v16.5.2

gravitational/teleportv16.5.2Apr 15, 2025by camscale

AI Summary

Teleport v16.5.2 is a maintenance release that improves container security tracking with image digest capture for Kubernetes, Podman, and Docker workloads, adds IPv6-to-IPv4 proxy protocol support, and includes fixes for SAML metadata URL timeouts and Azure VM auto-discovery issues.

Key Highlights

  • Workload ID now captures container image digests for Kubernetes, Podman, and Docker attestors
  • Added new proxy_protocol_allow_downgrade field for IPv6-to-IPv4 environment compatibility
  • Fixed web UI and tsh issues when SAML metadata URLs respond slowly
  • Fixed Azure VM auto-discovery when not filtering by resource group
  • Updated Go to version 1.23.8

New Features

  • Container image digest capture in Workload ID for Kubernetes, Podman, and Docker attestors
  • New proxy_protocol_allow_downgrade configuration option in proxy_service for IPv6-to-IPv4 connectivity (not compatible with IP pinning)

Full Release Notes

## Description

* Workload ID: the Kubernetes, Podman, and Docker attestors now capture the container image digest. [#53940](https://github.com/gravitational/teleport/pull/53940)
* Fixed web UI and tsh issues when a SAML metadata URL takes an unusually long time to respond. [#53934](https://github.com/gravitational/teleport/pull/53934)
* Updated Go to 1.23.8. [#53919](https://github.com/gravitational/teleport/pull/53919)
* Fixed Azure VM auto discovery when not filtering by resource group. [#53900](https://github.com/gravitational/teleport/pull/53900)
* Added new `proxy_protocol_allow_downgrade` field to the `proxy_service` configuration in support of environments where single stack IPv6 sources are connecting to single stack IPv4 destinations. This feature is not compatible with IP pinning. [#53884](https://github.com/gravitational/teleport/pull/53884)

## Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

## Plugins

Download the current release of Teleport plugins from the links below.
* Slack [Linux amd64](https://cdn.teleport.dev/teleport-access-slack-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-slack-v16.5.2-linux-arm64-bin.tar.gz) 
* Mattermost [Linux amd64](https://cdn.teleport.dev/teleport-access-mattermost-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-mattermost-v16.5.2-linux-arm64-bin.tar.gz)
* Discord [Linux amd64](https://cdn.teleport.dev/teleport-access-discord-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-discord-v16.5.2-linux-arm64-bin.tar.gz)
* Terraform Provider [Linux amd64](https://cdn.teleport.dev/terraform-provider-teleport-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/terraform-provider-teleport-v16.5.2-linux-arm64-bin.tar.gz) | [macOS amd64](https://cdn.teleport.dev/terraform-provider-teleport-v16.5.2-darwin-amd64-bin.tar.gz) | [macOS arm64](https://cdn.teleport.dev/terraform-provider-teleport-v16.5.2-darwin-arm64-bin.tar.gz) | [macOS universal](https://cdn.teleport.dev/terraform-provider-teleport-v16.5.2-darwin-universal-bin.tar.gz)
* Event Handler [Linux amd64](https://cdn.teleport.dev/teleport-event-handler-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-event-handler-v16.5.2-linux-arm64-bin.tar.gz) | [macOS amd64](https://cdn.teleport.dev/teleport-event-handler-v16.5.2-darwin-amd64-bin.tar.gz)
* PagerDuty [Linux amd64](https://cdn.teleport.dev/teleport-access-pagerduty-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-pagerduty-v16.5.2-linux-arm64-bin.tar.gz)
* Jira [Linux amd64](https://cdn.teleport.dev/teleport-access-jira-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-jira-v16.5.2-linux-arm64-bin.tar.gz)
* Email [Linux amd64](https://cdn.teleport.dev/teleport-access-email-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-email-v16.5.2-linux-arm64-bin.tar.gz)
* Microsoft Teams [Linux amd64](https://cdn.teleport.dev/teleport-access-msteams-v16.5.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-msteams-v16.5.2-linux-arm64-bin.tar.gz)