What's New

Updated on 2026/08/11 GMT+08:00

The tables below describe the functions released in each Cloud Bastion Host version and corresponding documentation updates. New features will be successively launched in each region.

July 2026

July 15, 2026

No.

Feature

Description

Phase

Document

1

Instance version V3.3.74.0 available

  • Telecommunication SMS gateways are supported.

  • Resource groups are now supported to help manage resources by category and perform batch operations.

  • A policy delivery target and role manager can be configured for a role.

  • The SecureCRT client can be invoked when the SSO tool is used to log in to a host for operations.

  • The service code of the standby node of an HA bastion host can be checked on the About tab in the System module.

  • The license information of the standby node of an HA bastion host can be checked on the License tab under the System Maintenance page.

  • For Linux application O&M, records of transferring files from resources to web disks can be audited.

  • The option for direct file download is available during the storage configuration.

  • MongoDB databases can be managed in the Host Operations module.

  • HTML5 O&M session timeout verification can be configured.

  • The download center displays the packaging progress in real time.

  • In the HA scenario, the certificate synchronization option to the standby bastion host is available during manual web certificate updates.

  • Tag filtering supports the "AND" and "OR" relationships.

  • The backup configuration files of the primary and standby bastion hosts can be imported through the primary bastion host for an HA instance.

  • SMS verification can now be configured for mobile number clearance.

  • ICAgent can be installed for sending logs to LTS.

  • The Linux application publishing client supports Google Chrome for Linux and DBeaver for Linux.

  • The FTP/SFTP-based host O&M supports calling the XFTP client through SSO.

  • Client login configuration now supports disabling the RDP client.

  • The dashboard includes the license information module to display the number of used license quotas.

  • Multiple Navicat clients can be opened during database O&M through SSO.

  • Alarm thresholds can be configured in alarm settings.

  • Departments can be modified when user groups, resource account groups, and access control policies are edited.

  • Feitian OTP token devices support the configuration of authentication time ranges.

  • A new permission to view passwords in the application server module has been added to role permissions.

  • The application publishing server plug-in has been upgraded to V3.3.74.0.

  • The department filter on each resource list page now includes an option to include child departments.

Commercial use

Configuring an SMS Gateway to Send Messages

Resource Group Overview

Role

Using an SSO Client to Log In to a Host Resource for Operation

May 2026

No.

Feature

Description

Phase

Document

1

Instance version V3.3.72.0 available

Users can reset passwords through email authentication.

Commercial use

How Do I Reset the User Password for Logging In to a CBH System?

2

Instance version V3.3.70.0 available

  • O&M log anonymization is supported.

  • SMN is used to send system alarms.

  • Users can create equal-secret account groups for easy account management.

  • Host and application server connectivity can be checked automatically or manually.

  • Automatic rotation of system web certificates is supported.

  • When creating an application server, users can associate the server with a host.

  • The ticket approval list is divided into two tabs: All Tickets and Pending Approval Tickets.

  • The client software of the application publishing server is compatible with earlier versions.

  • When the admin user configures SMS-based two-factor authentication, the system checks whether a mobile number has been configured for the user.

  • Secondary authentication is required for downloading historical session videos.

Commercial use

Anonymizing O&M Logs

Configuring SMN for Sending Messages

Creating an Equal-Secret Account Group

Configuring Automatic Inspection

3

Instance version V3.3.68.0 available

  • When creating an ACL approval ticket, users need to configure a specific upload and download directory.

  • JDZY authentication is supported.

  • When creating a Linux application server, users no longer need to configure the Password parameter but need to configure the Authentication Credentials parameter.

  • Linux application O&M supports French and Arabic.

  • Multi-role approval is supported for authorization tickets.

  • The drop-down list can be stretched.

Commercial use

Submitting an ACL Ticket

Configuring JDZY Remote Authentication

Adding an Application Server

Using a Web Browser to Log In to Application Resources for O&M

4

Management console function changes

  • The Simple Message Notification (SMN) option is available in the Cloud Asset Authorization module.

  • The upgrade rollback button is moved from the Operation column to the Version column.

Commercial use

Authorizing Access to Cloud Assets

Upgrading the Instance Version

September 2025

No.

Feature

Description

Phase

Document

1

Instance version V3.3.66.0 available

  • The O&M of MySQL and PostgreSQL databases on macOS is supported.

  • Checkbox recognition and automatic login are supported for application release.

  • The input method can be switched during Linux application O&M.

  • The resolution can be switched during Linux and Windows application O&M.

  • The built-in script HSS-Agent.sh cannot be deleted or edited.

  • The xterm-256color option is available to the terminal type for H5 O&M.

  • Key pairs using Ed25519 are supported for password-free login when an SSH client is used to log in to a bastion host.

  • Spaces are allowed in usernames.

Commercial use

Logging In to and Maintaining Database Resources Using a Local Client

Adding an Application Resource

Using a Web Browser to Log In to Application Resources for O&M

Using an SSH Client to Log In to Resources for O&M

2

Instance version V3.3.65.0 available

  • Host operations based on the Redis protocol are supported.

