--- layout: docs page_title: "1.15.0 release notes" description: |- Key updates for Vault 1.15.0 --- # Vault 1.15.0 release notes **GA date:** 2023-09-27 @include 'release-notes/intro.mdx' ## Known issues and breaking changes | Version | Issue | |-----------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | 1.15.0+ | [Vault no longer reports rollback metrics by mountpoint](/vault/docs/upgrading/upgrade-to-1.15.x#rollback-metrics) | | 1.15.0 | [Panic in AWS auth method during IAM-based login](/vault/docs/upgrading/upgrade-to-1.15.x#panic-in-aws-auth-method-during-iam-based-login) | | 1.15.0+ | [UI Collapsed navbar does not allow certain click events](/vault/docs/upgrading/upgrade-to-1.15.x#ui-collapsed-navbar) | | 1.15 | [Vault file audit devices do not honor SIGHUP signal to reload](/vault/docs/upgrading/upgrade-to-1.15.x#file-audit-devices-do-not-honor-sighup-signal-to-reload) | | 1.15.0 - 1.15.1 | [Vault storing references to ephemeral sub-loggers leading to unbounded memory consumption](/vault/docs/upgrading/upgrade-to-1.15.x#vault-is-storing-references-to-ephemeral-sub-loggers-leading-to-unbounded-memory-consumption) | | 1.15.0 - 1.15.1 | [Internal error when vault policy in namespace does not exist](/vault/docs/upgrading/upgrade-to-1.15.x#internal-error-when-vault-policy-in-namespace-does-not-exist) | | 1.15.0+ | [Sublogger levels not adjusted on reload](/vault/docs/upgrading/upgrade-to-1.15.x#sublogger-levels-unchanged-on-reload) | | 1.15.0+ | [URL change for KV v2 plugin](/vault/docs/upgrading/upgrade-to-1.15.x#kv2-url-change) | | 1.15.1 | [Fatal error during expiration metrics gathering causing Vault crash](/vault/docs/upgrading/upgrade-to-1.15.x#fatal-error-during-expiration-metrics-gathering-causing-vault-crash) | | 1.15.0 - 1.15.4 | [Audit devices could log raw data despite configuration](/vault/docs/upgrading/upgrade-to-1.15.x#audit-devices-could-log-raw-data-despite-configuration) | | 1.15.5 | [Unable to rotate LDAP credentials](/vault/docs/upgrading/upgrade-to-1.15.x#unable-to-rotate-ldap-credentials) | | 1.15.0 - 1.15.5 | [Deadlock can occur on performance secondary clusters with many mounts](/vault/docs/upgrading/upgrade-to-1.15.x#deadlock-can-occur-on-performance-secondary-clusters-with-many-mounts) | | 1.15.0 - 1.15.5 | [Audit fails to recover from panics when formatting audit entries](/vault/docs/upgrading/upgrade-to-1.15.x#audit-fails-to-recover-from-panics-when-formatting-audit-entries) | | 1.15.0 - 1.15.7 | [Vault Enterprise performance standby nodes audit all request headers regardless of settings](/vault/docs/upgrading/upgrade-to-1.15.x#vault-enterprise-performance-standby-nodes-audit-all-request-headers) | ## Vault companion updates Companion updates are Vault updates that live outside the main Vault binary.
Release | Update | Description |
---|---|---|
Vault Secrets Operator | GA |
Run the Vault Secrets Operator (v0.3.0) on Red Hat OpenShift.
Learn more: Vault Secrets Operator |
Release | Update | Description |
---|---|---|
Vault Agent | ENHANCED |
Updated to use the latest Azure SDK version and Workload Identity
Federation (WIF).
Learn more: What is Vault Agent? |
GA |
Fetch secrets directly into your application as environment variables.
Learn more: Process Supervisor Mode |
|
External plugins | BETA |
Run external plugins in their own container with native container platform
controls.
Learn more: Containerize Vault plugins |
Eventing | BETA |
Subscribe to notifications for various events in Vault. Includes support
for filtering, permissions, and cluster configurations with K-V secrets.
Learn more: Events |
Vault GUI | GA |
New LDAP secrets engine GUI.
Learn more: Vault UI guide |
ENHANCED |
• New landing page dashboard. • View secrets you have read access to under your directory. • View diffs between previous and new secret versions. • Copy and paste secret paths from the GUI to the Vault CLI or API. Learn more: Vault UI guide |
|
Secrets management | GA |
Connect to Google Cloud Platform (GCP) Cloud SQL instances using native
IAM credentials.
Learn more: Google Cloud Platform Secret Manager |
ENHANCED |
Improved TTL management for database credentials with configurable
credential rotation.
Learn more: Secrets engines |
Release | Update | Description |
---|---|---|
Secrets syncing | BETA |
Sync Key Value (KV) v2 data between Vault and secrets managers from AWS,
Azure, Google Cloud Platform (GCP), GitHub, and Vercel.
Learn more: Secrets Sync |
Public Key Infrastructure (PKI) | GA |
Control Vault PKI issued certificates with the Certificate Issuance
External Policy Service (CIEPS) to ensure consistency and compliance to
enterprise standards.
Learn more: Certificate Issuance External Policy Service (CIEPS) |
Replication | ENHANCED |
Holistic improvements to cluster replication including problem detection
and remediation.
Learn more: Vault Enterprise replication |
Seal High Availability | BETA |
Enables Vault administrators to configure multiple KMS for seal keys to
ensure Vault availability in the event a single KMS becomes unavailable.
Learn more: Seal wrap |
Authentication | GA |
Authenticate to Vault with your SAML identity provider.
Learn more: SAML auth method |