic curve encryption and Suite B: TLS 1.2 or higher with Suite-B compliant 192-bit elliptic curve encryption

Management Console descriptions: Maximum Compatibility: RSA keys and AES-256 OR AES-128 encryption. and Suite B: Suite-B compliant 192-bit elliptic curve encryption

Workaround:

a

Dropdown options are enabled without selecting any endpoint under the ungrouped tab

 
158358

Dropdown options are enabled without selecting any endpoint under ungrouped endpoint tab.

Selected endpoints are deselected after clicking on expand ALL

 
158240

Selected endpoints are deselected after clicking on expand ALL.

Workaround:

Select endpoints after clicking on expand ALL.

Issues using group names that contain additional spaces for the same group name

 
158011

Creating one or more groups with identical names and adding two or more adjacent spaces within the group names will display as separate group(s) with the same name on the Endpoints page. However, after creation of the endpoint groups with identical names, no groups can be found or appear within the New Group dialog.

Workaround:

Do not create endpoint groups with identical names.

While editing a profile and refreshing the page the tabs change order.

 
157833

The order of the tabs within an existing profile changes after refreshing the page while editing the profile.

CA Identifier details do not displaying properly under "Endpoint Certificate" page

 
157822

If the CA Identifier details field is nul for one of the certificate Usage Name types, the CA Identifier details for each Usage Name type display incorrectly on the "Endpoint Certificate" page.

Uploading an invalid OSD Logo image causes process to hang and produces an incorrect validation message

 
157520

After uploading an invalid OSD Logo image, the validation message is incorrect and the displaying image loading process continues indefinitely.

Profile parameter labeled "Native resolution override enable" is incorrect

 
156133

Profile parameter Native resolution override enable should be labelled Preferred resolution override on the Endpoint Details page.

Profile status displays as failed after applying a profile containing a set supported resolution for any specific ports

 
155214

Applying a profile containing a configured supported resolution to an attached monitor, the Profile status shows "Failed" and shows a profile compliance of "Compliant" while the "Device status" goes offline and then back to "out of session(online)".

Endpoint details preferred resolution parameter shows 0 x 0 instead of Native.

New
154859

Endpoint details "Video Port <1/2/3/4>: Preferred Resolution" parameter shows 0 x 0 instead of Native.

Profile for Zero Client [Dual] fails when HD audio and Device bandwidth target set

New
154267

Applying a profile to a Zero Client [Dual displays] fails when the profile has both HD audio and Device bandwidth targets set.

Workaround:

Use the endpoint AWI to set HD audio and Device bandwidth targets

Endpoint name not automatically changed when the "Rename Endpoints when" field is set to "first discovered".

 
154266

The endpoint name does not automatically change when the "Prefix" and "Postfix" fields are configured and the Rename Endpoints when parameter is set to "first discovered".

Incorrect data is displayed for some columns of an exported endpoint details csv file

 
144775

Incorrect data is displayed for the 'Certificate Status' and other columns of an exported endpoint details csv file using the Export All option.

Database backup upload fails with size greater than 505MB

 
131370

Database backup upload fails with size greater than 505MB

Workaround:

Reduce the database size to less than 500MB.

SCEP issued certificate disappears after upgrading to FW 21.07.0

 
125726

This issue affects customers using Management Console with profiles containing certificates.

SCEP certificates acquired in firmware 21.03 or earlier are treated as regular certificates after upgrading to firmware 21.07.0. If the Management Console profile has certificates, the regular certificates in the Zero Client certificate store are replaced by those in the profile.

Workaround:

Upgrade Management Console to version 21.07.0

# Remove certificates from the Management Console profiles # Upgrade Zero Client firmware to 21.07.0 # Request new SCEP 802.1x certificate, and select it for 802.1x authentication # Verify that Zero Client is authenticated using the new 802.1x certificate # Re-add the certificates in the Management Console profiles # Apply the profile # Verify Zero Client 802.1x authentication. and that the Zero Client certificate store has the expected certs (the 802.1x cert and those in the profile)

20.01 Endpoints not visible after upgrading from Management Console 19.05/19.11 to 20.01

 
97413

If PCoIP endpoints running firmware 20.01 are managed by Management Console 19.11 or older, you will not be able to discover them after an upgrade to Management Console 20.01.

Workaround:

Downgrade all endpoints using firmware 20.01 to an older firmware before upgrading to PCoIP Management Console 20.01.

Profile application fails with display rotation

 
84249

Profile application fails when monitor emulation rotation is set to 90 degrees clockwise for the 2nd display.

Workaround:

None

Peer column is empty when added to the Endpoint table

 
77142

If the peer column is added to the Endpoint table, it will show no value.