  • Access control policies can be copied.

  • Captcha Validation Free Time is supported in multi-factor authentication for SSH client logins.

  • The demonstration mode is supported for browser-based operations.

  • Setting local passwords for IAM and other SSO clients is supported.

  • Selecting the current day for minor version upgrade is supported.

Commercial use

Managing Host or Database Resources with a Bastion Host

Creating an ACL Rule and Associating It with Users and Resource Accounts

Configuring Client Login

Setting a Local Password

March 2025

No.

Feature

Description

Phase

Document

1

V3.3.64.0 instances available

  • Added the description of the access control policy.
  • Added version restrictions.
  • Added the operation guide for O&M configuration and configuration download.
  • Added the description of the operation method of the primary/secondary account.
  • Added section "Configuring Audit Logs."
  • Added descriptions of newly-supported Feitian tokens in sections "OTP Token Management" and "Configuring OTP Token Login Verification."
  • Added descriptions of newly-supported Feitian certificates and Century Longmai certificates.
  • Deleted the description of data clearance when SM series cryptographic algorithms are enabled.
  • Added section "Configuring Insecure Protocols."
  • Added section "Configuring Insecure Algorithms."
  • Changed the maximum login timeout interval to 1,440 minutes in section "Configuring Web Login Timeout and Authentication."
  • Added section "Rolling Back the Upgrade."
  • Added section "Upgrading RemoteApp."

Commercial use

Configuring Insecure Protocols

Configuring Insecure Algorithms

Upgrading the RemoteApp Program

January 2025

No.

Feature

Description

Phase

Document

1

V3.3.62.0 instances available

  • Email addresses login verification
  • Forcible MFA for logins in "Configuring Web Login Timeout and Authentication"
  • Disk space protection threshold and session timeout settings in "Configuring Session Limit"
  • Download task tab in "Download Center"
  • Excel supported for exporting user information, dynamic tokens, and host resources
  • ACL rule export
  • Host address segment
  • Download task configurations in "Viewing System Memory"
  • Validity period settings for download tasks in "Deleting System Data"
  • Separate authorization for hosts that form a primary/standby instance

Commercial use

Configuring Email Address Login Verification

Updating a System Web Certificate

Configuring Session Limit

License

October 2024

No.

Feature

Description

Phase

Document

1

Version 3.3.60.0 was released

  • A confirmation dialog box added for immediate execution tasks.
  • Clipboard limit increased to 1024 KB.
  • Local clients for O&M over SSH.
  • Importing cloud databases from Huawei Cloud.
  • Search function on the cloud service O&M portal.
  • API for querying resource O&M permissions added.
  • Synchronizing AD domain user status.
  • URL combination mode of web application optimized.
  • Client logins of new IAM users.
  • SAML authentication logic optimized.
  • Multi-point login blocking and alarm reporting.
  • Monitoring the bastion host service.

Commercial use

Configuring Remote SAML Authentication

August 2024

No.

Feature

Description

Phase

Document

1

Version 3.3.58.0 was released

Supports invoking the local client to maintain SFTP/FTP resources.

Commercial use

Logging In to File Transfer Resources Using an FTP or SFTP Client

July 2024

No.

Feature

Description

Phase

Document

1

Version 3.3.56.0 was released

The following features are added:

  • Importing an Access Control Policy
  • Importing Command Sets in Batches
  • Sending alarms through SMS messages
  • Unlocking an IP Address That Is Locked Due to Login Failures
  • Host O&M adapts to the DM database.
  • Customizing the Alarm Content of a Work Order
  • Keyboard Audit Configuration
  • Configuring HA over IPv6
  • Creating Resource Accounts in Batches

Commercial use

Sysconfig

May 2024

No.

Feature

Description

Phase

Document

1

Sharing a VPC

Added the description about how to use a shared VPC.

Commercial use

Sharing a VPC

April 2024

No.

Feature

Description

Phase

Document

1

Version 3.3.54.0 was released

The following new features are added:

  • Supports SSH resources that require two-factor O&M.
  • Provides an interface for Huawei agents to deliver SAML configurations.
  • Provides an interface for Huawei agents to obtain the admin AK/SK.
  • Adapt to Flying Honesty USB Key

Commercial use

Managing Login Security

March 2024

No.

Feature

Description

Phase

Document

1

Style upgrade

New screenshots are used as a new console style is used.

Commercial use

User Guide

December 2023

No.

Feature

Description

Phase

Document

1

Version 3.3.52.0 was released

The following functions are added:

  • A message is displayed when a report is exported.
  • Compatible with Oracle 12c and Oracle 19c
  • The user locking mode is changed. (The user + source IP address option is added to the user lock configuration.)
  • Provides an interface for Huawei administrator to log in to the admin user.

Commercial use

Restrictions on Using CBH

Configuring User Login Lockout