IMPORTANT: This site is planned to be decommissioned in 2026. Visit the Tanium Resource Center for all Tanium release notes, user guides, and support information. To view release notes in the Resource Center, see Tanium Release Notes.
IMPORTANT: If you are using semi-annual releases for on premises, see the Release notes for 2024H1 semiannual release, Release notes for 2024H2 semiannual release, or Release notes for 2025H1 semiannual release on the Tanium Resource Center.
Effective October 15, 2024: On prem release notes on the Tanium Knowledge Base are frozen. For release notes related to 7.4 or 7.5 Server and Solutions, see the Monthly updates for Tanium Version 7.4 and 7.5 Server and Solutions on the Tanium Resource Center.

Release Notes Active Directory Query (Version 2.2.0.0003)

From Tanium Knowledge Base
Jump to navigation Jump to search

Thank you for choosing Tanium. This document is intended to document changes between releases of Active Directory Query.

Active Directory Query 2.2.0.0003

Release Date: April 24th, 2018

For information on the contents of this solution, please see here.

Updates

  • Added option to allow collection package to run on Domain controllers.
  • Now uses the object's tokenGroups attribute to collect all group memberships.
  • Removed Deploy Collect Active Directory Info Scheduled Action.
  • Added check to Collect Active Directory Info package that will ensure it can't be ran more frequently than a specified value. The default is three hours.
  • Added the ability to skip translating the names of certain users and groups

Bug Fixes

  • Fixed an issue where attribute xml files could be deleted without a successful bind to a Domain Controller.
  • Updated Primary User Details sensor to account for local users.

Additional Information

Known Issues and Workarounds

The scheduled action Deploy Collect Active Directory Info has been removed. Please manually create this scheduled action targeting the Windows endpoints that should collect Active Directory attributes.

Additional Information

The package Collect Active Directory Info should be ran with a suggested three hour Distribute Over Time value in order to offset LDAP queries to Domain Controllers.

Product Documentation and Resources