Workaround:

Press the refresh button on the Endpoints page after the peer column is added to the Endpoint table.

Endpoint Details shows non-compliance before settings available

 
77043

A recently discovered online endpoint may show non-compliance for some endpoints and profile values in the Endpoints Details page, even though there is no endpoint data available yet.

Workaround:

Wait for the Management Console to complete getting settings information from the endpoint, or use the REFRESH button.

Primary IPv6 DNS value not being verified

 
76943

The Management Console is not verifying entered values in the Primary IPv6 DNS property. As a result, if an invalid value is entered, then the profile application will fail with the device returning the status: PEMSTATUSINVALIDNODEVALUE.

Workaround:

Manually ensure the Primary IPv6 DNS property value is correct.

No error message when attempting to delete a profile that is in use.

 
75030

The error message "Error: Cannot delete profiles that are in-use. Please unassign the profile from all groups and try again." should display when attempting to delete a profile that is used by a group. Instead now there is an exception showing in the jetty log and no error message in the interface.

The certificate size in the certificate store of a profile is not accurate.

 
74351

Certificates uploaded to store in profile does not show correct size after the profile is saved.

Filters for profile failure do not match the actual statuses.

 
73241

Profile failure descriptions have been modified and the filters have not. This will result in not  being able to do a search on profile failure since it now reports as profile failure offline.

Certificate status filters show Remote Workstation Cards

 
73178

Certificate status filters show Remote Workstation Cards in the results even though certificates cannot be provisioned to those endpoints by SCEP.

CA Identifier field cannot be cleared

 
72694

When creating an ENDPOINT CERTIFICATE rule, the CA Identifier field cannot be replaced with an empty value.

Workaround:

To clear the value on endpoints, first delete the original rule and then create a new one with no CA Identifier value.

Not all endpoints move between groups

 
72022

Some endpoints may not move between groups if a large number of endpoints (for example > 1500) are selected to be moved.

MOVE TO GROUP dialog not showing any groups

 
71558

The MOVE TO GROUP dialog box may not show any groups if some groups in the hierarchy share very similar names, only differing by the absence or presence of spaces.

Workaround:

Rename one of the groups so that it contains a different non-whitespace character.

Dashboard Endpoints Requiring Reboot reports incorrect number

 
71085

The dashboard Endpoints Requiring Reboot link displays an incorrect number of endpoints requiring reboot. This is observed after clicking on the link, the Endpoints table count does not match that displayed on the dashboard.

This can happen when updating Remote Workstation Cards, the dashboard count may not update after the Remote Workstation Card has been rebooted.

Database migration fails when the session timeout is exceeded

 
70838

If a database migration exceeds the configured session timeout of the PCoIP Management Console web interface, the database may shift to in an inconsistent state. When this happens the log file will contain java.lang.IllegalStateException and java.lang.NullPointerException errors.

Workaround:

Prior to performing the database migration, set the session timeout to Never.

Some filters not correctly operating

 
70128

The following filters do not correctly filter the endpoint table contents in this release:

  • Profile Mismatch
  • Power Reset
  • Certificate Expiry date
  • Get All Settings
  • Network Location
  • MAC Address
  • IP Address
  • Firmware Upload

Text cannot be edited from middle of the group move dialog using IE11

 
70096

When using Internet Explorer 11, if the cursor is placed mid-text in the search text field of the group move dialog, after typing a character the cursor will jump to the end of the line.

Workaround:

When retyping the content, erase it all and type from an empty text field. Or alternatively switch to Chrome, Firefox or Edge.

Request Certificate stays "in progress" if endpoint rejects server address

 
69762

If the endpoint rejects the certificate server address, then the Request Certificate assignment will remain "in progress" and never get set to "failed".

Monitor Emulations are not migrated from Management Console 1.x

 
68795

A migration from Management Console 1.x will successfully migrate the Monitor Emulation setting for Video Port 1, but the other Video ports will be set to 'Disable' after the migration.

Single character top level domain (TLD) invalid for View Connection Server

 
68660

Single character top level domain (TLD) are rejected in the Server URI field of Session Connection Type "View Connection Server". For example, https://server.domain.x will be rejected.

Web browser may cache content from before upgrade

 
68545

After an upgrade some web browsers may cache content from the previous release of the Management Console resulting in some new features or changes not rendering properly

Workaround:

Clear the web browser's cache.

Migrations from releases prior to 2.5 may fail

 
68452

Migrating PCoIP Management Console deployments to PCoIP Management Console 2.5.1 or 3.0.0 may fail with a corrupted database due to the database restore taking too long. This issue stems from a known issue (68605) in older releases (2.4 and earlier), which results in excessively large or corrupted database backups.

