v18.7.2

gravitational/teleportv18.7.2Mar 6, 2026by doggydogworld

AI Summary

Teleport 18.7.2 adds Kubernetes operator improvements, scoped token support, and performance enhancements for database proxies.

Key Highlights

  • Added TeleportAccessMonitoringRuleV1 support to Kubernetes operator
  • Added session summarizer resources support to Kubernetes operator
  • Improved database proxy performance for large numbers of databases
  • Added scoped tokens to tctl resource commands
  • Fixed Discovery Service issue affecting AWS OIDC resource enrollments

New Features

  • TeleportAccessMonitoringRuleV1 support in Kubernetes operator
  • Session summarizer resources in Kubernetes operator
  • Scoped token support in tctl
  • Update scoped token support in tctl

Full Release Notes

## Description

* Added `TeleportAccessMonitoringRuleV1` support to the Teleport Kubernetes operator. [#64368](https://github.com/gravitational/teleport/pull/64368)
* Added update scoped token support to tctl and update upsert scoped token rpc to not require status. [#64345](https://github.com/gravitational/teleport/pull/64345)
* Improved performance and reduced resource usage of the database proxy for clusters with large numbers of registered databases. [#64311](https://github.com/gravitational/teleport/pull/64311)
* Added more helpful messages to `ssm.run` events when there's a failure in discovering EC2 instances. [#64273](https://github.com/gravitational/teleport/pull/64273)
* Fixed a bug that could cause desktop connection errors during proxy upgrades for some cluster configurations. [#64258](https://github.com/gravitational/teleport/pull/64258)
* Fixed an issue where the UI would display a white screen and no error when an error occurred. [#64246](https://github.com/gravitational/teleport/pull/64246)
* Improve the layout of the web UI's message of the day. [#64213](https://github.com/gravitational/teleport/pull/64213)
* Fixed an issue where VNet on Windows could fail to start after an update with the error: `The specified service does not exist as an installed service.`. [#64206](https://github.com/gravitational/teleport/pull/64206)
* Fixed a bug where audit events could be created forever for an expired access request. [#64180](https://github.com/gravitational/teleport/pull/64180)
* Add scoped tokens to tctl resource commands. [#64040](https://github.com/gravitational/teleport/pull/64040)
* Fixed correct reporting of server discovery enrollment failures when the Proxy is not accessible from the target server. [#64007](https://github.com/gravitational/teleport/pull/64007)
* Fixed an issue that caused Discovery Service to stop working for Discovery Configs, also affecting AWS OIDC resource enrollments created from the UI. [#63970](https://github.com/gravitational/teleport/pull/63970)
* Added support for session summarizer resources to the Kubernetes operator. [#63884](https://github.com/gravitational/teleport/pull/63884)

Enterprise:
* Fixed an error log and a memory leak when manually deleting an okta_assignment resource.
* Fixed a potential panic in Auth service when getting a non-existing plugin without list permissions.
* Prevented membership modifications for Access Lists synchronized from Entra ID.

## Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

## Plugins

Download the current release of Teleport plugins from the links below.
* Slack [Linux amd64](https://cdn.teleport.dev/teleport-access-slack-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-slack-v18.7.2-linux-arm64-bin.tar.gz) 
* Mattermost [Linux amd64](https://cdn.teleport.dev/teleport-access-mattermost-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-mattermost-v18.7.2-linux-arm64-bin.tar.gz)
* Discord [Linux amd64](https://cdn.teleport.dev/teleport-access-discord-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-discord-v18.7.2-linux-arm64-bin.tar.gz)
* Terraform Provider [Linux amd64](https://cdn.teleport.dev/terraform-provider-teleport-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/terraform-provider-teleport-v18.7.2-linux-arm64-bin.tar.gz) | [macOS amd64](https://cdn.teleport.dev/terraform-provider-teleport-v18.7.2-darwin-amd64-bin.tar.gz) | [macOS arm64](https://cdn.teleport.dev/terraform-provider-teleport-v18.7.2-darwin-arm64-bin.tar.gz) | [macOS universal](https://cdn.teleport.dev/terraform-provider-teleport-v18.7.2-darwin-universal-bin.tar.gz)
* Event Handler [Linux amd64](https://cdn.teleport.dev/teleport-event-handler-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-event-handler-v18.7.2-linux-arm64-bin.tar.gz) | [macOS amd64](https://cdn.teleport.dev/teleport-event-handler-v18.7.2-darwin-amd64-bin.tar.gz)
* PagerDuty [Linux amd64](https://cdn.teleport.dev/teleport-access-pagerduty-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-pagerduty-v18.7.2-linux-arm64-bin.tar.gz)
* Jira [Linux amd64](https://cdn.teleport.dev/teleport-access-jira-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-jira-v18.7.2-linux-arm64-bin.tar.gz)
* Email [Linux amd64](https://cdn.teleport.dev/teleport-access-email-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-email-v18.7.2-linux-arm64-bin.tar.gz)
* Microsoft Teams [Linux amd64](https://cdn.teleport.dev/teleport-access-msteams-v18.7.2-linux-amd64-bin.tar.gz) | [Linux arm64](https://cdn.teleport.dev/teleport-access-msteams-v18.7.2-linux-arm64-bin.tar.gz)