Space release notes version 6.14
Security improvements Security
- Strengthened authentication mechanisms used for online event monitoring to ensure that only authorized operators can access real-time event information.
- Improved the generation of security-sensitive random values by adopting a cryptographically secure random number generator for all security-relevant operations, including card PIN generation, replacement and emergency key codes, and network communication randomization. This change prevents an attacker from predicting or reconstructing generated security values.
Restricted database backup destinations New feature
Operators can now restrict the backup paths available when performing database backups. When the Enforce allowed backup locations option is enabled, only the paths pre-approved by an admin operator can be used when creating scheduled backup jobs or making manual database backups. A non-configurable denylist prevents routes to sensitive system locations from being added. In new installations, a default SQL Server instance path is provided and the restrictive mode is active by default.
See Database backup security, Making database backups, and Automatic database backups for more information.
Improved performance of the Space Hospitality API feature Changed
The Hospitality API now uses improved rate limiting with request queuing. From Space 6.14 onwards, requests that exceed the rate limit are queued rather than instantly rejected, resulting in more reliable key provisioning under load.
A new verification option has also been added to the Advanced tab in the ProAccess Space Configurator, allowing administrators to validate the Hospitality API connection configuration.
See Hospitality API and Connectivity considerations for the Hospitality API for more information.
Euskara language support New feature
Euskara (Basque) has been added to the list of supported languages in the Space software.