Workaround:

See KB 1029 for instructions on cleaning the database prior to backup.

Migrated profiles fail to apply settings if the firmware has changed from 5.x to 6.x during the migration

 
67932

If a profile in a previous release of Management Console was configured for firmware 5.x, is migrated to Management Console 3, and only firmware 6.0.0 or higher is installed, then when the profile is next applied, it will upgrade endpoints to the new firmware but fail to apply the profile settings with the status SKIPPED.

Workaround:

Upload firmware 5.x into Management Console 3. Edit the profile with this problem. Change the profile to the 5.x firmware and save it. Change the profile back to firmware 6.x and save it.

Power Reset statuses incorrect after group or profile change

 
67621

When an endpoint is moved between groups, or the profile for the group is changed, then all statuses in the Endpoint table should update and either be unknown, or recalculated based on the new group or profile. This does not occur for 'Firmware Power Reset' and 'Profile Power Reset' statuses. These two status values continue to have the previous value.

Certificate Status incorrect after changes outside of Management Console

 
67294

The certificate status of an endpoint can be incorrect if the certificate store or 802.1x settings are modified on the endpoint  (or endpoint is factory reset) from outside of the Management Console.

Some predefined filters not showing results

 
66993

The predefined filters Endpoint Updates Pending, and Endpoints Waiting on Restart do not consistently display endpoints matching those states.

APPLY profile active when it should be disabled

 
66972

The APPLY menu item under the PROFILE menu in the ENDPOINTS page is displayed as being active even when there is no profile associated with the selected group or endpoints.

Mouse hover is not revealing all active filters

 
66971

If more than two filters are active on the ENDPOINTS page, then hovering over the filter list will not reveal all of the active filters.

Remote Configuration Internal and External Address Port always required

 
66866

Remote Configuration (Settings > Remote) cannot be saved if the Internal Address and External Address do not have port number entered even though the help tip states that the port is only required for non-default port values.

Changing system certificate disables users

 
66454

Changing the certificate for the Management Console will disable all users except the one that updated the certificate.

Workaround:

Log back in after changing the certificate and re-enable the users.

Endpoint settings temporarily removed from database during upgrade from Management Console 2.x to 3.0

 
66374

When migrating from Management Console 2.x to 3.0, if there are profiles that contain zero client firmware 6.0.0, then the settings data of the endpoint will be dropped from the Management Console. The information will repopulate the next time the endpoint reports its current settings back to the Management Console.

Workaround:

Remove firmware 6.0.0 from profiles prior to upgrading or wait for endpoints to report all their settings back in.

Profile application fails when "Server URI" and "DNS Name or IP Address" are too long

 
66162

Profile settings permit values that are too long for the "Server URI" and "DNS Name or IP Address" settings result in failed profile applications.

Workaround:

Ensure values for "Server URI" and "DNS Name or IP Address" are no more than 67 characters long.

Incorrect empty value for "Pool Name to Select" is shown

 
66161

Blank values for the profile setting "Pool Name to Select" are incorrectly shown as "Not Set" on the Endpoint Details page.

Session -> Server URI setting not always being set on endpoint

 
66133

The Server URI setting for the View Connection Server session type is not always applied to the endpoint.

A new session type may not get applied to an endpoint if the profile setting is missing the server URL.

 
66127

A new session type may not get applied to an endpoint if the profile setting is missing the server URL.

Blank values are not accepted for View Connection Server advanced "Custom Session SNI" setting

 
66078

Blank values are not accepted for View Connection Server setting Custom Session SNI found in the advanced section.

OSD Logo is not saved if profile firmware version is switched on a new profile

 
66032

When creating a new profile, if the OSD logo is set, the profile saved and then the firmware version changed, the OSD logo will not be in the profile.

Workaround:

Save the profile. Exit the profile, and return to add the OSD Logo.

Some comparisons for IP Address and MAC Address filters do not work correctly

 
65917

The comparison values of "is greater than" and "is not" are not producing results for the IP Address and MAC Address filters and may result in a "ValidationException" entry in the console log file.

ENDPOINT -> DETAILS active when it should be disabled

 
64042

When selecting a group in the ENDPOINTS table, the ENDPOINTS -> DETAILS menu item is shown as active when it should be disabled.

Exporting the results of a search will show empty values in the Profile column.

 
63913

Exporting the results of a search will show empty values in the Profile column.

Error 500: Internal Server

 
63202

On some pages, if it is left idle for an excessive period, the Management Console may display an Error 500: Internal Server page.

Workaround:

In your web browser, go back to the base URL of the Management Console and re-login.

Some endpoints that have not connected in a long time show as online

 
63017

Some endpoints that have not connected in a long time show as online.

Profile Mismatch column on the Endpoint's page incorrectly shows True

 
61140

The Endpoints page table incorrectly shows Profile Mismatch is True for some zero clients even though the Endpoint Details page does not show any mismatches.

Web interface unavailable for a Management Console with DHCP assigned host name.

 
59280

Users are not able to log into the Management Console web interface when the DHCP server assigns a host name to the Management Console Virtual Appliance. The error shown on the login page is "Waiting for the server to start."

Workaround:

Follow the steps described in knowledge base article KB 1450.

Disabling individual schedule does not work without start time.

 
55912

Disabling individual schedule does not work if the user selects only the date without a start time.

Workaround:

Ensure your schedule has a start time in addition to a start date.

Incorrect count for additional schedules on dashboard

 
55636

The 'more schedules' text in the Dashboard section for Upcoming Schedules always states '(1) more schedules' regardless of how many schedules are upcoming but do not fit in the view.

Profile mismatch reported when Authorized Devices is set to 'Any'

 
54060

The endpoint details page will report a device as having a profile mismatch if the profile settings for the profile applied to the device has Peripherals > Authorized Devices set to Any Device Class, Any Sub Class, or Any Protocol.

New features from latest PCoIP Management Console disappear when using FQDN instead of IP address

 
51732

Some web browsers retain cache from previous releases of PCoIP Management Console cache, therefore features from the new version of PCoIP Management Console disappear when using FQDN instead of IP address.

Workaround:

Clear the web browser's cache.

Exporting endpoints on Firefox downloads a file with unexpected filename and without '.csv' file extension

 
43864

Exporting the endpoints on Firefox downloads a file with an unexpected filename and without '.csv' file extension. Following this, the 'Endpoints' page briefly displays a 'Server not responding' message and jumps to the dashboard.

Workaround:

At the time of saving, rename the file.

Session filters return no results

 
39456

Applying filters for Session Status 'In Session' or 'Out of Session' does not display devices in the endpoints table.

Deleting a group will silently delete auto-configuration rules

 
38229

When a group is deleted, all auto-configuration rules assigned to that group will also be removed without any notification.

Endpoint naming using Group Naming does not work with auto configuration

 
34756

To give zero clients with auto configuration a Primary Group Name and/or Deepest Sub-group Name, go to Settings > Naming and select moved between grouped and ungrouped rule in the Rename Endpoints when tab.

Client Power Down Timeout Seconds feature only supported in Tera2 Zero Clients

 
34424

The Auto Power Off feature, namely the Client Power Down Timeout Seconds, is supported in Tera2 Zero Clients only. The Profile setting incorrectly states that it is supported in both Tera1 and Tera2 Zero Clients.

Firmware version with suffix is not displayed in Update tab

 
34417

When using the Update tab to update firmware, firmware version with a suffixed release number (for example, -p1 or -rc2) are not displayed in the list of devices to update.

Workaround:

Select Group instead of Version Number.

Device labels are not used as device names

 
32586

Labels are not being used for the device name, even though the system has been configured to use them as such.

PCoIP Management Console does not check the value of device bandwidth setting

 
32527

The PCoIP Management Console Profile editor does not enforce the requirement that Bandwidth Floor ≤ Bandwidth Target ≤ Bandwidth Limit. Profile content that does not meet this requirement will fail to apply to a zero client.

Workaround:

Ensure that the profile content meets the requirements. Consider setting all three values in the profile to ensure this.

Endpoint labels with underscore characters at the start or end are not displayed properly

 
32398

Endpoints that have the underscore character '_' at the start and/or end of the label are not properly displayed in the PCoIP Management Console. Blank fields are shown instead of endpoint data.

Workaround:

Avoid underscores at the start and end of endpoint labels.

Internet Explorer browser locked after running Persistent AutoConfig

 
28750

After Persistent AutoConfig has run, if the admin is logged into PCoIP Management Console with Internet Explorer 10, an alert will pop up stating that the user is logged out. Internet Explorer may be locked up at this time.

Workaround:

Close Internet Explorer, and reopen it to PCoIP Management Console or use Firefox.

Daily schedules may occur one additional time

 
27959

Daily recurring schedules may occur one additional time after the End Date and Time set in the schedule.

Profile's HD Audio setting may fail if set differently to Local USB Audio Driver

 
27823

PCoIP Management Console profiles that set Local USB Audio Driver to Enable must also set HD Audio to Enable. Otherwise, the profile will fail to apply to zero clients that have HD Audio disabled.

Firmware version does not get updated after a firmware update outside of a profile

 
25886

Devices that have firmware updated outside of a profile will continue to report the old firmware version for a while.

Workaround:

Device will update its firmware reporting in up to one hour. Rediscovery of the device will make this update occur sooner.